Menu
Browse

Cyber Incident Victim: Kawasaki Kisen Kaisha

Date:

Jul 2021

Location:

Japan

Summary

Kawasaki Kisen Kaisha ("K" Line), a major Japanese shipping firm, suffered a second cyberattack involving unauthorized access to overseas subsidiary systems, following a prior breach through an affiliate. The company acknowledged potential data compromise and publicly apologized for complications and concerns to customers and stakeholders, confirming that information allegedly stolen from subsidiary systems had been published. This incident disrupted operations shortly after recovery from the earlier attack, impacting one of Japan's largest maritime fleets.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

On or around July 1, 2021, Japanese shipping firm Kawasaki Kisen Kaisha ("K" Line) publicly confirmed a cybersecurity breach involving unauthorized access to computer systems at overseas subsidiaries. This incident marked the second cyberattack against the company within months, following a previous compromise also originating through an overseas affiliate. The company detected the breach after information allegedly exfiltrated from subsidiary systems appeared in public forums, though specific technical details regarding intrusion methods or malware used were not disclosed. "K" Line, one of Japan's oldest and largest shipping operators with a fleet exceeding 400 vessels, had only recently restored operations from the prior attack when the new breach occurred.

Cyber Incident Image

In its July 1 statement, "K" Line formally apologized for complications and concerns caused to customers and stakeholders, acknowledging both the unauthorized access and the subsequent publication of subsidiary data. The company initiated investigations with external cybersecurity experts while notifying relevant authorities, though it did not specify regulatory bodies contacted or jurisdictions involved. No operational disruptions to shipping activities were reported, unlike ransomware incidents commonly affecting logistics sectors. The breach underscored persistent vulnerabilities in subsidiary network integrations, as both attacks exploited overseas affiliates. "K" Line committed to strengthening security measures but provided no technical specifics or timelines for implementation. The incident highlighted recurring cybersecurity challenges facing global maritime supply chains despite recent investments in digital infrastructure.

Sources
Sources available to members
1 source