Cyber Incident Victim: Pont-Saint-Esprit
Date:
Jun 2021
Location:
France
Summary
A French retailer experienced a cyberattack disrupting its IT systems and e-commerce platform, causing significant operational challenges including depleted inventory and inability to replenish stock. While payment data remained unaffected, loyalty program access was suspended, prompting customers to retain purchase receipts. Separately, a municipal government network was compromised by ransomware, though essential services remained functional following intervention by national cybersecurity authorities. Both entities engaged external experts to restore systems, with the retailer aiming to resume online operations by the end of that week.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 1 motive | 1 technique |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
In early June 2021, French retailer Camaïeu experienced a disruptive cyberattack that significantly impaired its operational capabilities. The attack compromised the company’s IT systems and e-commerce platform, leading to depleted inventories and logistical challenges in restocking stores. Employees at affected locations, including a saleswoman from a Lille-area store, initially described the situation as a "computer bug" with expectations of system restoration by the following Monday. Camaïeu’s official communications confirmed the incident as a targeted cyber attack, emphasizing that customer payment data remained uncompromised. The breach rendered loyalty card systems inoperable, prompting the company to advise customers to retain purchase receipts for future reconciliation. Internal efforts focused on restoring critical IT infrastructure, with external cybersecurity experts engaged to assist recovery operations. The retailer projected a partial resumption of services, targeting the reopening of its website by the end of that week.

Concurrently, the municipality of Pont-Saint-Esprit disclosed a ransomware attack detected on June 3, 2021, which compromised its network infrastructure. French national cybersecurity agency ANSSI intervened to contain the incident and secure municipal systems. Despite the breach, local government services remained operational throughout the attack period. No data exfiltration or specific ransom demands were detailed in public advisories. The municipality collaborated with cybersecurity specialists to restore full functionality, though no explicit timeline for complete recovery was provided. Both incidents exemplified parallel cybersecurity challenges affecting private and public sector entities in France during this period, with responses prioritizing system integrity and continuity of core services.
