---
title: "Norsk Hydro Ransomware Attack"
canonical: "https://www.virtcloudrocks.com/space/INFOSEC/blog/852307/Norsk%20Hydro%20Ransomware%20Attack"
format: markdown
---
Norwegian metals and energy giant Norsk Hydro, one of the world’s biggest aluminum producers, was hit by a ransomware attack that has impacted operations, forcing the company to resort to manual processes.

In a press conference on Tuesday, Norsk Hydro representatives revealed that the attack, which they described as extensive, started on Monday at around midnight, Norway time, when the company’s security team noticed some unusual activity on its global network. They said the ransomware is designed to encrypt files, but they have yet to determine exactly which malware family it belongs to.

Norway’s national CERT, NorCERT, reported that the attack was powered by a relatively new piece of ransomware named LockerGoga and that it may have also involved an attack on the company’s Active Directory system. [NorCERT has warned](https://www.nrk.no/norge/skreddersydd-dobbeltangrep-mot-hydro-1.14480202) other Norwegian companies about the attack.

  


**<u>Sources</u>**: 

> Macro (ui-button)



> Macro (ui-button)