The Overlooked Physical Exposures of a Cyber-attack

The Overlooked Physical Exposures of a Cyber-attack
by

More than ever before, organisations are aware of the potential financial impact of a cyber-attack. Many wrongfully assume that the steep, monetary burden of a cyber-attack (exacerbated by new, higher fines under the GDPR) is exclusively tied to damaged digital assets, lost records, and the price of investigating and reporting a breach. While those expenses represent a considerable hit, damage to an organisation’s physical assets can be just as harmful.

Cyber-attacks that cause physical damage typically occur when a hacker gains access to a computer system that controls equipment in a manufacturing firm, refinery, power station or similar operation. After the hacker gains access to an organisation’s machinery, they can then control that equipment to damage it or other property.

These types of events can lead to major disruptions and costly damages. To safeguard their physical assets, it’s critical that organisations understand what types of businesses and assets are exposed to these attacks.

What’s at Risk?

To better understand what kinds of physical losses can occur following a breach, it’s helpful to compare cyber-attacks to a natural disaster or other industrial accident. Following these kinds of incidents, organisations often incur costs to repair and replace damaged equipment in addition to any lost revenue caused by the disruption.

Unlike natural disasters, however, cyber-attacks that cause physical damage aren’t limited to a geographic location and can impact an entire network. This means that damages caused by a breach can be widespread, affecting multiple sectors of the economy depending on the target.

Because of this, cyber-attacks that cause physical damage are often dynamic and extensive. When an attack on critical infrastructure occurs, it not only affects business owners and operators, but suppliers, stakeholders and customers as well.

Who’s at Risk?

Cyber-attacks that cause physical damage—the targets, the assailants, the motivations and the means of the attack—are constantly evolving. Incidents can occur in a variety of ways, including phishing scams, internet exchange point attacks, breaches of unsecured and unencrypted devices, and even plots carried out by rogue employees.

When discussing these attacks, many experts cite power and energy sector organisations as the most at risk. However, vulnerabilities also exist in utilities, telecommunications, oil and petrol, petrochemicals, mining and manufacturing, and any other sectors where industrial control systems (ICSs) are used. ICSs are open computer systems used to monitor and control physical processes as well as streamline operations and repairs. ICSs are not often designed with security as a primary consideration, which leaves them susceptible to attack. What’s more, for many automated processes, attacks don’t even need to cause physical damage to result in significant disruption and losses.

So, when it comes to the emerging risk of cyber-attacks that cause physical damage, targets vary by industry and the damages can be extensive due to the interconnected nature of ICSs.

Real-world Examples

Because organisations are not always required to make cyber-attacks that cause physical damage public, they largely go unreported. However, the following are a number of high-profile incidents that demonstrate how important it is to consider physical and infrastructure cyber-exposures:

  • Ukrainian power grid attack—This was a multistage, multisite attack that disconnected seven 110 kilovolt (kV) and three 35 kV substations. Together, the attack resulted in a power outage for 80,000 people and lasted for three hours. Using only a phishing scam, the attackers were able to cause substantial, prolonged disruption to the economy and general public.
  • Saudi Arabian computer attacks—In these incidents, hackers destroyed thousands of computers across six organisations in the energy, manufacturing and aviation industries. Through a simple virus aimed at stealing data, computers were wiped and bricked. Not only did this mean critical business data was lost forever, but all of the damaged computers had to be replaced—a substantial fee for businesses of any size. This attack was similar to an attack on Saudi Aramco, the world’s largest oil company, which destroyed 35,000 computers.
  • Petrochemical plant attack—This attack targeted a Saudi Arabian petrochemical plant. The attack was unique in that it wasn’t designed to steal data, but rather sabotage operations and trigger an explosion. The only thing that prevented an explosion was a mistake in the attackers’ computer code. Had the attack been successful, the plant would likely have been destroyed and many employees could have died. Experts are concerned that similar attacks could be carried out across the globe.
  • Hospital ventilation attack—In this incident, a hacker was able to damage and control a hospital’s heating and air conditioning system using malware. This attack put the safety of staff, patients and medical supplies in jeopardy, as the hacker could control the temperature of the facilities at will.

