There has been widespread talk in the press about the damage caused by recent ransomware attacks (Wannacry, NotPethya, etc.): are there any confirmed figures in the industrial world?

Answer: it is always difficult to have numbers in these cases.

A few months ago we published a “report” of our misadventure with Cryptolocker, the "father" of Pethya-nonPethya, which in our case had a very marginal impact thanks to the preventive defenses applied: an hour and we had everything available and working again, even if others were not so lucky (or good? ).

 

 

In an office (or IT) environment, calculating damages is not easy because several variables must be considered: how long is the office closed? Have I lost sensitive data? What is the image damage?

In an industrial environment, these variables are combined with a certain reluctance to admit and therefore knowing what damage has been caused by the latest wave of the virus is practically impossible.

All true but some data has circulated...examples? read below…

 

  • The British consumer products company Reckitt Benckiser (some brands: Calinda, Calfort, Finish, Clearasil, Durex, Glassex, Woolite, Veet, Sole-MiraLanza, Napisan, Nurofen, Marigold, etc.), has suffered a production disruption that is expected could equate to £110m ($135 million) or 1% of annual global sales : “Consequently, we were unable to ship and invoice some orders to customers prior to the close of the quarter,” the British consumer goods company said in a statement on Thursday. “Some of our factories are currently still not operating normally but plans are in place to return to full operation.”  https://www.theguardian.com/business/2017/jul/06/cyber-attack-nurofen-durex-reckitt-benckiser-petya-ransomware

 

 

 

 

 

 

 

  • Fedex (“FedEx reported the damage from Petya will likely be permanent,”) The difficulty could reduce FedEx's earnings by 50 cents to $1 a share for the year through next May, Citigroup Inc. analyst Christian Wetherbee said in a note. That represents 4 percent to 7 percent of the $13.50 he estimated for earnings.

https://www.bloomberg.com/news/articles/2017-07-17/fedex-says-tnt-systems-may-never-fully-recover-from-cyberattack

 

 

We will talk about this (and above all the solutions to be applied) at the ASSINTEL WEBINAR on 13 October (registration and free participation).

Some more info:

The Assintel Working Group on IT Security gives voice to Francesco Tieghi and Enzo Maria Tieghi on the occasion of the series of webinars organized to rattle off the various aspects of the CyberSecurity issue in the IoT era.

New issues, the Security by Design approach, existing and upcoming regulations: these are the points that will be touched upon in the webinar on Wednesday 13 September.

complete program and registration at the links below.

SITE ASSINTEL

INTRO:

Almost all industrial supervision and control systems (ICS) are connected to the company network, sometimes unconsciously and without effective control. It is easy to understand how problems that arise outside the "plant floor" can have repercussions on the process and vice versa: line PLCs and PCs can become "back doors" and create problems on the upper floors.

 Topics Covered

In this webinar we intend to consider the different facets of Industrial Cyber ​​Security following the agenda below:

  • Introduction to industrial cyber security
  • Differences Safety and Security, ICS/SCADA Security
  • Security in ICT environments and industrial/utility environments
  • Terminology, scenarios and technologies, why and how to protect plants
  • Threats and vulnerabilities of control systems
  • Segmentation of networks and segregation of control systems
  • Zoning & Conduit, according to ISA99/IEC62443
  • Consolidation, virtualization and Cloud in control and remote control environments

To subscribe

Click here to register on the platform.

The initiative is reserved for Assintel Members and is free.

Not a member? You can request us to participate in the webinar by sending us an email to the following address segreteria@assintel.it

 

 

The webinar cycle

See other dates and topics clicking here