{"id":14016,"date":"2026-09-15T04:55:57","date_gmt":"2026-09-15T04:55:57","guid":{"rendered":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/"},"modified":"2026-09-15T07:38:36","modified_gmt":"2026-09-15T07:38:36","slug":"what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack","status":"publish","type":"post","link":"https:\/\/www.exporis.ch\/de\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/","title":{"rendered":"What Happens to Your Website, CRM and Customer Data During a Cyberattack?"},"content":{"rendered":"<p class=\"PDq2pG_selectionAnchorContainer\" data-start=\"77\" data-end=\"479\">Around 200 companies in Switzerland had already been hit by <a href=\"https:\/\/www.bacs.admin.ch\/en\/25-akira-en\">ransomware attacks<\/a> linked to the Akira group by October 2025, with damage running into several million francs. Yet the first sign of an attack is not always a dead website. A company can still look perfectly normal online while staff have lost access to email, CRM records and internal systems and attackers have already copied customer data.<\/p>\n<p class=\"\" data-start=\"481\" data-end=\"757\">Ransomware has become a business-continuity problem as much as a cybersecurity problem. Usually, the first hours decide which systems stay online, what data needs protecting, whether customers need to be told and how long it will take to get the business running again.<\/p>\n<p class=\"\" data-start=\"759\" data-end=\"1152\">Ransomware is software criminals use to lock a company out of its computers, servers or data and then demand money to restore access. Many attacks now go further. The attackers first copy sensitive information and threaten to publish it if the company refuses to pay. The business is then dealing with two problems at the same time: systems it cannot use and information it no longer controls.<\/p>\n<h2 data-section-id=\"1483ud1\" data-start=\"1154\" data-end=\"1212\">A working website does not mean the business is working<\/h2>\n<p data-start=\"1214\" data-end=\"1550\">Many company websites sit on infrastructure separate from the company\u2019s internal network. An attack on office systems therefore does not automatically take the homepage offline. Customers may still browse services, download documents or send an enquiry while nobody inside the company has access to the systems receiving those requests.<\/p>\n<p data-start=\"1552\" data-end=\"1935\">Things get more complicated once the website connects to other tools. An online shop talks to payment providers, stock systems and customer accounts. Lead forms send enquiries into a CRM. Booking systems write information into calendars and databases. Customer portals rely on login systems, while administrators often use company email accounts to reset passwords or approve access.<\/p>\n<p data-start=\"1937\" data-end=\"2302\">Once attackers get hold of the right credentials or enter one connected system, they do not need to break into every tool separately. IT teams may therefore shut down parts of the environment even when they still appear to work from the outside. A customer portal that loads in a browser is little help if nobody knows whether attackers still have access behind it.<\/p>\n<p data-start=\"2304\" data-end=\"2766\">Getting the website back under control often involves several companies and several people. Someone needs to know who owns the domain, where the DNS records are, who hosts the site, who has administrator access and which external services exchange information with it. In many SMEs, one supplier looks after the website, another runs Microsoft 365 and someone else manages the CRM. A ransomware attack suddenly forces all of them to work together under pressure.<\/p>\n<h2 data-section-id=\"1natwty\" data-start=\"2768\" data-end=\"2827\">CRM failure reaches sales, service and marketing at once<\/h2>\n<p data-start=\"2829\" data-end=\"3185\">A CRM holds much of the company\u2019s recent working history. Sales teams store quotations, emails, meeting notes and deal stages there. Customer-service staff keep previous cases and complaints. Marketing holds audience data, campaign records and consent information. Account managers use the same system to see what colleagues have already promised a client.<\/p>\n<p data-start=\"3187\" data-end=\"3580\">When the CRM goes down, staff start rebuilding that history from whatever they still have. A salesperson searches old downloads for the latest quote. Finance checks invoices to work out which customers are active. Employees look through their phones for contact details. Someone starts a temporary spreadsheet because new enquiries continue to arrive while the main system remains unavailable.<\/p>\n<p data-start=\"3582\" data-end=\"3850\">The more serious problem begins when attackers copied the CRM before locking it. Many ransomware groups now use double extortion: they steal information first and then encrypt systems. Some attacks skip encryption completely and use the stolen data itself as pressure.