Click on any incident to see details.
Incidents
ID | Date | Year | Source Database | Intentional | Origin | Relative Risks | Attack Description | Country | Industry Type | Attack Details | TI Safe Score | CIRA | SCIDMARK Score | SCID id | Impact | Link at the Internet | Malware Name | MITRE ATT&CK Software ID [if exists] | Duration | Ransom Value (USD) | Paid (Y/N) | Suggested security initiative | |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
wdt_ID | ID | Date | Year | Source Database | Intentional | Origin | Relative Risks | Attack Description | Country | Industry Type | Attack Details | TI Safe Score | CIRA | SCIDMARK Score | SCID id | Impact | Link at the Internet | Malware Name | MITRE ATT&CK Software ID [if exists] | Duration | Ransom Value (USD) | Paid (Y/N) | Suggested security initiative |
1 | 1 | 01/06/1982 | 1982 | RISI | Intentional | External | Malware infection | [1] Trojan Attack. | Russia | Oil and Gas | Thomas Reed, senior US national security official, claims in his book “At The Abyss” that the United States allowed the USSR to steal pipeline control software from a Canadian company. This software included a Trojan Horse that caused a major explosion of | 5 | The software sabotage had two effects, explains Reed. The first was economic. By creating an explosion with the power of a three kiloton nuclear weapon, the US disrupted supplies of gas and consequential foreign currency earnings. But the project also had | https://www.nytimes.com/2004/02/02/opinion/the-farewell-dossier.html | |||||||||
2 | 2 | 12/08/1985 | 1985 | RISI | Not intentional | Accident | Errors, omissions or misuse | (Union Carbide Chemical Leak West Virginia.) [1] Interruption of services. | United States | Chemical | The Institute facility leaked methylene chloride and aldicarb oxime, chemicals used to manufacture the pesticide Temik. The leak resulted from a computer program that was not yet programmed to recognize aldicarb oxime, compounded by human error when the o | 5 | One hundred and thirty four people were were sent to the hospital, six of whom where Union Carbide employees. Thirty people filed two lawsuits seeking $88 million in damages, but hundreds of people marched in support of the company. OSHA proposed fines | https://www.nytimes.com/1985/08/12/us/toxic-cloud-leaks-at-carbide-plant-in-west-virginia.html | |||||||||
3 | 3 | 01/01/1989 | 1989 | RISI | Not intentional | Accident | Errors, omissions or misuse | (Oil Company SCADA System Impacted by RF Interference.) | United States | Oil and Gas | In 1989 a SCADA sytem was being prepared for an oil company in Houston Texas. All the remote telemetry units were communicating with the master station computer via low power Johnson radios. The dummy loads on all of the antennae were used to cut down the | 3 | |||||||||||
4 | 4 | 01/01/1991 | 1991 | RISI | Not intentional | Accident | Errors, omissions or misuse | (Computer Error at Sellafield Nuclear Plant in UK.) [1] Interruption of services. [2] Obstruction of communication signals. | England | Energy | A computer error at the vitrification plant resulted in two shielding doors being left open while highly radioactive material was still inside one chamber. (#2) | 5 | Production at the facility was stopped and did not resume until cause of the accident was established. No one was exposed to radiation during the incident. (#2) | ||||||||||
5 | 5 | 01/01/1992 | 1992 | RISI | Intentional | Internal | Malware infection | (Computer Sabotage at Nuclear Power Plant.) [1] Virus Attack. | Lithuania | Energy | A computer programmer at the Ignalina Power Reactor Sation in Lithuania introduced a virus into one of the stations computers in an attempt to sabotage a reactor at the plant by introducing a virus into the computer system. Oleg Savchuk was arrested on a | 3 | Nuclear plant computer was infected with a virus. There was a station shutdown, though it was reported to be coincidental and not caused by the virus. Oleg Savchuk was arrested for premeditated sabotage. | ||||||||||
6 | 6 | 01/01/1994 | 1994 | RISI | Not intentional | Accident | Errors, omissions or misuse | (Computer Software Faults May Have Caused Chinook Helicopter Crash.) [1] Operational, in Computer, Devices or in Comunication, fail. | England | Transportation Systems | The Chinook Mark 2 helicopter crashed on June 2, 1994 killing all 29 people on board. Initially, the pilots were blamed for the incident. Later, it was concluded that the exact cause of the accident was impossible to establish. The BBC received interna | 4 | The Chinook Helicopter crashed killing all 29 people on board. New evidence casts doubt on the airworthiness of the helicpoter. A report prepared nine months before the crash indicated there may be problems with the engine control computer software. | ||||||||||
