Ransomware Shows Devastating Potential With Disruptive Global Attack

WannaCry ransom message
Latest Videos FromTom's Hardware
Contributor

Lucian Armasu is a Contributing Writer for Tom's Hardware US. He covers software news and the issues surrounding privacy and security.

  • Herc08
    I am a IT Admin at OUHSC and we just found out about this. I think it's called WannaCry or something, and it uses 4 different types of file extensions. If I'm not mistaken, Microsoft has released a patch back in March, so keeping Windows updated should take care of this.
    Reply
  • moy2010
    Please RTFA before commenting...
    Reply
  • therealduckofdeath
    I think, the most important lesson organisations should learn from this exploit is, reconsider sticking to processes like ITIL. ITIL worked great in the old days. Today, most exploits are too sophisticated to be stopped just by keeping your software at the "last known good state". It needs to be patched and updated a lot faster than that.
    Reply
  • ern88
    I wonder if this could infect Windows 7 users as well? Or is this just a Windows 10 thing. I know a lot of businesses uses Windows 7.
    Reply
  • Alex Atkin UK
    From Wired: "The vulnerability (MS17-010) is linked to Microsoft machines and can affect Windows Vista, 7, 8, 10 and versions of the Windows Server software.

    Microsoft fixed MS17-010 in its March release but it is likely organisations affected did not patch their devices before the spread of the malware."

    This is interesting as it has previously been reported that most of the NHS still use XP, so is that vulnerable too or was it ironically only that small percentage that HAD upgraded that got infected?
    Reply
  • alidan
    thankyou microsoft for disabling my ability to patch my computer.
    Reply
  • alextheblue
    19683870 said:
    From Wired: "The vulnerability (MS17-010) is linked to Microsoft machines and can affect Windows Vista, 7, 8, 10 and versions of the Windows Server software.

    Microsoft fixed MS17-010 in its March release but it is likely organisations affected did not patch their devices before the spread of the malware."

    This is interesting as it has previously been reported that most of the NHS still use XP, so is that vulnerable too or was it ironically only that small percentage that HAD upgraded that got infected?
    XP is incredibly vulnerable. I wouldn't run XP outside of a virtualized environment at this point, at least not on a machine that has internet access.
    Reply
  • qazzi
    the main question in my mind is how did they get infected? phishing email? inserting already infected usb? because most of the time people who use pc needs to be trained/seminar about phishing email/scams, virus etc. i think they need to train/give a seminar on all those people who use pc. (because let's face it, most ppl that is not tech savy will just click a link in a email telling them they won something then boom ransomware installed.)
    Reply
  • alidan
    19684030 said:
    the main question in my mind is how did they get infected? phishing email? inserting already infected usb? because most of the time people who use pc needs to be trained/seminar about phishing email/scams, virus etc. i think they need to train/give a seminar on all those people who use pc. (because let's face it, most ppl that is not tech savy will just click a link in a email telling them they won something then boom ransomware installed.)
    apparently its just load a website with the worm and your hit, no execute anything, from my understanding an nsa "tool" that got leaked
    Reply
  • sh4dow83
    People who are technically proficient should REALLY read that Cisco article above everything else.
    Reply