Live data from Hacker News

The No More Ransom Project

nomoreransom.org

1–10 of 241 posts

Re: The No More Ransom Project

#3

I'm afraid to click the link. Anyone care to provide a tl;dr?

It's legit. Informational website about ransomware and what to do in case your device is affected. Apparently sponsored/endorsed/whatever by Europol, the Dutch Police, Kaspersky, Intel, AWS and Barracuda.

Re: The No More Ransom Project

#6
> When [you are infected with ransomware], you can’t get to the data unless you pay a ransom. However this is not guaranteed and you should never pay!

What bothers me about their advice is that it is only correct macroeconomically. For your particular case it could be the best solution to just pay - as even police departments have done before.

It also ignores that it is in cybercriminals' best interest to let you decrypt after you paid: They need their victims to trust them, and they have nothing to gain from keeping the files encrypted after payment.

Re: The No More Ransom Project

#7

I'm afraid to click the link. Anyone care to provide a tl;dr?

It's legit. Informational website about ransomware and what to do in case your device is affected. Apparently sponsored/endorsed/whatever by Europol, the Dutch Police, Kaspersky, Intel, AWS and Barracuda.

> It's legit. Informational website about ransomware and what to do in case your device is affected.

That's good to know, but the ransomware criminals probably have the skills, and they definitely have the incentive, to pwn that site.

Re: The No More Ransom Project

#9

I'm afraid to click the link. Anyone care to provide a tl;dr?

Why are you afraid to click the link?

> Why are you afraid to click the link?

Because ransomware criminals would probably love to take over that site and start distributing ransomware or other malware from it. And I have no way to judge how well that site's owners have protected it from that sort of attack. When I'm in doubt, I tend to err on the side of caution.

Re: The No More Ransom Project

#10
post #5

I'm afraid to click the link. Anyone care to provide a tl;dr?

Anytime you're in a similar dilemma just disable JavaScript. There are even plugins that allow you to do that with one click.

JS is not the only attack surface in a browser. There have been exploitable bugs in image parsers, font renderers, etc. Tracking is possible without JS as well.

Maybe try lynx?

Post reply on HN