Maritime Computer Emergency Response Team ADMIRAL dataset ADMIRAL dataset

Publicly disclosed information for this event

Index Number:
Title:
2011_002
Shipowner hit by cyber attack with loss of data related to cargo management and impact on internal [...]
Day Month Year Country Activity Incident Type
1 August 2011 Iran, Islamic Republic of Shipowner Data leak

Summary

According to sources, in August 2011, the victim was targeted by an advanced cyber attack. The spread and depth of the attack gave indications that the attack may be state-sponsored. Though details about the specific attackers remain unclear, the nature of the attack aligns with activities seen in other high-profile intrusion sets.

While the entity acknowledged the compromise of some data, they stressed that no company-classified details leaked. They were able to recover the deleted information. However, the incident did inflict significant damage, both operationally and in terms of the pressure it placed on the organization.

Victim

IRISL Group

Claimed/Reported Threat Actor

N/A

Origin

Undisclosed

Main impact

Integrity

References

Recommendations to Shipowner to reduce Data leak risks:

  • Ensure data encryption measures are in place to protect sensitive information.
  • Implement access controls to limit data access to authorized personnel only.
  • Regularly audit and monitor data access and transmission for potential leaks, for instance via Security Operation Center services.
  • Check and test all communication and customers and third parties-focused plans.
Previous Next
Disclaimer: the data are provided as is. France Cyber Maritime and the M-CERT take no responsibility for the soundness, quality, precision, nor the eventual attribution made by the referenced URLs. We give a lot of respect and support to the victims of attacks.
Files generated on Thursday, 10th October 2024.
ADMIRAL is licensed under the Creative Commons CC-BY-NC license. Copyright © France Cyber Maritime 2024.