← Petrofac

2018 Petrofac — malware-driven IT breach across Middle East footprint (limited Aberdeen spillover)

2018 Unknown records affected Share on X

Data compromised

Operational IT disruption—public sources stressed containment over consumer-scale PII accounting

Technical writeup

UK-listed oilfield services contractor Petrofac told Energy Voice and Middle East trade reporters it had contained a December 2018 information-security event traced to a new malware variant concentrated on Middle East back-office servers with narrow Aberdeen impact—following industry headlines comparing timing to the Shamoon-style wave hitting Saipem days earlier. Corporate statements emphasized isolated systems and, in initial reporting, no confirmed project-site outage or exfiltration quantification.

Root cause

Novel malware variant on corporate IT (vendor-characterized 'new variant of known malware')

References