当前位置:新闻动态

    Port of Seattle shares details of cyberattack

    来源:shippingazette    编辑:编辑部    发布:2024/09/27 08:45:51

    The Port of Seattle has isolated its critical systems after the port identified system outages consistent with a cyberattack last month, reports London's Port Technology International.


    The attacked hindered services, baggage, check-in kiosks, ticketing, Wi-Fi, passenger display boards, the port's website, the flySEA app as well as reserved parking.

    The port has worked to ensure safe access for partners and travellers, collaborating with forensic specialists and supporting law enforcement's investigation into a ransomware attack by the Rhysida group.

    The attack was stopped on 24 August, with no further unauthorised activity since.

    The Port of Seattle reported that it remains safe to travel from Seattle-Tacoma International Airport and use the port's maritime facilities.

    The investigation determined that the unauthorised actor was able to gain access to certain parts of its computer systems and was able to encrypt access to some data.

    As the port refused to pay the ransom, it is feared that the attacker may post allegedly stolen data on the dark web. While the investigation is ongoing, it appears some data was accessed in mid-to-late August.

    The port's investigation of what data the actor took is ongoing, but it does appear that some port data was obtained by the actor in mid-to-late August.

    "From day one, the port prioritised safe, secure and efficient operations at our facilities," said Port of Seattle executive director Steve Metruck.

    "We are continuing to make progress on restoring our systems. The Port of Seattle has no intent of paying the perpetrators behind the cyberattack on our network.

    "Following our response efforts, we also commit to using this experience to strengthen our security and operations, as well as sharing information to help protect businesses, critical infrastructure and the public," Mr Metruck said.