Shipping Company Transnet SOC Ltd. hit by a ransomware attack in South Africa

Year

2021

Month

July

Reference number

20210701

Impact area

Shore

Incident location

Durban, Richards Bay

Incident country

South Africa

Victim country

South Africa

Victim identity

Transnet SOC Ltd.

Victim Type

Shipping Company, Container terminal

Method

Ransomware

Attacker country

Russia

Summary:

In July 2021, South-Africa based Transnet SOC Ltd. Experienced a ransomware cyber-attack on their computer- and NAVIS System. The Blackmatter ransomware group used Death Kitty ransomware to attack the system and gain information. The attack resulted in computer systems being unusable, halted port operations, no movement of cargo, website down and the staff had to switch to manual paper and pen work. The reason for Blackmatter to attack Transnet SOC Ltd., is financial gain.

Reference URL

https://securityaffairs.co/wordpress/120596/cyber-crime/transnet-soc-cyber-attack.html
https://www.cybersecurity-insiders.com/cyber-attack-on-transnet-south-africa-shipping/
https://hackademicus.nl/south-africas-logistics-company-transnet-soc-hit-by-a-ransomware-attack/
https://www.reuters.com/world/africa/exclusive-south-africas-transnet-hit-by-cyber-attack-sources-2021-07-22/
https://www.stormshield.com/news/cybermaretique-a-short-history-of-cyberattacks-against-ports/
https://www.cybersecurity-insiders.com/death-kitty-ransomware-and-blackmatter-ransomware-details/
https://www.bloomberg.com/news/articles/2021-07-29/-death-kitty-ransomware-linked-to-attack-on-south-african-ports