List View

Nov, 2024

Ransomhub Targets Japanese Manufacturer

Naniwa Pump Mfg. Co., Ltd. in Japan was struck by Ransomhub ransomware in November 2024, potentially disrupting its manufacturing operations.

Oct, 2024

Port of Seattle Ransomware Attack

On August 24, 2024, the Port of Seattle experienced a cyberattack that targeted its operational systems, potentially disrupting cargo handling, scheduling, and port logistics. The attack aimed at critical infrastructure in one of the largest ports in the United States, creating ripple effects throughout national and international trade. Operational delays, financial losses, and the compromise of sensitive information were among the impacts, further highlighting the vulnerabilities of port authorities and maritime trade to cybercrime.

Oct, 2024

Buoys Leveraged to Gather Oceanographic Information in Chinese Seas.

In October 2024, China has issued a warning about foreign nations deploying advanced deep-sea spying devices near its waters, referring to them as "underwater lighthouses" that potentially guide espionage activities. These devices are said to monitor China's naval movements and collect sensitive maritime data under the guise of scientific research. The Chinese government highlighted the risks posed by these technologies to its national security and maritime sovereignty, calling for enhanced vigilance and countermeasures. The revelation aligns with rising tensions in the region, particularly regarding territorial disputes and the growing strategic importance of maritime zones in Asia-Pacific.

Oct, 2024

DDoS attack on Belgian port authority websites

On 7 October 2024, the pro-Russian hacktivist group NoName057(16) launched a DDoS campaign against Belgian websites, explicitly targeting ports and local authorities. A list of targets published on the group’s Telegram channel included the ports of Antwerp and Zeebrugge, whose public websites experienced outages as servers were overwhelmed with malicious traffic. The Centre for Cybersecurity Belgium described the incident as a Distributed Denial-of-Service attack and stressed that it posed no danger to critical systems. Port operations continued, but public access to information and services was temporarily disrupted. The attack was motivated by Belgium’s support for Ukraine and formed part of a wider NoName057(16) campaign against European government and transport-sector sites, highlighting ongoing hacktivist pressure on maritime-facing web infrastructure in EU member states.

Sep, 2024

Tellurian Data Breach from RansomHub

In October 2024, RansomHub, a cybercriminal group, launched a significant attack on US energy company Tellurian, specializing in liquefied natural gas (LNG). The attackers stole sensitive data, including NDA-protected documents and internal records, setting a ransom deadline of October 1, 2024, with threats to release the data if demands were not met.

Sep, 2024

Cactus Ransomware Breaches Rio Marine

In September 2024, Rio Marine in Houston faced a ransomware incident by Cactus, potentially hindering its vessel support activities.

Sep, 2024

Lynxblog Hits US-Based Cruz Marine

The Lynxblog ransomware group breached Cruz Marine’s U.S. operations in September 2024, disrupting marine logistics services.

Sep, 2024

Lynxblog Disrupts Houston Oil Trader via Ransomware Attack

Tricon Energy, operating out of Houston, suffered a Lynxblog ransomware attack in September 2024, impacting global oil trading logistics.

Sep, 2024

SK Gas Supply Threatened by Ragroup

In September 2024, Ragroup ransomware struck SK Gas in South Korea, threatening supply chain stability in the gas industry.

Sep, 2024

Suspected Nation-State Cyber-Espionage Campaign targeting Pakistan Navy

A suspected China-linked APT conducted a long-running cyber-espionage operation targeting the Pakistan Navy through spear-phishing and custom malware implants. The group sought access to military communications, operational data and personnel information, indicating strategic espionage objectives