Maritime Computer Emergency Response Team ADMIRAL dataset ADMIRAL dataset

Publicly disclosed information for this event

Index Number:
Multiple Business Email Compromises (BEC) targeting South Korea and Japan.
Day Month Year Country Activity Incident Type
01 January 2017 Korea, Republic of Shipowner Spearphishing


Multiple Business Email Compromises (BEC) targeting South Korea and Japan.



Claimed/Reported Threat Actor

Gold Galleon



Main impact



Recommendations to Shipowner to reduce Spearphishing risks:

  • Implement advanced email filtering systems to detect and block spearphishing emails.
  • Educate employees about the dangers of spearphishing and how to identify suspicious emails.
  • Enforce strict email access controls and authentication measures.
  • Implement organizational measures to avoid scam.
  • Limit the use of social networks or unallowed medias for profesionnal activities.
  • Monitor for unusual email activity, such as unexpected login attempts.
  • Work with your CSIRT organization to know the Tactics, Techniques and Procedures used.
Previous Next
Disclaimer: the data are provided as is. France Cyber Maritime and the M-CERT take no responsibility for the soundness, quality, precision, nor the eventual attribution made by the referenced URLs. We give a lot of respect and support to the victims of attacks. Yes, there are no common and shared incident IDs in cyber (for now!).
Files generated on Thursday, 02nd November 2023.
ADMIRAL is licensed under the Creative Commons CC-BY-NC license. Copyright © France Cyber Maritime 2023.