<\/p>\n<p data-start=\"3852\" data-end=\"4356\">Restoring the CRM gives the company access to its records again, but it does not bring back the copy already taken by the attackers. Customer files often contain far more than names and email addresses. Sales notes may include prices, contract talks and internal comments. Account folders may hold signed agreements, IDs or correspondence. Support systems may contain technical details about a customer\u2019s own setup. Staff sometimes even leave passwords or login details in notes where they do not belong.\u00a0Once criminals have copied those records, a backup cannot undo it.<\/p>\n<h2 data-section-id=\"16p40nu\" data-start=\"4426\" data-end=\"4475\">Backups help, but they do not solve everything<\/h2>\n<p data-start=\"4477\" data-end=\"4691\">A clean backup gives a company a route back into its own systems. Ransomware groups know this and often target backups after getting inside. Some attackers delete them before encrypting the rest of the environment.<\/p>\n<p data-start=\"4693\" data-end=\"5095\">Even a backup that still exists needs checking before anyone uses it. Investigators have to make sure the attackers did not leave backdoors, create extra accounts or keep another way into the network. Crisis specialists interviewed by Handelsblatt said checking systems before restoration often takes between 24 and 72 hours. The fastest paid ransomware case handled by their team still took five days.<\/p>\n<p data-start=\"5097\" data-end=\"5423\">Five days without email or CRM touches almost every part of an SME. Customers keep sending requests. Suppliers still expect answers. Sales teams need access to quotations. Finance still has bills to process. Managers have to decide which staff keep working and which jobs move temporarily to phone calls, paper or local files.<\/p>\n<p data-start=\"5425\" data-end=\"5839\">For manufacturers, the cost rises much faster. German newspapers recently described a smaller technology company whose IT systems and production both stopped during an attack. Rebuilding everything from scratch was expected to take six to eight weeks. The attackers initially asked for $350\u2019000. Negotiators brought the payment down to just over $100\u2019000, and the company got back to work after a little more than a week.<\/p>\n<p data-start=\"5841\" data-end=\"6008\">Attackers know that downtime hurts. They often price the ransom around the pressure the company is under rather than around the technical value of the encrypted files.<\/p>\n<h2 data-section-id=\"19f53d9\" data-start=\"6010\" data-end=\"6070\">Criminal groups look at the company before naming a price<\/h2>\n<p data-start=\"6072\" data-end=\"6267\">Some ransomware groups study revenue, margins and equity before deciding how much to demand. Crisis specialists have seen attackers start negotiations at roughly 12 percent of a company\u2019s equity.<\/p>\n<p data-start=\"6269\" data-end=\"6667\">Across more than 150 ransomware cases handled since 2018, fewer than 30 percent ended with a payment. Where companies did negotiate, reductions were usually above 50 percent. Small businesses are not spared. Attacks on companies with only 20 to 30 employees have come with demands of around $350\u2019000, while initial demands across different cases have ranged from roughly $150\u2019000 into the millions.<\/p>\n<p data-start=\"6669\" data-end=\"6851\">Akira has shown the same appetite in Switzerland. Federal authorities linked around 200 companies in the country to attacks by the group and put the damage at several million francs.<\/p>\n<p data-start=\"6853\" data-end=\"7181\">Many attacks do not rely on some new technical trick. Criminals often get in through old software, exposed remote-access tools or accounts without strong multifactor authentication. In several Akira cases involving SonicWall equipment, organisations had not fully dealt with a known vulnerability even after a fix was available.\u00a0The attackers used access that the company had already had a chance to close.<\/p>\n<h2 data-section-id=\"4iree3\" data-start=\"7262\" data-end=\"7303\">The first hours are not just an IT job<\/h2>\n<p data-start=\"7305\" data-end=\"7516\">The first call often goes to the head of IT. The CEO wants the systems fixed, so IT disconnects machines, checks logs and calls outside specialists. The business decisions quickly move beyond the technical team.<\/p>\n<p data-start=\"7518\" data-end=\"7886\">Management has to decide whether online services stay available, whether new orders are still accepted, who talks to customers, which staff continue working and what the company tells insurers, lawyers, suppliers or authorities. If attackers have copied customer records, contracts, employee information or financial documents, the incident involves the whole company.<\/p>\n<p data-start=\"7888\" data-end=\"8143\">Swiss law creates additional requirements for some businesses.\u00a0Since April 2025, operators of critical infrastructure covered by the Information Security Act have had to report certain cyberattacks to the National Cyber Security Centre within 24 hours of finding them.<\/p>\n<p data-start=\"8145\" data-end=\"8375\">Other businesses still need to look at their duties under Swiss data-protection law if personal information has been stolen. Management may have to decide what customers need to know before investigators have completed their work.