Cyberattacks on the rise – key recommendations

Cybersecurity is vital to the maritime industry, and yet vulnerabilities are increasingly being exploited by criminals. In this article, we share two examples of recent cyberattacks against Gard, as well as our key recommendations to prevent losses.
Successful cyber-attacks can have serious consequences, such as operational disruptions, data leakage and financial losses. It is therefore important to raise awareness and improve security measures among maritime stakeholders, including crew members, operators, and service providers. With that in mind, we share our experience with two recent cyber-attacks aimed at Gard’s operations.
The most common threats
Ransomware campaigns affecting the maritime sector are a high threat. They are typically carried out using a “trojan horse” disguised as a legitimate file, which the user is tricked into opening.
Phishing by email continues to be the most common means of attack, although phishing via SMS, phone, social media and even Microsoft Teams also occurs.
And whatever the method – they can be profitable: According to the American analysis company Chainalysis, cybercriminals earned more than USD 1 billionlast year through ransomware extortion.
Recent Gard examples
In Gard, like most digital companies, we experience an almost constant inflow of cyberattack attempts, and we have also seen an increase over the past few years. The following gives a summary of one of our most recent examples:
-
False emails: In an existing email thread between Gard and other parties regarding a case, fraudulent email addresses were added to the communication. These addresses were created to look like legitimate addresses that were already in the existing email thread.
-
Real names: Real employee and company names were used in the fraudulent emails, both as senders and added in copy.
-
Changes in payment details. In one of the fraudulent emails, bank account changes were requested. This was a red flag, alerting the employee to dig deeper and the fraud was detected.
Ransomware on Teams
-
In another case, Gard experienced an attempted ransomware attack on Teams (a method which was used also against several other companies last year, according to Cybernews). In brief, this is the method that was used against Gard:
-
Using a well-known person: First, several employees received a Teams chat invitation from what looked like a company manager, but in reality was a cyber attacker.
-
Triggering emotions: The content in the Teams chat was designed to trigger personal concern. The topic was “organizational changes”, and part of the message read: “In an attached file you can see if you keep your job”.
-
Fishing for clicks: By reaching out to many employees at the same time, the attacker increased the possibility for success. One single person opening the file could have been enough to potentially affect all employees. It could have led to malware that encrypted files and spread to other laptops.
Cybersecurity incidents like these show the importance of both awareness and security maturity in the solutions and the incident handling. Unfortunately, parts of the maritime industry have suffered from immature levels of security and lack of user awareness among staff. We have seen several incidents where a high-risk website has been visited, or the business infrastructure has been misused for personal purposes. To avoid costly incidents, our advice is to improve cybersecurity training and awareness with clearer procedures and guidance for online behaviour.
Our recommendations
Below are our cybersecurity recommendations for onboard behaviour:
-
It is safer to visit an official website instead of clicking on a link in emails or scanning QR codes
-
Check links by hovering over the link. You can see the real web address in your browser’s bottom left corner. If the address looks suspicious, do not click.
-
Use a passphrase to create strong and unique passwords with upper and lowercase letters, numbers and symbols or spaces
-
Use several authentication factors (like facial, fingerprint or an authenticator app) if possible
-
Separate between business and personal email use
-
Do not connect unauthorized personal equipment to networks on ships or other business locations
In Gard, our staff are trained to be security “STARs” (acronym for Stop, Think, Ask, React):
-
Stop – Resist acting on impulse, especially if something in an email or other channel triggers emotions, is urgent or unusual.
-
Think – Think before clicking or doing anything. Is this a message I expected to receive? Is this a person I know? Take time to reflect if the message makes sense to you or not.
-
Ask – If in doubt, get a second opinion from a colleague, security, or your manager. Sometimes, just sharing your issue can help you think clearer.
-
React – Notify security or your manager if something is suspicious, unusual or if you have been tricked.
Additional resources:
Safer and Cleaner Shipping – IACS
Electronic glitch can lead to large claims – Gard
Do you know your weakest link – Gard
Source: GARD
Related News.
September 25, 2026
ISLAND OIL: Unveiling of the Sculpture “Cyprus’s Journey Through the Ages” in Protaras – A Tribute and Landmark to Cyprus’s Historical Memory and Cultural Heritage
In a modest ceremony marked by a moving atmosphere, the sculpture “Cyprus’s Journey Through the Ages”, created by acclaimed Cypriot sculptor…
September 25, 2026
World Maritime Day 2026 from Policy to Practice – powering Maritime Excellence
Global regulations will deliver safer, more resilient shipping when they are implemented worldwide. The international maritime community marks…
September 25, 2026
Diana Shipping announces Time Charter Contract for m/v DSI Polaris with Dai An Ocean Shipping
Diana Shipping , a global shipping company specializing in the ownership and bareboat charter-in of dry bulk vessels, announced that, through a…
September 25, 2026
Chief Economists Expect Global Economy to Stabilize, but Fiscal Constraints, Rising Living Costs and AI Investment Uncertainty Threaten Growth
The global economy is stabilizing, but the fiscal support that cushioned successive shocks since 2020 is unlikely to play the same role in the year…
September 25, 2026
V. welcomes its new graduate cohort as programme expands across the group
Twelve graduates from nine nationalities join 11th year of V.’s expanded international management programme. V., the global ship manager and marine…
September 25, 2026
From Policy to Practice: Why Seafarers Are the Key to Maritime Excellence
The shipping industry is no stranger to regulation. Seafarers and ship operators work within a vast framework of international conventions, national…
September 25, 2026
Intermodal Report – Week 38 2026
Please find below the Intermodal market report for week 38 2026. Intermodal Report Week 38 2026 Market Insight By Nikos Tagoulis, Head of…
September 25, 2026
Allied – Weekly Market Review – Week 38
Please find below the Allied Weekly Report for Week 38 | 2026 ALLIED - Weekly Market Report- Week 38
September 25, 2026
Record year on the Northeast Passage but Arctic shipping remains very limited
In 2025, a record 103 transit voyages were made via the Northeast Passage. However, this is still equivalent to only around a day and a half of…
September 25, 2026
[xclusiv] S&P Report 21th September 2026
Please find below the [xclusiv] latest Weekly S&P Report [xclusiv] 2026_09_21 Market Commentary: VLCCs: Freight Boom Reprices the Fleet The VLCC…
Subscribe to our newsletter!
if you dont want to swim alone in the ocean of news, sign up for the newsletter, and you will receive daily all the important news of world shipping!
Design & Development by P.KAN.DESIGNER
© 2026 Cyprus Shipping News. All rights reserved
Design & Development by P.KAN.DESIGNER
© 2026 Cyprus Shipping News. All rights reserved























