This year we’ve seen some deadly malware attacks such as Petya and WannaCry. Joining this list is another potentially hazardous malware, called ‘Bad Rabbit’. As per incoming reports, this ransomware has been spotted in parts of Russia and Ukraine, as well as countries such as Bulgaria, Turkey, Germany, Poland and South Korea.
Security Firms Kaspersky And Eset Are Continuously Monitoring
The Spread And Damage Being Done By Bad Rabbit. In Fact, They Claim That The
Group Behind This New Malware Has Ties To Those Responsible For Petya And
Wannacry. Bad Rabbit Not Only Seems To Be Affecting A Lot Of The Same Websites,
But Also Uses The Same Roughly The Same Method To Affect Computers And
Networks. “This Indicates That The Actors Behind Expetr/Notpetya Have Been
Carefully Planning The Bad Rabbit Attack Since July,” Costin Raiu, Director Of
Kaspersky’s Global Research And Analysis Team, Told Wired.
Bad Rabbit Is Said To Spread Using Windows Management
Instrumentation Command-Line Along With A Tool To Harvest Passwords And Other
Data From Computers, Called Mimikatz. A Kaspersky Note Explains How The Malware
Uses A Drive-By Attack To Infect A Computer.
“Victims Download A Fake Adobe Flash Installer From Infected
Websites And Manually Launch The .Exe File, Thus Infecting Themselves. Our
Researchers Have Detected A Number Of Compromised Websites, All News Or Media
Sites,” The Note Says.
Once A Computer Is Infected, The Data Is Encrypted And The Perpetrators Ask For .05 Bitcoins (Rs 17,800 Approximately) As Ransom. Along With The Ransom, There Is A Timer Counting Down From 40 Hours, Post Which The Ransom Demands Are Said To Go Up. But Security Firms And Governments Have Asked Victims Not To Pay The Ransom, As There Is No Guarantee If The Data Will Be Decrypted After Payment.
As Per Various Reports, Bad Rabbit Has Managed To Infect Computers At Ukraine’s Ministry Of Infrastructure, Kiev Metro, Odessa Airport, And Media Outlets In Russia Including Interfax, And Fontanka.Ru. Crowdstrike Vice President Adam Meyers Is Quoted As Saying That The Malware Appears To Have Originated From Russian News And Celebrity Gossip Site Argumentiru.Com,Gizmodo Reports.
In The Meantime, Malware Analyst At Cybereason Security Firm, Amit Serper, Has Found A Vaccine For Bad Rabbit. You Can Find A Step-By-Step Guide Here.
No comments:
Post a Comment