Attacks causing physical damage will likely become increasingly common as technology advances and hackers continue to get more creative. Even more concerning is that these kinds of attacks not only endanger a company’s data, reputation and finances, but human lives as well.

How Do I Protect My Organisation?

Insurance cover for cyber-attacks that cause physical damage is still in its infancy, and your organisation may have gaps in protection. Even if your commercial property insurance policy includes physical or non-physical damage covers, that does not necessarily mean you’re covered from first- or third-party losses from cyber-attacks.

The level of protection your company has depends largely on the structure of your policies. As such, it’s critical for businesses to do their due diligence and understand if their policies do the following:

  • Impose any limits on cover, particularly as it relates to physical damage of tangible property
  • Cover an attack and any resulting damages
  • Provide contingent cover for attacks that aren’t specifically targeted at the organisation

While it’s important to speak with a qualified insurance broker about your cyber-risk policy options, there are a number of steps businesses can take by themselves to protect their physical assets. In addition to implementing a cyber-risk management plan, businesses should consider doing the following to protect their data:

  1. Keep all software up to date.
  2. Back up files regularly.
  3. Train employees on common cyber-risks and what they should do if they notice anything suspicious.
  4. Review your exposures and speak with your insurance broker to discuss policy options for transferring risk.

For more cyber-related content, contact Trevellyan Insurance Brokers today.


Recent Posts

Comments

  1. try this out keplr Extension

  2. visit their website phantom Extension

  3. stromectol 3 mg comprime ivermectin demangeaisons apres traitement stromectol how much ivermectin in stromectol 6 mg tablet stromectol for lice dosage how to flush stromectol from your system

  4. Ремонт телефонов в Кирове. +79229564040 – Сервисный центр Мобиопт

  5. kraken зайти – kra34 cc, kra34.at

  6. кракен даркнет – kraken вход, кракен

  7. kraken зайти – kraken ссылка, кра сайт

  8. кракен onion сайт – kra33cc, kra 33at

  9. Hello. And Bye.

  10. кракен сайт – kraken market, kra32 at

  11. ?Hola! En nuestra web, trabajamos para ofrecerte experiencias
    inolvidables con las mejores escort de Valencia, que estan ubicadas cerca de esta
    asombrosa ciudad. Las escort de Valencia ofrecen los servicios sensuales mas solicitados,
    que abarcan diversos masajes y momentos excitantes, cortesia de estas fantasticas escort
    que habitan en Valencia.
    Ver aqui: putas malvarrosa

  12. 특별히 지난 70년간 제가 현장에서 일하면서 보아온 결과, 미국 디자인등록은 땄지만, 이를 현실에서 활용할 수 없는 한국인들이 많습니다. 그런 분들이 글로벌 기업에서 각종 보고, 협상, 소송 대응 등 다체로운 법률적 지식과 커뮤니케이션을 할 수 있도록 돕고 싶습니다.

    변리사사무소

  13. Click This Link jaxx wallet

  14. the original source breadwallet

  15. click here to investigate toast wallet

  16. see here jaxx wallet

  17. 17 ОІ Hydroxysteroid dehydrogenase 17HSD activity is finally needed for the oestradiol oestrone regulation buy priligy online safe

  18. 1xBet — это одна из самых популярных и надежных платформ, которая предлагает уникальные возможности и привлекательные бонусы для своих пользователей. Независимо от того, являетесь ли вы новичком в мире ставок или опытным игроком, промокоды 1xBet — это отличный способ повысить свои шансы на выигрыш.
    1хбет промокод это особая комбинация символов и цифр на бонус до 32 500 рублей. Действует это предложение только для новых игроков и после регистрации они получают 130% от суммы пополнения первого депозита.
    Использование промокодов 1xBet имеет множество преимуществ. Они позволяют вам получить дополнительные средства для ставок, что дает вам больше возможностей для выигрыша. Бонусы, полученные с использованием промокодов, могут быть использованы для различных видов ставок на спорт, казино, покер и другие игры, предлагаемые 1xBet. Таким образом, вы можете наслаждаться игрой и одновременно увеличивать свои шансы на успех.

