AMPORTS, an automotive port logistics company in the U.S., was targeted by BlackBasta in 2022. The ransomware group, suspected of Russian origins, disrupted the company’s port services, highlighting the vulnerability of automotive logistics providers to ransomware incidents, especially those impacting vehicle processing and distribution.
Nov, 2022APM Terminals, a key player in port and container terminal operations, was hit by Hive ransomware in 2022. Hive’s attack, suspected to be connected to Russian actors, disrupted global terminal services, raising concerns about ransomware’s impact on critical port infrastructure worldwide.
Nov, 2022Samrin Services Ltd, based in the UK, was targeted by Bianlian in 2022. The China-linked ransomware group’s attack disrupted the company’s industrial and engineering services, underscoring the expanding threat of ransomware to specialized service providers in the UK.
Oct, 2022France-based Dragages-Ports, which provides dredging services for ports, experienced a ransomware attack by LockBit 3.0 in 2022. The Russian-linked ransomware group exploited the company’s critical role in maintaining port infrastructure, demonstrating the risks ransomware poses to industries involved in maritime infrastructure.
Oct, 2022In 2022, Seanic Ocean Systems, a U.S.-based provider of marine and subsea solutions, was hit by the Bianlian ransomware. The Chinese ransomware group targeted the company’s underwater operations and equipment services, which are essential for offshore projects, indicating a growing trend of ransomware affecting specialized industrial services.
Oct, 2022The UK’s Severn Glocon Group, a manufacturer of industrial valves, was targeted by Ransomhouse in 2022. The group, linked to Russia, exploited vulnerabilities to disrupt manufacturing processes, revealing the growing threats faced by the industrial manufacturing sector from ransomware actors
Oct, 2022Hensholdt France, a defense electronics firm, was targeted by the Snatch ransomware group in 2022. The group, associated with Russian actors, disrupted operations tied to military technology and security services, raising concerns about ransomware threats to defense contractors.
Sep, 2022South Pacific Inc., based in the United States, was hit by BlackByte ransomware in 2022. The attack disrupted the company's operations in the logistics sector, where BlackByte's rapid encryption capabilities caused significant downtime. The incident highlighted the impact ransomware can have on U.S. supply chains.
Aug, 2022In August 2022 Greece's largest natural gas distributor DESFA confirmed that they suffered a limited scope data breach and IT system outage following a cyberattack. In a public statement DESFA explained that hackers attempted to infiltrate its network but were thwarted by the quick response of its IT team. However, some files and data were accessed and possibly "leaked," so there was a network intrusion, even if limited. The confirmation of the attack comes after data was leaked on Friday by the Ragnar Locker ransomware operation, a threat actor that began operations over two years ago and has had numerous high-profile attacks in 2021.
Aug, 2022In August 2022 Bombardier Recreational Products Inc.(BRP) experienced a ransomware attack which crippled their operation for multiple days. Initially BRP reported that it was the target of malicious cybersecurity activity and that BRP took immediate measures to contain the situation. BRP later announced that they had become aware that, “information on certain employees and suppliers accessed by an unauthorized third party has been leaked on the dark web.” Ransomware gang RansomEXX promptly took credit for the “malicious cyberactivity”, stealing 29.9GB of files pertaining to non-disclosure agreements, passports, IDs, contracts, and supply agreements.