{"id":18839,"date":"2021-05-14T09:34:05","date_gmt":"2021-05-14T13:34:05","guid":{"rendered":"http:\/\/worldjusticenews.com\/news\/?p=18839"},"modified":"2021-05-14T09:34:05","modified_gmt":"2021-05-14T13:34:05","slug":"us-fuel-pipeline-paid-hackers-5m-in-ransom","status":"publish","type":"post","link":"https:\/\/worldjusticenews.com\/news\/2021\/05\/14\/us-fuel-pipeline-paid-hackers-5m-in-ransom\/","title":{"rendered":"US fuel pipeline &#8216;paid hackers $5m in ransom&#8217;"},"content":{"rendered":"<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p><b class=\"ssrcss-hmf8ql-BoldText e5tfeyi3\">A major US fuel pipeline has reportedly paid cyber-criminal gang DarkSide nearly $5m (\u00a33.6m) in ransom, following a cyber-attack.<\/b><\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p><a class=\"ssrcss-9nsdc6-InlineLink e1no5rhv0\" href=\"https:\/\/www.bbc.co.uk\/news\/business-57050690\" target=\"_blank\" rel=\"noopener\">Colonial Pipeline suffered a ransomware cyber-attack over the weekend<\/a>\u00a0and took its service down for five days, causing supplies to tighten across the US.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>CNN, the New York Times, Bloomberg and the Wall Street Journal all reported a ransom was paid, citing sources.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>Colonial said on Thursday that it would not comment on the issue.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>On Friday, Japanese consumer tech giant Toshiba said its European division in France had been hit by the same cyber-criminal gang.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-mysbf6-ComponentWrapper-CrossheadComponentWrapper e1xue1i83\" data-component=\"crosshead-block\">\n<h2 class=\"ssrcss-qozapo-StyledHeading e1fj1fc10\">Price impact<\/h2>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>Following the cyber-attack, Colonial\u00a0<a class=\"ssrcss-9nsdc6-InlineLink e1no5rhv0\" href=\"https:\/\/www.bbc.co.uk\/news\/business-57090428\" target=\"_blank\" rel=\"noopener\">announced it would resume operations on Wednesday evening<\/a>, but warned that it could take several days for the delivery supply chain to return to normal.<\/p>\n<\/div>\n<\/div>\n<div id=\"piano-inline1\"><\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>The 5,500-mile (8,900km) pipeline usually carries 2.5 million barrels a day on the East Coast.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>The closure saw supplies of diesel, petrol and jet fuel tighten across the US, with prices rising, an emergency waiver passed on Monday and a number of states declaring an emergency.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>The average price per gallon hit $3.008 (\u00a32.14) &#8211; the highest level seen since October 2014, according to the Automobile Association of America.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>US President Joe Biden reassured motorists on Thursday that fuel supplies should start returning to normal this weekend, even as more filling stations ran out of gasoline across the Southeast.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>According to reports, Colonial had said initially it would not be paying the ransom demanded by the hackers.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-mysbf6-ComponentWrapper-CrossheadComponentWrapper e1xue1i83\" data-component=\"crosshead-block\">\n<h2 class=\"ssrcss-qozapo-StyledHeading e1fj1fc10\">Toshiba cyber-attack<\/h2>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>Toshiba Tec France Imaging System, which is part of Toshiba, said it was hit by a similar cyber-attack by DarkSide on 4 May.<\/p>\n<\/div>\n<\/div>\n<div id=\"piano-inline2\"><\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>However, the firm emphasised that no leaks of data had been detected and that only a minimal amount of work data was lost during the event.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>It said it had put protective measures in place immediately after the attack.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>In light of a sharp increase in ransomware cyber-attacks during the pandemic, on Thursday\u00a0<a class=\"ssrcss-9nsdc6-InlineLink e1no5rhv0\" href=\"https:\/\/www.bbc.co.uk\/news\/technology-57101249\" target=\"_blank\" rel=\"noopener\">President Biden signed an executive order to improve US cyber-defences<\/a>.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>Earlier in the week, he said that although there was no evidence that the Kremlin was involved, there was evidence to suggest that the DarkSide gang of hackers was based in Russia.<\/p>\n<div class=\"ssrcss-mysbf6-ComponentWrapper-CrossheadComponentWrapper e1xue1i83\" data-component=\"crosshead-block\">\n<h2 class=\"ssrcss-qozapo-StyledHeading e1fj1fc10\">&#8216;Our goal is to make money&#8217;<\/h2>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>Cyber-security firms told the BBC that DarkSide operates by infiltrating an organisation&#8217;s computer network and stealing sensitive data.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>Typically, a day later the hackers will make themselves known, announcing that they have encrypted all the data in the network and are prepared to leak it onto the internet and delete it, if they are not paid a ransom by a certain deadline.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>DarkSide operates by making the software used to execute this attack and then training affiliates to use it, who then give the gang a cut of the ransoms they take.