7 | 7 | 02/01/1994 | 1994 | RISI | Intentional | Hybrid | Unauthorized access | (Salt River Project Hack.) [1]Interception of convenient information. [2]Unauthorized access a Systems, Files and Devices. | United States | Energy | Between July 8th and August 31st, 1994, the perpetrator, Lane Jarret Davis, accessed a computer or computers belonging to the Salt River Project via a dialup modem on a backup computer. He was able to access data and delete files on systems responsible fo | 4 | The impacts reported on this incident are very contradictory. According to probation records (#1) Davis was able to access the canal control SCADA system for at least 5 hours, as well as accessing customer, financial and personnel records. SRP estimated t | ||||||||||
8 | 8 | 24/07/1994 | 1994 | SCIDMARK | Not intentional | Accident | Errors, omissions or misuse | (An explosion, followed by a number of fires, occurred at 13.23 on Sunday 24 July 1994, on the Pembroke Cracking Company plant (PCC) at the Texaco Refinery, Pembroke. Two companies occupied the site.) [1] Ambient | United Kingdom | Oil and Gas | The incident was caused by flammable hydrocarbon liquid being continuously pumped into a process vessel that had its outlet closed | 3 | http://scid.infracritical.com/pages/scid-00013'>00013 | The customer's core business output, key applications, or mission-critical systems have been interrupted or have been so severely impacted that the company cannot continue to operate in a reasonable manner. | http://scid.infracritical.com/pages/scid-00013/ | ||||||||
9 | 9 | 01/01/1995 | 1995 | RISI | Not intentional | Internal | Errors, omissions or misuse | (PLCs Crashed by IT Audit.) [1] Humann Error. [2] Adulteration or alteration in architecture of physical devices and of software. [3] Operational, in Computer, Devices or Comunication, fail. | United States | Agriculture, food and beverage | A security consultant was scanning the food companies business and process networks for vulnerabilities. Probe packets containing deliberately malformed entered the Ethernet-based process control network and caused all PLCs to hard fault. The packets cont | 5 | The loss of production was estimated to be over $1,000,000 USD | ||||||||||
10 | 10 | 02/01/1995 | 1995 | RISI | Not intentional | Accident | System, device, software or operating failure | (Oakland Air-Traffic Control Center Outage.) [1] Operational, in Computer, Devices or Comunication, fail. [2] Interrupption of services. | United States | Transportation Systems | One of the three power sources was down for testing and maintenance at the time of the episode. The second power source failed unexpectedly. When technicians attempted to bring the third power source on-line, a faulty circuit board in Critical Power Panel | 5 | All radar and radio communications at Oakland Center were shut down as the result of a 45-minute power outage. All radar screens went dark and all radio communications were cut off. Lights and telephones were unaffected. It took 45 minutes to restore radi | ||||||||||
11 | 11 | 01/01/1996 | 1996 | RISI | Not intentional | Accident | System, device, software or operating failure | (Duplicate IP Address Prevents Machine Startup.) [1] Operational, in Computer, Devices or Comunication, fail. [2] Interrupption of services. [3] Ambiental Accident. | Canada | Pulp and Paper | The mill had upgraded the profile controller on the #1 Paper Machine to a control system that used Ethernet and TCP/IP to communicate between the scanners and the main controller. It was also connected to the main mill network through a bridge so that pr | 3 | The paper machine could not be started for over six hours. | ||||||||||
12 | 12 | 02/01/1996 | 1996 | RISI | Not intentional | Accident | System, device, software or operating failure | (Omega Engineering Sabotage.) [1] Human Error. [2] Interruption of services. | United States | Critical Manufacturing | The morning of July 31, 1996, the first worker in the door at Omega Engineering’s manufacturing plant in Bridgeport, N.J., logged on to his computer and unwittingly detonated a software time bomb that systematically eradicated all the programs that ran th | 5 | Omega suffered $12 million in damages and lost its competitive footing in the high-tech instrument and measurement market. Eighty workers lost their jobs as a result. “We will never recover,” said plant manager Jim Ferguson. After the system went down, i | ||||||||||
