Raymond Limited Suffers Cyber Attack, Core Operations Remain Secure

By|
Admin
|
2025-02-21
|
Cyber Attack

Raymond Limited, a leading textile and clothing company, recently reported a cybersecurity incident that impacted parts of its IT infrastructure.
 

In a regulatory filing to the Bombay Stock Exchange (BSE) and National Stock Exchange (NSE), the company confirmed that threat actors targeted peripheral systems, leading to the immediate isolation of affected assets. Despite the breach, core operations—including customer-facing retail platforms and supply chain management—remain fully functional, ensuring uninterrupted services for customers.
 

The breach was identified during routine network traffic analysis and primarily targeted non-critical IT nodes responsible for internal communications and archival data.
 

Initial forensic investigations suggest the attackers exploited a vulnerability in a legacy API interface, though the exact method of intrusion is still under review. In response, Raymond’s cybersecurity team implemented network segmentation protocols to isolate compromised systems, successfully preventing unauthorized access to core databases and cloud-based ERP platforms.
 

Cybersecurity experts and Raymond’s internal IT team are conducting in-depth forensic analysis to evaluate the attack’s entry points, duration, and potential data exposure risks.
 

While the company has not disclosed details about the threat actors or confirmed if ransomware or data exfiltration occurred, Raymond assured that “necessary precautions and protocols” have been enforced to minimize the incident’s impact.
 

The company’s incident response team, following the NIST Cybersecurity Framework, focused on:

  • Containment: Disabling compromised user credentials and enabling multi-factor authentication (MFA) across all privileged accounts.
  • Eradication: Patching the vulnerable API and utilizing behavioral analytics to detect lingering threats.
  • Recovery: Restoring isolated systems from clean backups after ensuring all malicious traces were removed.
     

Investigators also noted an attempt to deploy fileless malware via PowerShell scripts, a common technique in modern ransomware attacks. However, Raymond’s application allowlisting successfully blocked unauthorized code execution.
 

This incident highlights the critical role of Security Information and Event Management (SIEM) systems in proactive threat detection and response.
 

Though no customer data breaches have been detected, Raymond urges stakeholders to stay vigilant, monitor financial accounts, and report any unusual activities.