CSIDB logo
Incident

Agridea

Incident posture

Attack window
Jul 2024
Location
Switzerland
Status
Historical
CIA posture
Available to members
Updated
2025-12-29 18:01

Linked entities

Victim
Agridea
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Jul 2024
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

Agridea experienced a cyberattack, prompting the immediate formation of a task force to restore system security and functionality. The organization collaborated with external security experts and authorities while informing partners, ultimately securing and reinstating its systems. Data loss was limited to a maximum six-week period, with most information successfully recovered.

Motives

Detailed motive labels are available to members.

0 motives

TTPs

Detailed technique labels are available to members.

1 technique

Description

Agridea, a Swiss agricultural organization, experienced a confirmed cyberattack on July 6, 2024. The organization's communications director, Andrea van der Elst, publicly acknowledged the incident following media inquiries. Agridea initiated an immediate response by establishing a dedicated taskforce to manage the breach. This taskforce implemented comprehensive measures focused on restoring system security and operational functionality. The organization collaborated extensively with external cybersecurity experts throughout the remediation process while coordinating with relevant authorities. Partners and stakeholders received notifications about the breach as part of Agridea's transparency efforts. By the time of van der Elst's statement, Agridea had successfully restored and secured its compromised systems. The attack timeframe and data exposure window remained unspecified beyond confirmation that affected data spanned a maximum six-week period prior to detection.

Agridea managed to recover most data impacted during the six-week exposure window, though the organization declined to disclose why more recent backups were unavailable. No technical details regarding attack vectors, threat actor identities, or specific compromised systems were released. The communications director explicitly stated no further information would be provided beyond the confirmed facts. Recovery operations concluded with systems fully restored and secured according to official statements. This incident coincided with a separate, unrelated cyberattack against Onelog, a shared login platform used by major Swiss publishing houses, though no connection between the two events was suggested. Agridea maintained operational continuity following system restoration without disclosing specific business impacts or financial consequences stemming from the breach.

Sources

Sources available to members: 1 source.

CSIDB