← CMA CGM

2020 CMA CGM — Ragnar Locker ransomware; bookings outage and suspected customer data exposure

2020 Unknown records affected Share on X

Data compromised

Actor-claimed customer contact and employer metadata; corporate statements used cautious 'suspected breach' language

Technical writeup

French container liner CMA CGM took core booking and agency interfaces offline after a September 2020 intrusion widely attributed to Ragnar Locker, telling Reuters and Supply Chain Dive it suspected parallel data exposure while rebuilding connectivity from segmented backups. Maritime trade coverage cited criminal claims of hundreds of thousands of customer contact rows amid operational recovery.

Root cause

Ransomware encryption and extortion against corporate IT (per Reuters and specialty maritime summaries)

References