Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Bayer Confirms Cyber Attack But Says No Data Stolen

German chemicals giant Bayer confirmed Thursday reports it had suffered a hacking attack, but insisted that so far no data appeared to have been stolen.

The Leverkusen-based group “detected indications of (hacker group) Winnti infections at the beginning of 2018,” a spokesman told AFP, confirming reports by German public broadcasters BR and NDR.

German chemicals giant Bayer confirmed Thursday reports it had suffered a hacking attack, but insisted that so far no data appeared to have been stolen.

The Leverkusen-based group “detected indications of (hacker group) Winnti infections at the beginning of 2018,” a spokesman told AFP, confirming reports by German public broadcasters BR and NDR.

“There is no evidence of data outflow,” he added.

Hackers from the so-called Winnti group, believed to be linked to the Chinese state, were first spotted using malicious software to spy on Bayer’s activities in early 2018 and were present in company networks until late last month, the media reports said.

Bayer said that “in close collaboration with” private cyber security organisation DCSO and police in North Rhine-Westphalia state it had “identified, analysed and cleaned up the affected systems.”

The two public broadcasters reported that state police had declined to comment on the investigation for “tactical reasons”.

Advertisement. Scroll to continue reading.

For its part, Bayer said that Cologne state prosecutors were looking into the case.

Gerhard Schindler, former head of Germany’s BND foreign intelligence service, told BR that while it was extremely difficult to attribute hacking attacks to any state, spying on German firms was “in line with China’s ambitious economic goals”.

Andreas Rohr of the DCSO — set up by German companies as a joint cyber defence centre — said that given the targets so far chosen by Winnti, “we can assume that there is a very targeted tasking by the Chinese state,” although definite proof was impossible.

Winnti attacks have been discovered at three smaller German firms since the beginning of 2019, BR and NDR reported.

And in 2016, the group’s software was discovered in systems at industrial conglomerate Thyssenkrupp.

Written By

AFP 2023

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Learn how to address potential risks and not restrict AI adoption in your organization. See what a centralized AI gateway is and how it works in practice.

Register

Join as we decipher the world of zero trust and share war stories on securing an organization by eliminating implicit trust and continuously validating every stage of a digital interaction.

Register

People on the Move

Chip Wentz has been appointed as SVP & CISO at Keurig Dr Pepper Inc.

Lumen Technologies has named Kim Keever as CSO.

Quantum Secure Encryption Corp. has appointed Joseph Hall as CIO.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.