Live data from Hacker News

Linux ransomware in the wild

forums.gentoo.org

1–10 of 112 posts

Re: Linux ransomware in the wild

#3

Nice read but nothing particularly special here and it happened months ago. The title is alarmist. TL;DR: The user ran firefox as root and the attack happened through adobe-flash. Hardly a sophisticated attack.

First time I've seen ransomware on Linux though ... maybe I'm not paying attention...

Re: Linux ransomware in the wild

#4

Nice read but nothing particularly special here and it happened months ago. The title is alarmist. TL;DR: The user ran firefox as root and the attack happened through adobe-flash. Hardly a sophisticated attack.

Isn't that how most ransomware spreads?

Here's a detailed view on Angler exploit kit which spreads through ad networks[1].

What's a good way to browse safely without using something like tails? There's firejail[2] and obviously I can run it as a different user

[1]: https://news.sophos.com/en-us/2015/07/21/a-closer-look-at-th...

[2]: https://firejail.wordpress.com/

Re: Linux ransomware in the wild

#5
post #4

Nice read but nothing particularly special here and it happened months ago. The title is alarmist. TL;DR: The user ran firefox as root and the attack happened through adobe-flash. Hardly a sophisticated attack.

Isn't that how most ransomware spreads? Here's a detailed view on Angler exploit kit which spreads through ad networks[1]. What's a good way to browse safely without using something like tails? There's firejail[2] and obviously I can run it as a different user [1]: https://news.sophos.com/en-us/2015/07/21/a-closer-look-at-th... [2]: https://firejail.wordpress.com/

Also, don't run ads (at least not without protection).

Re: Linux ransomware in the wild

#6

Nice read but nothing particularly special here and it happened months ago. The title is alarmist. TL;DR: The user ran firefox as root and the attack happened through adobe-flash. Hardly a sophisticated attack.

First time I've seen ransomware on Linux though ... maybe I'm not paying attention...

Yeah I thought I was doing alright dual adblock and virtual box.

Re: Linux ransomware in the wild

#7
post #4

Earlier quoted context omitted.

Isn't that how most ransomware spreads? Here's a detailed view on Angler exploit kit which spreads through ad networks[1]. What's a good way to browse safely without using something like tails? There's firejail[2] and obviously I can run it as a different user [1]: https://news.sophos.com/en-us/2015/07/21/a-closer-look-at-th... [2]: https://firejail.wordpress.com/

Also, don't run ads (at least not without protection).

I assumed that was implied for every HN reader. But even though I have noscript and ublock with a lot of things blocked you never have 100% coverage.

Re: Linux ransomware in the wild

#8
post #7

Earlier quoted context omitted.

Also, don't run ads (at least not without protection).

I assumed that was implied for every HN reader. But even though I have noscript and ublock with a lot of things blocked you never have 100% coverage.

People claim to run noscript but every page calls js from 10 different domains. How on earth do you navigate what to let through and what to block? And at some point, to me, it’s just too many mouse clicks!

Re: Linux ransomware in the wild

#9

Nice read but nothing particularly special here and it happened months ago. The title is alarmist. TL;DR: The user ran firefox as root and the attack happened through adobe-flash. Hardly a sophisticated attack.

The title seems fine to me. I knew Linux ransomware was a theoretical possibility, but I didn't know it was out there in the world. Or, as they say, "in the wild".

Re: Linux ransomware in the wild

#10
post #8
post #7

Earlier quoted context omitted.

I assumed that was implied for every HN reader. But even though I have noscript and ublock with a lot of things blocked you never have 100% coverage.

People claim to run noscript but every page calls js from 10 different domains. How on earth do you navigate what to let through and what to block? And at some point, to me, it’s just too many mouse clicks!

You learn with the time and also sometimes when its not so obvious, what to activate and what not, I just close the tab and don't bother with the content.
Post reply on HN