Ransomware is back and brought some friends. Probably buoyed by some crowd in South Korea paid $1m to unlock some files last week. Christ.
All of these exploits are on decades old software that cheap companies refuse to upgrade. Reap what you sow.
The Wikileaks published NSA/CIA hacks could end up being good news in the long term but it’ll get worse before it gets better.
One practical thing to come out of this. If you have any personal documents/pictures of value on just one computer right now, for the love of god back them up. You don’t want to be hit by this kind of ransomware with little Billy’s baby pictures locked up.
From my own research, there seems to be a lot of misinformation / lazy reporting around the latest “petya” outbreak. Yesterdays attack was very different to the wannacry attack in that while it used the same exploits once it was within a company, it’s original method of entry was by hacking the legitimate update server of a Ukrainian Software company, MEDoc. They produced an accounting package used by a lot of Ukrainian business. The hackers infected their latest software update, so when the customers auto-updated yesterday it introduced the virus into their network.
Even though it’s being described as a world wide attack it would seem the majority of the companies affected had offices in the Ukraine. This was more likely a cyber attack on Ukrainian infrastructure, than an attempt to extort money from home users.
Also in other news a Colonel in the Ukrainian Cyber Intelligence service was killed in a car bomb yesterday morning.
That is a clever approach to distribution.
Consider how many apps are widespread on iphone and android devices and how often they drive updates.
One hack to an update server for the TripAdvisor app would impact multiple millions of phone and tablet units.
I dont know that there is commercial value in that for the originator but that does not have to be the goal in doing this.
That also combined with the fact that traditional Anti-Virus software is pretty much a lame duck these days. There are newer, behaviour based anti-virus packages but very few companies would be running these as they are fairly expensive (compared to traditional AV).
The way Android and iOs are built make them far less susceptible to the type of virus attacks which target Windows machines. To date the majority of the attacks on mobile devices have come via the method outlined above, either deliberately dodgy apps, or legitimate apps which get hacked.
Go/No go decision on a 19 month project I have been working to be made by E.O.B today and I made the rookie mistake of wearing a light blue short to work today.
I look like Jose Antonio Camacho at the 2002 World Cup