Cybersecurity Breach at Eastern Shipbuilding Group, Inc.

Year

2024

Month

February

Reference number

20240202

Impact area

Shore

Incident location

Eastern Shipbuilding Group, Inc.

Incident country

USA

Victim country

United States

Victim identity

Eastern Shipbuilding Group, Inc.

Victim Type

Company office

Method

Ransomware

Summary:

In February 2024, Eastern Shipbuilding Group, Inc., a key contractor for the US Coast Guard's Offshore Patrol Cutter (OPC) fleet, suffered a cybersecurity breach by the LockBit ransomware group. This incident exacerbates existing challenges following a hurricane that had previously forced the company to rebuild its shipyard. The breach raises concerns about vulnerabilities in the defense industrial base and the effectiveness of the Cybersecurity Maturity Model Certification (CMMC) in protecting sensitive information. The attack poses significant risks to national security and the USCG's OPC program, potentially impacting the shipbuilding schedule and benefiting other shipyards like Bollinger Shipyards. Eastern Shipbuilding must now address the cybersecurity threat and restore trust with stakeholders.

Reference URL

https://www.enterprisetimes.co.uk/2024/03/01/lockbit-attack-impacts-uscg-heritage-class-opc-shipbuilder/ https://threathunter.ai/general/lockbit-breach-exposes-chinks-in-armor-eastern-shipbuildings-crisis-threatens-coast-guard-capability-and-national-security/ https://www.breachsense.com/breaches/eastern-shipbuilding-group-data-breach/
https://25011010.fs1.hubspotusercontent-eu1.net/hubfs/25011010/Norma%20Cyber%20Annual%20Threat%20Assessment.pdf