---
title: "Boeing says its services division was hit by cyberattack"
description: "Boeing confirmed it is dealing with a “cyber incident” that targeted elements of the parts and distribution business run by its global services division."
type: "NewsArticle"
publisher: "Daily Maverick"
site: "https://www.dailymaverick.co.za"
section: "Business Maverick"
author: "Bloomberg"
author_url: "https://www.dailymaverick.co.za/author/bloomberg/"
canonical_url: "https://www.dailymaverick.co.za/article/2023-11-02-boeing-says-its-services-division-was-hit-by-cyberattack/"
published: "2023-11-02T06:05:05"
lang: "en-ZA"
word_count: 210
---

# Boeing says its services division was hit by cyberattack

> Boeing confirmed it is dealing with a “cyber incident” that targeted elements of the parts and distribution business run by its global services division.

By Bloomberg · Published 2 November 2023, 08:05 SAST

## Key points
- Despite the cyber gang's threat, Boeing is keeping their cool and looking into the incident while refusing to comment on any ransom payment.
- Boeing confirms flight safety is unaffected by cyberattack.
- Lockbit, a Russian-linked gang, claimed it would release sensitive data if ransom was not paid.
- Lockbit removed Boeing from its leak website; ransom payment may have been made or agreement to negotiate reached.
- Boeing notifying customers and suppliers of attack; shares little changed in extended trading.

## Content

Flight safety isn’t affected, Boeing said in an emailed statement on Wednesday, adding, “We are actively investigating the incident and coordinating with law enforcement and regulatory authorities.”

A cyber gang with Russian ties, known as [Lockbit](https://www.bloomberg.com/news/articles/2023-05-16/alleged-russian-hacker-charged-in-200-million-ransomware-spree), claimed in a post on the dark web last week that it would start releasing “sensitive data” if the aerospace and defence giant didn’t meet a ransom demand by 2 November. But on Wednesday evening, there was no mention of Boeing on Lockbit’s leak website.

“When organisations are removed from leak sites, it often means either that the organisation has paid the ransom or that it’s agreed to negotiate,” said Brett Callow, threat analyst at Emsisoft. “The former is usually permanent whereas the latter may only be temporary.”

A Boeing spokeswoman declined to comment on whether the US plane manufacturer paid any ransom. The company is notifying customers and suppliers of the cyberattack.

Lockbit is among the most notorious hacking gangs, often deploying ransomware to lock up victim’s files and then demanding a payment to unlock them. More recently, hacking gangs have been stealing documents and demanding payment to not release them publicly.

Boeing shares were little changed in extended trading.

See more: [Boeing Says It’s Assessing Data Dump Threat From Cyber Gang](https://www.bloomberg.com/news/articles/2023-10-27/boeing-says-it-s-assessing-data-dump-threat-from-cyber-gang)
