Ransonware - Petya targetting companies in Russia, Ukraine, and India

in #ransomware7 years ago

The virus-extortionist has caused a large-scale attack on the oil, telecommunications and financial companies in Russia and Ukraine. Source: Ria.us website. Please note. You need to use Google translate to read the news.
Cointelegraph.com also reported that WannaCry could spread to 70% of Indian ATMs. This is because these ATMs still runs on Windows XP operating systems. C'mon now, Windows XP was retired years ago. It's time to upgrade your system to Windows 10 and keep it up to date.

If you missed reading WannaCry article last May, here are the links.

  1. https://que.com/dhs-statement-on-ongoing-ransonware-attackes/
  2. https://que.com/indicators-associated-with-wannacry-ransomware/
Photo from Ria.ru website.

Update June 28, 2017 6:00 pm: SMB, Exploited again

Like WannaCry, Petya uses an "EternalBlue" software exploit for Microsoft Windows, which security experts believe was built by the U.S. National Security Agency. WannaCry rapidly spread by scanning the internet for Windows computers vulnerable to the EternalBlue exploit, which targets a server messaging block version 1 file-sharing protocol. Image and Source: DataBreachToday.com
QUE.com.Ransonware.Petya.by.DatabreachtodayDOTcom

Be safe out there, keep your system up to date at all times.

References:
https://que.com/ransonware-petya-targetting-companies-in-russia-ukraine-and-india/
https://que.com/category/technology/security-technology/ransomware/

Follow me @Yehey, Vote Up and Resteem
Thank you.

Sort:  

I've been seeing articles about this. Scary stuff.

Considering your system is up date.

You can minimize risk by simply separating your admin and user standard account.
With standard account, the attacker will not be able to write on your computer without the admin account.

Listen to yehey advices he is expert and I do believe in him. Thank you mate..

This Petya targets devices that somehow still aren't secured against EternalBlue, but can deploy other infection options as well. For example, the attackers seem to be spreading the ransomware through the software update feature of a Ukrainian program called MeDoc, and possibly through Microsoft Word documents laced with malicious macros.

Point is petya can be prevented to spread if the system is up to date.
One of the news media assumed 70% of India ATMs still running on old copy of windows operating system. That's not a surprise to get compromised.

Thats true, I worked on Indian ATMs for citibank when I was there in IT. some places its too old and dirty. They will place a cash and leave.. there is no enough maintenance.

Whatever, but not Windows 10
https://goo.gl/wHWVsv

Coin Marketplace

STEEM 0.20
TRX 0.12
JST 0.030
BTC 61599.36
ETH 3407.97
USDT 1.00
SBD 2.47