6 November 2024

Hackers disable tracking for UK prison vans and courier fleets


Hackers disable tracking for UK prison vans and courier fleets

Telematics giant Microlise has suffered a cyberattack that has disrupted critical tracking systems, impacting prison transport and courier services across the UK.

The breach has affected tracking software provided to outsourcing company Serco, which utilizes the technology to monitor prisoner movements and ensure employee safety. The attack temporarily disabled panic alarms and tracking in Serco’s prison vans, which transport detainees under the Ministry of Justice’s oversight, as well as tracking services for logistics provider DHL’s delivery fleet.

The software disruption was confirmed last week when Microlise informed the London Stock Exchange of the incident. While the company initially refrained from specifying customer impact, it issued an update on Wednesday, revealing that attackers may have accessed some employee data, although customer systems remain uncompromised.

“Investigations into the incident are continuing, however, the Company is confident that no customer systems data has been compromised. The investigations to date have identified that some limited employee data has been impacted by the incident,” the company wrote.

Serco, one of Microlise’s key clients, was forced to implement emergency contingency measures, advising staff to check in with dispatch centers every 30 minutes and use traditional navigation methods, including paper maps.

The contingency plan also requires mobile devices to stay charged in case of emergency needs. Serco personnel were notified that vehicle tracking, panic alarms, navigation, and estimated arrival notifications were disabled due to the attack.

Microlise said that the efforts to restore services are ongoing, with full functionality expected to resume by the end of next week.


Back to the list

Latest Posts

Threat actors abuse DocuSign’s Envelopes API to mass-distribute fake invoices

Threat actors abuse DocuSign’s Envelopes API to mass-distribute fake invoices

By leveraging a legitimate platform attackers bypass traditional email security defenses.
6 November 2024
VEILDrive threat actors exploit Microsoft services in novel C2 campaign

VEILDrive threat actors exploit Microsoft services in novel C2 campaign

The campaign, suspected to be of Russian origin, has been active since early August 2024 and remains ongoing.
6 November 2024
Hackers disable tracking for UK prison vans and courier fleets

Hackers disable tracking for UK prison vans and courier fleets

The breach has affected tracking software provided to outsourcing company Serco used to monitor prisoner movements.
6 November 2024