In April 2023, Lürssen shipyard fell victim to a ransomware attack executed by the BianLian APT group, resulting in the theft of 3 terabytes of sensitive data. The breach targeted not only Lürssen but also its subsidiaries, Flensburger Schiffbau-Gesellschaft (FSG) and Nobiskrug Yachts, all renowned in the luxury yacht and maritime defense sectors. The stolen data likely included proprietary ship designs, client contracts, financial records, and potentially classified defense-related information, given Lürssen’s involvement in military vessel construction. The attack disrupted operations, risked intellectual property exposure, and posed severe reputational and financial threats. As a high-profile shipbuilder catering to elite clients including governments and billionaires the breach could erode trust, lead to contractual penalties, and invite regulatory scrutiny. The scale of data exfiltration (3TB) suggests a targeted, sophisticated operation aimed at crippling the company’s competitive edge and operational integrity. Recovery efforts would involve forensic investigations, system overhauls, and potential ransom negotiations, with long-term consequences for supply chain partnerships and future bids in defense contracts.
Source: https://www.butenunbinnen.de/nachrichten/luerssen-werft-hackerangriff-bremen-100.html
TPRM report: https://www.rankiteo.com/company/luerssen
"id": "lue448092125",
"linkid": "luerssen",
"type": "Ransomware",
"date": "4/2023",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Shipbuilding / Yacht Manufacturing',
'location': 'Germany',
'name': 'Lürssen shipyard',
'type': 'Private Company'},
{'industry': 'Shipbuilding',
'location': 'Flensburg, Germany',
'name': 'Flensburger Schiffbau-Gesellschaft mbH & Co.',
'type': 'Private Company'},
{'industry': 'Yacht Manufacturing',
'location': 'Rendsburg, Germany',
'name': 'Nobiskrug Yachts GmbH',
'type': 'Private Company'}],
'data_breach': {'data_exfiltration': True},
'date_detected': '2023-04',
'description': 'In April 2023, a ransomware attack targeted Lürssen shipyard, '
'Flensburger Schiffbau-Gesellschaft mbH & Co., and Nobiskrug '
'Yachts GmbH. The attack was attributed to the BianLian APT '
'group, and 3 terabytes of data were reportedly stolen.',
'impact': {'data_compromised': '3 terabytes'},
'ransomware': {'data_exfiltration': True},
'threat_actor': 'BianLian APT group',
'title': 'Ransomware Attack on Lürssen, Flensburger Schiffbau-Gesellschaft, '
'and Nobiskrug Yachts',
'type': ['Ransomware', 'Data Theft']}