13 | 13 | 01/01/1997 | 1997 | RISI | Not intentional | Accident | System, device, software or operating failure | (Wrong Code Downloaded to PLC Causes Plant to Shutdown.) [1] Human Error. | England | Agriculture, food and beverage | When making minor changes to a PLC program, the PLC and Slave PLC were loaded with the new program and made the Master. The new Slave, previously the Master, was also loaded halfway through this download. The Master PLC stopped working and the plant was s | 3 | The plant was shutdown for 1 | ||||||||||
14 | 14 | 02/01/1997 | 1997 | RISI | Intentional | External | System, device, software or operating failure | (Worcester Air Traffic Communications System Hack.) [1] Interruption of services. [2] Obstruction of communication signals. [3] Operational, in Computer, Devices or in Comunication | United States | Transportation Systems | On March 10, 1997, an unidentified juvenile computer hacker broke into a Bell Atlantic control system used for the air traffic communications at the Worcester, Massachusetts airport, causing a system crash that disabled the phone system at the airport for | 4 | The crash of the NGDLC system knocked out phone service at the control tower, airport security, the airport fire department, the weather service, and carriers that use the airport. Also, the tower’s main radio transmitter and another transmitter that acti | ||||||||||
15 | 15 | 03/01/1997 | 1997 | RISI | Not intentional | Accident | Errors, omissions or misuse | (Korean Air Line B747 CFIT Accident in Guam.) [1] Human Error. [2] Interruption of services. | Guam | Transportation Systems | Approaching Won Pat International Airport at night, Korean Air Lines Flight 801 impacted Nimitz Hill at 658ft, nearly 800ft below the minimum altitude at that point on the approach. While initially the accident seemed to have little to do with automated | 4 | There were 254 passengers and crew aboard the aircraft; 228 lost their lives. | ||||||||||
16 | 16 | 04/01/1997 | 1997 | RISI | Not intentional | Accident | System, device, software or operating failure | (New Serial Communications Line Disrupts Network.) [1] Interruption of services. [2] Operational, in computer or in comunication, fail. | England | Agriculture, food and beverage | While a project team was connecting a new serial communication between two PLCs, the main site network connected to the master of these two PLCs was interrupted. Both control and view of the running plant was interrupted. The running plant had its network | 2 | The operator lost visibility of the plant for about 30 minutes. | 30 minutes | |||||||||
17 | 17 | 05/01/1997 | 1997 | RISI | Not intentional | Accident | System, device, software or operating failure | (Broadcast Storm Shuts Down DCS Consoles.) [1] Interruption of services. [2] Obstruction of communication signals. | Canada | Agriculture, food and beverage | The facility lost communications to the operator consoles on a steam plant DCS. The problem was believed to be caused by an incorrectly configured Windows 95 workstation in another mill area that generated high levels of broadcast packets. | 2 | The DCS had to be removed from the mill network, preventing process data from being transferred to the business systems. | ||||||||||
18 | 18 | 05/01/1998 | 1998 | RISI | Intentional | External | System, device, software or operating failure | (Hackers Attack NZ & Aust for Joining Gulf Taskforce.) [1] Interruption of services. | New Zealand | Energy | The following FICTITIOUS news paper article opened Parliament of Australian Research Paper 18 1997-98: ================================================ Hackers Attack NZ & Aust for Joining Gulf Taskforce AZP London: A hacker group calling themselves the | 4 | While Auckland did suffer from severe power blackouts in Febrary 1998, this incident is NOT factual. | ||||||||||
19 | 19 | 01/01/1999 | 1999 | RISI | Intentional | Hybrid | System, device, software or operating failure | (Power Outages and Other Service Interruptions.) [1] Interruption of services. | United States | Energy | A former computer systems administrator, Joseph D. Konopka, hacked into computers and caused power failures in WI. Konopka, also known as ‘Dr. Chaos’, pleaded guilty and was sentenced on 11 felony charges for crimes in WI. He was responisble for 28 pow | 5 | Twenty eight power outages and 20 other service interruptions causing about $800,000 in damage in 13 Wisconsin counties. | ||||||||||
