Diehl Defence Details

    Organization Logo

    Diehl Defence

    Überlingen, Baden-Württemberg2500 employees • Aerospace and Defense

    https://www.diehl.com/defence/
    Germany

    Industry

    Aerospace and Defense

    Security Incidents

    1

    Diehl Defence GmbH & Co. KG is a German defense contractor specializing in advanced guided missiles, air defense systems, and munitions. It is a subsidiary of the Diehl Group, which was founded in 1902 by Margarete Diehl and Heinrich Diehl originally as a metalworking and foundry business. Diehl Defence has grown into a prominent player in the defense sector, noted for its high technology products serving both domestic and international customers.

    The company's portfolio includes notable products such as the IRIS-T air-to-air missile, which is widely used by NATO and other allied forces, and ...
    Show more

    Security Incidents

    Diehl Defence Breach of Oct 2024
    Severity Score
    High

    Type

    Phishing Attack

    Summary

    On September 30, 2024, Diehl Defence, a German manufacturer of advanced military systems including missiles, was targeted by the North Korea-linked APT group Kimsuky in a sophisticated cyberattack. The attackers used a phishing campaign involving fake job offers from U.S. defense contractors, luring Diehl Defence employees to click on malicious PDF files. This action resulted in malware installation, allowing the hackers to gain access to the firm's systems for espionage purposes.

    Researchers from Mandiant, a Google-owned cybersecurity firm, uncovered and analyzed the attack. Kimsuky used det...
    Show more

    Severity

    The North Korea-linked APT group Kimsuky successfully targeted Diehl Defence, a German company specializing in advanced military systems, through a sophisticated phishing campaign. The attackers used fake job offers and booby-trapped PDF files to lure Diehl’s employees, enabling them to install malware for espionage purposes. The incident is particularly concerning given Diehl Defence’s production of advanced weaponry, including air-to-air missiles recently sold to South Korea.

    The breach exposes sensitive military technology, highlights the group's advanced social engineering techniques, an...
    Show more

    Impact

    The cyber attack on Diehl Defence by the North Korea-linked APT group Kimsuky was a sophisticated phishing campaign. The attackers used fake job offers accompanied by malicious PDF files to trick employees and deliver malware. This strategy was aimed at penetrating the company's internal systems, which specialize in the production of advanced military systems, including missiles and ammunition.

    Customer data was not specifically mentioned as being exposed, but the focus of the attack on internal systems indicates that sensitive company data, possibly including intellectual property and defens...
    Show more