Serangan Ransomware terhadap Infrastruktur Energi di Amerika Serikat Studi Kasus Colonial Pipeline Ransomware Attack

Author


Andrew Bezaliel Tamba(1Mail),
(1) Ilmu Hubungan Internasional Fakultas Ilmu Sosial Dan Ilmu Politik, Universitas Hasanuddin, Indonesia

Mail Corresponding Author
Article Analytic
  [File Size: 313KB]  Language: en
Available online: 2026-06-24  |  Published : 2026-06-24
Copyright (c) 2026 Andrew Bezaliel Tamba
Article can trace at:

Article Metrics

Abstract Views: 37 times PDF Downloaded: 8 times

Abstract


This thesis analyzes the impact of and the United States response to ransomware attacks targeting critical energy infrastructure through a case study of the ransomware attack on Colonial Pipeline in May 2021. The cyberattack, carried out by the DarkSide hacking group, forced the shutdown of the largest fuel pipeline network in the United States, which supplies approximately 45 percent of the fuel consumed along the East Coast. This study employs a qualitative case study methodology and content analysis approach to examine cybersecurity vulnerabilities within energy infrastructure and the strategies adopted by the U.S. government in addressing such threats. The findings indicate that the Colonial Pipeline ransomware attack not only disrupted company operations but also triggered fuel shortages, public panic, and significant economic consequences. Using cybersecurity and national security perspectives, the analysis demonstrates that attacks on critical infrastructure have evolved into strategic threats capable of affecting both economic stability and national security. The United States government responded through stronger public-private sector cooperation, enhanced national cybersecurity policies, and law enforcement measures that successfully recovered part of the ransom payment made to the attackers. This study concludes that the Colonial Pipeline incident marked a significant turning point in U.S. cybersecurity policy and highlighted the urgent need to strengthen cyber resilience across the energy sector in order to address increasingly sophisticated ransomware threats in the future.

Keywords


Ransomware, Colonial Pipeline, Energy Infrastructure, Cybersecurity, National Security, United States

References


Ashraf, S., Hussain, M. N., Saeed, M. M., Mazhar, S., & Zai, B. Y. (2025). Artificial Intelligence and US Energy Security: Protecting Infrastructure, Enhancing Cyber Defense, and Leading the Renewable Transition. The Critical Review of Social Sciences Studies, 3(3), 2782-2801.

AZUBUIKE, C. F., AKINWUMI, O. I., & EZEAMU, E. O. (2024). Assessing the Global Economic Impact of Ransomeware Attacks and Strategic Global Response. Nnamdi Azikiwe Journal of Political Science, 9(4), 1-17.

Bellamkonda, S. (2024). Ransomware attacks on critical infrastructure: A study of the Colonial Pipeline incident. International Journal of Research in Computer Applications and Information Technology, 7(2), 1423-1433.

Beerman, J., Berent, D., Falter, Z., & Bhunia, S. (2023, May). A review of colonial pipeline ransomware attack. In 2023 IEEE/ACM 23rd international symposium on cluster, cloud and internet computing workshops (CCGridW) (pp. 8-15). IEEE.

Bradley, L. P. (2022). Was the colonial cyberattack the first act of cyberwar against the us? Finding the threshold of war for ransomware attacks. . Johns L. Rev., 96, 487.

Daniel Mihai, L. E. U., Udroiu, C., Raicu, G. M., Grban, H. N., & ?cheau, M. C. (2023). Analysis of some case studies on cyberattacks and proposed methods for preventing them. Revista Romn? de Informatic? ?i Automatic?, 33(2), 119-134.

Gawazah, L., Rondla, A., & Balhareth, M. S. A. (2024). To pay or not to pay: the us colonial pipeline ransomware attack. Thunderbird School of Global Management.

Goodell, J. W., & Corbet, S. (2023). Commodity market exposure to energy-firm distress: Evidence from the Colonial Pipeline ransomware attack. Finance Research Letters, 51, 103329.

Janvrin, D. J., Boss, S. R., & Gray, J. (2026). Colonial Pipeline: Responding to a Ransomware Attack in the Energy Sector. Issues in Accounting Education, 41(2), 131-145.

Keary, J. (2022). Rebuffing Russian Ransomware: How the United States Should Use the Colonial Pipeline and JBS USA Hackings as a Defense Guide for Ransomware.

Khanna, A. (2025). Case Studies in Energy. In Securing an Enterprise: Maximizing Digital Experiences through Enhanced Security Measures (pp. 403-427). Berkeley, CA: Apress.

Lubin, A. (2022). Cyber plungers: colonial pipeline and the case for an omnibus cybersecurity legislation. Ga. L. Rev., 57, 1605.

Madhira, N., Pelletier, J. M., Johnson, D., & Mishra, S. (2024). Code red: A nuclear nightmare-navigating ransomware response at an Eastern European power plant. Journal of Information Technology Teaching Cases, 14(1), 108-118.

Musluoglu, M., Kunicina, N., & Caiko, J. (2024, October). Vulnerability Assessment of Industrial Control Systems for Colonial Pipeline and WannaCry Ransomware. In 2024 IEEE 65th International Scientific Conference on Power and Electrical Engineering of Riga Technical University (RTUCON) (pp. 1-7). IEEE.

Nolan, L., Tennant, D. L., & House, D. (2025). Navigating challenging terrain surrounding DoD response to homeland attacks on critical infrastructure: Case studies of prior incidents utilizing an extended taxonomy of cyber harms. Computers & Security, 150, 104198.

Nyonyoh, R. (2025). Ransomware and the Vulnerability of Critical Infrastructure: A National Security and Economic Analysis. Asian Journal of Economics, Business and Accounting, 25(4), 412-422.

Olorunlana, T. J., & Mohammed, H. (2025). Analysis of the Colonial Pipeline Cybersecurity Incident. International Journal of Science, Architecture, Technology and Environment, 2(4).

Pitman, L., & Crosier, W. (2024). On the scale from ransomware to cyberterrorism: the cases of JBS USA, colonial pipeline and the wiperware attacks against Ukraine. Journal of Cyber Policy, 9(2), 179-199.

Seng, Y. J., Cen, T. Y., bin Mohd Raslan, M. A. H., Subramaniam, M. R., Xin, L. Y., Kin, S. J., ... & Sindiramutty, S. R. (2024). In-depth analysis and countermeasures for ransomware attacks: Case studies and recommendations.

Watney, M. (2022, June). Cybersecurity threats to and cyberattacks on critical infrastructure: a legal perspective. In Proceedings of the 21st European Conference on Cyber Warfare and Security. Available: https://papers. Academic-conferences. Org/index. Php/eccws/issue/view/7/8.


Refbacks

  • There are currently no refbacks.

Creative Commons License
This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.