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>Following concerns the Colonial cyber-attack was caused by nation-state hackers with a political motive, DarkSide posted on its website: &#8220;Our goal is to make money and not creating problems for society.&#8221;<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>The group also indicated it had not been aware that Colonial was being targeted by one of its affiliates and intended to &#8220;introduce moderation and check each company&#8221; its partners want to encrypt, &#8220;to avoid social consequences in the future&#8221;.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>On Friday, Reuters reported that DarkSide&#8217;s website on the dark web was no longer accessible.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>Colonial Pipeline&#8217;s website also continues to be offline.<\/p>\n<div class=\"ssrcss-18mjolk-ComponentWrapper e1xue1i87\" data-component=\"image-block\">\n<figure class=\"ssrcss-1pvhdts-StyledFigure e34k3c23\">\n<div class=\"ssrcss-ab5fd8-StyledFigureContainer e34k3c21\"><span class=\"ssrcss-13t93ir-Placeholder e16icw910\"><img decoding=\"async\" class=\"ssrcss-1drmwog-Image ee0ct7c0\" src=\"https:\/\/ichef.bbci.co.uk\/news\/1536\/cpsprodpb\/C10D\/production\/_114812494_analysis-joe-tidy-nc.png\" srcset=\"https:\/\/ichef.bbci.co.uk\/news\/240\/cpsprodpb\/C10D\/production\/_114812494_analysis-joe-tidy-nc.png 240w, https:\/\/ichef.bbci.co.uk\/news\/320\/cpsprodpb\/C10D\/production\/_114812494_analysis-joe-tidy-nc.png 320w, https:\/\/ichef.bbci.co.uk\/news\/480\/cpsprodpb\/C10D\/production\/_114812494_analysis-joe-tidy-nc.png 480w, https:\/\/ichef.bbci.co.uk\/news\/624\/cpsprodpb\/C10D\/production\/_114812494_analysis-joe-tidy-nc.png 624w, https:\/\/ichef.bbci.co.uk\/news\/800\/cpsprodpb\/C10D\/production\/_114812494_analysis-joe-tidy-nc.png 800w, https:\/\/ichef.bbci.co.uk\/news\/976\/cpsprodpb\/C10D\/production\/_114812494_analysis-joe-tidy-nc.png 976w\" alt=\"Analysis box by Joe Tidy, Cyber reporter\" width=\"1536\" height=\"306.11957796014065\" \/><\/span><\/div>\n<\/figure>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>The news that Colonial Pipeline paid these criminals is a major blow to President Biden.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>Only this week he signed a long-awaited executive order to beef up federal cyber-security and, in turn, make the US more secure from future attacks.<\/p>\n<\/div>\n<\/div>\n<div id=\"piano-inline3\"><\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>These efforts have, in the view of some in the cyber-security world, been completely undermined.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>How can the Biden administration encourage corporations to spend millions securing their computer networks from attack when they&#8217;ve just witnessed Colonial, under the glare of the public eye, cave in to criminal demands and pay their way out of trouble?<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>The news will swell the ranks of those in the security world who want ransomware payments banned.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>But with companies, jobs and sometimes lives put at risk when ransomware hits, it is a tough call for policymakers.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>The potential silver-lining in this case comes from reports that even after Colonial paid the hackers, the criminals were so slow to help the company that pipeline staff got to work on recovery themselves.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i84\" data-component=\"text-block\">\n<div class=\"ssrcss-18snukc-RichTextContainer e5tfeyi1\">\n<p>The DarkSide hacker crew can no longer claim that they can restore victims services quickly and this may make others question whether or not to give in to their demands.<\/p>\n<p>Source: <a href=\"https:\/\/www.bbc.com\/news\/business-57112371\" target=\"_blank\" rel=\"noopener\">bbc.co.uk<\/a><\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<div class=\"mh-excerpt\">A major US fuel pipeline has reportedly paid cyber-criminal gang DarkSide nearly $5m (\u00a33.6m) in ransom, following a cyber-attack. Colonial Pipeline suffered a ransomware cyber-attack over the weekend\u00a0and took its service down for five days, <a class=\"mh-excerpt-more\" href=\"https:\/\/worldjusticenews.com\/news\/2021\/05\/14\/us-fuel-pipeline-paid-hackers-5m-in-ransom\/\" title=\"US fuel pipeline &#8216;paid hackers $5m in ransom&#8217;\">[&#8230;]<\/a><\/div>\n","protected":false},"author":1,"featured_media":18840,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"pmpro_default_level":"","footnotes":""},"categories":[109,2,3],"tags":[7770,7572,6668,7120,7771,6270],"class_list":{"0":"post-18839","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-headline","8":"category-news","9":"category-usa","10":"tag-colonial-pipeline","11":"tag-cyber-attacks","12":"tag-cyber-criminals","13":"tag-cyber-security","14":"tag-darkside","15":"tag-ransomware","16":"pmpro-has-access"},"_links":{"self":[{"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/posts\/18839","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/comments?post=18839"}],"version-history":[{"count":2,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/posts\/18839\/revisions"}],"predecessor-version":[{"id":18842,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/posts\/18839\/revisions\/18842"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/media\/18840"}],"wp:attachment":[{"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/media?parent=18839"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/categories?post=18839"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/tags?post=18839"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}