Rise in cyberattacks on yachts leads to new legislation

New regulations came into force on January 1st and require vessels to prove they have cyber security resilience, these have been welcomed by the industry

Superyachts and motor yachts are increasingly under attack from cyber criminals who sense rich pickings, according to cybersecurity company C3IA Solutions. The company says attacks in the maritime sector shot up by 40 per cent in just 12 months pre-Covid and continued to rise through the pandemic.

In reaction to the trend, new regulations came into force on 1st January 2022 and require vessels to prove they have cyber security resilience. This International Maritime Organisation (IMO) code currently relates to vessels in excess of 500 gross tons but all yachts with computer systems are at risk.

Jim Hawkins from C3IA Solutions says: “We have been particularly busy working on motor yachts and superyachts across the world but also in the UK. With attacks having increased dramatically in recent years owners and operators are much more aware of the risks. While the new IMO code relates to large vessels, it might in future be amended to encompass much smaller boats and it is always best to be prepared.

“Superyachts’ systems require updating and protecting just like any other system in a home or office. But there are added risks on yachts which makes them more vulnerable. These include the rotation of crews and stays in boatyards. Charter boats also have a rotation of those using them and the more people going on and off boats necessarily means more opportunities for criminals to take advantage and plant listening devices or computer malware.

“Our teams are experienced in technical surveillance counter-measures (TSCM) - known as bug-sweeping - and are doing more work on yachts in order to provide assurance to the owners. Other teams carry out penetration testing – something we can do remotely – to test the security of onboard IT systems.

“Obviously with the rich and famous owning and using the yachts they are a high value targets for hackers. The data and information contained on them could be extremely valuable. The new code is now being enforced and will help burst the myth that by being at sea you are somehow less vulnerable to attack.

“Insurers too are becoming more concerned and often now demand proof of cyber resilience before offering cover. Testing should be a routine activity for all yachts and it is extremely positive that the maritime sector is catching up with cyber security requirements,” he adds.

Share

Featured Articles

Tech & AI LIVE: Key Events that are Vital for Cybersecurity

Connecting the world’s technology and AI leaders, Tech & AI LIVE returns in 2024, find out more on what’s to come in 2024

MWC Barcelona 2024: The Future is Connectivity

Discover the latest in global technology and connectivity at MWC Barcelona 2024, where industry giants converge to discuss 5G, AI and more industry trends

AI-Based Phishing Scams Are On The Rise This Valentine’s Day

Research from Egress Threat Intelligence, Avast, Cequence Security & KnowBe4 outlines how AI is being used in dating app phishing scams on Valentine’s Day

Speaker Lineup Announced for Tech Show London 2024

Technology & AI

Darktrace predicts AI deepfakes and cloud vulnerabilities

Cloud Security

Secure 2024: AI’s impact on cybersecurity with Integrity360

Technology & AI