Report: Russian criminal group may be responsible for Colonial Pipeline ransomware attack

A Colonial Pipeline facility in Linden, New Jersey.

A relatively new Russian criminal organization known as DarkSide may be behind the recent ransomware attack against the Colonial Pipeline, two sources familiar with the matter told NBC News on Sunday.

Operated by the Georgia-based Colonial Pipeline Co., the Colonial Pipeline runs from Texas to New Jersey, transporting 45 percent of the East Coast's fuel supply. It was shut down on Friday after Colonial Pipeline learned it was the target of a ransomware attack, and on Sunday, the company said its main lines are still not operating and the full system will be "back online only when we believe it is safe to do so, and in full compliance with the approval of all federal regulations."

Subscribe to The Week

Escape your echo chamber. Get the facts behind the news, plus analysis from multiple perspectives.

SUBSCRIBE & SAVE
https://cdn.mos.cms.futurecdn.net/flexiimages/jacafc5zvs1692883516.jpg

Sign up for The Week's Free Newsletters

From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.

From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.

Sign up
Explore More
Catherine Garcia, The Week US

Catherine Garcia has worked as a senior writer at The Week since 2014. Her writing and reporting have appeared in Entertainment Weekly, The New York Times, Wirecutter, NBC News and "The Book of Jezebel," among others. She's a graduate of the University of Redlands and the Columbia University Graduate School of Journalism.