TSA mandates new cybersecurity guidelines for railroads

The Transportation Security Administration is requiring U.S. freight and passenger railroads to comply with a new cybersecurity directive aimed at protecting the rail networks from harm.

The directive focuses on performance-based measures, according to TSA, and “will further enhance cybersecurity preparedness and resilience for the nation’s railroad operations.”

To safeguard against any cyber-related disruptions or degradations to rail infrastructure, TSA is requiring freight and passenger rail...

https://www.freightwaves.com/news/tsa-mandates-new-cybersecurity-guidelines-for-railroads

Rail cybersecurity firm Cylus has $30 million funding round

Rail cybersecurity technology provider Cylus has raised $30 million in a series B funding round, bringing the Israeli company’s total funding to over $57 million.

This latest round was led by U.S. firm Ibex Investors and joined by Vertex Growth Fund, Strides International Business, Magma Venture Partners, Vertex Ventures Israel, Israeli serial entrepreneur and Cylus board member Zohar Zisapel and Glenrock Israel, the company said Wednesday.

Cylus also said William Heinrich, former chief...

https://www.freightwaves.com/news/rail-cybersecurity-firm-cylus-has-30-million-funding-round

TSA directs freight railroads to bolster cybersecurity, report incidents

Chemical rail cars sit on a track to illustrate an article about new cybersecurity requirements in the freight rail sector.

Freight railroads will be required to report cyber incidents within 24 hours as part of a new Transportation Security Administration directive issued Thursday aimed at strengthening cybersecurity in the sector.

The directive, which takes effect Dec. 31, also mandates that all freight rail operators designate a cybersecurity coordinator, develop an incident response plan and conduct a vulnerability assessment. TSA also issued similar directives for passenger rail and public transit operators.

“Thes...

https://www.freightwaves.com/news/tsa-directs-freight-railroads-to-bolster-cybersecurity-report-incidents

CSX probes ‘security incident’ as hackers leak data

A photo of a CSX train alongside computer screens displaying ransomware in text

U.S. rail operator CSX (NASDAQ: CSX) said it is investigating a “data security incident” linked to a software provider, Accellion, after a ransomware gang posted screenshots of internal company files to a leak site on Tuesday. The files appear to contain personal information about employees and retirees. 

The Jacksonville, Florida-based company told FreightWaves in a statement that it recently learned about the incident and has notified law enforcement.

“To date, this incident has had no impact...

https://s29755.pcdn.co/news/csx-probes-security-incident-as-hackers-leak-data

Lack of cybersecurity exposes rail freight to attacks, says startup CEO

Without cybersecurity, railroad freight might not remain immune to attacks (Photo: NTSB)

Technology has led to the advent of connected vehicles intelligent enough to interact with the driver and link to the cloud. But this has opened up a new avenue of cyberattacks in which bad actors could disrupt a vehicle’s operations by hacking into its control network.

With connected vehicles becoming more commonplace on the highways, cybersecurity programs have been pursued to good effect in the auto industry. However, cyberattacks can be equally disruptive to railroads.

FreightWaves spoke with...

https://www.freightwaves.com/news/lack-of-cybersecurity-exposes-rail-freight-to-attacks-says-startup-ceo

Join Our Newsletter
Enter your email to receive a weekly round-up of shipping news.
icon