20 | 20 | 02/01/1999 | 1999 | RISI | Not intentional | Accident | System, device, software or operating failure | (Y2K Test Crashes Reactor Computer.) [1] Human Error. [2] Interruption of services. [3] Operational, in Computer or in Commucation, fail. | United States | Energy | The problem began just after lunch on Feb. 8, when a group of technicians tested a computer called the “Rodworth Minimizer.” The unit, which operates when the reactor is at low power, analyzes the position of “control rods” in the core and tells engineers | 3 | |||||||||||
21 | 21 | 03/01/1999 | 1999 | RISI | Not intentional | Natural | System, device, software or operating failure | (Olympic Pipeline Rupture and Subsequent Fire.) [1] Interruption of services and operation. [2] Adulteration or alteration in architecture of physical devices and of software [3] Operational, in Computer or in Communication fail | United States | Oil and Gas | At about 3:28 pm PDT, a 16 inch diameter steel pipeline ruptured and released about 237,000 gallons of gasoline into a creek that flowed through Whatcom Falls Park in Bellingham, WA. About 1 1/2 hours after the rupture, the gasoline ignited and burned app | 5 | Two 10 year old boys and an 18 year old young man died as a result of the accident. Eight additional injuries were documented. A single-family residence and the city’s water treatment plant were severly damaged. Fines and litigation could bring the total | ||||||||||
22 | 22 | 04/01/1999 | 1999 | RISI | Intentional | External | Malware infection | (Virus Infection On DCS.) [1] Virus Attack. [2] Interruption of services and operation. | England | Agriculture, food and beverage | Data on the HMI server was being corrupted, this data caused the system to slow and eventually stop. On investigation, it was discovered that the R&T server (in the same domain) had been infected and was totally unusable - unlike the control servers which | 4 | A group of 7 people spent the week cleaning, rechecking, re-cleaning and installing anti-virus software. This prevented the normal day to day work being carried out and delayed a commissioning job of a new plant. There were problems with ownership of the | 7 days | |||||||||
23 | 23 | 05/01/1999 | 1999 | RISI | Not intentional | Accident | System, device, software or operating failure | Navy Radar Shuts Down SCADA Systems | United States | Water and Wastewater Systems | In November 1999, the US Navy was conducting exercises off San Diego during which two commercial spectrum users experienced severe electro mangnetic interference (EMI) to their Supervisory Control and Data Aquistion (SCADA) wireless networks operating at | The San Diego County Water Authority (SDCWA) and the San Diego Gas and Electric (SDGE) Companies were unable to remotely actuate critical value openings and closings as a result. This necessitated sending technicians to remote locations to manually open | |||||||||||
24 | 24 | 06/01/1999 | 1999 | RISI | Intentional | External | Unauthorized access | Hacker Takes Over Russian Gas System [1] Trojan Attack [2] Unauthorized access of softwares, systems, network and devices | Russia | Oil and Gas | According to a Associated Press news release, in 1999 a hacker took over control of a Russian gas system by penetrating the Gazprom (Russia’s state-run gas monopoly) SCADA system.(#1). National Petroleum Council report seems to confirm this, but it may j | 4 | Loss of control of the SCADA system | ||||||||||
25 | 25 | 17/02/1999 | 1999 | SCIDMARK | Not intentional | Accident | System, device, software or operating failure | An explosion destroyed the boiler of Hawthorn Unit #5, a coal-fired generating unit. [1] Interruption of services and operation [2] Adulteration or alteration in architecture of physical devices and of software | United States | Energy | On February 17, 1999 at approximately 00:30 am Central, an explosion destroyed the boiler of Hawthorn Unit #5, a 476 megawatt coal-fired generating unit. The explosion hit an 11-story boiler building. | 4 | 98.39 | http://scid.infracritical.com/pages/scid-00008/ | The explosion caused most of the building to collapse, but caused only a minor injury. The explosion caused no interruption of electrical service for the utility's customers. The explosion at KCP&L's Hawthorn Unit #5 plant on February 17, 1999 caused the | ||||||||
26 | 26 | 01/01/2000 | 2000 | RISI | Not intentional | Accident | System, device, software or operating failure | Accidental Remote Control [1] Interruption of services and operation | Sweden | Critical Manufacturing | A simulation device located in the UK and identical to that installed in the running plant was also given the same communication parameters as were used on the plant device. Eventually the device in the UK assumed control. | 5 | Approximately 4 hours production loss. | ||||||||||
