Read the Beforeitsnews.com story here. Advertise at Before It's News here.
Profile image
By John Rolls (Reporter)
Contributor profile | More stories
Story Views
Now:
Last hour:
Last 24 hours:
Total:

New Variant Of 'Ransomware' Begins to Spread: "We've Never Seen Anything Like This"

% of readers think this story is Fact. Add your two cents.


 

By Tyler Durden  / ZeroHedge

Governments and companies around the world began to gain the upper hand against the first wave of the unrivaled global cyberattack this morning.

More than 200,000 computers in at least 150 countries have so far been infected, according to Europol, the European Union’s law enforcement agency. The U.K.’s National Cyber Security Centre said new cases of so-called ransomware are possible “at a significant scale.”

“For now, it does not look like the number of infected computers is increasing,” said a Europol spokesman. “We will get a decryption tool eventually, but for the moment, it’s still a live threat and we’re still in disaster recovery mode.”

The initial attack was stifled when a security researcher disabled a key mechanism used by the worm to spread, but experts warned the hackers were likely to mount a second attack because so many users of personal computers with Microsoft operating systems couldn’t or didn’t download a security patch released in March that Microsoft had labeled “critical.”

“I will confess that I was unaware registering the domain would stop the malware until after I registered it, so initially it was accidental,” wrote the researcher, who uses the Twitter name @MalwareTechBlog.

“So long as the domain isn’t revoked, this particular strain will no longer cause harm, but patch your systems ASAP as they will try again.”

But the world is still digging out…

Europol executive director Rob Wainwright told Britain’s ITV television on Sunday that the attack had been “unprecedented”. ”We’ve never seen anything like this,” he said.

In China, “hundreds of thousands” of computers were affected, including petrol stations, cash machines and universities, according to Qihoo 360, one of China’s largest providers of antivirus software. The malware affected computers at “several” unspecified Chinese government departments, the country’s Cyberspace Administration said on its WeChat blog Monday. Since that initial attack, agencies and companies from the police to banks and communications firms have put preventive measures in place, while Qihoo 360 Technology Co., Tencent Holdings Ltd. and other cybersecurity firms have begun making protection tools available, the internet overseer said.

French carmaker Renault said its Douai plant, one of its biggest sites in France employing 5,500 people, would be shut on Monday as systems were upgraded.

At Germany’s national Deutsche Bahn railroad, workers were laboring under “high pressure” Monday to repair remaining glitches with train stations’ electronic departure boards, a spokesman said.

In Japan, Hitachi Ltd. said that some of its computers had been affected.

In South Korea, CJ CGV Co., the country’s largest cinema chain, said advertising servers and displays at film theaters were hit by ransomware. Movie servers weren’t affected and are running as normal, it said in a text message Monday.

Indonesia’s government reported two hospitals in Jakarta were affected.

About 97 percent of U.K. facilities and doctors disabled by the attack were back to normal operation, Home Secretary Amber Rudd said Saturday after a government meeting. At the height of the attack Friday and early Saturday, 48 organizations in the NHS were affected, and hospitals in London, North West England and Central England urged people with non-emergency conditions to stay away as technicians tried to stop the spread of the malicious software.

As Microsoft’s president and chief legal officer, Brad Smith, said in a blog post Sunday:

“An equivalent scenario with conventional weapons would be the US military having some of its Tomahawk missiles stolen,” Smith wrote.

“The governments of the world should treat this attack as a wake up call.”

And waking up they seem to be…(as Axios notes)

President Trump’s homeland security adviser, Tom Bossert, said that Friday’s global cyberattack is something that “for right now, we’ve got under control” in the U.S., reports AP:

“Bossert tells ABC’s ‘Good Morning America’ that the malware is an “extremely serious threat” that could inspire copycat attacks. But Microsoft’s security patch released in March should protect U.S. networks for those who install it.”

“Micrsoft’s top lawyer has criticized U.S. intelligence for ‘stockpiling’ software code that can aid hackers. Cybersecurity experts say the unknown hackers behind the latest attacks used a vulnerability exposed in U.S. government documents leaked online.”

“Bossert said ‘criminals’ are responsible, not the U.S. government. Bossert says the U.S. hasn’t ruled out involvement by a foreign government, but that the recent ransom demands suggest a criminal network.”

However, new variants of the rapidly replicating malware were discovered Sunday. One did not include the so-called kill switch that allowed researchers to interrupt the malware’s spread Friday by diverting it to a dead end on the internet.

As Bloomberg reports that Matt Suiche, founder of United Arab Emirates-based cyber security firm Comae Technologies warns a new version of the ransomware may have also been spreading over the weekend.

About 50% of machines that would have spread the infection by the second variation of the malware have Russian I.P. addresses, according to Suiche.

Over 40,000 machines appear to have been infected by the second variation of the malware already.

Ryan Kalember, senior vice president at Proofpoint Inc., which helped stop its spread, said the version without a kill switch could spread. It was benign because it contained a flaw that prevented it from taking over computers and demanding ransom to unlock files but other more malicious ones will likely pop up.

“We haven’t fully dodged this bullet at all until we’re patched against the vulnerability itself,” Kalember said.

http://www.zerohedge.com/news/2017-05-15/second-wave-ransomware-cyberattack-begins-spread-wever-never-seen-anything 

More great articles here: http://zerohedge.com



Before It’s News® is a community of individuals who report on what’s going on around them, from all around the world.

Anyone can join.
Anyone can contribute.
Anyone can become informed about their world.

