Intruders attempt to psychologically manipulate employees and contractors to obtain confidential information.
Public transportation offices are witnessing a surge in social engineering cyberattacks, where intruders attempt to psychologically manipulate employees and contractors to gain confidential information. During a roundtable at the annual Transportation Research Board meeting on January 8, experts shared examples of these sophisticated attacks.
The Port Authority of New York and New Jersey has been particularly susceptible, with cybercriminals exploiting the “human fallibilities and vulnerabilities” of its employees, according to Josh DeFlorio, Chief of Resilience and Sustainability at the Port Authority.
In social engineering cyberattacks, digital criminals leverage their social skills to engage with specific organizational staff, aiming to obtain confidential information or access their computer systems. Jennifer DeBruhl from the Department of Rail and Public Transportation in Virginia recounted a successful attack that led to a statewide system outage lasting six months.
Cordell Schachter, Chief Information Officer of the United States Department of Transportation (USDOT), emphasized the importance of preventive measures, such as multi-factor authentication and system segmentation. He recommended a cybersecurity self-assessment and contacting the FBI or the Cybersecurity and Infrastructure Security Agency (CISA) in case of an attack. “Everyone should undergo a cybersecurity self-assessment to help us understand our current risks and report our plans to remedy them,” stated Schachter.

The US DOT combats these threats through monthly phishing tests for employees, reducing the click-through rate from 20% to 4%. Schachter underscored the immediate replacement of default passwords and basic cyber hygiene practices.
Effective strategies include flagging internal emails with red banners and integrating cybersecurity into the DOT’s strategic plan. Furthermore, the DOT collaborates with the Department of Homeland Security on risk management for the transportation systems sector to safeguard the national transportation network from cyberattacks. CISA provides online resources to counteract these threats.

Halloween activities for truck drivers: take the fun on the road
To celebrate this holiday safely while keeping the fun alive, we’ve put together a list of activities truck drivers can do to embrace the spirit

Secretary Duffy unveils new measures to strengthen trucking safety and compliance
In a press conference, Duffy pledged federal effort to eliminate fraud and improve trucking safety standards. On the morning of October 31, U.S. Secretary of

Rain and Early Snowfall: Weather Alert Issued for U.S. Highways This Weekend
Rain and early snowfall are prompting a weather alert for U.S. highways this weekend, with heavy storms expected across the South and early-season snow developing over the Rockies and Northern Plains.

Truck classification: a guide to the world of road transport
Understanding the vehicles we share the road with allows us to better appreciate the work and responsibility of those behind the wheel. Let’s talk truck

The highly anticipated Tesla Semi gears up for its official arrival in 2026
Following the release of Tesla’s third-quarter 2025 financial results, the company confirmed that the Tesla Semi is getting closer to its official debut. One of

Road Safety During Halloween: A Key Guide for Professional Drivers in the U.S.
Road safety during Halloween is a priority for professional drivers in the United States, especially with increased pedestrian activity, evening events, and changing weather conditions. This article outlines the risks and best practices for driving safely during this holiday period.