Earlier quoted context omitted.
> It sounds like the basic (?) security practices recommended by professionals - keep systems up-to-date, pay attention to whether an email is suspicious - would have covered your network. This is secondhand information (so take it for what it's worth, there could be pieces I'm missing), but I talked with a startup that was focusing on this problem, and the issue was not quite the computers and servers that IT were u…
In defense of these medical devices, that is actually a FDA requirement. The entire combination of the system is certified to work, and even one patch for a security vulnerability leaves open the possibility that the patch breaks something and people die! Of course it goes without saying that you need to ensure that a virus cannot run on this machine by some other means. If these machines can get infected they automa…
Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
51–60 of 505 posts
Re: Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
#52Re: Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
#53Live map: https://intel.malwaretech.com/WannaCrypt.html
Relevant MS security bulletin: https://technet.microsoft.com/en-us/library/security/ms17-01...
Edit: Analysis from Kaspersky Lab: https://securelist.com/blog/incidents/78351/wannacry-ransomw...
Re: Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
#54> "Microsoft rolled out a patch for the vulnerability last March, but hackers took advantage of the fact that vulnerable targets — particularly hospitals — had yet to update their systems." > "The malware was circulated by email; targets were sent an encrypted, compressed file that, once loaded, allowed the ransomware to infiltrate its targets." It sounds like the basic (?) security practices recommended by professio…
Well this justifies MS's decision for forced updates in Win10. Not that I like it, just saying.
Re: Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
#55Earlier quoted context omitted.
Why are those devices being connected to an unsecure network? Surely they should have super limited data exchange features?
As is commonly the case, hardware vendors are more concerned with selling you the hardware and probably spend bottom-dollar for their software developers. I can't say that I've worked in such an environment, but my impression is that management at such companies probably see software dev as a cost-centre rather than something to actually spend money on for quality.
Re: Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
#56Earlier quoted context omitted.
> It sounds like the basic (?) security practices recommended by professionals - keep systems up-to-date, pay attention to whether an email is suspicious - would have covered your network. This is secondhand information (so take it for what it's worth, there could be pieces I'm missing), but I talked with a startup that was focusing on this problem, and the issue was not quite the computers and servers that IT were u…
Why are those devices being connected to an unsecure network? Surely they should have super limited data exchange features?
And yes, surely they should have super limited network features. The important word is "should."
Re: Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
#57I am in Tanzania(East Africa) and my father's computer is infected. All he did to get infected was plugging his laptop on the network at work(University of Dar Es Salaam). The laptop is next to me and my task this night is to try to remove this thing.
Just that? No click somehwhere?
If you can get the right network packets to an unpatched machine, you can infect that machine.
Re: Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
#58"Microsoft rolled out a patch for the vulnerability last March, but hackers took advantage of the fact that vulnerable targets — particularly hospitals — had yet to update their systems." What Microsoft's software should be updated now to protect against this particular attack? Windows? Windows at the end user machines? The servers? Could someone share a "What should I do now to protect myself" guide, please? Thanks!
For this, run Windows update and install all updates. Additionally, it's smart to disable SMBv1 on all machines.
(I ran the simple powershell command on server: https://support.microsoft.com/en-us/help/2696547/how-to-enab...)
Re: Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
#59Wow, this is so insane. I really don't think the NSA should be finding vulnerabilities and keeping them to themselves. I mean I get it is all to help stop the bad guys, but if you are keeping cyber weapons like this. You should be required to keep them as secure and locked as possible if you don't follow responsible disclosure. Just like how a cop would keep their weapon on them, instead of sitting it down on the tab…
Your last sentence seems to contradict your first, whereas what you would really prefer is to disarm the police. Sadly I don't think that's so practical, in the same way that it would be impractical for US police to go unarmed given the high incidence of gun ownership in the US. I grew up in a country where police are not normally armed (other than with a small baton or similar personal defense weapon) and much prefe…
I guess what's standard in the "tech world", is probably totally different in the intelligence community.
Like companies can't protect themselves, if there's no updates. There's basically no defense. Same reason I'm not a fan of nuclear power. Once you make the waste, it's hard to get rid of.
Re: Cyberattacks in 12 Nations Said to Use Leaked N.S.A. Hacking Tool
#60This shows that no agency is immune from leaks and when these tools fall into the wrong hands the results are truly catastrophic.