Live data from Hacker News

Another Ransomware Outbreak Is Going Global

forbes.com

211–220 of 435 posts

Re: Another Ransomware Outbreak Is Going Global

#211

Maersk is down. Their main site says: Maersk IT systems are down We can confirm that Maersk IT systems are down across multiple sites and business units due to a cyber attack. We continue to assess the situation. The safety of our employees, our operations and customer's business is our top priority. We will update when we have more information.[1] Maersk is the largest shipping company in the world. 600 ships, with…

Great. Maybe we can finally put a price on lack of security protocol.

OSHA violation in 2025: operator was not using a deterministic operating system

Re: Another Ransomware Outbreak Is Going Global

#212
post #111

i said this before and it was met with mostly hostility, but im still wondering... bitcoin has enabled ransomware, so its a boon to crooks. what has it done for non-crooks? i dont mean conceptually (no fed! decentralized! etc. etc.), i mean since its come into being, what has it done for you personally? for me: i bought a vpn subscription, anonymously. probably not able to do that as easily without btc. but, i would…

Bitcoin is a neutral technology, think of it like cash. Buying illegal things is always done with cash but it doesn't mean we should get rid of cash altogether. Regardless even if we came to the collective decision that we wanted to get rid of bitcoin, its not feasible due to its decentralized nature.

> it doesn't mean we should get rid of cash altogether

I can't remember the last time I saw physical cash. The only ones I know who are still using cash are drug dealers. Not saying it should be banned but it's almost gone in my country already.

Re: Another Ransomware Outbreak Is Going Global

#214
post #152

Earlier quoted context omitted.

To be clear XP wasn't available in 1997.

Might have been 98/99, can't recall... I started at that company in 97 But it was back orifice I was thinking of.

XP was August of 2001, if you're curious.

Re: Another Ransomware Outbreak Is Going Global

#216

Maersk is down. Their main site says: Maersk IT systems are down We can confirm that Maersk IT systems are down across multiple sites and business units due to a cyber attack. We continue to assess the situation. The safety of our employees, our operations and customer's business is our top priority. We will update when we have more information.[1] Maersk is the largest shipping company in the world. 600 ships, with…

Great. Maybe we can finally put a price on lack of security protocol.

I dream of seeing a "security first" development process adopted ..

Re: Another Ransomware Outbreak Is Going Global

#217

Earlier quoted context omitted.

I like one of the more recent transactions: https://blockchain.info/tx/82698e1f2fbf31914019da738e24515ae... For 0.0000666 BTC. Sender is theoretically 1 FuckYou RJBmXYF29J7dp4mJdKyLyaWXW6

Similarly, with regards to 666ing: https://www.reddit.com/r/SheepMarketplace/comments/1rvlft/i_...

Very interesting read

Re: Another Ransomware Outbreak Is Going Global

#218
post #177

Earlier quoted context omitted.

They don't need to deploy 0days if the vendor (willingly or unwillingly) cooperates. Also Microsoft began to heavily spy onto Windows users as part of normal operation making it difficult to impossible to fully opt out.

I don't understand how that would be possible. Such a change would be detected and very loudly discussed, making it pretty useless. There would be very little positive gain yet a whole lot of negative blowback from doing such a thing.

I honestly cannot tell if this is brilliant sarcasm or if you'be somehow missed all the "very loud discussion" about Windows 10 on HN. :)

Re: Another Ransomware Outbreak Is Going Global

#219
post #177

Earlier quoted context omitted.

They don't need to deploy 0days if the vendor (willingly or unwillingly) cooperates. Also Microsoft began to heavily spy onto Windows users as part of normal operation making it difficult to impossible to fully opt out.

I don't understand how that would be possible. Such a change would be detected and very loudly discussed, making it pretty useless. There would be very little positive gain yet a whole lot of negative blowback from doing such a thing.

Have you installed Windows 10 lately? It's all there in plain English.

Re: Another Ransomware Outbreak Is Going Global

#220

Earlier quoted context omitted.

It is basically WannaCry without the kill switch. It is using the same exploits (EternalBlue). Not some recent zero-day, but sloppy patching.

Do you have a source for that?

Not OP, but he is right. I just walked out of work, where I had to reverse the sample. It indeed uses EternalBlue (attacks by enumerating local network IPs with Windows APIs and randomly scanning the internet). Apart from that, it overwrites the MBR with a custom bootloader and schedules a restart ("shutdown /t /r") as SYSTEM in a random amount of time. After rebooting, it fakes a chkdsk and meanwhile, encrypts your files.

It is also true that it uses PsExec to spread.

TL;DR good old Petya ransomware (old as shit) with a copy/pasted EternalBlue-based spreading method. Nothing new.

Post reply on HN