27 | 27 | 02/01/2000 | 2000 | RISI | Intentional | External | Fraud or sabotage | Maroochy Shire Sewage Spill [1] Adulteration or alteration in architecture of physical devices and of software [2] Violation of laws and regulation | Australia | Water and Wastewater Systems | In November 2001, 49-year-old Vitek Boden was sentenced to two years in prison for using stolen wireless radio, SCADA controller and control software to release up to one million litres of sewage into the river and coastal waters of Maroochydore in Queens | 2 | Along with 27 counts of using a restricted computer to cause detriment or damage, Vitek was also convicted of 1 count of wilfully and unlawfully causing serious environmental harm. The sewerage spill was significant. It polluted over 500 metres of open d | ||||||||||
28 | 28 | 04/01/2000 | 2000 | RISI | Not intentional | Accident | System, device, software or operating failure | Accidental Remote Uploading of PLC Program [1] Human Error. [2] Interruption of services and operation | Canada | Oil and Gas | A testing and programming facility for the petroleum company’s PLCs was setup by an engineering consultant in a remote city. An engineer who had just returned from the plant site used his laptop to connect to a PLC he believed was in his office. Instead t | 5 | The petroleum company lost approximately 1/2 day of operations and about 10,000 barrels of production. | ||||||||||
29 | 29 | 01/01/2001 | 2001 | RISI | Intentional | External | System, device, software or operating failure | Hackers Target Cal - ISO System [1] Human Error [2] Interruption of services and operation [3] Adulteration or alteration of physical devices and of software | United States | Energy | Like the Salt River Project incident, this incident appears to be rampant with conflicting information. The best data we have is that a relatively inexperienced hacker was able to exploit two Solaris servers that were were part of a development network at | 3 | “There was an obvious attempt made to penetrate our systems,” said Greg Fishman, spokesman for Cal-ISO, who would not give any more details. “They were able to achieve minimal penetration into a system that we use to demonstrate software. This was never a | ||||||||||
30 | 30 | 02/01/2001 | 2001 | RISI | Not intentional | Accident | System, device, software or operating failure | Anti-Virus Software Prevents Boiler Safety Shutdown [1] Interruption of services and operation | United States | Oil and Gas | A TUV approved boiler safety protection system used Microsoft Excel on a PC workstation for programming. This workstation also had Norton anti-virus software running. The AV software prevented the proper communications between the PC and the protection sy | 4 | The protection system was incorrectly configured and a safety shutdown that should have occured did not. | ||||||||||
31 | 31 | 03/01/2001 | 2001 | RISI | Not intentional | Accident | System, device, software or operating failure | Code Red Worm Defaces Automation Web Pages [1] Interruption of services and operation | United States | Oil and Gas | A network monitoring tool (PC running HPOpenView) used on the business side was also being used on the Automation Networks. This computer had two NIC cards installed, one on each network. This network monitoring PC provided a path from the internet, via t | 3 | Automation web pages were defaced. | ||||||||||
32 | 32 | 04/01/2001 | 2001 | RISI | Intentional | External | Malware infection | Nimda Impact on Manufacturing System [1] Human Error [2] Virus Attack [3] Interruption of services and operation | United States | Agriculture, food and beverage | A major manufacturing company that had implemented a complete anti-virus program for their IT environment. All client hardware was required to have a specific anti-virus program with up-to-date signature files. The IT servers were likewise protected. I | 5 | Herculean efforts of the IC and IT staff prevented a production stoppage at this facility, but the recovery effort cost thousands of dollars in staff time due to a lack of preparedness. The virus exploited the common technology, servers and protocol that | ||||||||||
33 | 33 | 05/01/2001 | 2001 | RISI | Accident | DoS Attack Shuts Down Port of Houston | United States | Transportation Systems | Aaron Caffrey, 19, was accused of bringing computers to a standstill at the port of Houston in Texas - but was found not guilty by a jury on October 17, 2003. This was despite both the prosecution and defence agreeing that Caffrey’s machine was responsibl | 4 | Computers at the port suffered a severe denial-of-service attack on 20 September, 2001. The attack crashed systems at the port which provide crucial data for shipping pilots, mooring companies and support firms responsible for helping ships to navigate in | ||||||||||||
