CMA CGM Company Cyber Security Posture

cma-cgm.com

The CMA CGM Group is a global player in sea, land, air and logistics solutions. Present in 160 countries, it employs 160,000 people, of which nearly 6,000 in Marseille where its head office is located. The world's 3rd largest shipping company, CMA CGM serves more than 420 ports across 5 continents with a fleet of over 650 vessels. In 2024, CMA CGM carried over 23 million TEU (twenty-foot equivalent unit) containers. Its subsidiary CEVA Logistics, one of the world's top five players, operates 1,000 warehouses and handled 15 million shipments in 2024. CMA CGM AIR CARGO, the Group's air freight division, will operate a fleet of 6 cargo aircraft by 2025. CMA Media, France's 3rd largest private media group, includes RMC-BFM and several national and regional press titles (La Tribune Dimanche, La Tribune, La Provence and Corse Matin). Committed to energy transition, the CMA CGM Group is aiming for Net Zero Carbon by 2050. The CMA CGM Foundation provides humanitarian aid in crisis situations, and is committed to education for all and equal opportunities throughout the world. To date, the CMA CGM Foundation has transported 63,000 tons of humanitarian aid to 97 countries and supported over 550 educational projects.

CMA CGM Company Details

Linkedin ID:

cma-cgm

Employees number:

27688 employees

Number of followers:

1280306.0

NAICS:

none

Industry Type:

Transportation, Logistics, Supply Chain and Storage

Homepage:

cma-cgm.com

IP Addresses:

Scan still pending

Company ID:

CMA_3883102

Scan Status:

In-progress

AI scoreCMA CGM Risk Score (AI oriented)

Between 200 and 800

This score is AI-generated and less favored by cyber insurers, who prefer the TPRM score.

globalscoreCMA CGM Global Score
blurone
Ailogo

CMA CGM Company Scoring based on AI Models

Model NameDateDescriptionCurrent Score DifferenceScore
AVERAGE-Industry03-12-2025

This score represents the average cybersecurity rating of companies already scanned within the same industry. It provides a benchmark to compare an individual company's security posture against its industry peers.

N/A

Between 200 and 800

CMA CGM Company Cyber Security News & History

Past Incidents
2
Attack Types
2
EntityTypeSeverityImpactSeenUrl IDDetailsView
CMA CGMData Leak50209/2021CMA213413123Link
Rankiteo Explanation :
Attack limited on finance or reputation

Description: CMA CGM was hit by another cyber attack in September 2021, just under one year since its last big breach. The French container line suffered a leak of data on limited customer information involving first and last names, employers, positions, email addresses and phone numbers. Its IT teams however have immediately developed and installed security patches. CMA CGM advised clients not to share their account passwords or any personal information and asked them to check the authenticity of an email requesting to log in to the carrierโ€™s platforms, especially if requested to reset a password.

CMA CGMRansomware100509/2020CMA195410222Link
Rankiteo Explanation :
Attack threatening the organization's existence

Description: French carrier company CMA CGM was attacked by the Ragnar Locker ransomware. They had to shut down its network to prevent the spread of malware. The attackers asked the firm to contact them via live chat and pay for the special decryption key to restore their systems.

CMA CGM Company Subsidiaries

SubsidiaryImage

The CMA CGM Group is a global player in sea, land, air and logistics solutions. Present in 160 countries, it employs 160,000 people, of which nearly 6,000 in Marseille where its head office is located. The world's 3rd largest shipping company, CMA CGM serves more than 420 ports across 5 continents with a fleet of over 650 vessels. In 2024, CMA CGM carried over 23 million TEU (twenty-foot equivalent unit) containers. Its subsidiary CEVA Logistics, one of the world's top five players, operates 1,000 warehouses and handled 15 million shipments in 2024. CMA CGM AIR CARGO, the Group's air freight division, will operate a fleet of 6 cargo aircraft by 2025. CMA Media, France's 3rd largest private media group, includes RMC-BFM and several national and regional press titles (La Tribune Dimanche, La Tribune, La Provence and Corse Matin). Committed to energy transition, the CMA CGM Group is aiming for Net Zero Carbon by 2050. The CMA CGM Foundation provides humanitarian aid in crisis situations, and is committed to education for all and equal opportunities throughout the world. To date, the CMA CGM Foundation has transported 63,000 tons of humanitarian aid to 97 countries and supported over 550 educational projects.

