Skip to main content

San Francisco transit systems targeted by hackers

San Francisco’s Municipal Transportation System has apparently been targeted by hackers over the Thanksgiving holiday weekend, the agency to shut down its light-rail ticketing machines and point-of-payment systems and allowing passengers to ride for free. Agency computers displayed the message "You Hacked, ALL Data Encrypted", the San Francisco Examiner reported on Saturday. According to the BBC, the hackers have made a ransom demand of 100 Bitcoin, which amounts to about $70,000 (£56,000). Jon Ge
November 28, 2016 Read time: 2 mins
San Francisco’s Municipal Transportation System has apparently been targeted by hackers over the Thanksgiving holiday weekend, the agency to shut down its light-rail ticketing machines and point-of-payment systems and allowing passengers to ride for free.

Agency computers displayed the message "You Hacked, ALL Data Encrypted", the San Francisco Examiner reported on Saturday.

According to the BBC, the hackers have made a ransom demand of 100 Bitcoin, which amounts to about $70,000 (£56,000).

Jon Geater, chief technology officer, Thales e-Security, said: “Cyber-security is not and cannot be a choice between ‘black and white’ or on and off – it’s about making an economic decision. This breach didn't directly take the barriers off line: the operator chose to turn them off and forego revenue, or catching fare cheats, in favour of protecting the wider system and possible further data-losses.

“Customers are likely to recognise this commitment and favour a company actively taking steps to protect its wider data eco-system.  Indeed, recent Thales e-Security research found only 16 per cent of consumers would continue to use a company’s products or services as usual following a breach – highlighting the profound consequences a cyber-breach can have on a company’s trust.”

Mishcon de Reya cyber security lead Joe Hancock commented: "This attack is intended to extort money from the San Francisco Municipal Railway by denying access to ticket machines, e-mail and personnel systems. The hackers have encrypted over 2000 machines and demanded 100 bitcoin, showing this to be a larger scale attack others we have seen - usually it's limited to just a few machines and 1 or 2 bitcoins per system.”

He said that if the ransom is paid, it was possible that other similar attacks would occur. He believes that regulation around anonymous crypto currencies, like bitcoin, may now become a priority: removing the ability to receive anonymous payments will stop many of these criminal attacks, and should be a focus for government.

San Francisco’s Municipal Transportation System spokesman Paul Rose told the San Francisco Chronicle that there was no indication of any impact to customers and the agency was carrying out a full investigation. The system was said to be restored by Sunday morning, but the agency did not say how the situation was resolved.

Related Content

  • Shailen Bhatt: 'We want to save lives with connectivity by accelerating V2X deployment'
    December 11, 2023
    US government money is available for Vehicle to Everything roll-outs. FHWA's Shailen Bhatt talks to Adam Hill about changing the narrative on road safety - and the importance of deploying technology at scale
  • Visa and the power of mass transit transactions
    April 22, 2020
    Contactless payment is the hidden power behind efficient public transportation. Visa’s Ana Reiley tells Adam Hill why buying a latte should be a model for frictionless ticketing 
  • Sony helps Rio get a better view of the Olympics
    June 29, 2016
    With the Olympics approaching, Sony’s Stephane Clauss examines how the latest camera technologies can help cities cope with the huge crowds attending major events. This August will see more than 10,000 athletes head to Rio de Janeiro for the Olympics Games. Alongside them will be their coaching staff, a hoard of logistics teams, thousands of volunteer marshals (London 2012 had 70,000) and millions of spectators. All such major events have nervous jitters on the way to the opening ceremony. This year has see
  • Terrestrial solution to stellar shortcomings
    December 5, 2013
    Inherent weaknesses in satellite communications are leading several countries to re-evaluate terrestrial-based backup systems. There is a tale frequently told in satellite navigation circles, of how landing systems at Newark Airport were disrupted by a truck driver using GPS jamming equipment as he drove along the New Jersey Turnpike. While there was no threat to flight safety as the interference to GPS reference stations being tested, the story highlights how apparently benign threats have the potential t