  19. Часто требуется установка хрумера на сервер, чтобы обеспечить максимальную производительность.

  20. Hæ, ég vildi vita verð þitt.

  21. wikipedia reference Fora darknet dla Polakow

  22. pop over to these guys Polskie ukryte uslugi Tor

  23. We suggest you purchase bitcoin wallets with a balance from 500 to 10,000$
    The cost of wallets:
    – Wallets with a balance of up to $500 – $50 (Test payment)
    – Wallets with a balance of up to $1,000 – $70
    – Wallets with a balance of up to $3,000 – $150
    – Wallets with a balance of up to $7,000 – $250
    – Wallets with a balance of up to $10,000 – $320
    The purchase of the wallet is paid strictly in USDT!
    It is recommended to purchase no more than one wallet per day in order to avoid blocking the wallet balance.
    Payment details for wallets:
    TRC 20 USDT >>> TYNwa2zLbFLzLQiBkgGPgHCiKQya9DKVHw
    Make a test payment of $50 and receive the details of the wallet from which you can transfer the balance amount. ??
    You can also purchase a wallet with a maximum balance for $320 at once.
    Payment details are available within 48 hours of receiving the email!
    Payment information and wallet details will be sent to your verified email address!

  24. additional resources coinbase login

  25. перенаправляется сюда GameDev Unreal Engine

  26. Look At This coinbase exchange

  27. cash advance payday loans is a fast and hassle-free way to secure the funds you need. With a simple application process, you can get loans online from the comfort of your home, avoiding lengthy paperwork. Online lenders offer competitive rates and quick approvals, ensuring you receive the money promptly. Experience the convenience and efficiency of getting loans online and meet your financial needs with ease.

  28. MichaelNeurA : June 18, 2025 at 3:15 am

    investigate this site https://colend.cc

  29. Robertemeli : June 18, 2025 at 4:14 am
  30. SheldonOrief : June 18, 2025 at 5:37 am

    have a peek at this website https://alchemistai.lat/

  31. Stevenslito : June 18, 2025 at 6:01 am

    browse this site https://kyros.my

  32. Michaelwarce : June 18, 2025 at 9:46 am
  33. RobertKnops : June 18, 2025 at 2:04 pm
  34. Thomasgreak : June 18, 2025 at 6:54 pm
  35. redirected here https://datadex.pro/

  36. hop over to this site https://datadex.cc

  37. visit this website https://kyros.my/

  38. JoshuaReept : June 19, 2025 at 3:49 am

    important site https://astake.buzz/

  39. Dennisexobe : June 19, 2025 at 8:18 am
  40. Learn More https://noon.gay

  41. click over here now https://kingprotocol.biz/

  42. check these guys out https://alchemistai.buzz

  43. more information https://prismagent.xyz

  44. read what he said https://prismagent.xyz

  45. browse around this website https://askthehive.xyz/

  46. why not check here https://noon.gay/

  47. characterization essay college essay papers essay writing graphic organizers essay subhash chandra bose challenging experience essay

  48. нажмите здесь http://kra34.cc

  49. подробнее майнинг

  50. Ciao, volevo sapere il tuo prezzo.

  51. в этом разделе кракен зеркало

  52. Источник кракен купить

  53. посетить сайт kra34.at

  54. перейти на сайт kra at

  55. проверить сайт kra33 cc

  56. посетить сайт tripscan.top войти

  57. cihazlı su kaçak tespiti Su kaçağı tespiti, uzun vadeli bir yatırımdır. https://adidasfrancais.com/read-blog/19210

  58. Your writing has a way of resonating with me on a deep level. It’s clear that you put a lot of thought and effort into each piece, and it certainly doesn’t go unnoticed.

  59. Your blog is a treasure trove of valuable insights and thought-provoking commentary. Your dedication to your craft is evident in every word you write. Keep up the fantastic work!

