Live data from Hacker News

Ransomware – Unauthorized access to Fujifilm servers

fujifilm.com

41–50 of 51 posts

Re: Ransomware – Unauthorized access to Fujifilm servers

#41
post #16
post #7

Earlier quoted context omitted.

Didn't Garmin pay a ransom? Which is more well known?

Garmin more well known than Fuji?! In what world?!

My personal life certainly. I'm well aware of both companies, but what do Fuji do that is as recognisable to many of the general public as the watch on their wrist or the mapping device in their car? Some might own a Fuji brand camera, printer or other device, might put fujifilm brad paper in their printer, etc, but they probably aren't significantly aware of the rest of the business. I'd wager that the average person on the street is more aware of Garmin.

Re: Ransomware – Unauthorized access to Fujifilm servers

#42
post #34
post #33

Earlier quoted context omitted.

Almost every backup system I've seen will keep multiple versions of the file around with decreasing frequency as time progresses, ie one for every day of last week, every sunday of the last month, the first of every month for the last year, etc. That way if you get hit by ransomware, you can restore to a point in time where you are (fairly) sure no infection was present yet. Nothing is perfect, but this does give a d…

Yes, but if your system is hacked, then any application (including your backup software) might "see" the file as unencrypted.

Yes? Some of your backups will be the encrypted version of the file. As long as your system remains hacked it is useless to restore anything. You will first need to purge every disk in your organisation and reinstall everything from scratch (depending on the sophistication of the ransomware, maybe just buy new disks altogether), THEN restore from a version that is good.

Re: Ransomware – Unauthorized access to Fujifilm servers

#43
post #16

Earlier quoted context omitted.

Garmin more well known than Fuji?! In what world?!

My personal life certainly. I'm well aware of both companies, but what do Fuji do that is as recognisable to many of the general public as the watch on their wrist or the mapping device in their car? Some might own a Fuji brand camera, printer or other device, might put fujifilm brad paper in their printer, etc, but they probably aren't significantly aware of the rest of the business. I'd wager that the average perso…

Some older people will probably have Fujifilm burned into their cortex because they made a lot of very popular film types for cameras back in the day, and if you were just somewhat serious about taking photos, film type was a big deal. At least I guess that's why it feels like that to me, too, even though it's definitely no longer true.

Re: Ransomware – Unauthorized access to Fujifilm servers

#44
post #22
post #6

Hmm but why target such a well known company? It's almost guaranteed that they will not pay to save face, no?

Companies these days just “contract external security consultant” for exact amount of ransom + fees aka ask the perp for a receipt for tax purposes

Ahh right! I remember reading about this somewhere

Re: Ransomware – Unauthorized access to Fujifilm servers

#45
post #34
post #33

Earlier quoted context omitted.

Almost every backup system I've seen will keep multiple versions of the file around with decreasing frequency as time progresses, ie one for every day of last week, every sunday of the last month, the first of every month for the last year, etc. That way if you get hit by ransomware, you can restore to a point in time where you are (fairly) sure no infection was present yet. Nothing is perfect, but this does give a d…

Yes, but if your system is hacked, then any application (including your backup software) might "see" the file as unencrypted.

That's why you use WORM Tapes and versioned files if its really important data.

Re: Ransomware – Unauthorized access to Fujifilm servers

#46
post #28

Earlier quoted context omitted.

Are you implying Google had his password stored in reversible form?

Nothing about the comment that you replied to would require them to store their password in "reversible form"

> some portion of his password

Doing a partial string match on a password would effectively require it in reversible form. Even if you hashed all the possible substrings of the password, it would be trivial to brute force given all the hashes of the same string with one extra character on the end...

But OP was mistaken - the tool Google uses only alerts if the entire password is typed. Meaning that OP's friend was careless with password hygiene. As is nearly every new Google employee.

Re: Ransomware – Unauthorized access to Fujifilm servers

#47
post #33
post #25

Earlier quoted context omitted.

Please note that backups aren't a good measure against ransomware, unless you do them absolutely correctly. The problem is that ransomware will encrypt your files, rendering them useless, but they still end up in encrypted form in your backup.

Almost every backup system I've seen will keep multiple versions of the file around with decreasing frequency as time progresses, ie one for every day of last week, every sunday of the last month, the first of every month for the last year, etc. That way if you get hit by ransomware, you can restore to a point in time where you are (fairly) sure no infection was present yet. Nothing is perfect, but this does give a d…

So long as the compromised system isn’t able to access and alter any historic backups.

Things like zfs snapshots or append-only backups help protect your backups by not permitting this.

Re: Ransomware – Unauthorized access to Fujifilm servers

#48
post #42
post #34

Earlier quoted context omitted.

Yes, but if your system is hacked, then any application (including your backup software) might "see" the file as unencrypted.

Yes? Some of your backups will be the encrypted version of the file. As long as your system remains hacked it is useless to restore anything. You will first need to purge every disk in your organisation and reinstall everything from scratch (depending on the sophistication of the ransomware, maybe just buy new disks altogether), THEN restore from a version that is good.

Yes, but backing up from an infected system is probably not a good idea. Better to mount the drives on a different system, and backup from there.

Re: Ransomware – Unauthorized access to Fujifilm servers

#50
post #16

Earlier quoted context omitted.

Garmin more well known than Fuji?! In what world?!

Probably in This world https://trends.google.com/trends/explore?date=all&q=%2Fm%2F0...

Wow, you can see the big spike in Garmin interest when they got hacked in July 2020.
Post reply on HN