Intruders attempt to psychologically manipulate employees and contractors to obtain confidential information.
Public transportation offices are witnessing a surge in social engineering cyberattacks, where intruders attempt to psychologically manipulate employees and contractors to gain confidential information. During a roundtable at the annual Transportation Research Board meeting on January 8, experts shared examples of these sophisticated attacks.
The Port Authority of New York and New Jersey has been particularly susceptible, with cybercriminals exploiting the “human fallibilities and vulnerabilities” of its employees, according to Josh DeFlorio, Chief of Resilience and Sustainability at the Port Authority.
In social engineering cyberattacks, digital criminals leverage their social skills to engage with specific organizational staff, aiming to obtain confidential information or access their computer systems. Jennifer DeBruhl from the Department of Rail and Public Transportation in Virginia recounted a successful attack that led to a statewide system outage lasting six months.
Cordell Schachter, Chief Information Officer of the United States Department of Transportation (USDOT), emphasized the importance of preventive measures, such as multi-factor authentication and system segmentation. He recommended a cybersecurity self-assessment and contacting the FBI or the Cybersecurity and Infrastructure Security Agency (CISA) in case of an attack. “Everyone should undergo a cybersecurity self-assessment to help us understand our current risks and report our plans to remedy them,” stated Schachter.

The US DOT combats these threats through monthly phishing tests for employees, reducing the click-through rate from 20% to 4%. Schachter underscored the immediate replacement of default passwords and basic cyber hygiene practices.
Effective strategies include flagging internal emails with red banners and integrating cybersecurity into the DOT’s strategic plan. Furthermore, the DOT collaborates with the Department of Homeland Security on risk management for the transportation systems sector to safeguard the national transportation network from cyberattacks. CISA provides online resources to counteract these threats.

Highway bill under debate: are truckers paying too many taxes?
New highway bill sparks debate: truckers pay nearly 20 times more per mile traveled than the average car owner. Congress is currently working on the

UNFI cyberattack disrupts supply chain nationwide
United Natural Foods faces fallout from a cyberattack impacting Whole Foods. United Natural Foods Inc. (UNFI), the grocery distributor for Whole Foods Market, owned by

Tech Outpaces the Law: Driverless Trucks Roll Out, Insurers Step In
The absence of a clear regulatory framework raises red flags around safety, legal liability, and employment. In this scenario, having a reliable, specialized insurance provider

How work impacts mental well-being in the U.S.
33% of workers believe their job negatively impacts their mental well-being. A recent article in Trucking Drive presents the results of a survey conducted by

In brief: FMCSA grants, GM U.S. investment, and rising diesel prices
The latest transportation updates reflect the current state of the freight industry in the United States. $89.4 Million in grants for the Commercial Driver’s License

Zodiac Drivers: What Your Sign Says About You Behind the Wheel
A fun and cosmic look at driving styles according to your star sign Ever wondered why some people drive like they’re in a Formula 1