IMB: Guard Against Threat of Cyber Attacks

By Joseph R. Fonseca
Thursday, August 21, 2014
IMB Guard against threat of cyber attacks

 

The International Maritime Bureau (IMB) is calling for vigilance in the maritime sector as it emerges that shipping and the supply chain is the ‘next playground for hackers’.

IMB said, “Recent events have shown that systems managing the movement of goods need to be strengthened against the threat of cyber-attacks.

“It is vital that lessons learnt from other industrial sectors are applied quickly to close down cyber vulnerabilities in shipping and the supply chain.”

The threat of cyber-attacks on the sector have intensified in the past few months, with cyber security experts and the media alike warning of the dangers posed by criminals targeting carriers, ports, terminals and other transport operators.

They argue that while IT systems have become more sophisticated and thus enabling companies to better protect themselves against fraud and theft, it has also left them more vulnerable to ‘cyber criminals’.

Speaking at the TOC Container Supply Chain Europe Conference in London recently, TT Club’s insurance claims expert Mike Yarwood said, “We see incidents which at first appear to be a petty break-in at office facilities. The damage appears minimal – nothing is physically removed.”

He added; “More thorough post incident investigations however reveal that the ‘thieves’ were actually installing spyware within the operator’s IT network.”.

Yarwood said that more commonly targets are individuals’ personal devices where cyber security is less adequate.

Hackers often make use of social networks to target truck drivers and operational personnel who travel extensively to ascertain routing and overnight parking patterns. The criminals were looking to extract information such as release codes for containers from terminal facilities or passwords to discover delivery instructions.

“In instances discovered to date, there has been an apparent focus on specific individual containers in attempts to track the units through the supply chain to the destination port. Such systematic tracking is coupled with compromising the terminal’s IT systems to gain access to, or generate release codes for specific containers. Criminals are known to have targeted containers with illegal drugs in this way; however such methods also have greater scope in facilitating high value cargo thefts and human trafficking,” Yarwood revealed.

Whilst it is difficult to get hold of exact numbers and statistics, the risks should not be underestimated, and in June the US Government Accountability Office warned about the possible threats to US ports.

In a stinging report, the organisation said that the actions taken by the Department of Homeland Security and two component agencies, the US Coast Guard and Federal Emergency Management Agency, as well as other federal agencies, to address cybersecurity in the maritime port environment have been limited.

KPMG warns that hackers are the new open sea pirates. Wil Rockall a director in the organisation’s cyber security team highlights that the cyber security of maritime control systems are controlled by engineers and not chief information security officers (CISOs) or chief information officers (CIOs). Lacking security controls, these systems are vulnerable to hackers.

“Most ports and terminals are managed by industrial control systems which have, until very recently, been left out of the CIO’s scope. Historically, this security has not been managed by company CISOs and maritime control systems are very similar.

“As a consequence, the improvements that many companies have made to their corporate cyber security to address the change in the threat landscape over the past three to five years have not been replicated in these environments. Instead engineers have often been left to implement and manage these systems – people who focus normally on optimising processes efficiency and safety, not cyber and security risks. It has meant that many companies and their clients are sailing into uncharted waters when they come to try and manage these risks,” he said.

Rockall added; “We have found that one of the main blockers in improving this is a real translation problem when corporate IT security teams attempt to impose their standards on industrial control systems or maritime control systems. KPMG’s work with the operator of one of the largest fleets of crude oil and oil products tankers and liquefied natural gas carriers in the world, found that bridging that gap and coming up with pragmatic solutions to improve industrial control systems security without compromising process efficiency or safety, are vital to the success of industrial control systems cyber risk management.”
 

Maritime Reporter March 2015 Digital Edition
FREE Maritime Reporter Subscription
Latest Maritime News    rss feeds

Maritime Security

MARIN, Cruden, Tree C Technology Forge Small Ship Simulator

Severe vibrations and shocks of up to 9G over an average of 1000 hours per year. That’s what instructors of fast small ships such as the Fast Raiding, Interception

Syria Taps World Wheat Market as Stocks Run Down

Weeks after Syria said it had no need for wheat imports, the government plans to import 150,000 tonnes and has introduced ways to conserve grain stocks in signs

Warships Shell Houthis Outside Yemeni City of Aden

Warships shelled a column of Houthi fighters and troops loyal to former president Ali Abdullah Saleh as they tried to advance on the southern port city of Aden on Monday,

News

WOW at USMMA

The United States Merchant Marine Academy Hosts 7th Annual Women on the Water Conference. Last week, The United States Merchant Marine Academy (USMMA) in conjunction with the U.

