Tech News, Magazine & Review WordPress Theme 2017
  • Home
  • Supply Chain Updates
  • Global News
  • Contact Us
  • Home
  • Supply Chain Updates
  • Global News
  • Contact Us
No Result
View All Result
No Result
View All Result
Home Supply Chain Updates

Cyberattack Penetrated Cargo Facility’s Operating Controls

usscmc by usscmc
January 2, 2020
Cyberattack Penetrated Cargo Facility’s Operating Controls
Share on FacebookShare on Twitter

alt

By


The Maritime Executive


01-01-2020 02:05:00

In a marine safety bulletin issued in December, the U.S. Coast Guard warned the maritime community to harden defenses against phishing and cyberattacks after a new outbreak of encryption ransomware at a maritime facility. 


In the bulletin, the USCG disclosed a recent virus attack at an unnamed Maritime Transportation Security Act (MTSA)-regulated facility. As the U.S. implementation of the ISPS code, the MTSA covers a wide range of maritime facilities, including barge fleeting areas, commercial ports and terminals. (In some tech industry news outlets, the attack has been misreported as a malware infection at a U.S. Coast Guard-operated facility.)


Forensic analysis is still under way, but the virus, identified as “Ryuk” ransomware, may have entered the network of the MTSA facility via an email phishing campaign. Once the embedded malicious link in the phishing email was clicked by an employee, the ransomware allowed the attacker to access the facility’s business (enterprise) network files and encrypt them, preventing access to critical information.


Further – and more troubling – the virus burrowed into the facility’s industrial control systems, which monitor and control cargo transfer. On the control system network, the virus encrypted files critical to process operations. 


In total, impacts to the facility’s operator included a disruption of the entire corporate IT network (beyond the footprint of the facility), disruption of camera and physical access control systems and loss of critical process control monitoring systems. These combined effects required the company to shut down the primary operations of the facility for over 30 hours for a cyber-incident response.


According to the Coast Guard, several measures may have prevented or limited the breach and decreased the time needed for recovery:


– Intrusion detection and prevention systems to monitor real-time network traffic

– Industry-standard, up-to-date virus detection software

– Centralized and monitored host and server logging

– Network segmentation to prevent IT systems from accessing the Operational Technology (OT) environment

– Up-to-date IT/OT network diagrams

– Consistent backups of all critical files and software 

– Verifying the validity of the email sender prior to responding to or opening unsolicited email messages.

– Implementing U.S. Cybersecurity and Infrastructure Security Agency (CISA) best practices


Global reach


According to the UK’s National Cyber Security Centre (NCSC), the Ryuk malware was first seen in August 2018 and has been used in multiple attacks globally. Ryuk is a targeted ransomware where demands are set according to the victim’s perceived ability to pay. The Ryuk ransomware is often not observed until a period of time after the initial infection – ranging from days to months – which allows the actor time to carry out reconnaissance inside an infected network, identifying and targeting critical network systems and maximizing the impact of the attack.


According to NCSC, when a Ryuk infection occurs, the attacker uses additional post-exploitation software tools to enable illegal activity within the target network. These additional tools facilitate credential harvesting, remotely monitoring the victim’s workstation and carrying out lateral movement to other machines within a network. 


“Access to compromised machines can be sold to other criminal operators at any stage in this process, either as a facilitated deployment, or through the sale of credentials for the compromised network,” NCSC warned. 

usscmc

usscmc

No Result
View All Result

Recent Posts

  • How Hapag Lloyd captured a major market share in the Container Shipping Industry in USA
  • Why USA’s East Coast is the Favorite Destination for Manufacturing Companies
  • How Trade Relations Between the USA and UK Improved After Keir Starmer Became Prime Minister
  • Tips and Tricks for Procurement Managers to Handle Their Supplier Woes
  • The Crazy Supply Chain of Walmart Spanning Across the Globe

Recent Comments

  • Top 5 Supply Chain Certifications that are in high demand | Top 5 Certifications on Top 5 Globally Recognized Supply Chain Certifications
  • 3 Best Procurement Certifications that are most valuable | Procurement Newz on Top 5 Globally Recognized Supply Chain Certifications

Archives

  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • September 2019

Categories

  • Global News
  • Supply Chain Updates

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org
  • Antispam
  • Contact Us
  • Disclaimer
  • Home
  • Privacy Policy
  • Terms of Use

© 2025 www.usscmc.com

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT
No Result
View All Result
  • Home
  • Supply Chain Updates
  • Global News
  • Contact Us

© 2025 www.usscmc.com