Year2024 |
MonthFebruary |
Reference number20240202 |
Impact areaShore |
Incident locationEastern Shipbuilding Group, Inc. |
Incident countryUSA |
Victim countryUnited States |
Victim identityEastern Shipbuilding Group, Inc. |
Victim TypeCompany office |
MethodRansomware |
In February 2024, Eastern Shipbuilding Group, Inc., a key contractor for the US Coast Guard's Offshore Patrol Cutter (OPC) fleet, suffered a cybersecurity breach by the LockBit ransomware group. This incident exacerbates existing challenges following a hurricane that had previously forced the company to rebuild its shipyard. The breach raises concerns about vulnerabilities in the defense industrial base and the effectiveness of the Cybersecurity Maturity Model Certification (CMMC) in protecting sensitive information. The attack poses significant risks to national security and the USCG's OPC program, potentially impacting the shipbuilding schedule and benefiting other shipyards like Bollinger Shipyards. Eastern Shipbuilding must now address the cybersecurity threat and restore trust with stakeholders.