Koninklijke Philips NVPhilips confirmed it was targeted, but contained the breach; potential reputational and regulatory impact.
The Cl0p hacker group claims to have stolen massive amounts of data from nearly 50 major companies worldwide, including Philips, Shell, Fiserv, and GE. Philips acknowledged that it was indeed targeted, but its team detected and contained the attempt to breach its corporate servers in time, and confirmed that the incident did not affect customer-facing systems. Shell said it is aware of a possible suspicious incident and is working with its security team and external experts to urgently investigate the facts. Fiserv said its latest detailed review has found no evidence that customer data, transaction data, banking data, or personal information was leaked, and all operational systems continue to function normally. GE disclosed that it is aware of the claims and immediately activated its cyber threat response plan, while urgently assessing the potential impact and damage. The Industrial Security Information Sharing and Analysis Center, or Ransom-ISAC, issued an alert as early as July 22 that the hacker group is targeting vulnerabilities in PTC Windchill and FlexPLM, which are critical software used in engineering and manufacturing processes at industrial facilities.
Koninklijke Philips NVPhilips confirmed it was targeted, but contained the breach; potential reputational and regulatory impact.
GE AerospaceGE is mentioned as a victim of the Cl0p breach, but impact is unclear as it is assessing potential damage.
Shell plcShell is investigating a possible suspicious incident, but no confirmed impact or data loss yet.