2020 CMA CGM — Ragnar Locker ransomware; bookings outage and suspected customer data exposure
Data compromised
Actor-claimed customer contact and employer metadata; corporate statements used cautious 'suspected breach' language
Technical writeup
French container liner CMA CGM took core booking and agency interfaces offline after a September 2020 intrusion widely attributed to Ragnar Locker, telling Reuters and Supply Chain Dive it suspected parallel data exposure while rebuilding connectivity from segmented backups. Maritime trade coverage cited criminal claims of hundreds of thousands of customer contact rows amid operational recovery.
Root cause
Ransomware encryption and extortion against corporate IT (per Reuters and specialty maritime summaries)