• Skip to primary navigation
  • Skip to main content
  • Skip to footer
Logo of Agilient Security Consultants, Australia

Agilient Security Consultants Australia

The Best Security Consultants

Menu
  • Industries
      • Aviation and Airport Security Consultants Australia
      • Defence Industry Security Consulting
      • Government Security Consulting
      • Healthcare & Hospitals Security Consulting
      • Corrections and Detention
      • Maritime Security Consultant
      • Aged Care Facilities
      • Mining, Oil & Gas
      • Public Venues & Events
      • Rail
      • School and Education Security Consultant
      • Telecommunications Security Consultant
      • Utilities
      • Places of Faith and Worship
    • advice-colleagues-communication-newIndustries
  • Services
      • Cybersecurity Consultants
      • Protective Security
      • Business Resilience
      • Building Security Consultants
      • Security Audits
      • Cyber Audits
      • Data
      • Pandemic Planning
      • Azure
      • Electronic Security
      • IT Disaster Recovery Planning
      • Business Continuity Consultants
      • Identity Theft Consultant​
      • Security Consultants
      • Security Camera and CCTV Consultant
      • ISO
      • Duress Alarms
      • Cloud
      • AWS
      • Awareness Training
      • Penetration Testing
      • Security Risk Assessment Consultants
      • Managed Security Service Provider
      • Protection against Vehicles as a Weapon
    • training-1Services
  • Locations
    • Security Consultant Melbourne
    • Security Consultant Sydney
    • Security Consultant Brisbane
    • Security Consultant Adelaide
    • Security Consultant Canberra
    • Security Consultant Perth
  • Resources
    • menumanagers-dealing-customer-agreTraining
    • working-together-newJoin The Tribe
    • Webinars_3-1.jpgUpcoming and Past Events
    • hacking-detected-shutterstock_newResources
  • Articles
  • About
    • About Us
      We are an Australian owned and operated security company specialising in risk, cybersecurity, protective security, crisis and business continuity management services.
    • frequently-asked-questions-smallFAQ’s
    • bg-menu-government-institutionsConsultant Registration
  • Contact Us
Contact Us

Garmin Hackers Demand US$10 Million in Ransomware Attack

You are here: Home / General / Garmin Hackers Demand US$10 Million in Ransomware Attack

Early last week it was confirmed that GPS technology company, Garmin, has succumbed to a large-scale cyber-attack that has affected a significant number of their services worldwide, including apps, online services and call centres.

On 23 July, Garmin shut down many of it’s services in response to a ransomware attack that had affected their internal network. Ransomware is a form of malware that, having gained access to a victim’s system, will encrypt as many files as it possibly can, leaving users without their data. The only way to obtain the decryption key is to pay a ransom to the attack actor, who may or may not honour the ransom payment. Garmin Ransomware Attack

The Extent of the Attack

Ransomware has been plaguing the cyber world for a number of years now, as attack actors discover new and effective ways of making money from their victims. It was later confirmed that Garmin had fallen victim to a ransomware strain known as WastedLocker. The hackers in question allegedly demanded a US$10 million ransom from Garmin to regain access to their data. There is speculation that Garmin has since paid this ransom, or come to an agreement with the hackers.

Initially, Garmin had not confirmed that it had been affected by a cyber-attack, but instead shut down their services under the guise of a maintenance period, while they scrambled to prevent further spread of the ransomware. Employees later leaked to media that it had indeed been impacted by a cyber-attack. Reportedly, IT staff shut down all devices hosted in a data centre to prevent the spread, and this resulted in the global outage.

Worldwide Impacts

The affected services impacted staff and users worldwide. Garmin reportedly could not send or receive calls or emails or conduct online chats. Users of their fitness tracking apps could not track any statistics whilst exercising, and pilots were not able to use Garmin’s online aviation systems. However, Garmin has announced that there is no evidence that any personal information was stolen. This week, Garmin have restored the majority of their services and systems.

A Targeted Attack

It is very apparent that this was a targeted attack, and the actors had set their sights on Garmin specifically. It is not yet publicly known how the ransomware actors gained access to Garmin’s systems, or why Garmin was targeted. Many ransomware attacks access target systems through malicious email attachments, or by directing staff to malicious websites via email. Personnel are often seen to be the weakest link in cybersecurity, and malicious actors are constantly exploiting this weakness. Poor cybersecurity awareness and training is directly linked to these weaknesses, and often play a major part in cyber-attacks.

Investing in regular cybersecurity awareness and training drastically reduces the attack surface for email-based and phishing-based ransomware attacks. Agilient specialises in helping organisations improve their cybersecurity awareness, and is able to assist in catering to all business requirements. If you’d like to learn more about how our expert consultants can assist your organisation, contact us today.

Author: Jack Schofield, Agilient Consultant

Tweet
Share

General

Looking for a security partner? Get in touch with Agilient.

Looking for practical and cost-effective security and risk solutions for your government department, agency or company? Speak with Australia’s leading senior security, risk and resilience experts.


Looking for a pandemic planning partner? Get in touch with Agilient.

Looking for practical and cost-effective risk management solutions for your government department, agency or company? Speak with Australia’s leading senior risk and emergency management experts.



Footer

Agilient is a proud member of

Ai Group Defence Council
Australian Industry & Defence Network
Australian Security Industry Association
Sydney Aerospace & Defence Interest Group

Company and Licensing Details:

ABN: 37 157 911 441
NSW Security Master Licence # 410783087
ACT Security Master Licence # 17502184
Vic Security Registration # 878-460-40S
Qld Security Firm Licence # 3834422

Join The Tribe

Sign up to receive our regular Agilient newsletter including the latest security, risk and resilience updates

Sign up now

Copyright © 2025 Agilient – Level 14, 275 Alfred St, North Sydney NSW 2060 Australia – 1300 341 692

Our Services

Security Consultant

Security Consultant Sydney

Security Consultant Melbourne

Security Consultant Canberra
Security Consultant Perth

Security Consultant Adelaide

Security Consultant Brisbane