List View

Nov, 2022

AMPORTS hit by BlackBasta

AMPORTS, an automotive port logistics company in the U.S., was targeted by BlackBasta in 2022. The ransomware group, suspected of Russian origins, disrupted the company’s port services, highlighting the vulnerability of automotive logistics providers to ransomware incidents, especially those impacting vehicle processing and distribution.

Nov, 2022

APM Terminals hit by Hive

APM Terminals, a key player in port and container terminal operations, was hit by Hive ransomware in 2022. Hive’s attack, suspected to be connected to Russian actors, disrupted global terminal services, raising concerns about ransomware’s impact on critical port infrastructure worldwide.

Nov, 2022

Samrin Services Ltd hit by Bianlian

Samrin Services Ltd, based in the UK, was targeted by Bianlian in 2022. The China-linked ransomware group’s attack disrupted the company’s industrial and engineering services, underscoring the expanding threat of ransomware to specialized service providers in the UK.

Oct, 2022

Dragages-Ports hit by LockBit 3.0

France-based Dragages-Ports, which provides dredging services for ports, experienced a ransomware attack by LockBit 3.0 in 2022. The Russian-linked ransomware group exploited the company’s critical role in maintaining port infrastructure, demonstrating the risks ransomware poses to industries involved in maritime infrastructure.

Oct, 2022

Seanic Ocean Systems hit by Bianlian

In 2022, Seanic Ocean Systems, a U.S.-based provider of marine and subsea solutions, was hit by the Bianlian ransomware. The Chinese ransomware group targeted the company’s underwater operations and equipment services, which are essential for offshore projects, indicating a growing trend of ransomware affecting specialized industrial services.

Oct, 2022

Severn Glocon Group hit by Ransomhouse

The UK’s Severn Glocon Group, a manufacturer of industrial valves, was targeted by Ransomhouse in 2022. The group, linked to Russia, exploited vulnerabilities to disrupt manufacturing processes, revealing the growing threats faced by the industrial manufacturing sector from ransomware actors

Oct, 2022

Hensholdt France hit by Snatch

Hensholdt France, a defense electronics firm, was targeted by the Snatch ransomware group in 2022. The group, associated with Russian actors, disrupted operations tied to military technology and security services, raising concerns about ransomware threats to defense contractors.

Sep, 2022

South Pacific hit by BlackByte

South Pacific Inc., based in the United States, was hit by BlackByte ransomware in 2022. The attack disrupted the company's operations in the logistics sector, where BlackByte's rapid encryption capabilities caused significant downtime. The incident highlighted the impact ransomware can have on U.S. supply chains.

Aug, 2022

Ransomware attack on Greek Gas Distributor DESFA

In August 2022 Greece's largest natural gas distributor DESFA confirmed that they suffered a limited scope data breach and IT system outage following a cyberattack. In a public statement DESFA explained that hackers attempted to infiltrate its network but were thwarted by the quick response of its IT team. However, some files and data were accessed and possibly "leaked," so there was a network intrusion, even if limited. The confirmation of the attack comes after data was leaked on Friday by the Ragnar Locker ransomware operation, a threat actor that began operations over two years ago and has had numerous high-profile attacks in 2021.

Aug, 2022

Canadian ship builder Bombardier Recreational Products Inc.(BRP) experienced a ransomware attack

In August 2022 Bombardier Recreational Products Inc.(BRP) experienced a ransomware attack which crippled their operation for multiple days. Initially BRP reported that it was the target of malicious cybersecurity activity and that BRP took immediate measures to contain the situation. BRP later announced that they had become aware that, “information on certain employees and suppliers accessed by an unauthorized third party has been leaked on the dark web.” Ransomware gang RansomEXX promptly took credit for the “malicious cyberactivity”, stealing 29.9GB of files pertaining to non-disclosure agreements, passports, IDs, contracts, and supply agreements.