Auckland transport authority hit by suspected ransomware attack

18 tháng 9, 2023

The Auckland Transport (AT) transportation authority in New Zealand is dealing with a widespread outage caused by a cyber incident, impacting a wide range of customer services.


AT is the government-owned regional transportation authority in the Auckland region, responsible for public transport through ferries, busses, and trains and for designing and building roads and other infrastructure.


The company has announced on September 14th that it's experiencing issues with its HOP services (integrated ticketing and fares system) as a cyber incident has impacted parts of its network.


"The issue is impacting top-ups and other HOP card services. Our staff and operators will ensure you are still able to travel, even if your HOP card is unable to be topped-up." - AT.


According to the latest update published earlier on September 14th, the following AT services have been impacted as a result of the attack:


  • Online top-ups, as well as other AT HOP services using MyAT HOP on the AT website.
  • Existing auto top-ups work, but there's a delay in the payment processing.
  • Ticket and top-up machines are only accepting cash payments.
  • Transactions using Eftpos/credit cards are unavailable. Some machines may not be working.
  • AT customer service centers will have limited functionality and may only be able to accept cash payments.
  • HOP retailers cannot top up HOP cards or process other AT HOP services like loading concessions.


In a statement given to local media outlet NZ Herald, a spokesperson for AT stated that they have indications they were targeted by ransomware but noted that investigations are still ongoing.


The same source stated that there will be leniency for passengers with empty HOP cards, and traveling using AT's busses, ferries, and trains should continue unaffected.






AT's website and HOP services might return to normal operations early this week, so patience is recommended as the organization gradually restores the affected systems.


Given that ransomware attacks typically also involve data exfiltration to be used in double-extortion, there's concern that AT customers might have had their sensitive details exposed.


Regarding this scenario, AT mentions, "At this point in time, we believe the incident is isolated to one part of our system and that no personal or financial data has been accessed."


No major ransomware groups have yet assumed responsibility for the attack on AT's systems.



Source: bleepingcomputer.com


Bạn cũng có thể quan tâm

4 tháng 6, 2024
Bộ định tuyến chơi game TP-Link Archer C5400X dễ mắc phải các lỗi bảo mật có thể cho phép kẻ tấn công từ xa, không được xác thực thực thi các lệnh trên thiết bị.
3 tháng 6, 2024
Ngày 27 tháng 5 Check Point đã cảnh báo rằng các tác nhân đe dọa đang nhắm mục tiêu vào các thiết bị VPN truy cập từ xa của Check Point trong một chiến dịch đang diễn ra nhằm xâm phạm mạng doanh nghiệp.
31 tháng 5, 2024
Công ty quản lý đơn thuốc Sav-Rx cảnh báo hơn 2,8 triệu cá nhân ở Hoa Kỳ việc họ đã bị vi phạm dữ liệu và dữ liệu cá nhân của họ đã bị đánh cắp trong một cuộc tấn công mạng năm 2023.
Thêm bài viết
Share by: