Theof a major US petroleum pipeline after a ransomware attack has highlighted the vulnerability of the country’s critical infrastructure, which has been the target of an increasing number of cyberattacks. The attack has also sparked concern about a potential gas shortage, leading to panic buying, even as federal and state officials warn against lining up at the pump to hoard fuel.
Colonial Pipeline, which operates the main gas artery along the East Coast, shut down the pipeline Friday after discovering ransomware on its computer systems. The FBI blamed the attack on a group called Darkside.
The shutdown has affected the supply of gas in parts of the East Coast, with some people waiting an hour or more at filling stations.
Here’s what you need to know about the hack:
Colonial Pipeline was hit with a ransomware attack. Bloomberg reported that the hackers began their attack on Thursday by stealing about 100 gigabytes of data as part of a double extortion scheme.
What’s a ransomware attack?
Hackers use ransomware — a type of malware — to scramble a company’s computer data and hold it hostage until a ransom is paid. In a double extortion scheme, the attackers pilfer the data and threaten to publish it.
How did Colonial respond?
The company, which operates pipelines for gasoline, jet fuel and other refined petroleum products, halted pipeline operations after discovering the hack. Colonial said it “proactively took certain systems offline to contain the threat, which has temporarily halted all pipeline operations, and affected some of our IT systems.”
The company said it aims at “substantially restoring operational service by the end of the week.”
Colonial services seven airports and operates in 14 states. Its system is the biggest in the US, the company says, covering more than 5,500 miles and carrying more than 100 million gallons of fuel per day. A legend on its company’s tanks, featured on its website, reads “America’s Energy Lifeline.”
On Tuesday, Colonial said it had worked with shippers to transport about 41 million gallons to delivery points along its pipeline. The company also said it had taken delivery of about 84 million gallons from refineries as it readies to reopen its pipeline.
Who’s behind the attack?
The FBI blamed Darkside, a hacking group, for the attack. The law enforcement agency said it was notified of the hack on May 7 and is investigating alongside the company and other government agencies.
Cyberreason, a security company based in Boston, wrote that Darkside focuses on targets in English-speaking countries and avoids operations in former Soviet bloc countries. It sells its ransomware, a model known as ransomware as a service, and maintains a help desk for negotiations with victims, Cyberreason said.
How prevalent are ransomware attacks?
Unfortunately, they’re pretty common. City governments around the country, including Baltimore’s and Atlanta’s, have been slammed by ransomware attacks. Hospitals have been shut down. (In one case, a patient died because she had to be taken to a hospital nearly 20 miles away from her initial destination, which was dealing with a cyberattack.)
Often, the victims pay to recover their data. Two cities in Florida — Lake City and Riviera Beach — together paidto unfreeze their systems. The cities paid in bitcoin, a popular cryptocurrency.
The White House said Tuesday evening that the Cybersecurity and Infrastructure Security Agency and the Department of Energy are working with industry on guidelines to secure critical infrastructure, sharing details on the attack that hit Colonial Pipeline and providing recommendations to reduce the likelihood of future incidents. The Biden administration added that it’s helping private sector companies improve their cybersecurity through the Industrial Control Systems Cybersecurity initiative.
What’s been going on with concerns about a gas shortage?
A Department of Transportation agency posted a regional emergency declaration for 18 states and Washington, DC, “in response to the unanticipated shutdown of the Colonial pipeline system due to network issues that affect the supply of gasoline, diesel, jet fuel, and other refined petroleum products throughout the Affected States.” The declaration is designed to keep the fuel supply on the East Coast flowing.
North Carolina, South Carolina and Virginia have also declared states of emergency.
So I shouldn’t hoard gas?
Officials say there’s no need to stock up on gasoline because the pipeline is expected to be back near normal at the end of the week.
Energy Secretary Jennifer Granholm acknowledged that some states might experience a supply crunch but said there was no need to rush to the pumps. “We know that we have gasoline,” Granholm said, according to US News and World Report. “We just have to get it to the right places.”
South Carolina Gov. Henry McMaster tweeted a similar message to his state’s citizens. “There is no need to rush to top off your gas tanks or hoard gas,” McMaster wrote, “the pipeline is expected to resume operations by the end of the week.”
In its Tuesday statement, Colonial said it’s working with the Department of Energy and prioritizing “markets experiencing supply constraints and/or not serviced by other fuel delivery systems.”
What about gas prices?
The shortage has caused an increase. As of Monday, the average price of gas in the US jumped six cents, to $2.96 per gallon, according to AAA.