Cyber Incident Victim: Eurofins Scientific
Date:
Jun 2019
Location:
France
Summary
Eurofins Scientific experienced a ransomware attack disrupting some IT systems, prompting immediate containment measures including taking systems offline. The company's IT teams and external experts worked to mitigate impacts, restoring systems from backups and implementing new protections against the malware variant. While no data misuse was detected, service delays occurred at affected laboratories, which notified authorities and began customer communications to address disruptions.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 1 motive | 1 technique |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
During the weekend of June 2nd, 2019, Eurofins Scientific's IT security monitoring teams detected a ransomware incident affecting some of its IT systems. The malware was identified as a new variant, prompting immediate activation of incident management procedures. To contain the threat, the company's IT teams proactively took numerous systems and servers offline across affected group companies. Eurofins mobilized both internal staff and external IT security experts to mitigate the attack's impact and initiate recovery operations. Initial investigations found no evidence of unauthorized data transfers or misuse of information during the breach. The affected Eurofins subsidiaries promptly notified relevant authorities about the incident and committed to full cooperation with any investigations.

Recovery efforts focused on restoring operations through multiple approaches. Technicians worked to implement newly received malware protections developed specifically for this ransomware variant over the weekend. Parallel efforts involved restoring affected systems from backups after conducting thorough security verifications to ensure integrity. Eurofins acknowledged these processes caused extended service disruptions at certain laboratories and sites, potentially delaying customer services. The company issued apologies to impacted clients while directing affected group companies to communicate directly with customers regarding specific service interruptions. Despite operational challenges, Eurofins maintained its commitment to resume normal service levels across all testing and analytical operations as swiftly as possible. Ongoing work prioritized both system restoration and implementation of enhanced security measures against this newly identified malware threat.
