Business

Ransomware, the weapon wielded in cyber attacks

May 16, 2017 | 07:57 AM GMT+7

A software that demands a ransom was the weapon of choice used in a wave of unprecedented global cyber attacks Friday that affected 130,000 systems in more than 100 countries.

firewall needed to face risks incurred by ransomware to threaten

A software that demands a ransom was the weapon of choice used in a wave of unprecedented global cyber attacks Friday that affected 130,000 systems in more than 100 countries.

The attacks have raised questions about how this so-called ransomware works, and how to guard against it.

WHAT IS RANSOMWARE?

Ransomware is malicious software which locks computer files and forces users to pay the attackers a designated sum in the virtual Bitcoin currency to regain access to the files.

Ransomware is used on PCs as well as tablets and smartphones. It can affect "at the same time individuals, businesses and institutions," Amar Zendik, CEO security firm Mind Technologies, told AFP.

HOW DOES IT WORK?

Cyber pirates generally take control of computers by exploiting flaws in the internet.

That could happen when a user logs onto a web site that has been previously infected or opens an email that invites the user to click on a link or download an attachment.

In a few seconds, the malware can be implanted. And when it's installed, "it can't be detected," Laurent Marechal, a cyber security expert at McAfee, told AFP.

It's only afterwards that it "downloads the 'payload', that is the viral charge," he said.

From then on the computer work station is blocked. "Most often the user has to send an SMS" - and pay up - "in order to get the unblocking code," says Marechal, adding that in certain complex cases, the virus can spread "without any human intervention".

IS IT USED FREQUENTLY?

Yes. And ransomware continues to multiply. According to security software Kapersky Lab, 62 new types of ransomware were identified last year.

And the US computer security software company McAfee said the number of "samples" detected increased by 88 per cent in 2016, totalling some four million.

"Often the pirates ask for small sums of money. But accumulated, these small amounts add up to big money," says cyber security expert Zendik.

Another expert Marechal said could be found on the 'dark web', an obscured part of the internet that's not indexed by classic search engines.

"Individuals can buy ransomware ready to use, sometimes only for US$150," he said.

WHY WAS FRIDAY'S ATTACK SO MASSIVE?

The culprits behind the cyber attacks apparently took advantage of a flaw in the Windows operating system, which had been divulged in documents leaked from the US National Security Agency (NSA), according to initial findings of the investigation.

Zendik said the attack was based on a previously unknown Windows flaw.

"We're not talking about classic 'ransomware' which generally targets individuals and small businesses," he said.

"Here the hackers attacked big institutions, not likely to be susceptible to paying, especially given the publicity about the operation."

He added that "in theory, the authors of the attack did not want to make money, but rather to achieve a (cyber) coup."

HOW CAN YOU PROTECT AGAINST RANSOMWARE?

There are several simple rules that can be followed to reduce the risks of a ransomware attack.

Among them are regularly updating the computer's security software which can correct any flaws exploited by the virus.

In case of a cyber attack, the authorities advise disconnecting the infected equipment immediately from the network, in order to isolate them.

In the case of a virus affecting a business or an institution, the IT experts should be alerted right away.

Authorities also recommend not paying the hackers the ransom demanded - because it's no guarantee that access to the data will be restored.

MiLAW Project: A breakthrough in space exploration

MiLAW Project: A breakthrough in space exploration

Business -  3 hour

Michelin has been selected by NASA to participate in the research team for phase 1 of the Artemis project. The company's task involves researching and developing specialized airless wheels intended for lunar rovers.

Why the principle of “Trust” drives Bcons Group’s success

Why the principle of “Trust” drives Bcons Group’s success

Business -  3 day

Bcons Group has been leaving a lasting impression on the southern Vietnam’s real estate market. At the core of its achievements lies a single principle - “Trust” - the foundation that has propelled the company toward success and accelerated its transformation into a multi-industry conglomerate.

Tapping into opportunities for martech in Vietnam

Tapping into opportunities for martech in Vietnam

Business -  2 week

Vietnam's marketing technology landscape is evolving rapidly, propelled by a niche group of "whale" users who are driving a large portion of in-app purchases.

Tasco and Geely launch joint venture for car assembly plant in Vietnam

Tasco and Geely launch joint venture for car assembly plant in Vietnam

Business -  4 week

This agreement marks a significant step forward in the collaboration between two major automotive companies from Vietnam and China.

SuperPort Vietnam unveils new vision, targets net-zero emissions by 2040

SuperPort Vietnam unveils new vision, targets net-zero emissions by 2040

Business -  1 month

SuperPort Vietnam is set to become a multimodal logistics hub, linking China and Southeast Asia's freight networks with global markets.

TNH Hospital Group eyes major foreign investment to fuel ambitious expansion

TNH Hospital Group eyes major foreign investment to fuel ambitious expansion

Business -  1 month

Foreign capital is anticipated to aid TNH Hospital Group Joint Stock Company (TNH) in realizing its ambitious expansion plans.