News

Ontario’s Metrolinx targeted by North Korean cyberattack

North Korea has been implicated in recent hacks, including the WannaCry ransomware attack

Screenshot of live cyber attack tracking throughout the world. (FireEye)

TORONTO — Ontario transit agency Metrolinx says it was the target of a cyberattack that originated in North Korea, but no personal information was compromised and systems that operate its trains and buses were not affected.

Spokeswoman Anne Marie Aikins said Tuesday that the cyberattack happened recently, but would not give a date or what specifically was targeted because of security concerns.

“The incident is over, but the investigation of it and the action that we take continues to ensure we continue to protect all of our systems,” she said.

READ: 2018 will be the year of cyberwar

Metrolinx is a Crown corporation that manages transportation services for the Toronto and Hamilton area.

North Korea has been implicated in recent hacks, including the WannaCry ransomware attack that infected hundreds of thousands of computers worldwide and crippled parts of Britain’s National Health Service in May.

U.S. Homeland security adviser Tom Bossert wrote in a Wall Street Journal op-ed last month that North Korea was “directly responsible” for the WannaCry ransomware attack and that Pyongyang would be held accountable for it.

Bossert said the U.S. administration’s finding of responsibility is based on evidence and confirmed by other governments and private companies, including the U.K. and Microsoft.

READ: The world needs a digital Geneva Convention to fight cyber attacks

American officials have also said that North Korea is responsible for the Sony cyberattack in 2014 that dumped personal information of tens of thousands of current and former workers online.

North Korea has denied involvement in both cases.

— With files from The Associated Press

Looking for more?

Get the Best of Maclean's sent straight to your inbox. Sign up for news, commentary and analysis.