Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.




Mad Scientist
20659 posts

Uber Geek

Trusted
Lifetime subscriber

# 214466 13-May-2017 07:27
Send private message

Are personal computers at risk?

 

How to protect oneself?

 

http://money.cnn.com/2017/05/12/technology/ransomware-attack-nsa-microsoft/index.html





Involuntary autocorrect in operation on mobile device. Apologies in advance.


View this topic in a long page with up to 500 replies per page Create new topic
 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10
3988 posts

Uber Geek


  # 1780454 13-May-2017 07:56
One person supports this post
Send private message

https://arstechnica.com/security/2017/05/an-nsa-derived-ransomware-worm-is-shutting-down-computers-worldwide/

 

 

 

wcry copies a weapons-grade exploit codenamed Eternalblue that the NSA used for years to remotely commandeer computers running Microsoft Windows. Eternalblue, which works reliably against computers running Microsoft Windows XP through Windows Server 2012, was one of several potent exploits published in the most recent Shadow Brokers release in mid-April. The Wcry developers have combined the Eternalblue exploit with a self-replicating payload that allows the ransomware to spread virally from vulnerable machine to vulnerable machine, without requiring operators to open e-mails, click on links, or take any other sort of action.

 

Microsoft patched the underlying vulnerability in March, exactly four weeks before the Shadow Brokers' April release published the weapons-grade NSA exploit. The rapid outbreak of Wcry may be an indication that many, or possibly all, of the companies hit had yet to install a critical Windows patch more than two months after it was released.

 

 

 

 

 

 


1388 posts

Uber Geek

Lifetime subscriber

  # 1780457 13-May-2017 08:14
Send private message

That is pretty full on stuff and is going to effect a lot of innocent people. Shame on them for doing that it just so wrong on every level.





Ding Ding Ding Ding Ding : Ice cream man , Ice cream man


 
 
 
 


13067 posts

Uber Geek

Trusted
Lifetime subscriber

  # 1780460 13-May-2017 08:27
2 people support this post
Send private message

"the ransomware exploits a vulnerability in Windows"

How to protect yourself? Hmmmmm.

Hello, welcome to Mac OSX....





13067 posts

Uber Geek

Trusted
Lifetime subscriber

  # 1780461 13-May-2017 08:31
Send private message

The NHS in the UK is badly affected and turning patients away in some regions.

They have a pretty poor record when it comes to IT. A few years ago they scrapped a new computer system without even using it in anger which had cost them $30 billion equivalent!





defiant
923 posts

Ultimate Geek

Lifetime subscriber

  # 1780462 13-May-2017 08:31
2 people support this post
Send private message

I wonder how prolific ransomware would be if bitcoin didn't exist, or any anonymous digital currency for that matter


z2k

299 posts

Ultimate Geek

Trusted

  # 1780466 13-May-2017 08:36
2 people support this post
Send private message

Geektastic: "the ransomware exploits a vulnerability in Windows"

How to protect yourself? Hmmmmm.

Hello, welcome to Mac OSX....

 

 

 

The NSA leak also contained exploits for Mac OSX. Also, the best way to protect yourself no matter what OS you're on is to apply the latest updates.


838 posts

Ultimate Geek

Trusted
Lifetime subscriber

  # 1780468 13-May-2017 08:45
One person supports this post
Send private message

Hopefully no Geekzone users computers are affected. That's because we all apply the latest patches from Microsoft as soon as they are released, right? The radio news this morning said Microsoft released a patch for this vulnerability in March.


 
 
 
 


826 posts

Ultimate Geek

Subscriber

  # 1780470 13-May-2017 09:07
One person supports this post
Send private message

I survived Sasser in the early 2000s and learned from it. It required ~1800 machines to be visited on sneaker net, patched and cleaned. This current worm would require machines to be rebuilt. Every server, every workstation. It has the potential to be pretty devastating to an organisation.

 

I am working at a place where the IT team have not experienced a worm outbreak, I hope they never have to.








