In August 2024, the Port of Rijeka, a critical maritime hub in Croatia, fell victim to a targeted ransomware attack by the 8Base ransomware group. The assault involved data encryption and theft, with the threat actors deploying malware to disrupt operations and extort a ransom. Despite the sophisticated nature of the attack characteristic of 8Base’s focus on critical infrastructure the port’s operations remained unaffected, according to CEO Mr. Grabovac, who emphatically rejected the ransom demand. While the attackers exfiltrated some data, the incident did not result in operational downtime, financial losses, or reputational damage beyond the initial breach disclosure. The port’s resilience mitigated broader consequences, though the theft of unspecified data raises concerns about potential future exploitation (e.g., dark web leaks or secondary attacks). The attack underscores the growing threat to global supply chains, as ransomware groups increasingly target strategic infrastructure to maximize leverage. However, the lack of tangible impact on port functions or customer/employee data exposure limits the severity of the immediate fallout.
TPRM report: https://www.rankiteo.com/company/luka-rijeka
"id": "luk704092025",
"linkid": "luka-rijeka",
"type": "Ransomware",
"date": "8/2024",
"severity": "50",
"impact": "1",
"explanation": "Attack without any consequences"
{'affected_entities': [{'industry': 'maritime/logistics',
'location': 'Rijeka, Croatia',
'name': 'Port of Rijeka',
'type': 'port authority'}],
'data_breach': {'data_encryption': True, 'data_exfiltration': True},
'date_detected': '2024-08',
'date_publicly_disclosed': '2024-08',
'description': 'In August 2024, the 8Base ransomware group targeted Croatia’s '
'Port of Rijeka in an attack involving encryption and data '
'theft. The malware disrupted port operations and demanded a '
'ransom. The group is known for sophisticated attacks on '
'critical infrastructure. Despite data theft, the incident had '
'no operational impact. The CEO, Mr. Grabovac, confirmed the '
'organization would not pay the ransom.',
'impact': {'data_compromised': True,
'operational_impact': 'none',
'systems_affected': True},
'motivation': 'financial (ransom)',
'ransomware': {'data_encryption': True,
'data_exfiltration': True,
'ransom_demanded': True,
'ransomware_strain': '8Base'},
'threat_actor': '8Base ransomware group',
'title': '8Base Ransomware Attack on Port of Rijeka, Croatia',
'type': ['ransomware', 'data breach']}