Maritime industry publishes guidelines for cyber security on ships

With cyber threats  constantly evolving, cyber related processes on board ships need to successfully provide protection against cyber attacks. For this reason, BIMCO along with several maritime industry organisations published the third version of the ‘Guidelines on Cyber Security onboard Ships’.

Cyber safety incidents can occur as the result of:

  • A cyber security incident, which affects the availability and integrity of OT, for example corruption of chart data held in an Electronic Chart Display...

https://safety4sea.com/maritime-industry-updates-guidelines-for-cyber-security-on-ships/

Two Iranians behind Port of San Diego cyber attack

The US Justice Department announced that two Iranian hackers were behind an international computer hacking and extortion scheme. This scheme had also affected the Port of San Diego during September, disrupting its information technology systems.

On September 25, 2018 the Port of San Diego announced its cyber attack, that caused the port to work with limited functionality, something that affected the Port’s service in the areas of park permits, public records requests, and business services.

Follow...

https://safety4sea.com/two-iranians-behind-port-of-san-diego-cyber-attack/

Kongsberg, KPMG launch cyber security partnership

Kongsberg and KPMG collaborated to advance cyber security solutions for the industry’s operations. In the future, the partners expect the industry to adopt new digital solutions, which would have a major impact on operations and current business models in the maritime sector.

As Hege Skryseth, President of Kongsberg Digital and Executive Vice President Kongsberg notes, 90% of global trade is carried by ships, and digitalization of the maritime industry will enable increases in efficiency,...

https://safety4sea.com/kongsberg-kpmg-launch-cyber-security-partnership/

Watch: Cyber attacks pose great threats in maritime industry

Professor Kevin James, Executive Dean Of Science and Engineering in Plymouth University speaks about cyber attacks in maritime industry. Cyber attacks are of a great risk both for the maritime industry and for mariners.

During the interview, Professor Kevin James highlighted that maritime industry is a multi-billion dollar industry since it transports a majority of goods to many countries by various vessels. Talking about UK specifically, he acknowledged that it wouldn’t take long before the...

https://safety4sea.com/watch-cyber-attacks-pose-great-threats-in-maritime-industry/

Untrained staff is the greatest cyber risk, report finds

According to Willis Towers Watson and ESI ThoughtLab, the vast majority of companies (87%) consider untrained staff as their greatest cyber risk. Untrained staff is believed to be one of the categories where the least progress has been observed.

The research also concluded to the most common types of attacks, which are:

  • Malware/spyware (81%);
  • Phishing (64%);
  • External unsophisticated hackers (59%);
  • Cyber criminals (57%).

Moreover, according to the survey, a company’s threat perception varied...

https://safety4sea.com/untrained-staff-is-the-greatest-cyber-risk-report-finds/

Australian defense shipbuilder Austal hit by cyber attack

Australian defense shipbuilder Austal, which constructs ships for the Royal Australian Navy, the US Navy and the Royal Navy of Oman, has been hit by a cyber attack at its data management systems in Perth.

The offenders ‘purported to offer certain materials for sale on the internet and engage in extortion,’ the company was quoted as saying by Business Insider. Following the breach, the hackers demanded money from the company in return for the stolen data.

A small number of stakeholders were...

https://safety4sea.com/australian-defense-shipbuilder-austal-hit-by-cyber-attack/

USCG initiatives to improve cyber security

The US Coast Guard has invested heavily in cyber risk management efforts. These efforts focus on the US Coast Guard Cyber Strategy’s three strategic priorities of: defending cyberspace, enabling operations, and protecting infrastructure.

To achieve these goals, USCG has established or is considering cyber-focused initiatives, that will also improve US’s cyber protection and response ability. These are the following:

Reporting Suspicious Activity and Breaches of Security

An owner or operator of a...

https://safety4sea.com/uscg-initiatives-to-improve-cyber-security/

FBI, DHS: Cyber security tips related to Remote Desktop Protocol

Following the cyber attack that hit the Port of San Diego on 25 September, the US Coast Guard Office of Port and Facility Compliance drew attention to a joint FBI and DHS announcement on ways to prevent malicious cyber activity arising from the Remote Desktop Protocol (RDP).

Remote Desktop Protocol (RDP) allows an individual to control the resources and data of a computer over the Internet. This protocol provides complete control over the desktop of a remote machine by transmitting input such as...

https://safety4sea.com/fbi-dhs-cyber-security-tips-related-to-remote-desktop-protocol/