Follow us on Twitter!
Blog Header Logo
DG&A's Transportation Consulting Blog
Posted by on in Ransomware
  • Font size: Larger Smaller
  • Hits: 1212
  • 0 Comments
  • Print

How to Protect Logistics and Transportation Organizations from Ransomware Attacks

b2ap3_thumbnail_dreamstime_l_89526664.jpg

Ransomware is a computer virus that takes over the target device, restricts the owner’s access, and demands the victim to pay a ransom to get their device back. Modern ransomware can steal files, target locally-stored backups, spread through the network, and even bring large organizations to a standstill.

The device can get infected through a malicious email, a spoofed website, or in many other ways. Then, the attackers may scan the device for something valuable or, if pressed for time, start encrypting everything at once. After encrypting the data, the ransomware will display a ransomware note with detailed instructions on how to create a cryptocurrency wallet and send Bitcoin to the attackers’ address.

In Canada, two of the most recent high profile ransomware attacks have been to the Toronto Transit Commission (the largest public transportation network in Canada’s largest city) that knocked down some of its communications system and a provincewide disruption of health-care services in Newfoundland and Labrador that affected thousands of appointments and procedures, including those involving COVID-19 testing. The annual Canadian Internet Registration Authority (CIRA) Cybersecurity Survey says nearly 70 per cent of Canadian organizations facing a ransomware attack last year paid the demands to avoid downtime, reputational damage, and other costs.

In 2021, ransomware has increased to thousands of attacks per day and is predicted to cost businesses over $20 billion. Many successful attacks may be left undisclosed.

Logistics and transportation was ranked the seventh most likely to be hit by a ransomware attack, among 35 identified industries, according to a new study from Nordlocker (nordlocker.com). The study was based on an analysis of 1,200 companies hit by cyber extortion between 2020 and 2021.

The 59 transportation and logistics companies affected range from industry leaders, such as one of the biggest European shipping companies with a fleet of 230 ships, to small enterprises, such as a household moving company in Montana, US. The findings raise the question:

Why do cyber criminals prioritize the logistics and transportation industry?

The Nordlocker report suggests that “the logistics and transportation business could be enticing to cyber racketeers because of the core position this industry occupies on the world stage. ‘The interconnected nature of logistics to businesses all over means that, in the event of a ransomware attack, not only does the company’s reputation get questioned but also numerous supply chains get disrupted, exerting mounting pressure to pay the demanded ransom,’ says Oliver Noble, a cybersecurity expert at Nordlocker, an encrypted cloud service provider. In addition, the industry’s relatively traditional business model, which is in large part yet to include up-to-date cybersecurity solutions, could incentivize hackers towards certain companies.”

How can a company protect itself from a Ransomware attack?

Here are some tips from Chris Thomas, Vice President, Industrial at Darktrace (darktrace.com).

Gain complete visibility into your entire digital infrastructure. From IoT devices to on-prem servers, for a successful security strategy, you need to understand how your technology is communicating, as well as where and why.

Organization-wide mandatory security training. All employees need basic security hygiene and to employ precautionary protocols like implementing multi-factor authentication and using VPNs.

Implement security tools. Security technologies like autonomous detection and response and segmentation that can identify and contain cyber-threats can give security teams time to remediate the attack before it can spread laterally throughout the business and cause significant disruption and financial damage.

Identify vulnerabilities. Whether through red-teaming or not, organizations need to identify their vulnerable areas and patch them as soon as possible to remediate those risks. Organizations should be consistently updating their software and hardware when possible, but continuously monitoring devices will ensure unpatched or unknown vulnerabilities are covered, too.

Regularly back up and encrypt data. This process will protect your data in the worst-case scenario that your organization’s data was stolen or held for ransom.

Oliver Noble offered some easy-to-implement cybersecurity tactics to serve your business as defense:

Make sure your employees use strong and unique passwords to connect to your systems. Better yet, implement multi-factor authentication.

Secure your email by training your staff to identify signs of phishing, especially when an email contains attachments and links.

Adopt zero-trust network access, meaning that every access request to digital resources by a member of staff should be granted only after their identity has been appropriately verified.

Mr. Noble added that even though big companies have a higher probability to offer hackers larger ransoms, small companies are not safe either. “Small enterprises usually do not have the same cybersecurity checks in place as larger businesses, making them an easier target for ransomware attacks. That being said, major companies are still the preferred targets, as their deeper pockets and higher stakes make them more likely to pay up,” the expert noted.

NordLocker states that it is the world’s first end-to-end file encryption tool with a private cloud. It was created by the cybersecurity experts behind NordVPN – one of the most advanced VPN service providers in the world. NordLocker is available for Windows and macOS.

Darktrace’s mission is to empower organizations to stop the disruption that cyber-threats can cause, across digital infrastructures everywhere. Darktrace AI enables organizations of all industry sectors to build up resilience against novel attacks, by autonomously learning their ‘digital DNA’. Darktrace’s Self-Learning AI defends people, data and infrastructure from whatever is around the corner.

