Honda Rebounds From Cyber Attack; So, What Happened?

Matt Posky
by Matt Posky

Struck by a cyber attack on its global computer network that temporarily knocked out a few factories and most of its customer service centers, Honda is reporting that things are gradually returning to normal.

“Work is being undertaken to minimize the impact and to restore full functionality of production, sales and development activities,” the company said in a statement earlier this week.

Impacted facilities are supposedly already in decent shape, and the business hopes to move past this in short order. But what actually happened?

According to the informed nerds at Tech Crunch, Honda was made subject to “Snake ransomware.” The file-encrypting malware basically jumbles all the data on a network (or access to it) so it cannot be used by its owner and can be rescinded after the criminals are paid off — usually with digital currencies. Honda said that it doesn’t believe any files were pulled but its network had been held for ransom by unsavory actors. It also admitted that it didn’t have all the answers just yet.

Factories, including the plant in Marysville, Ohio, are said to be resuming operations today or tomorrow. Customer service is still reporting issues, however. There are also lingering concerns from experts that the corporation could be vulnerable to subsequent attacks until a rigorous investigation has been completed.

From Tech Crunch:

Brett Callow, a threat analyst at security firm Emsisoft, said a sample of the file-encrypting malware was uploaded to VirusTotal, a malware analysis service, referencing an internal Honda subdomain, mds.honda.com.

“The ransomware will only encrypt files on systems capable of resolving this domain but, as the domain does not exist on the clear net, most systems would not be able to resolve it. mds.honda.com may well exist on the internal nameserver used by Honda’s intranet, so this is a fairly solid indicator that Honda was indeed hit by Snake,” said Callow.

Honda finds itself in similar company to IT giant Cognizant, cyber insurer Chubb, and defense contractor CPI, all of which were hit by ransomware this year.

Honda was hit with ransomware before, in 2017 — along with Renault, Nissan, Dacia and a bunch of other companies we don’t care about because they don’t build cars. It’s no stranger to digital shenanigans. But the aforementioned WannaCry attacks haven’t made it invulnerable to similar intrusions. Likewise, a lot of the more recent cyber attacks are presumed to have state backing due to their increasing levels of complexity. We don’t envy corporations having to contend with these attacks, least of all now that they seem to be coded by professionals.

Honda hasn’t mentioned what was lost in the attack, or even if it caved to the demands. For what it’s worth, it did say that there was “no current evidence of loss of personally identifiable information” and that most facilities are already operational. Let’s hope it stays that way.

[Image: Anastasiia Moiseieva/Shutterstock]

Matt Posky
Matt Posky

A staunch consumer advocate tracking industry trends and regulation. Before joining TTAC, Matt spent a decade working for marketing and research firms based in NYC. Clients included several of the world’s largest automakers, global tire brands, and aftermarket part suppliers. Dissatisfied with the corporate world and resentful of having to wear suits everyday, he pivoted to writing about cars. Since then, that man has become an ardent supporter of the right-to-repair movement, been interviewed on the auto industry by national radio broadcasts, driven more rental cars than anyone ever should, participated in amateur rallying events, and received the requisite minimum training as sanctioned by the SCCA. Handy with a wrench, Matt grew up surrounded by Detroit auto workers and managed to get a pizza delivery job before he was legally eligible. He later found himself driving box trucks through Manhattan, guaranteeing future sympathy for actual truckers. He continues to conduct research pertaining to the automotive sector as an independent contractor and has since moved back to his native Michigan, closer to where the cars are born. A contrarian, Matt claims to prefer understeer — stating that front and all-wheel drive vehicles cater best to his driving style.

More by Matt Posky

Comments
Join the conversation
 13 comments
  • Sgeffe Sgeffe on Jun 11, 2020

    Good to know they’re getting back to normal. (Well, whatever “normal” is in the COVID-19 era!) Even as a Systems Analyst, I’d need help if I fell for one of these! More to the point here, I couldn’t correct the problem of my own Accord! ;-)

  • Brn Brn on Jun 11, 2020

    I find it interesting that we don't work harder to locate and punish those responsible for stuff like this. Their crimes are large, destructive, and intentional.

    • See 5 previous
    • Lorenzo Lorenzo on Jun 13, 2020

      @sgeffe That's just normal commerce - asking about your avatar. They scan the net for any kind of hook to get you to buy something. I just searched for the history of John Bell Hood, the Confederate general Fort Hood was named after, and I got a pop-up offering more info about him, from a publishing company! That's not a sinister cyber-attack, it's just online business, with an assist from Google, suctioning any data from users they can sell.

  • SCE to AUX "...it’s unclear how Ford plans to reach profitability with cheaper vehicles, as it’s slowed investments in new factories and other related areas"Exactly. They need to show us their Gigafactories that will support the high-demand affordable EV volume.
  • 1995 SC I have a "Hooptie" EV. Affordable would be a step up.
  • Buickman if they name it "Recall" there will already be Brand Awareness!
  • 1995 SC I wish they'd give us a non turbo version of this motor in a more basic package. Inline Sixes in trucks = Good. Turbos that give me gobs of power that I don't need, extra complexity and swill fuel = Bad.What I need is an LV1 (4.3 LT based V6) in a Colorado.
  • 1995 SC I wish them the best. Based on the cluster that is Ford Motor Company at the moment and past efforts by others at this I am not optimistic. I wish they would focus on straigtening out the Myriad of issues with their core products first.
Next