34 | 34 | 06/01/2001 | 2001 | RISI | Accident | Windows Compiler Causes PLC Code to Crash PLC | England | Agriculture, food and beverage | When making minor changes to a PLC program the PLC started to operate the plant in the wrong way. Valves opened at the wrong time, the batch sequence changed and the operator was unable to control his plant. The PLC in question used a number of subroutine | 3 | The organisation was unable to change the program on the PLC for a number of months and the problem was discovered by accident. An additional 3 PLCs had a similar style of programming and were experiencing the same problem. | ||||||||||||
35 | 35 | 07/01/2001 | 2001 | RISI | Accident | Electronic Sabotage of Petroleum Company’s Gas Processing Plant | United States | Oil and Gas | A gas processing plant operated by US petroleum company was hacked by a supplier, sabatoging the plant. (#2) The plant’s supplier allegedly tried to cover a mistake it made on one computer system by creating a diversion by hacking into three other system | 5 | This resulted in shutting off the flow of material to homes and businesses in a Western European country. This incident resulted in contract violations, environmental fines, increased expenses, and lost frevenue for the petroleum company. It took investig | ||||||||||||
36 | 36 | 08/01/2001 | 2001 | RISI | Accident | SCADA Attack on Production Plant of Global Chemical Company | Unknown | Chemical | A disgruntled former employee was allegedly trying to disable the plant’s conveyor control, material storage, and chemical operating systems but was caught by a programmer ‘happening to notice unusual activity.’ (#1) | 1 | |||||||||||||
37 | 37 | 09/01/2001 | 2001 | RISI | Accident | Utility SCADA System Attacked | United States | Energy | An electric power utility allowed a contracted vendor to establish a VPN connection. Neither took adequate steps to ensure proper access protection thinking that the other had. The connection was originally intended to have miminal exposure to the intern | 4 | The attack resulted in significant financial impact to the utility even though they did not lose electric power and their customers were not physically affected. The utility lost use of its SCADA system for 2 weeks until the SCADA system could be complete | 2 weeks | |||||||||||
38 | 38 | 01/01/2002 | 2002 | RISI | Accident | Software Bug Blamed in Radioactive Spill | Australia | Critical Manufacturing | A pipe burst at the uranium mine and in about four minutes 62,000 litres of radioactive liquid escaped from the pipe into an area around the uranium processing plant. The leak was an acid solution containing a mixture of chemicals including innocuous salt | 5 | |||||||||||||
39 | 39 | 02/01/2002 | 2002 | RISI | Accident | Whitehat Takeover of DCS Consoles | Canada | Oil and Gas | A simulated attack on a DCS during a security audit results in complete administrative takeover of the DCS operator consoles. A whitehat hacker with network access to the control LAN was to connect to selected DCS operator stations and obtain full adminis | 1 | None | ||||||||||||
40 | 40 | 03/01/2002 | 2002 | RISI | Accident | Hacker Changes Chemical Plant Set Points via Modem | Canada | Chemical | Operators noticed set points being changed caused by a dialup modem that was continuously plugin and active. | None | |||||||||||||
41 | 41 | 04/01/2002 | 2002 | RISI | Accident | IP Address Change Shuts Down Chemical Plant | United States | Chemical | On March 4, 2002, the control room operator’s LAN computer was restarted with a changed IP address. The IP address duplicated the address assigned to an analyzer computer used for continuous emissions monitoring. The analyzer computer locked-up as a res | 3 | The loss of signal from the analyzer computer forced a plant shutdown until the network communication problem was resolved 2 hours later. | 2 hours | |||||||||||
42 | 42 | 05/01/2002 | 2002 | RISI | Accident | Runaway Remote Control Train | United States | Transportation Systems | A runaway train plowed through NIPSCO’s Michigan City Generating Station hitting another locomotive before the second locomotive’s engineer narrowly jumped to safety. The train was operating with a remote-controlled system that was less than one year old. | 3 | Operations were not affected. (#1) | ||||||||||||
