Basra Multipurpose Terminal

Basra Multipurpose Terminal

In 2022, the Basra Multipurpose Terminal (BMT) in Iraq fell victim to a targeted cyberattack by the Midas ransomware group, a threat actor with suspected ties to Russian cybercriminal operations. The assault severely disrupted port activities, crippling critical infrastructure operations in a region already grappling with economic development challenges. Ransomware attacks on such strategic assets not only halt logistical workflows delaying cargo handling, vessel scheduling, and customs processing but also undermine investor confidence and regional trade stability.The incident underscored the vulnerability of maritime and port infrastructure to cyber threats, particularly in geopolitically sensitive areas. While the exact financial or data-related losses were not publicly detailed, the operational downtime likely incurred substantial economic costs, including contractual penalties, lost revenue, and recovery expenses. Moreover, the attack’s ripple effects may have extended to supply chain disruptions, affecting local and international businesses reliant on BMT’s services. The involvement of a state-linked ransomware group further elevated concerns about the intersection of cybercrime and geopolitical tensions, signaling potential risks to Iraq’s broader economic security.

Source: https://ransomwareattacks.halcyon.ai/attacks/midas-attacks-basra-multipurposr-terminal

TPRM report: https://www.rankiteo.com/company/bmtiq

"id": "bmt753092125",
"linkid": "bmtiq",
"type": "Ransomware",
"date": "4/2022",
"severity": "100",
"impact": "6",
"explanation": "Attack threatening the economy of geographical region"
{'affected_entities': [{'industry': 'Maritime/Logistics',
                        'location': 'Basra, Iraq',
                        'name': 'Basra Multipurpose Terminal',
                        'type': 'Port Operator'}],
 'data_breach': {'data_encryption': True},
 'description': 'Basra Multipurpose Terminal in Iraq was targeted by the Midas '
                'ransomware group in 2022. The attack disrupted port '
                'activities, highlighting the risks that ransomware poses to '
                'infrastructure in regions undergoing economic development. '
                'Midas is linked to Russian-origin cybercriminal activity.',
 'impact': {'downtime': True,
            'operational_impact': 'Disruption of port activities',
            'systems_affected': ['Port operational systems']},
 'motivation': 'Financial (likely)',
 'ransomware': {'data_encryption': True, 'ransomware_strain': 'Midas'},
 'threat_actor': 'Midas Ransomware Group',
 'title': 'Ransomware Attack on Basra Multipurpose Terminal by Midas Group '
          '(2022)',
 'type': 'Ransomware Attack'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.