Year2023 |
MonthJune |
Reference number20230609 |
Impact areaShore |
Incident locationFrance |
Incident countryFrance |
Victim countryFrance |
Victim identitySchneider Electric |
Victim TypeEnergy company |
MethodRansomware |
Attacker countryRussia |
In June 2023, Schneider Electric, a multinational company specializing in digital automation and energy management, was targeted by the Clop ransomware gang in France. The attack exploited a zero-day vulnerability in the MOVEit Transfer software, developed by Progress Software. Clop listed Schneider Electric and other companies, including Siemens Energy and Cognizant, on its darkweb site, pressuring them to pay extortion fees to avoid data disclosure. Despite Schneider Electric's efforts to mitigate the vulnerability, Clop claimed to have stolen data from the company's systems. The MOVEit vulnerability has led to breaches in over 100 organizations, including Shell, PwC, and British Airways. Schneider Electric's response highlighted the importance of proactive cybersecurity measures and rapid incident response. The incident underscores the widespread impact of the MOVEit vulnerability, affecting various organizations globally.