Loading...

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=cma-cgm' -H 'apikey: YOUR_API_KEY_HERE'
newsone

CMA CGM Cyber Security News

2025-01-28T08:00:00.000Z
France CMA CGM rings the changes among its security chiefs

The ousting of the director of France's Tracfin anti-money laundering unit comes amid manoeuvring to reorganise intelligence gathering at theย ...

2025-03-18T07:00:00.000Z
MPA and CMA CGM Sign New Fuels MoU

The collaboration aims to strengthen the maritime innovation ecosystem in Singapore by fostering close ties between CMA CGM Group's entities,ย ...

2025-04-25T07:00:00.000Z
MPA and CMA CGM Renew Partnership to Advance Sustainable Shipping and Digital Innovation in Singapore

Innovation: The partnership aims to strengthen Singapore's maritime innovation ecosystem by fostering closer ties between CMA CGM Group entitiesย ...

2024-08-28T15:09:09.000Z
What can be done to repel cyber attacks on shipping?

SHIPPING is learning that it is just as vulnerable to cyber attacks as other big industries. The four biggest container lines have all experienced such events,ย ...

2024-08-15T07:00:00.000Z
The Importance of Cybersecurity in Maritime Operations: Protecting Ships and Data

The maritime industry, an essential cog in the wheel of global trade and commerce, has undergone rapid digital transformation over the pastย ...

2021-09-21T07:00:00.000Z
CMA CGM reports another cyberattack targeting customer data

French container shipping company CMA CGM has been subject to another cyberattack, which is said to have compromised limited customer data.

2023-04-20T09:12:09.000Z
News Content Hub - CMA CGM reports data breach in cyber attack

French container shipping giant CMA CGM may have been the target of a cyber attack for the second time in the last 12 months.

2021-09-20T07:00:00.000Z
News CMA CGM data hack leaves confused customers in the dark

Confusion reigned among the customers of French carrier CMA CGM, as hackers wrote to media organisations claiming to have accessed customerย ...

2024-04-20T16:45:11.000Z
CMA CGM Data Security

The parent company of CEVA Logistics, CMA CGM, recently detected a leak of customer contact information related to some of its mobile apps.

similarCompanies

CMA CGM Similar Companies

Blue Bird Group

From taxi, containers and heavy equipments, to logistics, Blue Bird Group is a holding group that is ready to cater to all your needs. To many citizens of Jakarta and many other big cities in Indonesia, Blue Bird Group isnโ€šร„รดt just a taxi company, but a part of their lifestyle. By serving millio

Aramex

Founded in 1982, Aramex has emerged as a global leader in logistics and transportation, renowned for its innovative services tailored to businesses and consumers. As a listed company on the Dubai Financial Market (since 2005) and headquartered in the UAE, our strategic location facilitates extensive

PT Pos Indonesia (Persero)

Pos Indonesia is an Indonesian state-owned company (BUMN) engaged in postal services. Pos Indonesia was appointed by the government to be the national logistics platform for its wide and comprehensive network that spreads throughout Indonesia. Pos Indonesia was established in Jakarta on August 26,

Rhenus Logistics

The Rhenus Group is one of the leading logistics specialists with global business operations and annual turnover amounting to EUR 7.5 billion. 40,000 employees work at 1,320 business sites in more than 70 countries and develop innovative solutions along the complete supply chain. Whether providing t

PWC Logistics

PWC Logistics was a global logistics and supply chain management company headquartered in Dubai, United Arab Emirates. The company has a presence in over 80 countries, with a workforce of more than 14,000 employees worldwide. PWC Logistics offers a wide range of logistics services, including transpo

PostNL

Welcome! We are PostNL. Your favorite delivery service is what we want to be. Every day, over 35,000 colleagues work hard to achieve this goal, on your streets and in your neighborhood, in our sorting centers and depots, and at the office. On an average day, we deliver about 1.1 million packages and

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

CMA CGM CyberSecurity History Information

How many cyber incidents has CMA CGM faced?

Total Incidents: According to Rankiteo, CMA CGM has faced 2 incidents in the past.

What types of cybersecurity incidents have occurred at CMA CGM?

Incident Types: The types of cybersecurity incidents that have occurred incidents Ransomware and Data Leak.

How does CMA CGM detect and respond to cybersecurity incidents?

