Cyber Attacks On Port of Los Angeles Have Doubled

Every year, seaports move billions of dollars in products, making them an attractive target for cyber criminals. They confront regular ransomware, malware, spear phishing, and credential harvesting attacks designed to cause as much damage as possible and decelerate economies.

Los Angeles is the busiest port in the western hemisphere, handling more than $250bn (£210bn) of cargo annually and the number of monthly cyber attacks hitting the Port of Los Angeles is currently about 40 million, according to the port's executive director Gene Seroka.

Cyber attacks have doubled since the start of the Covid pandemic and the port is now working with the FBI’s cyber-crime team to prevent attacks and improve cyber security.  

Maritime ports move billions of dollars in goods every year, making them a unique target for cyber criminals and the threats are believed to come mainly from Europe and Russia, with the aim to disrupt the US economy "Our intelligence shows the threats are coming from Russia and parts of Europe. We have to stay steps ahead of those who want to hurt international commerce," Seroka told the BBC. 

They face daily ransomware, malware, spear phishing and credential harvesting attacks, with the aim of causing as much disruption as possible and slowing down economies. 

The port has invested millions of dollars in cyber protection, developing one of the world's first Cyber Resilience Centres, in partnership with the FBI. The Cyber Resilience Centre provides enhanced intelligence gathering and heightened protection against cyber threats within the maritime supply chain. 

It is a hub for the port to receive, analyse and share information with those who operate on the dock, such as cargo handlers and shipping lines. 

During the Covid pandemic global supply chains slowed down as lockdown closed factories and workers were forced to stay at home. In January 2022 there were 109 container ships queuing for more than two days to get into the Port of Los Angeles. Currently there are around 20 waiting to dock and Seroka believes the blockages won't clear completely until 2023. “We must take every precaution against potential cyber-incidents, especially those that threaten or hinder the movement of cargo.” he said.

“The past two years have demonstrated the importance of ports to the nation’s crucial infrastructure, supply lines, and economy. We must maintain the highest level of system security feasible,” Seroka said,

Port of Los Angeles:     @portofla:    Beamstart:      BBC:     Allsides:     BusinessFast:     Flipboard

You Might Also Read:

Outdated Strategies In Maritime Cyber Security:

 

« Mercenary Cyber Spies For Hire
Cambridge Is Britain's Most AI-Ready City »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

44CON

44CON

44CON is an Information Security Conference & Training event taking place in London. Designed to provide something for the business and technical Information Security professional.

L J Kushner & Associates

L J Kushner & Associates

L.J. Kushner is a leading Information Security recruiting firm.

Paladion

Paladion

Paladion is a provider of managed IT security services.

Giesecke+Devrient (G+D)

Giesecke+Devrient (G+D)

Giesecke+Devrient develop security technologies in four major areas: enabling secure payment, providing trusted connectivity, safeguarding identities and protecting digital infrastructures.

Ponemon Institute

Ponemon Institute

Ponemon Institute conducts independent research on data protection and emerging information technologies.

FraudHunt

FraudHunt

FraudHunt protects your website from account fraud, ad fraud, fraud clicks, and malicious bots.

Corelight

Corelight

Corelight is the most powerful network visibility solution for information security professionals.

Blaze Information Security

Blaze Information Security

Blaze Information Security is a privately held, independent information security firm born from years of combined experience and international presence.

Infosec Train

Infosec Train

Infosec Train provide professional training, certifications & professional services related to all spheres of Information Technology and Cyber Security.

Theta432

Theta432

THETA432 is a cybersecurity firm that provides 24/7/365 managed prevention, detection, response, Hybrid SOC, cyber defense monitoring services with dynamically defined defense (3D™).

Entara

Entara

Entara (formerly YJT Solutions) is an eXtended Service Provider (XSP) focused on providing cutting edge technology and cyber security solutions to companies in regulated industries.

Riskonnect

Riskonnect

Riskonnect technology empowers organizations with the ability to anticipate, manage, and respond in real-time to strategic, operational, and digital risks across the extended enterprise.

Maintel

Maintel

Maintel provides cloud and managed communications services. We help our customers to deliver exceptional customer experiences, and to securely access their applications and their data.

Cyber Law Consulting

Cyber Law Consulting

Cyber Law Consulting is a Dynamic full service legal firm which offers complete services for Cyber Law, cyberlaw, Internet Law, Data Protection Act, Cyber Security, IPR, Drafting.

Casepoint

Casepoint

Casepoint is the legal technology platform of choice for corporations, government agencies, and law firms to meet their complex eDiscovery, investigations, and compliance needs.

Prompt Security

Prompt Security

Prompt Security provides an LLM agnostic approach to ensure security, data privacy and safety across all aspects of Generative AI.