---
title: "Ransomware attacks on industrial firms increased by 87% in 2022"
description: "Ransomware attacks against industrial organisations increased by 87% in 2022 from the year before, with most malicious software targeting the manufacturing sector, according to findings published on Tuesday."
type: "NewsArticle"
publisher: "Daily Maverick"
site: "https://www.dailymaverick.co.za"
section: "Business Maverick"
author: "Bloomberg"
author_url: "https://www.dailymaverick.co.za/author/bloomberg/"
canonical_url: "https://www.dailymaverick.co.za/article/2023-02-15-ransomware-attacks-on-industrial-firms-increased-by-87-in-2022/"
published: "2023-02-15T05:52:49"
lang: "en-ZA"
word_count: 279
---

# Ransomware attacks on industrial firms increased by 87% in 2022

> Ransomware attacks against industrial organisations increased by 87% in 2022 from the year before, with most malicious software targeting the manufacturing sector, according to findings published on Tuesday.

By Bloomberg · Published 15 February 2023, 07:52 SAST

## Key points
- Cybersecurity firm Dragos reported that hackers are targeting mining, renewable energy, energy, food, water, electrical and natural gas sectors. The company also found a malicious tool which can disrupt systems managing global infrastructure and pipelines. To prevent such attacks, organizations should have response plans, monitoring tools and secure access methods. However, the number of ransomware payments dropped significantly in 2022 compared to 2021. Recently ransomware has caused disruptions to derivatives training and public school systems in Arizona and Massachusetts. Organizations must be aware of potential threats and take necessary steps to protect against them.
- Cybersecurity firm Dragos reports that hackers have targeted mining industries in Australia and New Zealand, as well as renewable energy companies in the US and EU.
- Attackers have also increased their focus on energy, food, water, electrical and natural gas sectors.
- Dragos found one hacking tool could disrupt tens of thousands of systems managing global infrastructure.
- To stave off attacks, organisations are advised to create response plans, monitor infrastructure and secure access with two-factor authentication.

## Content

Hackers last year targeted mining industries in Australia and New Zealand, and continued their focus on renewable energy companies in the US and the European Union, the cybersecurity firm Dragos said in a report. Attackers also increased or accelerated their attacks on energy, food, water, electrical and natural gas sectors, the company determined.

“They’re definitely going after manufacturing a heck of a lot more than electric and oil and gas,” said Robert M Lee, Dragos’ chief executive officer.

Dragos also found that one hacking tool could disrupt tens of thousands of systems that help manage global electricity infrastructure, gas pipelines and water companies. The so-called Pipedream malware, tied to the threat group [Chernovite](https://www.dragos.com/threat/chernovite/), can be reused against targets in different industries and can hamper a wide variety of industrial systems, Dragos said.

Read more: [Ransomware blitz hits over 2,000 computers running old tech](https://www.bloomberg.com/news/articles/2023-02-05/cyber-security-hacking-news-italy-says-systems-attacked)

Dragos also underscored that threats against the energy sector and critical infrastructure increased following Russia’s February 2022 invasion of Ukraine. While Dragos said malicious activity ended up being less profound than expected, it nonetheless said that one unnamed Ukrainian power company still faced a “significant attack”.

To stave off attacks in general, the company recommended organizations create effective response plans, have tools for monitoring their infrastructure and secure access to their systems by implementing two-factor authentication.

The report comes after other findings suggested a downturn in successful extortion-related hacking. Overall, payments to [ransomware groups dropped sharply](https://www.bloomberg.com/news/articles/2023-01-19/fewer-companies-are-paying-ransomware-hackers-chainalysis-says) in 2022, with victims sending $456.8-million to hackers, down from $765.5-million in 2021, according to the blockchain analysis firm Chainalysis.

In recent weeks, ransomware attacks have [disrupted](https://www.bloomberg.com/news/articles/2023-02-03/ion-removed-from-hacker-s-target-list-deadline-for-ransom-suspended) derivatives training and encumbered public school systems in Arizona and Massachusetts.**BM/DM**
