J. Dahmen
Incident posture
Timeline
Summary
The company JDC Dahmen reported a targeted cyber attack after detecting unusual activity in its systems and immediately initiated containment measures. While delivery and pickup operations continued normally, email services and weight recording systems remained offline, with the firm providing alternative phone contacts for customers and stating that investigations were ongoing to restore full functionality.
Motives
Detailed motive labels are available to members.
TTPs
Detailed technique labels are available to members.
Description
On the late afternoon of April 23, 2025, JDC Dahmen detected unusual activity in its IT systems. After conducting a thorough investigation, the company confirmed that the activity constituted a targeted cyber‑attack. Immediately following the confirmation, JDC Dahmen initiated measures to halt the attack and limit any resulting damage. The organization's IT security teams have been working around the clock to investigate the incident and to restore the security of its systems. The company communicated that it would keep customers informed of any further developments through its website.
As a result of the attack, the email system and the fax service remain unavailable, while the goods receipt function (Weberfassung) has not yet been restored. JDC Dahmen stated that emails sent to the company are not lost and that email communication is expected to resume around midday. Telephone access via the known land‑line numbers remains possible, and if the phone system is affected by a partial shutdown, alternative mobile numbers have been provided for specific departments. The company emphasized that delivery and pickup operations for shipments continue as planned, with all vehicles remaining on the road. Customers are advised to check the website regularly for updates on organizational measures related to the incident.
Sources
Sources available to members: 1 source.