Port cyberattacks from 2011 to 2023: a literature review and discussion of selected cases
Chalermpong Senarak ()
Additional contact information
Chalermpong Senarak: International Academy of Aviation Industry, King Mongkut’s Institute of Technology Ladkrabang
Maritime Economics & Logistics, 2024, vol. 26, issue 1, No 5, 105-130
Abstract:
Abstract Cyberattacks pose a significant threat to seaports worldwide. While numerous scholars have endeavored to address these threats, their findings are often limited in practicality, applying to only a few ports. This paper aims to contribute to the extant literature by presenting and discussing 15 case studies of port cyberattacks that occurred from 2011 to 2023. These cases encompass six instances in Europe, six in America, two in Asia, and one in Africa. The study employs a twofold methodology, consisting of a comprehensive literature review and a personal assessment. Several key insights emerge. First, two primary motivations drive port cyberattacks: (a) the demand for ransom payments and (b) the desire to cause severe disruptions. Second, ransomware was the most common threat used to extort payments, followed by malware and DDoS attacks, which aimed to inflict operational disruption. Third, weaknesses in cybersecurity procedures and a lack of awareness among staff members emerged as significant contributors to cyber vulnerabilities. Forth, ports that quickly detected threats and implemented response measures were able to minimize operational impacts, ensuring the swift resumption of services and the maintenance of service continuity. Fifth, collaborative efforts with external partners and officials expedited response and recovery processes by facilitating threat investigation and solution identification. In light of these findings, it becomes imperative for all ports to develop comprehensive cyber disaster management plans, covering four key phases: preparedness, response, recovery, and mitigation. These plans should encompass three critical aspects of cybersecurity hygiene: human factors, procedural improvements, and infrastructure enhancements. Such practices are instrumental in bolstering a port’s resilience and mitigating the risks associated with cyberattacks.
Keywords: Cybersecurity; Vulnerability; Ransomware; DDoS attack; Seaports; Networks; Systems; Case studies (search for similar items in EconPapers)
Date: 2024
References: View references in EconPapers View complete reference list from CitEc
Citations: View citations in EconPapers (1)
Downloads: (external link)
http://link.springer.com/10.1057/s41278-023-00276-8 Abstract (text/html)
Access to full text is restricted to subscribers.
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:pal:marecl:v:26:y:2024:i:1:d:10.1057_s41278-023-00276-8
Ordering information: This journal article can be ordered from
http://www.springer. ... nt/journal/41278/PS2
DOI: 10.1057/s41278-023-00276-8
Access Statistics for this article
Maritime Economics & Logistics is currently edited by Hercules E. Haralambides
More articles in Maritime Economics & Logistics from Palgrave Macmillan, International Association of Maritime Economists (IAME) Contact information at EDIRC.
Bibliographic data for series maintained by Sonal Shukla () and Springer Nature Abstracting and Indexing ().