九游下载apk

Ransomware attack on mining operations “almost inevitable,” says cybersecurity expert

Stock image.

Last month, Weir, a major supplier to the mining industry, was the victim of a crippling cyberattack that forced it to isolate and shut down its core IT systems, including enterprise resource planning and engineering applications.

The resulting disruptions included engineering, manufacturing and shipment rephasing, which resulted in revenue deferrals and overhead under-recoveries. The operating profit impact of Q4 revenue slippage is expected to be between $13 to $27 million for 12 months.

Cyber security was a growing threat for miners long before the pandemic 鈥 it was facing mining and metals for the last two years, 

鈥淭he world鈥檚 leading mining companies are now unanimous in reporting that cyber threats are a principal risk to them achieving their goals,” according to a Marsh report, Cyber Risk:

鈥淭he use of networked systems has progressively increased across all aspects of mining operations, from exploration and extraction, through processing and logistics, to sales and marketing 鈥 while a range of cyber-attacks on the sector and industry at large have stimulated concern,鈥 the report reads. 

Before cyberattack became a buzzword, David Masson, director of enterprise security at AI cyber security company Darktrace, was working in security and intelligence environments in the UK and Canada across civilian, military and diplomatic circles, having held management positions at CSIS, a division of Public Safety Canada, the UK Ministry of Defence and Royal Auxiliary Air Force. 

鈥淩ansomware has been around for a long time, but has become more prevalent since about 2015 鈥 the reason is, it’s an easy attack to monetize,鈥 Masson told 九游下载apk. 鈥淲hat ransomware can effectively do is encrypt data so it can鈥檛 be read any more 鈥 it can take a whole system down, from front to back.鈥

David Masson. Submitted image.

“In the modern era we鈥檙e in 鈥 it is almost inevitable,鈥 Masson said. 鈥淭he threat actors will get inside your network. What is not inevitable is that damage will then take place 鈥 if you can deploy technology to stop the damage from taking place.鈥 

Masson said self-learning cyber AI technology looks for change in a computer network鈥檚 patterns, and what makes it easy to monetize is the lack of banking information needed in this age to transfer funds.聽

It is, essentially, cryptocurrencies fueling the fire and the demand is to pay for the key to decrypt the files so they can be read again.

鈥淚t鈥檚 become easier and easier to carry out these attacks,鈥 Masson said. 鈥 It鈥檚 become more prevalent during the pandemic because of a surge in the threat landscape,鈥 said Masson. 

鈥淒uring the pandemic there have been more opportunities for threat actors to attack networks.鈥

The consequences of an attack on the mining industry aren鈥檛 just economic – they would be geopolitical, Masson said. 鈥淚f a prevalent metals export country couldn鈥檛 mine the metals for a month 鈥 what would happen to the price?鈥

When a supply chain gets disrupted 鈥 the price of a commodity goes up, Masson pointed out, adding that attackers trying to ransomware mine operations know this. 

Masson says operational technology is easier to attack than information technology, and that a successful ransomware attack on a major could halt operations to the extent that it could hold a metals price hostage, or shut down a nation鈥檚 port operations.

鈥淚f mining was under severe attack鈥 [it] would be a major issue for critical infrastructure,鈥 Mason said. 

Darktrace software, he said, protects IT and OT using artificial intelligence 鈥 AI focuses on the business, rather than the breach, and understands the applications and the patterns used to communicate with your office. The AI sees a change in the patterns and will alert the network. 

鈥淚f you can see the attack in its early stages 鈥 you don鈥檛 actually get hacked. All these attacks have to start somewhere before they can proceed.  We can use artificial intelligence to prevent the attack,鈥 Masson said. 

鈥淭he best solution to cyberattack is AI. You don鈥檛 have to deal with what happened 鈥 it deals with what is happening now [with] cyber solutions technology.鈥

鈥淲ith a ransomware attack on OT鈥 the drills stop, the conveyor belts stop. It shuts down ability,鈥 Masson said. 鈥淵ou need to protect the physical, accountable processes that are involved in mining.鈥 

As for Weir, the company announced this week it is acquiring Motion Metrics, a developer of artificial intelligence and machine vision technology used in mines 鈥 in a $118 million deal. 

Comments

No comments found.

{{ commodity.name }}