Stadler Rail Faces $12.3M Ransomware Demand After Supplier Platform Breach

In mid-July 2026, the Everest ransomware group stole technical data from a shared file-exchange platform used by Swiss train manufacturer Stadler Rail and one of its suppliers, after obtaining the supplier's login credentials. Everest demanded $12.3 million (CHF 10 million) from Stadler to withhold publication of the stolen files. Stadler refused to pay, filed a criminal complaint with Thurgau cantonal police, and confirmed that its own IT systems, production lines, and rail vehicles were never compromised. Everest subsequently claimed to have published an archive of over 271,000 files, though the contents remain independently unverified. The incident highlights how companies can bear the full reputational and operational fallout of a cyberattack even when their own systems and data were never directly involved.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.



Discussion (0)
Log in to join the discussion and vote.
Log in