In July 2024, Carigali Hess Operating Company, a Malaysian oil and gas operator, fell victim to a ransomware attack orchestrated by the Hunters group, a known cybercriminal syndicate. The breach targeted the company’s critical oil assets, posing a direct threat to operational continuity and energy infrastructure stability. While specific details on data exfiltration or financial losses remain undisclosed, the attack’s focus on oil production systems suggests severe operational disruptions, including potential halts in extraction, refining, or distribution processes. Given the strategic importance of oil assets to Malaysia’s economy and global energy markets, the incident carries implications beyond the company, risking supply chain instability and broader economic repercussions. The involvement of ransomware further amplifies risks, as threat actors typically demand substantial payments while leaving backdoors for future exploitation. The attack underscores vulnerabilities in the energy sector’s cybersecurity posture, particularly against state-affiliated or financially motivated hackers targeting high-value infrastructure.
TPRM report: https://www.rankiteo.com/company/carigali-hess-operating-company-sdn-bhd
"id": "car452092125",
"linkid": "carigali-hess-operating-company-sdn-bhd",
"type": "Ransomware",
"date": "7/2024",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"
{'affected_entities': [{'industry': 'oil and gas',
'location': 'Malaysia',
'name': 'Carigali Hess Operating Company',
'type': 'company'}],
'date_publicly_disclosed': '2024-07',
'description': 'Carigali Hess Operating Company in Malaysia experienced a '
'ransomware breach in July 2024, linked to the Hunters group '
'and threatening oil assets.',
'impact': {'operational_impact': 'threat to oil assets'},
'threat_actor': 'Hunters group',
'title': 'Ransomware breach at Carigali Hess Operating Company linked to '
'Hunters group',
'type': 'ransomware'}