Incident Of The Week: Cosco Shipping Faces Ransomware Attack

Warns Other Regions Not To Open Suspicious Emails

Add bookmark

In the dynamic world of cyber security, breaches are both tightly guarded and, sadly, imminent.

Combing through data, market research and threat-defense efforts taken by enterprises can be a daunting task. Here at Cyber Security Hub, we both track the latest industry news and make it more navigable for the IT professional. Cyber Security Hub coverage extends outwards – as it helps enterprises batten down their proverbial hatches.

In this edition of “Incident of the Week,” we examine a cyber-attack on the American region of China’s state-run shipping company, Cosco Shipping Holdings, Co. It’s not the first time a top, global shipping company fell under the crosshairs of black hats either, as last year Danish shipper A.P. Moller-Maersk fell victim to the NotPetya malware strain.

On Tuesday, July 24, 2018, Cosco was targeted, yet the company said the incident has not disrupted global shipping operations, according to the Wall Street Journal.

A customer advisory on its Facebook page from Wednesday read: “So far, all vessels of our company are operating normally, and our main business operations are stable.”

See Related: Incident Of The Week: LabCorp Hit With 'SamSam' Ransomware

Photo: VladSV/Shutterstock.com

 

The cyber-incident has been chalked up to a “local network breakdown” in the Americas region, which impacted email and telephone. In a remedial step, the company cut communications with other regions, although operations were maintained.

According to the WSJ, the cyber-attack comes just shortly after it acquired an Asian rival, Orient Overseas Container Lines, which left Cosco with control of a container terminal in Port of Long Branch, Calif. There, operations are believed to have been carried out normally.

A spokesman said they have yet to see effects, although the company is taking the threat seriously.

See Related: Incident Of The Week: 21M Users Affected By Recent Timehop Breach

Last year, the Cyber Security Hub reported on the similar attack on Maersk. At the time, officials estimated that the attack would cost the company hundreds of millions of dollars.

The 2017 article read: “In its August financial report, (Maersk) confirmed that it felt a significant loss in Q2 because of the ransomware. In a statement, it said that Maersk Line, APM Terminals and Damco were affected by the ransom-demanding plague.”

It continued, mentioning that business volumes were negatively affected by the attack and that overall, it could “impact results by $200-300 mn.”

In the recent Cosco attack, the company reportedly warned employees in other regions not to open suspicious emails and urged its IT staff to perform a sweep of the internal networks with antivirus software, according to Bleeping Computer.

Overall, though, the same report indicates that the “Cosco incident is much smaller in size and nature compared to Maersk’s NotPetya troubles.”

Be Sure To Check Out: Incident Of The Week: Ticketmaster U.K. Data Breach Impacts 40K


info@cshub.com/r/n

We hope you enjoy All Access from CS Hub!!<\/p>\r\n<p>Best Regards,<\/p>\r\n<p><a href=https://www.cshub.com/"https:////www.cshub.com///" target=\"_blank\">CS Hub Team<\/a><\/p>\r\n<p>P.S. Be sure to check out our other upcoming <a href=https://www.cshub.com/"https:////www.cshub.com//events?filter_format=ONLINE\%22 target=\"_blank\">All Access events here<\/a>.<\/p>\r\n<p>--------------------------------<\/p>\r\nConnect with us on Social Media: <a href=https://www.cshub.com/"https:////www.linkedin.com//groups//12067996///" target=\"_blank\">LinkedIn<\/a> | <a href=https://www.cshub.com/"https:////twitter.com//CSHubUSA/" target=\"_blank\">Twitter<\/a><\/p>\r\n<p>--------------------------------<\/p>\r\n<p>FAQS<\/p>\r\n<p><b>Can I invite my colleagues?<\/b><br>Yes of course! Please send them this link so they can register for free! [WebUrl]<\/p>\r\n\r\n<p><b>How do I access the sessions?<\/b><br>\r\nAll Access is run on Zoom Events. You should receive an email shortly from Zoom Events with your unique All Access link to the event lobby. Please hold on to that email ahead of the event. We\u2019ll also send you a reminder 24 hours before we go live!<\/p>\r\n\r\n<p><b>Will the agenda be updated?<\/b><br>\r\nYes, the agenda will be continuously updated on the website with the latest sessions & speakers. As we get closer to the event, also look out for our weekly updates which will also include the latest updates information and link to access the event.<\/p>\r\n<p><b>Can I access the sessions On Demand?<\/b><br>\r\nEvery session will be available after the event via the event lobby. We\u2019ll also send you a reminder about the On Demand sessions which will be sent to you after the event is over.<\/p>\r\n<p>--------------------------------<\/p>\r\n<p>RELATED RESOURCES TO READ BEFORE YOUR EVENT<\/p>\r\n<ul>\r\n <li><a href=https://www.cshub.com/"https:////www.cshub.com//executive-decisions//reports//cs-hub-mid-year-market-report-2022?utm_source=eco-event-confirmation-email&utm_medium=email&utm_campaign=eco-event-confirmation-email\%22 target=\"_blank\">CS Hub Mid-Year Market Report 2022<\/a><\/li>\r\n <li><a href=https://www.cshub.com/"https:////www.cshub.com//security-strategy//reports//ciso-strategies-for-proactive-threat-prevention?utm_source=eco-event-confirmation-email&utm_medium=email&utm_campaign=eco-event-confirmation-email\%22 target=\"_blank\">CISO strategies for proactive threat prevention<\/a><\/li>\r\n <li><a href=https://www.cshub.com/"https:////www.cshub.com//security-strategy//reports//how-to-strengthen-email-security-and-protection-against-advanced-ransomware-attacks?utm_source=eco-event-confirmation-email&utm_medium=email&utm_campaign=eco-event-confirmation-email\%22 target=\"_blank\">How to strengthen email security and protection against advanced ransomware attacks<\/a><\/li>\r\n<\/ul>","event_registration_srs_confirmation_email":null,"assets_from_cdn":true},"bant_disabled":0,"sponsorship_disclaimer":null,"sponsorship_disclaimer_text":null,"sponsorship_disclaimer_checkbox_disabled":0,"ext_treat_id":null,"recording_url":null,"file_attachment":null,"ingo_enabled":null,"ingo_activator_id":null,"ingo_autofiller_id":null,"ingo_amplifier_id":null,"ingo_authorizer_id":null,"restricted_content":0,"featured_events_embedded":[],"featured_content_embedded":[],"featured_content_portal_embedded":null}" >