369 posts

Ultimate Geek

Subscriber

  # 1780473 13-May-2017 09:15
One person supports this post
Send private message

I continue to be amazed at the number of major NZ organizations, including universities, still running Win7.  The larger the number of computers in an organization, the further behind they seem to be on OS software -- too hard basket?





gml


221 posts

Master Geek


  # 1780475 13-May-2017 09:20
Send private message

"Weapons grade exploit" first time I ever heard that in use. Wouldn't a exploit the same as a consumer version?


13067 posts

Uber Geek

Trusted
Lifetime subscriber

  # 1780512 13-May-2017 09:32
Send private message

cruxis:

 

"Weapons grade exploit" first time I ever heard that in use. Wouldn't a exploit the same as a consumer version?

 

 

 

 

in the same way that a 'weather bomb' used to be a 'storm'...






3988 posts

Uber Geek


  # 1780514 13-May-2017 09:34
One person supports this post
Send private message

cruxis:

 

"Weapons grade exploit" first time I ever heard that in use. Wouldn't a exploit the same as a consumer version?

 

 

No, it comes with added Michael Bay and Jerry Bruckheimer explosions and it turns your IT department into something resembling NCIS or CSI ....... :)


826 posts

Ultimate Geek

Subscriber

  # 1780517 13-May-2017 09:40
One person supports this post
Send private message

cruxis:

 

"Weapons grade exploit" first time I ever heard that in use. Wouldn't a exploit the same as a consumer version?

 

 

They are meaning Eternal Blue was coded by professional NSA coders for nation state hacking, rather than by a dude living in his parent's basement.

 

 










Mad Scientist
20659 posts

Uber Geek

Trusted
Lifetime subscriber

  # 1780519 13-May-2017 10:03
Send private message

If my org runs Windows 7 company-wide, i probably shouldn't connect remotely to it over the weekend I gather? Is therea safe way to connect?




Involuntary autocorrect in operation on mobile device. Apologies in advance.


2287 posts

Uber Geek

Subscriber

  # 1780521 13-May-2017 10:06
4 people support this post
Send private message

mdav056:

 

I continue to be amazed at the number of major NZ organizations, including universities, still running Win7.  The larger the number of computers in an organization, the further behind they seem to be on OS software -- too hard basket?

 

 

 

 

It's not exactly a cheap, quick or simple exercise to upgrade OS at mid-large business level. W7 is still under support until 2020.


 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10
View this topic in a long page with up to 500 replies per page Create new topic



Twitter and LinkedIn »



Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

New AI legaltech product launched in New Zealand
Posted 21-Aug-2019 17:01


Yubico launches first Lightning-compatible security key, the YubiKey 5Ci
Posted 21-Aug-2019 16:46


Disney+ streaming service confirmed launch in New Zealand
Posted 20-Aug-2019 09:29


Industry plan could create a billion dollar interactive games sector
Posted 19-Aug-2019 20:41


Personal cyber insurance a New Zealand first
Posted 19-Aug-2019 20:26


University of Waikato launches space for esports
Posted 19-Aug-2019 20:20


D-Link ANZ expands mydlink ecosystem with new mydlink Mini Wi-Fi Smart Plug
Posted 19-Aug-2019 20:14


Kiwi workers still falling victim to old cyber tricks
Posted 12-Aug-2019 20:47


Lightning Lab GovTech launches 2019 programme
Posted 12-Aug-2019 20:41


Epson launches portable laser projector
Posted 12-Aug-2019 20:27


Huawei launches new distributed HarmonyOS
Posted 12-Aug-2019 20:20


Lenovo introduces single-socket servers for edge and data-intensive workloads
Posted 9-Aug-2019 21:26


The Document Foundation announces LibreOffice 6.3
Posted 9-Aug-2019 16:57


Symantec sell enterprise security assets for US$ 10.7 billion to Broadcom
Posted 9-Aug-2019 16:43


Artificial tongue can distinguish whisky and identify counterfeits
Posted 8-Aug-2019 20:20



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.


Support Geekzone »

Our community of supporters help make Geekzone possible. Click the button below to join them.

Support Geezone on PressPatron



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.