WannaCry? No, It's Worse in New Ransomware Attack

By Steve Anderson June 28, 2017

A recent outbreak of ransomware attacks on what amounted to a global scale struck recently as computers throughout large portions of Europe and Asia were slammed by programs that locked computers and demanded payment to open them back up. While much of the wave seems to be contained—at least for now—it has the subject of cybersecurity back on everybody's lips.

Ukraine seemed to be the biggest target in all this, as its transportation industry, its power companies, and both its government and its National Bank were all on ground zero. That didn't make Ukraine the only target by any stretch, as reports emerged of providers hit worldwide and striking at major infrastructure operations.

Many cited WannaCry as the likely culprit, though some security experts believed the Petya breed was involved instead. More specifically, it's a new offshoot called “NotPetya.” NotPetya is said to be similar to Petya, but with sufficient differences to make it its own breed of ransomware. NotPetya's origins can be traced back to the National Security Administration (NSA) and its EternalBlue hack, which is actually at last report where WannaCry came from. NotPetya, meanwhile, only scans computers on a local network rather than the entire Internet.

While recent reports suggest that the ransomware outbreak is under control in Ukraine, and the attacks taking on worldwide operations—from Danish shipping firm Maersk to United States pharmaceutical firm Merck—are trailing off, the latest outbreak may be nearly done. That isn't to say it's stopped, or will stop for long, but it's clear that ransomware will continue to be a problem.

Why? Simple: it works. And works well, too, by some reports; not only are these attacks able to make headway because many firms are still using outdated technology, but said firms also aren't engaging in proper patch discipline and installing necessary patches that would have protected against such issues in the first place. With an increasingly interconnected world, we must have the tools to protect ourselves against malware like this, and many simply aren't using them. Throw in the comparatively low costs demanded by ransomware practitioners—some reports suggested $300 in bitcoin was enough to unlock a system from this latest attack—and the costs of paying up actually seem less than paying for new systems or for IT to run patches.

As long as ransomware remains a comparative bargain and companies continue to operate with old, unpatched hardware, we'll likely continue to see such attacks take place. That's not good news for those of us who depend on power, fuel, and other such matters.




Edited by Alicia Young

Contributing Writer

SHARE THIS ARTICLE
Related Articles

6 Challenges of 5G, and the 9 Pillars of Assurance Strategy

By: Special Guest    9/17/2018

To make 5G possible, everything will change. The 5G network will involve new antennas and chipsets, new architectures, new KPIs, new vendors, cloud di…

Read More

Putting the Flow into Workflow, Paessler and Briefery Help Businesses Operate Better

By: Cynthia S. Artin    9/14/2018

The digital transformation of business is generating a lot of value, through more automation, more intelligence, and ultimately more efficiency.

Read More

From Mainframe to Open Frameworks, Linux Foundation Fuels Up with Rocket Software

By: Special Guest    9/6/2018

Last week, at the Open Source Summit, hosted by The Linux Foundation, the Open Mainframe Project gave birth to Zowe, introduced a new open source soft…

Read More

Unified Office Takes a Trip to the Dentist Office

By: Cynthia S. Artin    9/6/2018

Not many of us love going to see the dentist, and one company working across unified voice, productivity and even IoT systems is out to make the exper…

Read More

AIOps Outfit Moogsoft Launches Observe

By: Paula Bernier    8/30/2018

Moogsoft Observe advances the capabilities of AIOps to help IT teams better manage their services and applications in the face of a massive proliferat…

Read More