Showing posts with label cyber attack. Show all posts
Showing posts with label cyber attack. Show all posts

Tuesday, May 16, 2017

Beware: the WannaCrypt / WannaCry Ransomware

What is WannaCrypt Ransomware? 
WannaCrypt Ransomware, also known by the names WannaCry, WanaCrypt0r or Wcrypt is a ransomware which targets Windows operating systems. Discovered on May 12, 2017, WannaCrypt was used in a large Cyber-attack and has since infected more than 230,000 Windows PCs in 190 countries.

How does WannaCrypt ransomware get into your computer?

As evident from its worldwide attacks, WannaCrypt first gains access to the computer system via an email attachment and thereafter can spread rapidly through your LAN network. The ransomware can encrypt your systems hard disk and attempts to exploit the SMB vulnerability to spread to random computers on the Internet via TCP port and between computers on the same network.

The best thing you can do it to avoid clicking on any attachments sent to you via email, even if they appear to be legitimate!


Although the first wave of this ransomware was stopped, we are already seeing new variations of it hitting computers around the world. Be sure your systems are consistently backing up. If you are unsure, contact your assigned IES agent.


Lastly, if you see the message below - or a similar one - it’s already too late for you. IMMEDIATELY SHUT DOWN YOUR COMPUTER and call IES at 781-816-9437.

 

Wednesday, June 22, 2016

Carbonite blasts an email for all users to reset their password.

Yes this is a real email from Carbonite. We urge all of our customers to change their passwords as soon as they can.

This action is being taken proactively and at this time there is no evidence to indicate that your account or data have been compromised. Your backups are safe and your regular backup schedule will continue.
What Happened
As part of ongoing security monitoring, Carbonite recently became aware of unauthorized attempts to access a number of Carbonite accounts. This activity appears to be the result of a third party attacker using compromised email addresses and passwords obtained from other companies that were previously attacked. The attackers then tried to use the stolen information to access Carbonite accounts. Based on our security reviews, there is no evidence to suggest that Carbonite has been hacked or compromised.
What Information Was Involved
While Carbonite will continue to monitor and investigate the matter, we have determined that some usernames and passwords are involved. Additionally, for some accounts, other personal information may have been exposed.
What Carbonite Is Doing
Use the link that Carbonite emailed to you to reset your password. We highly recommend using "strong" unique passwords for Carbonite and all online accounts. If you use the same or similar passwords on other online services, we recommend that you set new passwords on those accounts as well.

Tuesday, July 16, 2013

The bank robbery of the future: cyberattacks.

Bank robbers no longer need to leave the comfort of their own home to rob a bank. No more guns, no more masks. Instead, they hide behind their computer screens and cover their digital tracks.

In today's world, there are multiple ways for cybercriminals to make money long before cash is actually transferred out of a bank account. Robbing a bank has become one of the last cogs in a much broader operation.

Online theft is almost always part of a much grander scheme. Though sometimes a high-skilled individual or single group of cybercriminals will handle all parts of an operation, most cybercrime is split up into several steps, each handled by a different player, according to Vikram Thakur, a principal manager at Symantec Security Response.

Most bank account thefts begin with a single malware developer who sells malicious software on an underground black market to hackers.

On those dark channels of the Internet, criminal hackers can buy tools to steal users' bank account credentials, services to bring down websites, or viruses to infect computers.

"There's more variety and more choices than me going to my local Costco," said Raj Samani, a chief technical officer at the security company McAfee.

It is easier than ever before to find and use these services, Samani said. Hiring a criminal hacker is easy, because today's malware requires hackers to have little technological knowledge to infect hundreds or thousands of computers.

And some services are fairly cheap. For instance, getting a hold of 1 million email addresses can cost just $111. That means there are more and more cybercriminals hoping to get in on an operation.

Once unsuspecting victims' credentials or bank account information has been collected, hackers may resell that data to someone who repackages it in a useful way and redistributes it on the black market.

Not all information has equal value. Often criminals are looking for credentials of wealthy individuals with accounts at financial institutions where they are familiar with the security systems.
"All the mature, smart criminals sell the goods to somebody else and cut themselves out of the operation, out of the cross hairs," said Thakur.

Up to this point in the operation, no money has been stolen -- but thousands or millions of dollars have already exchanged hands.

The cybercriminal who ultimately buys the bank account information may use it to transfer money out -- but that's a much higher-risk endeavor.

At this stage of the heist, cybercriminals may hire a "money mule" to increase what distance still exists between them and the act of cashing out. Mules sometimes use international wire transfers, make online purchases with stolen credit cards or actually go to the ATM using a stolen PIN and a spoofed debit card.

Money mules are often given a small share of the takings for their work, despite the fact that they're the easiest targets for law enforcement.

"There's a huge shortage of those people because they're actually at risk of being caught," said Thakur.

Most of us have at one time or another discovered our debit or credit card was used somewhere across the country. But even if the thieves take money from your account undetected, your financial institution typically covers the loss.

"Even though the threat is substantial, it does not always translate to people losing money," said Thakur.

And the banks are getting better at stopping breaches so that it's harder for criminals to successfully take money out at all.

The number of breaches have gone up slightly over the past year, but the trend is uneven. The Identity Theft Resource Center tracked 662 breaches at both banking and non-financial institutions in 2010, 419 breaches in 2011, and 470 breaches last year.

Financial institutions have gotten 10 times better at preventing data breaches since 1990, said Doug Johnson, vice president of risk management policy at the American Bankers Association.

"It's not a straight march forward," said Johnson. "But I think we clearly recognized that electronic fraud is going to increase."

Source: CNN Money

Tuesday, February 5, 2013

If it can happen to the government, it can certainly happen to you! Hackers have attacked the US Department of Energy.

"The Department of Energy has just confirmed a recent cyber incident that occurred in mid-January which targeted the Headquarters' network and resulted in the unauthorized disclosure of employee and contractor Personally Identifiable Information".

The agency said that it is working to figure out the "nature and scope of the incident" but that so far it believes no classified data was compromised. It's currently unclear which divisions within the Department of Energy were attacked or who was behind the hack.

Source: CNET