CSIDB logo
Incident

Digital Enterprise General

Incident posture

Attack window
Jul 2023
Location
France
Status
Historical
CIA posture
Available to members
Updated
2025-11-15 00:00

Linked entities

Victim
Digital Enterprise General
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Jul 2023
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

A cybersecurity incident involving unauthorized access to a document-sharing space was reported by Econocom. Attackers claimed to have compromised company data, prompting immediate investigation and containment measures by the Group Security team and Security Operations Center. Preliminary findings indicated no evidence of sensitive information leakage at the time of assessment. The organization focused on limiting the breach's scope and mitigating potential impacts while continuing to analyze the compromise. Ongoing efforts included preparing a further situational update for stakeholders as part of transparent response protocols.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

On or around July 29, 2023, attackers targeted Digital Enterprise General (EGD), operating under the Econocom Group, by compromising a document-sharing space within the organization's infrastructure. The incident was initially detected when the attacking group publicly claimed to have exfiltrated Econocom data over that weekend. Econocom's Group Security team and Security Operations Center immediately activated incident response protocols upon discovering the breach notification. Preliminary investigations confirmed unauthorized access to a single document-sharing platform, though the full scope of compromised data remained under assessment. No evidence of sensitive information leakage had been identified at the time of Econocom's August 1, 2023, public statement. The organization implemented containment measures to prevent lateral movement within its network and limit further data exposure.

Econocom maintained ongoing investigations to determine the attack's origin, methodology, and full impact perimeter. The company emphasized that the breach had not caused significant operational disruption or compromised critical systems beyond the isolated document repository. All response actions focused on eradicating attacker access, securing affected systems, and preventing data dissemination. Econocom committed to providing stakeholders with an updated situational report by the end of that week, pledging full transparency regarding findings. No additional details about attacker identity, motives, or specific compromised data types were disclosed in the initial public communication.

Sources

Sources available to members: 1 source.

CSIDB