Cyber ​​security on the world's oceans

News B2B Cyber ​​Security

Share post

IT baseline protection profiles of the BSI become part of the national recommendation for International Safety Management (ISM) code and thus ensure more cyber security on the world's oceans.

From 2021, new specifications for cyber security on board ships will apply in the maritime sector. With resolution MSC.428 (98) of the International Maritime Organization (IMO), shipping companies are required to protect themselves from cyber risks from 2021. For this purpose, the existing International Safety Management (ISM) code is used, an international set of rules that stipulate binding measures for organizing safe ship operations. To integrate cyber security, it is recommended that the Federal Office for Information Security (BSI) take into account the IT-Grundschutz as part of the national implementation in Germany. The BSI has published a corresponding circular "ISM CYBER SECURITY 2020" together with the trade association for the transport industry, post logistics and telecommunications (BG Verkehr), which is responsible for ships flying the German flag, and the Federal Maritime and Hydrographic Agency (BSH).

Cyber ​​attacks with 'NotPetya' also hit large shipping companies

BSI President Arne Schönbohm explains: “A significant part of world trade is carried out with ships. In Germany, too, ships are an important component of passenger and freight traffic. The vulnerability of this logistics system, which is so important to all of us, was shown by the cyber attacks with the malware 'NotPetya' in 2017, which also hit large shipping companies and other logistics companies and resulted in damage running into the millions. We still see a lot of catching up to do in the implementation of the necessary IT security measures on board as well as on land. With the integration of the BSI's IT-Grundschutz in the national recommendation for the implementation of the new IMO requirements, we have now succeeded in creating the conditions for cyber security in maritime shipping to be sustainably improved. "

In 2018 and the beginning of 2020, the BSI published two IT-Grundschutz profiles for shipping companies (land operations and ship operations) that deal with cyber security in shipping. IT-Grundschutz profiles are sample security concepts that serve as templates for institutions with comparable framework conditions. Together, the two IT-Grundschutz profiles for minimum protection for land and ship operations are the entry point into cyber security for shipping companies.

 

More on this at BSI.bund.de

 

Matching articles on the topic

Report: 40 percent more phishing worldwide

The current spam and phishing report from Kaspersky for 2023 speaks for itself: users in Germany are after ➡ Read more

BSI sets minimum standards for web browsers

The BSI has revised the minimum standard for web browsers for administration and published version 3.0. You can remember that ➡ Read more

Stealth malware targets European companies

Hackers are attacking many companies across Europe with stealth malware. ESET researchers have reported a dramatic increase in so-called AceCryptor attacks via ➡ Read more

IT security: Basis for LockBit 4.0 defused

Trend Micro, working with the UK's National Crime Agency (NCA), analyzed the unpublished version that was in development ➡ Read more

MDR and XDR via Google Workspace

Whether in a cafe, airport terminal or home office – employees work in many places. However, this development also brings challenges ➡ Read more

Test: Security software for endpoints and individual PCs

The latest test results from the AV-TEST laboratory show very good performance of 16 established protection solutions for Windows ➡ Read more

FBI: Internet Crime Report counts $12,5 billion in damage 

The FBI's Internet Crime Complaint Center (IC3) has released its 2023 Internet Crime Report, which includes information from over 880.000 ➡ Read more

HeadCrab 2.0 discovered

The HeadCrab campaign against Redis servers, which has been active since 2021, continues to successfully infect targets with the new version. The criminals' mini-blog ➡ Read more