MASSK GROUP
Recent Post
  • Welcome to Massk Group!
  • Your Story with us!
  • Who we are?
  • Talent Empowerment
    • Online Training Registration
  • What is new?
    • MASSK COFFEE BREAK
  • Contact US

9/6/2017

Learn May 2017 Cyber Attack Alert!           “WannaCry Ransomware Attack”

0 Comments

Read Now
 
What is malware and ransomware?

Malware is a general term that refers to software that's harmful to your computer, said John Villasenor, a professor at the University of California, Los Angeles. Ransomware is a type of malware that essentially takes over a computer and prevents users from accessing data on it until a ransom is paid, he said.

The WannaCry ransomware attack started on Friday, 12 May 2017, infecting more than 230,000 computers in 150 countries, with the software demanding ransom payments in the crypto currency bitcoin in 28 languages.How it Attack Computer what message it deploys?The initial infection might have been either through a vulnerability in the network defenses or a very well-crafted spear phishing attack. When executed, the malware first checks the "kill switch" domain name.

If it is not found, then the ransomware encrypts the computer's data, then attempts to exploit the SMB vulnerability to spread out to random computers on the Internet, and "laterally" to computers on the same network. As with other modern ransomware, the payload displays a message informing the user that files have been encrypted, and demands a payment of around $300 in bitcoin within three days or $600 within seven days.In most cases, the software infects computers through links or attachments in malicious messages known as phishing emails."The age-old advice is to never click on a link in an email," said Jerome Segura, a senior malware intelligence researcher at Malwarebytes, a San Jose-based company that has released anti-ransomware software. "The idea is to try to trick the victim into running a malicious piece of code." The ransomware encrypts data on the computer using an encryption key that only the attacker knows.

What should you do to protect yourself?
Authorities in the U.S. and U.K. have issued guidance on what to do.
Individuals and small businesses should:
  • Run Windows Update to get the latest software updates.
  • Make sure any anti-virus product is up to date and scan your computer for any malicious programs. It's also worth setting up regular auto-scans.
  • Back up important data on your computer in case it gets held for ransom.
Large organizations should:
  • Apply the latest Microsoft security patches for this particular flaw.
  • Back up key data.
  • Ensure all outgoing and incoming emails are scanned for malicious attachments.
  • Ensure anti-virus programs are up to date and conducting regular scans.
  • Educate employees on identifying scams, malicious links and emails that may contain viruses.
  • Make sure to run "penetration tests" against your network's security, no less than once a year, according to the Department of Homeland Security.
Source : Wikipidia, CNN, BBC news

Author

Meskerem Alemu (CEH,CISA,MSCS)
IT Security and Audit  Business Expertise

Share

0 Comments



Leave a Reply.

Details
    Subscribe and get new Journal Update for free
    Subscribe to Newsletter

    RSS Feed

Solutions

Business Course
ICT Course
Human Empowering Course
ICT Consulting
Business Consulting 
E-Learning 
Software solutions
ICT Infrastructure & Maintenance

Multimedia & Film production
Events 





Resource
Your story!
New post
What is new
Massk Coffee break
Business update
Publications
Journals

​

Massk Home

About Massk
Contact Massk 
Apply for Partnership
Job Vacancy
​Join Massk Author

Follow Us

​© Copyright 2020 MASSK Groups All Right Reserved
  • Welcome to Massk Group!
  • Your Story with us!
  • Who we are?
  • Talent Empowerment
    • Online Training Registration
  • What is new?
    • MASSK COFFEE BREAK
  • Contact US