Methanol Powered Ferry Launched in Baltic Sea

Swedish ferry operator Stena Line has announced that it has converted the Stena Germanica to run on methanol, an industry first.   The company spent $24 million on converting the ship to methanol.

U.S. Oil Train Traffic mostly from Midwest to East Coast

U.S. oil trains delivered more than 13.5 million barrels of crude oil from the Midwest to the East Coast in January, according to government data that gives a first

Electronics

KVH Outlines Ship-to-Shore Connectivity

The next generation of connectivity between ship and shore will be dominated by the development of applications to help ship owners and managers reduce costs by enhancing operational efficiency,

US Navy to Roll out Underwater Spy Satellites

The robotic series that remade crusade in skies will shortly extend to a low sea, with underwater view “satellites,” drone-launching pods on a sea building and unmanned ships sport submarines,

Washington State Ferry Tacoma Returns to Service

Washington State Ferry M/V Tacoma will return to work on the Seattle/Bainbridge Island route starting March 28 after suffering electrical damage last summer.   The

Maritime Safety

VIKING LifeCraft Presented at IMO

This week, VIKING Life-Saving Equipment took a step towards gaining approval for the VIKING LifeCraft, its alternative life-saving appliance (LSA) for passenger ships.

Maersk to Install Transas ECDIS on 100 Vessels

Maersk Line, the world's largest container company, has selected Transas Marine for ECDIS implementation on more than 100 vessels, Transas announced today. The

Severn Provider Ready for Offshore Markets

The naming ceremony took place today for Severn Offshore Services Ltd.’s new multipurpose wind farm vessel, Severn Provider, built at Damen Shipyards Gorinchem in the Netherlands.

Communication

KVH Outlines Ship-to-Shore Connectivity

The next generation of connectivity between ship and shore will be dominated by the development of applications to help ship owners and managers reduce costs by enhancing operational efficiency,

Greece Will Sell Piraeus Port Stake in Weeks

The Greek government will sell its majority stake in the port of Piraeus within weeks, the country's deputy prime minister told China's official Xinhua news agency,

Garamendi Introduces Bipartisan GPS Backup Bill

Congressman John Garamendi (D-Fairfield, CA), the Ranking Member of the House Transportation and Infrastructure Subcommittee on the Coast Guard and Maritime Transportation,

Software Solutions

Maersk to Install Transas ECDIS on 100 Vessels

Maersk Line, the world's largest container company, has selected Transas Marine for ECDIS implementation on more than 100 vessels, Transas announced today. The

KVH Outlines Ship-to-Shore Connectivity

The next generation of connectivity between ship and shore will be dominated by the development of applications to help ship owners and managers reduce costs by enhancing operational efficiency,

US Navy to Roll out Underwater Spy Satellites

The robotic series that remade crusade in skies will shortly extend to a low sea, with underwater view “satellites,” drone-launching pods on a sea building and unmanned ships sport submarines,

Logistics

U.S. Oil Train Traffic mostly from Midwest to East Coast

U.S. oil trains delivered more than 13.5 million barrels of crude oil from the Midwest to the East Coast in January, according to government data that gives a first

Sea Star Continues Puerto Rico Investments

Sea Star Line, LLC has entered an agreement to on-hire another barge to add to its current service package for shipments from Jacksonville to Puerto Rico.   The

Rand Logistics Announces Debt Refinancing

Rand Logistics, Inc. announced today that it has closed a $170.0 million revolving loan facility which refinanced approximately $102.0 million of the company's

 
 
Maritime Careers / Shipboard Positions Maritime Contracts Maritime Security Maritime Standards Offshore Oil Port Authority Salvage Ship Simulators Shipbuilding / Vessel Construction Winch
rss | archive | history | articles | privacy | terms and conditions | contributors | top maritime news | about us | copyright | maritime magazines
maritime security news | shipbuilding news | maritime industry | shipping news | maritime reporting | workboats news | ship design | maritime business

Time taken: 0.1929 sec (5 req/sec)