Cyber Incident Victim: Colipays
Date:
Dec 2023
Location:
France
Summary
A company specializing in local product deliveries experienced a cyberattack disrupting its website operations and logistics systems, resulting in undelivered customer orders. The attackers compromised the site, prompting its temporary suspension for security verification and evidence collection to support a filed legal complaint. Internal teams and external providers reinforced system security and database protections following the incident. Customer dissatisfaction arose from delayed communication, leading the organization to establish a dedicated email address for reporting suspicious anomalies and pledge case-by-case compensation for affected individuals. Service restoration prioritized personalized client support amid ongoing social media criticism regarding information gaps.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 1 motive | 2 techniques |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
In late November or early December 2023, Colipays—a Réunion-based company specializing in shipping local products—experienced a cyberattack that disrupted its website operations and logistics systems during the peak year-end shopping period. The attackers compromised the company’s website infrastructure, impairing its functionality and preventing numerous customers from receiving paid orders. Colipays confirmed the incident via public statement, acknowledging the attack had specifically harmed both business operations and customers. The company temporarily suspended website access to conduct a dual-phase security verification process aimed at safeguarding client data while simultaneously gathering forensic evidence about the attackers’ methods. This evidence collection supported a formal legal complaint filed by Colipays, which also initiated efforts to compile additional proof to identify the perpetrators.

Colipays declared the cyberattack had been successfully repelled by its internal IT teams and external service providers, who subsequently fortified the company’s information systems and databases to restore security. Despite these measures, the attack caused significant customer dissatisfaction due to undelivered orders and perceived delays in corporate communication, with many complaints surfacing on social media platforms. To address grievances, Colipays established a dedicated email address ([email protected]) for reporting suspicious activity related to the incident and committed to compensating affected clients through case-by-case assessments. A specialized customer service unit was deployed to manage personalized claims, prioritizing individual resolution. The company did not disclose technical specifics of the attack vector, duration of system downtime, or precise number of impacted customers but emphasized ongoing efforts to balance operational recovery with legal recourse against the attackers.
