Skip to content
avatar

Maritime and port cybersecurity.

Maritimeinfosec.org is an analysis site dedicated to maritime and port cybersecurity. Its articles offer insights into cyber threats, system vulnerabilities, and the digital challenges of the maritime sector, drawn from an operational reading of risks informed by the author’s experience and background.

On the usefulness of penetration testing on ships

This article is also available in French.

In an article published yesterday, the company Pen Test Partners, known for its blog posts on maritime cybersecurity, released a new, somewhat alarming article on the topic.

Apparently, we are no longer supposed to adopt an alarming tone, so let us try to analyze it calmly.

The company, which operates in the United Kingdom and the United States, conducts penetration tests at the request of its clients on different types of ships. In their article, they explain that each time they perform such work, they manage to identify information systems that few — sometimes none — of the crew members know about, or whose purpose they do not understand. This may seem surprising. However, there can be explanations (which the article does not highlight, preferring — somewhat excessively in my view — the buzz). Here are a few possible explanations:

Submarine cables

This article is also available in French.

This has always surprised me, but relatively few people are actually familiar with the field of submarine cables. I am not only referring to the technology itself, but it is quite surprising to realize that some people are not even aware of their existence. It must be said that, lying deep on the ocean floor, it is tempting to forget about them. Yet they handle 98% of intercontinental telephone communications and data transfers every day. Without them, our daily lives and our economy would be profoundly disrupted.

The Port of Singapore inaugurates its maritime cybersecurity SOC

This article is also available in French.

As mentioned last year, the Port of Singapore authorities inaugurated their Maritime Security Operations Center (MSOC) on May 16, 2019. Singapore is a major global transshipment hub, particularly for container traffic.

Singapore MPA maritime cybersecurity operations centre

“It is therefore important that we protect our maritime and port infrastructure to prevent any major disruption to port operations and the delivery of services,”
said Niam Chiang Meng, Chairman of the Maritime and Port Authority of Singapore.

Chinese cyberattacks reportedly targeted the military maritime sector

This article is also available in French.

According to the Wall Street Journal, cyberattacks attributed to Chinese actors have targeted at least 27 universities in Canada, Southeast Asia, and the United States since at least April 2017, including institutions such as MIT, the University of Hawaii, and the University of Washington.

The objective? The attackers reportedly sought to obtain sensitive information related to military technologies in the maritime domain. The attack vector appears to have been relatively conventional: a spear-phishing campaign.

The U.S. Navy and its partners face a wave of cyberattacks

This article is also available in French.

Following a first alarming article published last week, a Wall Street Journal article dated March 12, 2019 confirms growing concerns regarding the U.S. military maritime sector.

Referring to a 57-page internal report submitted to then-Secretary of the Navy Richard Spencer, the newspaper states that the U.S. Navy and its industrial partners are effectively under “cyber siege.” Once again, China is explicitly identified as the main actor, accused of having stolen sensitive military information over recent years, potentially threatening the United States’ position as the world’s leading military power.

GPS, maritime systems and April 6, 2019

This article is also available in French.

Since February, several media outlets—both newspapers and television—have raised concerns about the Week Number Rollover scheduled for April 6, 2019. With alarmist headlines, some even suggest you might need to pull out your paper charts again. So who should we believe? What are the real implications for maritime information systems?

On April 10, 2018, the U.S. Department of Homeland Security, and more specifically CERT-ICS, published a memorandum aimed at users of the GNSS (Global Navigation Satellite System), particularly GPS (Global Positioning System).