Ransomware Attack on Livingston International by Royal Ransomware Group

Year

2023

Month

January

Reference number

20230107

Impact area

Shore

Incident location

Canada

Incident country

Canada

Victim country

Canada

Victim identity

Livingston International

Victim Type

Freight forwarder and customs broker

Method

Ransomware

Summary:

In January 2023, Livingston International, a major North American freight forwarder and customs broker, experienced a ransomware attack by the Royal ransomware gang. The attackers exfiltrated sensitive information, including employee documents, financial details, and network structure data, affecting 3,200 employees, 30,000 customers, and 125 key border entry points. The breach halted operations at the US-Canada border for two business days. The Royal ransomware group, active since January 2022, uses phishing emails and malicious advertisements to target victims. They have also been linked to other high-profile breaches, including those of Intrado, AONTTAGL, and the Queensland University of Technology. Operations at Livingston International resumed after two days, but the extent of the data breach was significant.

Reference URL

https://thecyberexpress.com/royal-ransomware-group-adds-livingston-victim/
https://icsstrive.com/incident/giant-north-american-freight-forwarder-livingstone-hit-by-ransomware-attack/
https://icsstrive.com/reference/royal-ransomware-group-adds-livingston-international-to-leak-site/