 

To stay up to date on Best Practices in Freight Management, follow me on Twitter @DanGoodwill and join the Freight Management Best Practices group on LinkedIn.

0

Comments

  • No comments made yet. Be the first to submit a comment

Leave your comment

Guest Friday, 03 May 2024

Most Recent Posts

Search


Tag Cloud

dynamic pricing freight agreements David Tuttle truck capacity Business Transformation Strategy Spanx Muhammad Ali LCV's US Housing Market technology Business skills BlueGrace Logistics the future of transportation routing guide TransForce Sales Management freight bid Electric Vehicles transportation newspaper last mile delivery Swift autonomous vehicles Freight contracts CSA FCA ShipMax natural disasters capacity shortage Global experience Bobby Harris Grocery President Obama Trucking Value Proposition freight costs Truckload Education Infrastructure selling trucking companies home delivery Horizontal Supply Chain Collaboration Management Facebook Driving for Profit NMFC Schneider Logistics China freight transportation conference Blockchain Doug Nix Otto marketing New York Times Climate Change dark stores Sales Canadian economy Railway Association of Canada Donald Trump TMP Worldwide LinkedIn CRM Loblaw Regina Hudsons Bay Company LTL Load Boards shipper-carrier roundtable coaching Software Advice US Economy Wal-Mart Packaging laptop Inbound Transportation pipelines Freight Carriers Association of Canada Covid-19 energy efficiency Freight Recession Retail Tracy Matura Life Lessons CN Right Shoring freight rate increases Carriers Adrian Gonzalez Trucker Protest CP Rail YRCW MBA Training Colilers International CSA scores Social Media tanker cars automation FMS driver Doug Davis Warehousing truck drivers US Auto Sales Freight Management freight forwarders Scott Monty Canada U.S. trade Map-21 Canadian truckers robotics Canada-U.S. trade agreement YRC Cleveland Cavaliers USMCA Associates Retail transportation Microsoft trade recession future of freight industry Toronto Entrepreneur Global Transportation Hub supply chain management FCPC Trump drones Celadon 2014 freight volumes Twitter Career Advice freight transportation Crisis management Dan Goodwill UP online shopping Success failure entrepreneur Transloading ProMiles dimensional pricing computer driver pay APL Freight Shuttle System Freight Matching FMCSA CITA Shipper Pulse Survey Whole Foods Freight Capacity Canadian Protests Dedicated Contract Carriage Canada Derek Singleton fuel surcharge Business Strategy Omni Channel Training New Hires Transport Capital Partners (TCP) Montreal Canadiens consumer centric Shipper Driver Shortage Distribution peak season Transportation Sales Training Rate per Mile US Election carrier conference business start-up CN Rail Freight Rates Consulting Sales Strategy professional drivers Justice Blogging Finance and Transportation Tariffs employee termination transportation audit Reshoring financial management Failure Business Development Deferred Packaging $75000 bond transportation news autos FuelQuest Impeachment economic outlook TMS 2014 economic forecast digital freight matching small business trucking company acquisitions freight transportation in 2011 Government Broker customer engagement freight RFP economic forecasts for 2012 2013 Economic Forecast 2012 Transportation Business Strategies. Jugaad Transportation service Geopolitics JB Hunt Werner small parcel driver shortages Yield Improvement economy freight audit Social Media in Transportation Freight shipping wine Transportation Buying Trends Survey Ferromex Crude Oil by Rail Leafs Conway shipping Digital Freight Networks Toronto Maple Leafs driverless IANA Coronavirus derailments cheap oil CSX Surety bond buying trucking companies ELD Accessorial Charges broker bonds risk management 2015 Economic Forecast Habs Keystone Pipeline Outsourcing Sales NAFTA home delibery 360ideaspace Politics Online grocery shopping asset management Job satisfaction Fire Phone Search engine optimization 3PL computer protection broker security NS Rotman School of Business Canadian Transportation & Logistics freight payment freight audit Anti-Vax US Manufacturing e-commerce business security capacity shortages cyber security USA Truck freight marketplace Stephen Harper Trade Vision bulk shipping freight payment Uber Freight cars mentoring rail safety Harper Davos speech Comey Dedicated Trucking BNSF truck driver 2014 freight forecast hiring process Load broker Transplace RFP shipper-carrier contracts Success Masters in Logistics Canada's global strategy Emergent Strategy NCC solutions provider freight broker shipper-carrier collaboration KCS Digitization Leadership computer security network optimization Amazon General Motors University of Tennessee Rail MPG 3PLTL EBOR freight cost savings Transcom Fleet Leasing Canadian freight market intermodal Hockey

Blog Archives

May
April
March
February
December
October
September
August
June
May
April
March
January