<\/p>\n<p data-start=\"8377\" data-end=\"8893\">Customers rarely wait for a technical report. They notice that a portal no longer works, emails go unanswered or their account manager disappears. Employees start asking whether HR or payroll information has been exposed. Attackers sometimes add more pressure by publishing a company name and a few documents first, then releasing larger amounts of stolen data later. Some also contact employees, customers or partners directly using phone numbers, email addresses or social-media accounts found in the stolen files.\u00a0The company is then dealing with communication and recovery at the same time.<\/p>\n<h2 data-section-id=\"1pid28t\" data-start=\"8974\" data-end=\"9021\">Outsourcing IT does not outsource the crisis<\/h2>\n<p data-start=\"9023\" data-end=\"9289\">Many Swiss SMEs rely heavily on outside providers. A digital agency looks after the website. An IT company runs Microsoft 365. Another supplier manages the CRM. The hosting company keeps backups. A former employee may still own the login used to register the domain.<\/p>\n<p data-start=\"9291\" data-end=\"9711\">Nobody thinks much about how those pieces fit together while everything works. During an attack, management suddenly needs clear answers. Who controls the DNS? Where does the contact form send customer data? Who has administrator access to the CRM? Does the hosting provider keep separate backups? Who is allowed to take the customer portal offline? Who investigates the breach if the usual IT supplier is also affected?<\/p>\n<p data-start=\"9713\" data-end=\"10138\">A simple list of systems, owners, dependencies and emergency contacts saves time when people are already under pressure. Management training helps for the same reason. Across more than 150 ransomware cases handled by one crisis-response firm, fewer than 2 percent of management teams had completed ransomware crisis training before the attack. Teams that had trained moved faster and lost less time once the incident started.<\/p>\n<p data-start=\"10140\" data-end=\"10411\">A small company does not need a large cybersecurity department to prepare. It needs to know who controls the systems it depends on, where clean backups are kept, how administrators get back into accounts and who makes decisions when normal email and systems stop working.<\/p>\n<p data-start=\"10413\" data-end=\"10768\" data-is-last-node=\"\" data-is-only-node=\"\">A cyberattack often exposes problems nobody notices during normal business. The homepage may still load, but the CRM behind the sales team, the customer database behind the service desk and the email accounts used across the company may already be down or compromised. For an SME, knowing how those systems connect is part of keeping the business running.<\/p>\n<h2 class=\"PDq2pG_selectionAnchorContainer\" data-section-id=\"ry0emq\" data-start=\"0\" data-end=\"55\">What to Do During a Ransomware Attack<\/h2>\n<p data-start=\"57\" data-end=\"308\"><strong data-start=\"57\" data-end=\"106\">01 Disconnect affected systems from the network.<\/strong> Do not keep using a computer, server or account that may be compromised. IT teams often need to cut remote access, VPN connections or parts of the network while they work out how far the attackers got.<\/p>\n<p data-start=\"310\" data-end=\"544\"><strong data-start=\"310\" data-end=\"359\">02 Do not start deleting or reinstalling things.<\/strong> A rushed clean-up can destroy evidence and make the investigation harder. Preserve logs, ransom notes, suspicious emails and affected devices until the technical team has checked them.<\/p>\n<p data-start=\"546\" data-end=\"742\"><strong data-start=\"546\" data-end=\"578\">03 Call the right people early.<\/strong> Bring in your IT provider, incident-response specialist, insurer and legal adviser. If the website, CRM or hosting sits with an outside supplier, contact them too.<\/p>\n<p data-start=\"744\" data-end=\"957\"><strong data-start=\"744\" data-end=\"779\">04 Find out what is still working.<\/strong> Check email, CRM, website, customer portals, backups, cloud storage and accounting systems separately. A website that still loads does not mean the rest of the business is safe.<\/p>\n<p data-start=\"959\" data-end=\"1185\"><strong data-start=\"959\" data-end=\"993\">05 Check whether data was stolen.<\/strong> Ransomware often involves data theft before encryption. Investigators need to establish what the attackers accessed, what they copied and whether customer or employee information is involved.<\/p>\n<p data-start=\"1187\" data-end=\"1404\"><strong data-start=\"1187\" data-end=\"1215\">06 Do not rush into paying.<\/strong> A ransom payment does not guarantee that systems will work again or that stolen data will disappear. Any decision about negotiation or payment needs management, legal and specialist input.<\/p>\n<p data-start=\"1406\" data-end=\"1639\"><strong data-start=\"1406\" data-end=\"1450\">07 Set up a separate communication channel.<\/strong> If company email is compromised, move key staff to a clean alternative such as secure phones or an external collaboration tool. Keep the crisis team small and clear about who decides what.<\/p>\n<p data-start=\"1641\" data-end=\"1841\"><strong data-start=\"1641\" data-end=\"1680\">08 Decide what customers need to know.