Cyber Incident Victim: Edesur Dominicana
Date:
Mar 2025
Location:
Dominican Republic
Summary
Edesur Dominicana confirmed suffering cyber attacks by the Hunters International group, which claimed to have compromised company information. The utility stated its data was not breached and no service impact was identified, with its technology team actively analyzing the claims alongside the national cyber incident response team (CSIRT-RD). The company reaffirmed its commitment to protecting critical infrastructure and data security while collaborating with authorities.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 0 motives | 3 techniques |
| Threat Actor | Type | Location |
|---|---|---|
| 1 actor | Available to members | Available to members |
Description
On March 1, 2025, Edesur Dominicana publicly confirmed it had been targeted by cyber attacks. This confirmation came in response to claims made by the cybercriminal group Hunters International, which asserted it had compromised company information in a potential security incident. Edesur issued a statement clarifying the situation, explicitly stating that its information had not been compromised despite the attackers' assertions. Crucially, the company reported that no disruption to its services had been identified at that time. Following the publication of Hunters International's claims, Edesur's internal Technology team initiated a detailed investigation. This investigation was conducted in coordination with the National Cybersecurity Center's Cyber Incident Response Team (CSIRT-RD). The primary objective of this joint analysis was to assess the veracity of the attackers' claims regarding possessing compromised data and to determine the potential scope of any such information.

Edesur emphasized its ongoing commitment to protecting customer data and securing its critical infrastructure, encompassing both technological and operational systems. The company reiterated its dedication to collaborating with relevant authorities to ensure the integrity and resilience of its systems against such threats. The public statement served to acknowledge the attack attempt while simultaneously denying any successful data exfiltration or operational impact resulting from the incident. The focus remained on the proactive steps taken to investigate the claims and maintain system security. Edesur's response highlighted its reliance on established national cybersecurity resources like CSIRT-RD for incident analysis. The company maintained its position that services remained unaffected and data remained secure throughout the event.
