CSIDB logo
Incident

J. Dahmen

Incident posture

Attack window
Apr 2025
Location
Germany
Status
Unknown
CIA posture
Available to members
Updated
2026-08-29 03:14

Linked entities

Victim
J. Dahmen
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Undetermined
Discovered
Apr 2025
Disclosed
Apr 2025
Resolved
Pending

Summary

The company detected unusual system activity in the late afternoon, confirmed a targeted cyber attack, and took immediate steps to stop the breach and limit damage. IT security teams work around the clock to investigate and restore services while deliveries continue. Customers can call usual landline numbers; mobile contacts are listed for general freight, sales, and warehouse logistics. Email remains offline with expected return midday, fax is unavailable, and the weighing system is not yet functional, so orders should be placed by phone. The firm will update this page regularly.

Motives

Detailed motive labels are available to members.

0 motives

TTPs

Detailed technique labels are available to members.

2 techniques

Description

On the late afternoon of 23 April 2025, JDC Dahmen observed unusual activity in its IT systems. Following an investigation, the company confirmed that the activity constituted a targeted cyber‑attack. The incident was identified as a security breach requiring immediate action. JDC Dahmen stated that it had taken steps to stop the attack and limit any damage.

Despite the attack, the company reported that deliveries and pickups continued as scheduled, with all vehicles remaining on the road. Telephone contact remained possible through the known land‑line numbers. If parts of the system were taken offline, alternative mobile numbers were provided for the Sammelgut‑Nahverkehr, Vertrieb, Lagerlogistik and general inquiries departments. The fax service was temporarily unavailable, and e‑mail traffic had not yet been restored at the time of the statement.

JDC Dahmen indicated that e‑mail messages sent to the company had not been lost and expected to restore e‑mail access around midday. The Weberfassung system was also not yet restored, prompting the company to ask customers to submit current orders by telephone. The firm advised customers to revisit the information page regularly for updates on organisational measures. IT security teams were working continuously to investigate the incident and restore system security.

Sources

Sources available to members: 1 source.

CSIDB