<\/strong> Do not wait for every technical detail if customers are already affected. Say what is unavailable, what the company is doing and when the next update will come.<\/p>\n<p data-start=\"1843\" data-end=\"2088\"><strong data-start=\"1843\" data-end=\"1882\">09 Report the incident where required.<\/strong> Swiss operators of critical infrastructure face a 24-hour reporting duty for qualifying cyberattacks. Other companies may still have obligations under data-protection law if personal data has been exposed.<\/p>\n<p data-start=\"2090\" data-end=\"2300\"><strong data-start=\"2090\" data-end=\"2126\">10 Restore slowly and verify first.<\/strong> Backups need checking before they go back into production. Attackers may have left backdoors or extra accounts behind, and restoring too quickly can reopen the same problem.<\/p>\n<p data-start=\"2302\" data-end=\"2527\"><strong data-start=\"2302\" data-end=\"2334\">11 Keep a written decision log.<\/strong> Record what happened, when systems went offline, who approved each step and what customers were told. That record helps with recovery, insurance, legal review and the post-incident assessment.<\/p>\n<p data-start=\"2529\" data-end=\"2713\" data-is-last-node=\"\" data-is-only-node=\"\">The immediate priority is to contain the attack, protect evidence, understand what the criminals reached and keep the business communicating while the technical team works on recovery.<\/p>\n<p>&nbsp;<\/p>","protected":false},"excerpt":{"rendered":"<p>A ransomware attack can leave a Swiss SME online while its data are already compromised.<\/p>","protected":false},"author":5,"featured_media":14017,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[77,18],"tags":[],"class_list":["post-14016","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-insights","category-investment"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>What Happens to Your Website, CRM and Customer Data During a Cyberattack?<\/title>\n<meta name=\"description\" content=\"A ransomware attack can leave a Swiss SME online while its data are already compromised.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.exporis.ch\/de\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/\" \/>\n<meta property=\"og:locale\" content=\"de_DE\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"What Happens to Your Website, CRM and Customer Data During a Cyberattack?\" \/>\n<meta property=\"og:description\" content=\"A ransomware attack can leave a Swiss SME online while its data are already compromised.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.exporis.ch\/de\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/\" \/>\n<meta property=\"og:site_name\" content=\"Exporis\" \/>\n<meta property=\"article:published_time\" content=\"2026-09-15T04:55:57+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-09-15T07:38:36+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.exporis.ch\/wp-content\/uploads\/2026\/09\/cyberattack.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1920\" \/>\n\t<meta property=\"og:image:height\" content=\"1080\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Cathy\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Verfasst von\" \/>\n\t<meta name=\"twitter:data1\" content=\"Cathy\" \/>\n\t<meta name=\"twitter:label2\" content=\"Gesch\u00e4tzte Lesezeit\" \/>\n\t<meta name=\"twitter:data2\" content=\"10\u00a0Minuten\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/\"},\"author\":{\"name\":\"Cathy\",\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/#\\\/schema\\\/person\\\/5730d61de1e8de711efd0476234e1e50\"},\"headline\":\"What Happens to Your Website, CRM and Customer Data During a Cyberattack?\",\"datePublished\":\"2026-09-15T04:55:57+00:00\",\"dateModified\":\"2026-09-15T07:38:36+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/\"},\"wordCount\":2079,\"image\":{\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.exporis.ch\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/cyberattack.jpg\",\"articleSection\":[\"Insights\",\"Investment\"],\"inLanguage\":\"de\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/\",\"url\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/\",\"name\":\"What Happens to Your Website, CRM and Customer Data During a Cyberattack?\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.exporis.ch\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/cyberattack.jpg\",\"datePublished\":\"2026-09-15T04:55:57+00:00\",\"dateModified\":\"2026-09-15T07:38:36+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/#\\\/schema\\\/person\\\/5730d61de1e8de711efd0476234e1e50\"},\"description\":\"A ransomware attack can leave a Swiss SME online while its data are already compromised.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/#breadcrumb\"},\"inLanguage\":\"de\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"de\",\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.exporis.ch\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/cyberattack.jpg\",\"contentUrl\":\"https:\\\/\\\/www.exporis.ch\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/cyberattack.jpg\",\"width\":1920,\"height\":1080},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.exporis.ch\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"What Happens to Your Website, CRM and Customer Data During a Cyberattack?