Live data from Hacker News

Another Ransomware Outbreak Is Going Global

forbes.com

181–190 of 435 posts

Re: Another Ransomware Outbreak Is Going Global

#182

Earlier quoted context omitted.

Depends on where you live. I doubt you'd have faced any repercussions for buying that VPN subscription with your credit card, but the governments of other countries might not be so understanding. Bitcoin should exist for the same reasons Tor exists. Just because Tor is used by child predators and of little practical use to the average Western citizen doesn't negate its positive value.

"Just because Tor is used by child predators and of little practical use to the average Western citizen doesn't negate its positive value." you cant just say that and expect me to decide its worth it on balance, you need to make a case for it. maybe this isnt the place, but its a funny thing to just kind of assert. arguing that things should exist because there are potential upsides is missing the point, which is tha…

It enables secure, private, exchange of data.

That is reason enough.

Re: Another Ransomware Outbreak Is Going Global

#183
Maersk is down. Their main site says:

    Maersk IT systems are down

    We can confirm that Maersk IT systems are down across multiple sites
    and business units due to a cyber attack. We continue to assess the
    situation. The safety of our employees, our operations and customer's
    business is our top priority. We will update when we have more information.[1]
Maersk is the largest shipping company in the world. 600 ships, with ship space for 3.8 million TEU of containers. (The usual 40-foot container counts as two TEUs.) If this outage lasts more than a few hours, port operations worldwide will be disrupted.

[1] http://www.maersk.com/en

Re: Another Ransomware Outbreak Is Going Global

#184
post #132

Earlier quoted context omitted.

Yep, forced updates + NSL = they don't need 0days anymore.

That would never happen. A network tap would be able to detect a malicious update even if the main PC was implanted very well, and a Microsoft-signed malicious update would be worldwide news. Please correct me if I am wrong, but I don't think there has ever been a single instance of this actually occurring, only "this could possibly happen" theories. I am definitely interested to hear more if this is not the case.

@willlstrafach, Nothing you have said convinces me the commentator you are replying to is wrong. Especially since an NSL would prevent ANYONE who detected anything from speaking about it. Updates that tweak code to introduce vulnerabilities, is not something thats science fiction.

Re: Another Ransomware Outbreak Is Going Global

#185

FYI to Sysadmins: Paying the ransom at this point will be a waste of money, as the contact e-mail address has been blocked. https://posteo.de/blog/info-zur-ransomware-petrwrappetya-bet... (German) https://posteo.de/en/blog/info-on-the-petrwrappetya-ransomwa... (English)

Interesting. If I was Posteo I don't think I would've been so quick to ban the email, this will potentially cause a lot of harm. What about all the people that need their data back? They have no way to get it now. Plus many people are still going to post the money only to get no response from the email.

Re: Another Ransomware Outbreak Is Going Global

#186
post #141

I'm afraid that this attack demonstrates that the old PC architecture: Side-loading any app, userspace, privilege escalation, low level file sharing functionality just isn't for purpose. If malware can exploit a 0-day, 100-day, 1000-day security hole in a corporate network of 2000 machines, its too easy for that malware to share itself across the network and send emails attachments to AllUsers (every single company I…

If the final patch does that, nobody will apply it.

Security is a process, not an application.

Re: Another Ransomware Outbreak Is Going Global

#187
post #61

Earlier quoted context omitted.

"Actually, every single Windows PC with an internet connection that has been used before March 14 should be considered irrevocably compromised." March 14 of what year ? I would say 2000 but I am open to discussion ...

I sent my first packet-of-death to an unprotected Windows machine in 1996, so...

I used an IRC client called BootFucker Pro back then that had all of the weaponry built in. Those were the good old days.

Re: Another Ransomware Outbreak Is Going Global

#188
post #152

Earlier quoted context omitted.

1997 here :-) hat was that XP xploit app from back then... I cant recall what it was called...

To be clear XP wasn't available in 1997.

Might have been 98/99, can't recall... I started at that company in 97

But it was back orifice I was thinking of.

Re: Another Ransomware Outbreak Is Going Global

#190
post #177

Earlier quoted context omitted.

There is no proof of means or motivation to use 0-days at scale. In fact, using EternalBlue "at-scale" would have caused it to not stay a 0-day for very long.

They don't need to deploy 0days if the vendor (willingly or unwillingly) cooperates. Also Microsoft began to heavily spy onto Windows users as part of normal operation making it difficult to impossible to fully opt out.

I don't understand how that would be possible. Such a change would be detected and very loudly discussed, making it pretty useless. There would be very little positive gain yet a whole lot of negative blowback from doing such a thing.
Post reply on HN