"United We Stand" Click Here To Create Your Personal Citizen Journalist Account Today, Be Sure To Invite Your Friends.

Please Help Support BeforeitsNews by trying our Natural Health Products below!


Order by Phone at 888-809-8385 or online at https://mitocopper.com M - F 9am to 5pm EST

Order by Phone at 866-388-7003 or online at https://www.herbanomic.com M - F 9am to 5pm EST

Order by Phone at 866-388-7003 or online at https://www.herbanomics.com M - F 9am to 5pm EST


Humic & Fulvic Trace Minerals Complex - Nature's most important supplement! Vivid Dreams again!

HNEX HydroNano EXtracellular Water - Improve immune system health and reduce inflammation.

Ultimate Clinical Potency Curcumin - Natural pain relief, reduce inflammation and so much more.

MitoCopper - Bioavailable Copper destroys pathogens and gives you more energy. (See Blood Video)

Oxy Powder - Natural Colon Cleanser!  Cleans out toxic buildup with oxygen!

Nascent Iodine - Promotes detoxification, mental focus and thyroid health.

Smart Meter Cover -  Reduces Smart Meter radiation by 96%! (See Video).

Report abuse

    Comments

    Your Comments
    Question   Razz  Sad   Evil  Exclaim  Smile  Redface  Biggrin  Surprised  Eek   Confused   Cool  LOL   Mad   Twisted  Rolleyes   Wink  Idea  Arrow  Neutral  Cry   Mr. Green

    Total 1 comment
    • Walking Turtle

      From the article: “Bossert said ‘criminals’ are responsible, not the U.S. government. Bossert says the U.S. hasn’t ruled out involvement by a foreign government, but that the recent ransom demands suggest a criminal network.”

      Errrmmmm…. Roight. Duck right OUT of the too-obvious First Causes behind the fustercluck, MISTER Bossert, SIRRAH! What was the nature of the ‘criminals’ who first WROTE and DEPLOYED this plague (all in the name of Keeping Us All Safe, oh yesss, indeedy), then LOST ALL CONTROL over the thang? Whose genius ides WAS it anyway, to make certain to USE THEIR MIGHTY MIGHTY POWER to just get into EVERYONE’S business, come hell, high water and poopstorm alike, anyway, HM???

      What a Very Shiny Idea THAT proved out to be, in R-E-A-L-I-T-Y… What EVER happened(sic) to the R-E-S-P-E-C-T, ANYwho? So what IS the going free-market cash price for a human soul, these days, ANYway, HM?

      Oh, and while we’re on the subject: Who subverted and betrayed the Constitution of the United States to just go DO that, HM? And how many “Go Along to Get Along” lower-level ones were dragged into the IMPLEMENTATION along the way? There really WERE multiple oaths broken and disregarded along the way to the present-day Hell, too, now WEREN’T there?

      So just you SHOW ME the Prime Vector criminals, MISTER Bossert, SIRRAH. Go right ahead and SHOW ME! (Stop sniveling and sit up straight. Now look us all in the eye, IF you are able. People are WATCHING.)

      “Criminals”???? Ayup! But NOT to be found on any foreign soil, one dares to reckon. So then: Read the LAW – starting with the Law’s FOUNDATIONAL DOCUMENTS. THEN tell us all AGAIN where the criminals do business from every day, WON’T you? All done at great taxpayer expense and usurious interest paId to a foreign-owned Private Central Bank too, at that, now really, WASN’T it?

      Fact: Don’t need a fancy ivy-covered college degree all printed-up on gilt-edged parchment to be a COMPETENT SOCIAL SYSTEMS TROUBLESHOOTER. Don’t need a weather-vane to smell what’s blowing in from upwind, neither. Stinks like poo on a cadaver imvh&sensible_o – and Yours Truly knows THAT SMELL FIRST-HAND, oh-KAY????

      But maybe to some contrivance-laden, spinmeisterly ‘n’ hyper-sophisticated one name of Bossert (or maybe it was really really Bossert’s boss/handler/bwana, ya’ maybe wanna’ wiggle just a bit on that point, ol’ buddy?), that’s only the smell of MONEY being MADE, HM?

      Fact: This situation amounts, in the National Sphere, to the infamous Microsoft BSOD on YOUR PC. Feel FREE to do the necessary – ASAP, we say! Then we can AGAIN and AT LAST have a properly decent country that runs on HONEST PRINCIPLES, HONEST PEOPLE and HONEST LINUX. Forget all the Lost Essential Data. Datasets can be REBUILT. REBOOT HER NOW!

      Because when nothing changes, NOTHING CHANGES.

      Oh and by the way: The penalty under Heaven for deliberate oathbreaking is…? WELL then, HM??? PEACE NOW! REAL PEACE, even though a few Lawful HANGINGS be called-for so’s to clear the way! An Old Turtle knows HOW as well as WHY. And the WHO is SOOOO obvious, now AIN’T it just? Just CONVICT THEM ALL. Then ASK this Old Turtle for performance of the the requisite Contract Services and it SHALL be done.

      Fact: Have noose+time+uncommon expertise; will gladly travel for that purpose. Standing offer! And THAT is ALL. 0{:-|o[

    MOST RECENT
    Load more ...

    SignUp

    Login

    Newsletter

    Email this story
    Email this story

    If you really want to ban this commenter, please write down the reason:

    If you really want to disable all recommended stories, click on OK button. After that, you will be redirect to your options page.