It has been confirmed that the development platform of the French company Schneider Electric was breached in a cyberattack for the second time in 2024, following an incident earlier in the year involving the Cactus ransomware. Preliminary investigations suggest that the attackers may have accessed critical information from the company, which could explain the security breach and the disruption of several systems provided by Schneider Electric. While it has not yet been clarified to what extent the data was compromised, the company has stated that it is working with authorities and cybersecurity experts to assess the damage and mitigate risks.
The attack appears to have been carried out by a group of hackers, who have not yet been publicly identified, and who have made a very unusual ransom demand: to be paid in "baguettes" worth $125,000.
While paying in "baguettes" may sound quite unconventional, it is actually a strategy by the hackers, either to draw media attention or, in fact, to demonstrate cynicism in their attack.

Implications for the Business
Cyberattacks like this are particularly critical for the energy and automation sector. Schneider Electric is known for providing solutions for critical infrastructure, ranging from energy management systems to industrial platforms. This security breach in its development platform presents a series of issues, as changes or modifications to systems could cause significant disruptions to the safe operation of numerous infrastructures worldwide.
Additionally, Schneider Electric's clients and partners may face the risk of compromising their own systems. The incident has highlighted the need for robust cybersecurity strategies and attention to potential attacks.
Schneider Electric has responded promptly, stating that it is currently working with security experts to evaluate the situation. The company reiterated that, while it has not made an announcement regarding whether it will meet the hackers' demands or if there is an immediate risk to its clients, it is committed to protecting its systems and the data of its clients.
The unpleasant truth highlighted by the cyberattack on Schneider Electric is that no company in today's world is safe. The event at Schneider Electric serves as a wake-up call for businesses to invest in cybersecurity and understand its relevance in an emerging preventative world, where cyberattacks are on the rise.
This is yet another wake-up call to build much stricter security in organisational implementations, understanding that cybercriminals will always be there to launch increasingly inventive and absurd methods and demands, such as ransom in "baguettes." Further updates from Schneider Electric are expected in the coming days, which we hope will shed more light on the extent of this incident.
It has never been so important to stay informed and secure in the digital world. Attacks like this expose not only the vulnerability of modern systems but also the importance of protocols for a quick and effective response, to minimise damage and protect the reputation and security of organisations and clients.