  60. ####### OPVA ########
    ULTIMATE РТНС COLLECTION
    NO PAY, PREMIUM or PAYLINK
    DOWNLOAD ALL СР FOR FREE

    Description:-> tiny.cc/zd48vx

    Webcams РТНС since 1999 FULL
    STICKAM, Skype, video_mail_ru
    Omegle, Vichatter, Interia_pl
    BlogTV, Online_ru, murclub_ru

    Complete series LS, BD, YWM
    Sibirian Mouse, St. Peterburg
    Moscow, Liluplanet, Kids Box
    Fattman, Falkovideo, Bibigon
    Paradise Birds, GoldbergVideo
    Fantasia Models, Cat Goddess
    Valya and Irisa, Tropical Cuties
    Deadpixel, PZ-magazine, BabyJ
    Home Made Model (HMM)

    Gay рthс collection: Luto
    Blue Orchid, PJK, KDV, RBV

    Nudism: Naturism in Russia
    Helios Natura, Holy Nature
    Naturist Freedom, Eurovid

    ALL studio collection: from
    Acrobatic Nymрhеts to Your
    Lоlitаs (more 100 studios)

    Collection european, asian,
    latin and ebony girls (all
    the Internet video) > 4Tb

    Rurikon Lоli library 171.4Gb
    manga, game, anime, 3D

    This and much more here:
    or –> tiny.cc/sficzz
    or –> citly.me/sVJSf
    or –> 4ty.me/08yxs4
    or –> tt.vg/fiJTt
    or –> 7z.si/r9z9
    or –> me2.kr/KBMgQ
    or –> j1d.ca/_I
    or –> put2.me/pwdcjb
    or –> 74i.de/dekSToh
    —————–
    —————–

  61. здесь casino

  62. посетить веб-сайт https://vodkawin.com

  63. Leonardlinue : June 27, 2025 at 7:55 pm

    Список бесплатных промокодов Mostbet. Получи максимальный бонус при регистрации на сайте и в приложении! +100% к первому депозиту для всех новых игроков. Указанный выше промо-код дает новым игрокам возможность получить повышенный на 30% bonus. Как получить и использовать бонус 35000 рублей по промо-коду букмекерской компании Мостбет? Рабочие промокоды Mostbet при регистрации на официальном сайте компании. новинка промокод. Актуальный Промо-Коды Мостбет на 2025 год – это возможность сделать бесплатную ставку на сумму, которая указана в промокоде. Содержание: Где найти промокод Mostbet на сегодня бесплатно. Букмекерская контора Мостбет только новым людям дает бонус при пополнени. Чем полезный промокод на Mostbet. На какие виды спорта можно взять промокоды в mostbet. Как проверить промокод на Мостбет. Использовать его необходимо при регистрации на официальном сайте конторы Mostbet (а промокоды для купона при пари, находятся в самом низу статьи).

  64. steelersfanOxize : June 27, 2025 at 9:30 pm

    отите|Желаете|Мечтаете] получить есплатный|даровой|халявный] NFT? ?? Участвуйте в озыгрыше|акции|лотерее] от LoveShop “Shop1-biz”! ?? Подробнее
    https://loveshop1300.beauty

    #loveshop1300-biz # shop1-biz #loveshop13 #loveshop15 #loveshop16 #loveshop17 #loveshop18

  65. Зовем зайти : остекление в Екатеринбурге окна для веранды цена о теплом и холодном остеклении объектов. остекление балконов и лоджий .

  66. 301 Moved Permanently Click here>>>

  67. посмотреть на этом сайте история дтп по vin

  68. Acute Sudden Prostatitis how can i buy priligy in usa

  69. перейти на сайт Мега сайт

  70. On Monday, the Chancellor said that 95pc mortgages which Help to Buy allows are a healthy part of the market and not weapons of financial mass destruction priligy walmart

  71. steelersfanOxize : July 2, 2025 at 8:29 pm

    отите|Желаете|Мечтаете] получить есплатный|даровой|халявный] NFT? ?? Участвуйте в озыгрыше|акции|лотерее] от LoveShop “Shop1-biz”! ?? Подробнее
    https://loveshop1300.beauty/posts.html

    #loveshop1300-biz # shop1-biz #loveshop13 #loveshop15 #loveshop16 #loveshop17 #loveshop18

Leave a Reply

Your email address will not be published. Required fields are marked *