Stadler Rail, a Swiss train manufacturer, has rebuffed a ransom demand of CHF 10 million ($12.3 million) from the Everest ransomware gang, which compromised one of its suppliers1. The breach was contained, with only technical information from the supplier affected, and no security-relevant or personal data stolen. As a result, the incident had no impact on the company's production or the operation of its rolling stock. The ransomware attack highlights the growing threat of supply chain attacks, where attackers target vulnerable suppliers to gain access to more secure organizations. Stadler Rail's refusal to pay the ransom demonstrates a strong security posture, and its ability to mitigate the attack without significant disruption is a testament to its incident response planning. This incident matters to practitioners because it shows that a well-prepared organization can withstand even significant ransomware attacks without giving in to extortion demands.