In 2019 Norsk Hydro was hit by LockerGoga ransomware and its aluminum plants kept running in a degraded way. What made that possible?
- A.Teams fell back to manual operating procedures on the lines
- B.Payment of the ransom within the first hour of discovery
- C.A parallel clean control network held in cold standby
- D.Cloud failover of the plant controllers to a vendor site
Why A is correct
Hydro isolated its networks and operated many lines manually, which kept output going at reduced efficiency. The company declined to pay, and no clean standby network or cloud failover was involved.
Know someone studying for OT Security Fundamentals? Send them this one.