In 2023, UTC Logistics, a U.S.-based logistics provider, was targeted by the Cactus ransomware group in a cyberattack. Although the origin of Cactus is not definitively known, the group has gained attention for its evolving ransomware techniques and targeting strategies. The attack impacted UTC Logistics’ operations, highlighting the significant risk ransomware poses to logistics operations, which are critical to the smooth functioning of international trade.
The Clop ransomware group targeted Seven Seas Group, a UAE-based shipping company in 2023. The group, originating from Malaysia, is known for targeting high-profile entities. The ransomware attack impacted shipping operations and highlighted the cyber risks faced by the maritime industry, which plays a crucial role in international trade.
Superline Logistics LLC, a UAE-based logistics company, was hit by the Monti ransomware group in 2023. The Monti group, suspected of having ties to Russia, has frequently targeted logistics firms, likely due to the high impact that ransomware incidents can have on supply chains. This attack drew attention to the increasing sophistication of ransomware operations targeting logistics companies, where the ability to disrupt essential services provides significant leverage
The British SubDrill Supply Ltd, operating within the oil and gas industry, encountered a ransomware attack from the Vicesociety group in 2023. Vicesociety is suspected to be connected to Russia and has targeted various sectors with a focus on critical infrastructure. The attack on SubDrill Supply Ltd highlighted the vulnerabilities within the energy sector to ransomware, where disruptions can extend beyond the company to impact larger industry operations.
In 2023, Morsky Bank (JSC) targeted by Werewolves in a ransomware attack.
In 2023, Penanshin a Singapore-based shipping company was targeted by Alphv group in a ransomware attack. The Alphv group, also known as BlackCat, is believed to originate from Russia and is known for its sophisticated ransomware-as-a-service (RaaS) operations. The attack disrupted the company’s operations, highlighting the ongoing threat that ransomware poses to logistics providers and the shipping industry. As a shipping company, Penanshin plays a critical role in maritime logistics and supply chain management in Singapore and beyond, making it a valuable target for ransomware groups.
In 2023, Ultrabulk, a Denmark-based shipping company specializing in bulk cargo transport, was targeted by the Alphv ransomware group, also known as BlackCat. The Russian Alphv group has a reputation for using advanced ransomware techniques to target a wide range of industries. The attack on Ultrabulk disrupted the company's operations, impacting its ability to manage international maritime logistics and shipping activities.
CMC Marine, an Italy-based marine systems provider, was targeted by the Bianlian ransomware group in a significant ransomware attack. Bianlian, originating from China, is known for its rapid encryption techniques and sophisticated attack strategies aimed at industrial sectors. The attack on CMC Marine disrupted the company's operations, affecting the provision of specialized marine solutions.
Genesis Energy, an energy infrastructure company in the U.S., was targeted by the Clop ransomware group. Clop, linked to Russia and often associated with the notorious cybercriminal organization Evil Corp, carried out an attack that disrupted Genesis Energy's operations. Such attacks can have serious effects in the maritime supply chain.
In 2023, Continental Shipping Line, operating out of Singapore, was targeted by the Play ransomware group. The attack disrupted shipping services, reaffirming the growing willingness of ransomware actors to go after maritime companies. Such incidents expose the vulnerabilities within global shipping networks, where attacks can potentially cause ripple effects on trade and goods movement.