Port of Vigo
Incident posture
Linked entities
- Victim
- Port of Vigo
- Threat actors
- 0 actors
- Sources
- 1 source
Timeline
Summary
A ransomware attack disrupted operations at the Port of Vigo, a major Spanish fishing port. Ransomware typically encrypts data and demands payment for decryption keys. Such attacks often result in service downtime, financial losses, and potential data exposure. The attack led to operational disruption at the facility.
Motives
Detailed motive labels are available to members.
TTPs
Detailed technique labels are available to members.
Description
In March 2026, a ransomware attack was recorded targeting the Port of Vigo, a major Spanish fishing port located in Pontevedra, Spain. The attack appeared in a compiled list of ransomware incidents for that month. The entry described the event as a ransomware attack that disrupted operation at the port. No further technical details about the malware variant or attack vector were included in the source. The source did not identify the threat actors responsible for the incident. The source also did not disclose any ransom demand or extortion amount associated with the attack.
The source does not specify which particular operations were affected by the disruption. The source does not quantify the scale or duration of the operational impact. The incident is presented alongside other ransomware events from March 2026 in the same report. The report provides only the location, timing, and nature of the attack without elaborating on response or recovery actions. Consequently, the available information confirms only that a ransomware event occurred and caused operational disruption at the Port of Vigo. No additional specifics about the attackās duration, affected systems, or mitigation measures are provided in the source material.
Sources
Sources available to members: 1 source.