Detection and Response: The company detects and responds to cybersecurity incidents through containment measures with Developed and installed security patches and remediation measures with Advised clients not to share account passwords or personal information, Asked clients to check the authenticity of emails requesting login or password reset and containment measures with Network shutdown.

Incident Details

Can you provide details on each incident?

Incident : Data Leak

Title: CMA CGM Data Leak

Description: CMA CGM experienced a data leak in September 2021, resulting in the exposure of limited customer information including first and last names, employers, positions, email addresses, and phone numbers. IT teams quickly developed and installed security patches to mitigate the impact.

Date Detected: September 2021

Type: Data Leak

Incident : Ransomware

Title: CMA CGM Ragnar Locker Ransomware Attack

Description: French carrier company CMA CGM was attacked by the Ragnar Locker ransomware. They had to shut down its network to prevent the spread of malware. The attackers asked the firm to contact them via live chat and pay for the special decryption key to restore their systems.

Type: Ransomware

Motivation: Financial

What are the most common types of attacks the company has faced?

Common Attack Types: The most common types of attacks the company has faced is Data Leak.

Impact of the Incidents

What was the impact of each incident?

Incident : Data Leak CMA213413123

Data Compromised: First and last names, Employers, Positions, Email addresses, Phone numbers

Incident : Ransomware CMA195410222

Systems Affected: Network

Operational Impact: Network shutdown

What types of data are most commonly compromised in incidents?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are PII.

Which entities were affected by each incident?

Incident : Data Leak CMA213413123

Entity Type: Company

Industry: Shipping

Location: France

Incident : Ransomware CMA195410222

Entity Type: Carrier Company

Industry: Transportation

Location: France

Response to the Incidents

What measures were taken in response to each incident?

Incident : Data Leak CMA213413123

Containment Measures: Developed and installed security patches

Remediation Measures: Advised clients not to share account passwords or personal information, Asked clients to check the authenticity of emails requesting login or password reset

Incident : Ransomware CMA195410222

Containment Measures: Network shutdown

Data Breach Information

What type of data was compromised in each breach?

Incident : Data Leak CMA213413123

Type of Data Compromised: PII

Sensitivity of Data: Moderate

Personally Identifiable Information: First and last names, Employers, Positions, Email addresses, Phone numbers

What measures does the company take to prevent data exfiltration?

Prevention of Data Exfiltration: The company takes the following measures to prevent data exfiltration: Advised clients not to share account passwords or personal information, Asked clients to check the authenticity of emails requesting login or password reset.

How does the company handle incidents involving personally identifiable information (PII)?

Handling of PII Incidents: The company handles incidents involving personally identifiable information (PII) through were Developed and installed security patches and Network shutdown.

Ransomware Information

Was ransomware involved in any of the incidents?

Incident : Ransomware CMA195410222

Ransomware Strain: Ragnar Locker

Stakeholder and Customer Advisories

Were there any advisories issued to stakeholders or customers for each incident?

Incident : Data Leak CMA213413123

Customer Advisories: Advised clients not to share account passwords or personal information, Asked clients to check the authenticity of emails requesting login or password reset

What advisories does the company provide to stakeholders and customers following an incident?

Advisories Provided: The company provides the following advisories to stakeholders and customers following an incident: were Advised clients not to share account passwords or personal information and Asked clients to check the authenticity of emails requesting login or password reset.

Additional Questions

Incident Details

What was the most recent incident detected?

Most Recent Incident Detected: The most recent incident detected was on September 2021.

Impact of the Incidents

What was the most significant data compromised in an incident?

Most Significant Data Compromised: The most significant data compromised in an incident were First and last names, Employers, Positions, Email addresses and Phone numbers.

What was the most significant system affected in an incident?

Most Significant System Affected: The most significant system affected in an incident was Network.

Response to the Incidents

What containment measures were taken in the most recent incident?

Containment Measures in Most Recent Incident: The containment measures taken in the most recent incident were Developed and installed security patches and Network shutdown.

Data Breach Information

What was the most sensitive data compromised in a breach?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were First and last names, Employers, Positions, Email addresses and Phone numbers.

Stakeholder and Customer Advisories

What was the most recent customer advisory issued?

Most Recent Customer Advisory: The most recent customer advisory issued was were an Advised clients not to share account passwords or personal information and Asked clients to check the authenticity of emails requesting login or password reset.

What Do We Measure?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge