Tuesday October 3, 2023
The maritime industry has become increasingly digitized, IT/OT converged, and interconnected, especially as it adopts advanced technologies like Internet of Things (IoT) devices, satellite communications, electronic navigation, and more. While these advancements deliver considerable benefits – safety, efficiency, and convenience – they come at the price of a widening attack surface exposing vulnerabilities that can be exploited by malicious actors. Digitized systems like container management, shipboard controls, navigation, buoys, and even HVAC are in play. In fact, the value of maritime assets is so great and its efficient operation is so critical to countries, global enterprises, and billions of individuals, that cyber criminals and highly trained, statesponsored cyber syndicates are actively involved.
Securing Maritime Operations
Since seafaring vessels are part of a larger ecosystem – they participate in fleets and visit a variety of ports –- a successful attack on any single onboard system on a given ship can soon spread to other onboard systems. And the damage doesn’t necessarily stop there. Since vessels are in constant communication with their fleetsisters, today’s sophisticated threat actors can leverage their unwanted access to one vessel as a springboard to other vessels, rapidly infecting them as well. From there, port systems and even corporate networks are also within reach.
In this paper, we discuss the cyber risks that maritime operators face and offer practical suggestions for safeguarding their valuable assets and operations.
Black & Veatch endorses Radiflow’s iSID
Security Brief: Analysis of the Ukraine Cyber-Attack
Securicon endorses the 3180 Security Gateway as a NERC CIP enabler
New (EU) 2016/1148 Cybersecurity Directive
Whitepaper: “Meet Your Attacker – Taxonomy & Analysis of a SCADA Attacker”
Whitepaper: “Optimizing OT Security through Automatic Attacker Evaluation”
Security Brief: The Norsk Hydro Cyberattack – Using AD in IT/OT Networks
Security Brief: Fine-Tuning ICS Threat Models
Radiflow joins SANS in producing the “2019 State of OT/ICS Cybersecurity” survey
Report: KuppingerCole Executive View of SCADA Security by Radiflow
Frost & Sullivan “Customer Value Leadership” Award & Analysis Report
Report: Detecting Threats in a Simulated Water Facility at CISS 2019
White Paper: Using Epidemic Models for Evaluating SCADA/ICS Risks
Radiflow Insights: Attacks on Manufacturing: a Clear and Present Danger
451 Research Reviews and Approves of Radiflow’s OT-MSSP Offering
Security Brief: “A 2020 View of Industrial Cyber Security”
Security Brief: Fear of Cyber-Retaliation by Iranian Attack Groups
Conducting IEC-62443 Assessments Using Radiflow Products
Security Brief “COVID19-Themed Malware and Cyber-Attacks – Overview & Protection Measures”
Security Brief: “The Five Best Practices that will Protect Your OT/ICS Network in 2021″
Breach & Attack Simulations (BAS) in OT environments
White Paper: Risk Assessment & Management for Industrial Organizations
Securing Railway Operations from OT Cyberattacks
Data-driven approach to industrial cyber risk management – Cyber Risk Manangement eBook
White Paper: InController – New State-Sponsored Cyber Attack Tools
White Paper: Securing Pharmaceuticals from OT Cyber Attacks
White Paper: OT Operating Model
Safeguarding the Maritime Industry Through Advanced Cybersecurity
NIS2 is Coming to OT Are you Ready?
Securing OT Supply Chains