43 | 43 | 06/01/2002 | 2002 | RISI | Accident | UK Air Traffic Control Computers Fail | England | Transportation Systems | Air-traffic control computers at the West Drayton control center, near Heathrow Airport, failed causing subsequent failures at the control center in Swanwick, Hampshire. Although the current failure is being attributed to “creaky” old systems that are uns | 3 | The glitch meant that all the routes and schedules information normally produced by the computer - called flight strip - had to be prepared by hand. (#2) | ||||||||||||
44 | 44 | 08/01/2002 | 2002 | RISI | Accident | Penetration Test Locks-Up Gas Utility SCADA System | United States | Oil and Gas | A gas utility hired an IT security consulting company to conduct penetration testing on their corporate IT network and carelessly ventured into a part of the network that was directly connected to the SCADA system causing it to lock-up. | 4 | Loss of service to the customer base for 4 hours. | 4 hours | |||||||||||
45 | 45 | 09/01/2002 | 2002 | RISI | Accident | Ski Gondola Worker Shutdown Control System | United States | Transportation Systems | A 19-year-old woman faces felony charges for allegedly tampering with a public gondola system, causing a series of 33 shutdowns on the 2.5-mile line that shuttles thousands of people a day over a mountaintop at this ski resort. Alisha Sult, an operator o | 3 | Police were asked to investigate after a series of 32 shutdowns of the system over the three days, Mahoney said. Most were shorter than a minute. The shutdowns occurred December 26-28 during the Telluride Ski Resort’s busiest week of the winter season. T | ||||||||||||
46 | 46 | 11/01/2002 | 2002 | RISI | Hackers Crash Controller via Web Service | England | Critical Manufacturing | There were 2 types of incidents ocurring at the same location in the same time frame: (1) Hackers opened connections with our device , sent messages of unknown nature, then stopped communicating without closing the connection. This exposed a bug in the | 3 | Two engineers worked on this problem full time for 3-4 weeks each. The hard part was being able to identify the cause so we could reproduce it at the vendor’s site. Our internal firewalls greatly reduce the likelyhood of these attacks getting through. | |||||||||||||
47 | 47 | 12/01/2002 | 2002 | RISI | Electronic Sabatoge of Venezuela Oil Operations | Venezuela | Oil and Gas | In December 2002, PDVSA, Venezuela’s state oil company became embroiled in a bitter strike that saw extensive sabatoge. According to a report in Oil Daily, Ali Rodriguez (the head of the oil company) stated: “[...] we have suffered many acts of sabotag | 5 | This and other physical sabatoge apparently cut Venzuela’s national production down to to 370,000 barrels per day, compared with 3 million barrels before the strike. Eight hours loss of production. Unable to load product into waiting tankers. | |||||||||||||
48 | 48 | 14/01/2002 | 2002 | RISI | Virus Infection of Operator Training Simulator | Canada | Oil and Gas | An operator training simulator was shipped to the site from the manufacturer in Houston. Prior to connection to the training DCS system, a standard system procedure check detected that the simulator was infected with a common computer virus. It is unlikel | 3 | None. | |||||||||||||
49 | 49 | 04/02/2002 | 2002 | TI Safe | A nation-state actor hacked media and publishing giant News Corp | United States | Communications | American media and publishing giant News Corp revealed it was victim of a cyber attack from an advanced persistent threat actor that took place in January. | 3 | The attack compromised one of the company's systems and had access to emails and documents of some employees. | https://securityaffairs.co/wordpress/127648/hacking/news-corp-hack.html?utm_source=dlvr.it&utm_medium=linkedin&utm_campaign=news-corp-hack | ||||||||||||
50 | 50 | 24/02/2002 | 2002 | TI Safe | Ukraine falls victim to massive cyber attack, malware deletes all data from PCs | Ukraine | Government Facilities | Cyber attack has been carried out to erase data from computers in Ukraine. | 4 | Cyber attack deleted all data from PCs. | https://techunwrapped.com/ukraine-is-the-victim-of-a-massive-cyberattack-malware-deletes-all-data-from-pcs/ |
LEGAL DISCLAIMER: ALL DATA CONTAINED WITHIN THIS WEBSITE HAS BEEN ACQUIRED FROM PUBLICLY AVAILABLE SOURCES, FREE OF CHARGE, WITHOUT ANY RESTRICTIONS OR REQUIRED CREDENTIALS; ADDITIONALLY, NO PRIVATE, CONFIDENTIAL, PROPRIETARY, OR CLASSIFIED INFORMATION (OR DOCUMENTATION) FROM ANY LEAKED WEBSITES, CURRENT OR NEWLY DISCOVERED, IS CONTAINED HEREIN.