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/#website\",\"url\":\"https:\\\/\\\/www.exporis.ch\\\/\",\"name\":\"Exporis\",\"description\":\"Stay Ahead Of The Game\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.exporis.ch\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"de\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.exporis.ch\\\/#\\\/schema\\\/person\\\/5730d61de1e8de711efd0476234e1e50\",\"name\":\"Cathy\",\"url\":\"https:\\\/\\\/www.exporis.ch\\\/de\\\/author\\\/cathy\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"What Happens to Your Website, CRM and Customer Data During a Cyberattack?","description":"A ransomware attack can leave a Swiss SME online while its data are already compromised.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.exporis.ch\/de\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/","og_locale":"de_DE","og_type":"article","og_title":"What Happens to Your Website, CRM and Customer Data During a Cyberattack?","og_description":"A ransomware attack can leave a Swiss SME online while its data are already compromised.","og_url":"https:\/\/www.exporis.ch\/de\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/","og_site_name":"Exporis","article_published_time":"2026-09-15T04:55:57+00:00","article_modified_time":"2026-09-15T07:38:36+00:00","og_image":[{"width":1920,"height":1080,"url":"https:\/\/www.exporis.ch\/wp-content\/uploads\/2026\/09\/cyberattack.jpg","type":"image\/jpeg"}],"author":"Cathy","twitter_card":"summary_large_image","twitter_misc":{"Verfasst von":"Cathy","Gesch\u00e4tzte Lesezeit":"10\u00a0Minuten"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/#article","isPartOf":{"@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/"},"author":{"name":"Cathy","@id":"https:\/\/www.exporis.ch\/#\/schema\/person\/5730d61de1e8de711efd0476234e1e50"},"headline":"What Happens to Your Website, CRM and Customer Data During a Cyberattack?","datePublished":"2026-09-15T04:55:57+00:00","dateModified":"2026-09-15T07:38:36+00:00","mainEntityOfPage":{"@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/"},"wordCount":2079,"image":{"@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/#primaryimage"},"thumbnailUrl":"https:\/\/www.exporis.ch\/wp-content\/uploads\/2026\/09\/cyberattack.jpg","articleSection":["Insights","Investment"],"inLanguage":"de"},{"@type":"WebPage","@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/","url":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/","name":"What Happens to Your Website, CRM and Customer Data During a Cyberattack?","isPartOf":{"@id":"https:\/\/www.exporis.ch\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/#primaryimage"},"image":{"@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/#primaryimage"},"thumbnailUrl":"https:\/\/www.exporis.ch\/wp-content\/uploads\/2026\/09\/cyberattack.jpg","datePublished":"2026-09-15T04:55:57+00:00","dateModified":"2026-09-15T07:38:36+00:00","author":{"@id":"https:\/\/www.exporis.ch\/#\/schema\/person\/5730d61de1e8de711efd0476234e1e50"},"description":"A ransomware attack can leave a Swiss SME online while its data are already compromised.","breadcrumb":{"@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/#breadcrumb"},"inLanguage":"de","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/"]}]},{"@type":"ImageObject","inLanguage":"de","@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/#primaryimage","url":"https:\/\/www.exporis.ch\/wp-content\/uploads\/2026\/09\/cyberattack.jpg","contentUrl":"https:\/\/www.exporis.ch\/wp-content\/uploads\/2026\/09\/cyberattack.jpg","width":1920,"height":1080},{"@type":"BreadcrumbList","@id":"https:\/\/www.exporis.ch\/what-happens-to-your-website-crm-and-customer-data-during-a-cyberattack\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.exporis.ch\/"},{"@type":"ListItem","position":2,"name":"What Happens to Your Website, CRM and Customer Data During a Cyberattack?"}]},{"@type":"WebSite","@id":"https:\/\/www.exporis.ch\/#website","url":"https:\/\/www.exporis.ch\/","name":"Exporis","description":"Immer einen Schritt voraus sein","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.exporis.ch\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"de"},{"@type":"Person","@id":"https:\/\/www.exporis.ch\/#\/schema\/person\/5730d61de1e8de711efd0476234e1e50","name":"Cathy","url":"https:\/\/www.exporis.ch\/de\/author\/cathy\/"}]}},"_links":{"self":[{"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/posts\/14016","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/comments?post=14016"}],"version-history":[{"count":2,"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/posts\/14016\/revisions"}],"predecessor-version":[{"id":14019,"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/posts\/14016\/revisions\/14019"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/media\/14017"}],"wp:attachment":[{"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/media?parent=14016"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/categories?post=14016"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.exporis.ch\/de\/wp-json\/wp\/v2\/tags?post=14016"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}