{"id":29542,"date":"2017-05-15T05:42:31","date_gmt":"2017-05-15T05:42:31","guid":{"rendered":"http:\/\/www.biphoo.com\/bipnews\/?p=29542"},"modified":"2017-05-15T05:42:31","modified_gmt":"2017-05-15T05:42:31","slug":"150-countries-affected-massive-cyberattack-europol-says","status":"publish","type":"post","link":"https:\/\/www.biphoo.com\/bipnews\/world-news\/150-countries-affected-massive-cyberattack-europol-says.html","title":{"rendered":"More than 150 countries affected by massive cyberattack, Europol says"},"content":{"rendered":"<h2 style=\"text-align: justify;\">\n\t<span style=\"font-size:20px;\"><strong><span style=\"color:#000000;\"><span style=\"font-family:arial,helvetica,sans-serif;\">More than 150 countries affected by massive cyberattack, Europol says<\/span><\/span><\/strong><\/span><br \/>\n<\/h2>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">More than 150 countries affected by massive cyberattack, Europol says:- Europol confirmed Sunday that computer networks in more than 150 countries and more than 200,000 people had been affected by one of the biggest cybersecurity attacks in recent history. &ldquo;It is the biggest ransomware attack ever,&rdquo; Europol spokesman Jan Op Gen Oorth said.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The number of affected networks and individuals is likely to go up, he said, because &ldquo;many workers left their computer turned on last Friday and will probably find out that they are also affected by the malware on Monday morning.&rdquo;<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Although the investigation is ongoing, Europol thinks the malware began to spread Friday from Britain&rsquo;s National Health Service. It then affected other networks in countries including Germany, Spain, China, Russia and India.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&ldquo;It remains unclear what the motivation was. Usually, &lsquo;ransomware&rsquo; attacks are designed to be revenue sources, but in this case the ransom was quite low,&rdquo; Op Gen Oorth said. According to Europol, only few companies or individuals have so far opted to pay the ransom of $300 or more, following law enforcement recommendations.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Organizations around the world faced potentially substantial costs after hackers threatened to keep computers disabled unless victims paid a ransom to receive a decryption key.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The malware hit Britain&rsquo;s beloved but creaky National Health Service particularly hard, causing widespread disruptions and interrupting medical procedures across hospitals in England and Scotland. The government said that 48 of the NHS&rsquo;s 248 organizations were affected, but by Saturday evening all but six were back to normal.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">When asked if the British government paid any ransom in this situation, a Downing Street spokesman said Saturday that it had not. Amber Rudd, Britain&rsquo;s home secretary, also advised against others paying ransom.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">In Germany, people posted pictures on social media of scheduling screens at train stations displaying the ransomware message. Deutsche Bahn, Germany&rsquo;s national railway service, tweeted that its train service had not been compromised and that it was working full speed to solve the problems. According to DPA news agency, Deutsche Bahn&rsquo;s video surveillance technology also was hit.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Other targets in Europe included Telef&oacute;nica, the Spanish telecom giant; the French carmaker Renault; and a local authority in Sweden, which said about 70 computers were infected.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">It was still unclear who was behind the sophisticated attack.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&ldquo;We&rsquo;re not able to tell you who is behind that attack. That work is still ongoing,&rdquo; Rudd told the BBC. She said that it has affected &ldquo;up to 100 countries&rdquo; and that it wasn&rsquo;t specifically targeted at Britain&rsquo;s NHS.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The attack was notable because it took advantage of a security flaw in Microsoft software found by the National Security Agency for its surveillance tool kit. Files detailing the capability were leaked online last month, though after Microsoft, alerted by the NSA to the vulnerability, had sent updates to computers to patch the hole.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Still, countless systems were left vulnerable, either because system administrators failed to apply the patch or because they used outdated software.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">It was a jarring reminder of a stubborn reality facing security experts: Companies and other organizations collectively spent $73 billion on cybersecurity measures in 2016, according to the research firm IDC. Yet systems around the world were crippled by human error &mdash; failure to do routine software updates and employees unknowingly clicking on email attachments that contained the malware.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&ldquo;This was a completely preventable attack &mdash; to the extent that organizations have comprehensive patching systems in place,&rdquo; said Paul Lipman, chief executive of the cybersecurity firm BullGuard. &ldquo;However, life is never that simple.&rdquo;<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">On Friday, Microsoft released additional security updates to Windows and guidelines for consumers and businesses to protect themselves.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">It&rsquo;s possible that the malware didn&rsquo;t spread further because of the enterprising work of a 22-year-old British cybersecurity researcher.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The researcher, whose Twitter handle is @MalwareTechBlog, realized the hackers had designed a &ldquo;kill switch,&rdquo; which involved a domain name that enabled them to stop the attack from spreading if the victims paid the ransoms. The researcher bought the domain name of the kill switch, and when the site went live, the attack stopped spreading.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The move didn&rsquo;t help organizations that were already affected by the attack, but experts said that it limited the spread of the virus. The researcher, however, warned in a blog post that the hackers could alter the code and try again.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Hospitals called ideal targets<br \/>\n\tHealth-care IT experts said it was no surprise that hospitals so easily fell victim to the ransomware attack. Health systems have faced hundreds of ransomware attacks in the past two years.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">They are the ideal target for this type of malware due to a &ldquo;perfect storm&rdquo; of factors, said Avi Rubin, technical director of the Information Security Institute at Johns Hopkins University. For one, Rubin said, the data that they have is incredibly time-sensitive, making them most susceptible to ransomware.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&ldquo;If no one ever paid these ransoms, the hackers would have no reason to launch these attacks,&rdquo; Rubin said. &ldquo;But I&rsquo;m not the one sitting in a hospital in need of immediate medical attention.&rdquo;<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Hospitals also lag far behind other industries in upgrading their security and doing basic software updates. Health-care organizations in general spend 2 to 4 percent of their operating budgets on information technology, compared with 25 to 35 percent for financial services, said John D. Halamka, chief information officer of the Beth Israel Deaconess Medical Center and Harvard Medical School.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&ldquo;We spend billions on new technology,&rdquo; he said. &ldquo;Yet the reality is that we&rsquo;re still as vulnerable as our most gullible employee.&rdquo;<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Health-care organizations in the United States are also subject to additional regulations, which constrain their ability to do updates. Many updates require systems to go dark for some period of time, and many hospitals are not allowed to put critical systems out of use.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Poorer hospitals are particularly vulnerable. While wealthy hospitals have effectively built cybersecurity war rooms over the past two years, some smaller hospitals &ldquo;don&rsquo;t have enough budget to keep the lights on,&rdquo; said Rubin. They often cannot afford to back up data, perhaps the most critical tool in fighting ransomware.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Cybersecurity researchers were far more surprised that sophisticated telecommunications firms, such as Spain&rsquo;s Telef&oacute;nica, were so vulnerable. &ldquo;This just goes to show that even the largest, most resource-rich enterprises can be brought low by something as simple as a skipped patch,&rdquo; said Lipman.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Russia hit hard<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The malware, known as WanaCrypt0r 2.0, or WannaCry, also affected systems for FedEx, major telecommunications firms, Brazil&rsquo;s social security administration, and many others around the world.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">TMT post, a Chinese online news outlet focusing on the Internet industry, reported that a number of Chinese universities had been affected by the attack.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Several schools &mdash; including Nanchang University, Shandong University and University of Electronic Science and Technology of China &mdash; issued alerts on their Weibo social-media feeds, warning staff and students to back up important files and not to open suspicious emails.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">According to Chinese magazine Caijing, some students&rsquo; graduation theses and projects have reportedly been encrypted.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">In Russia, hacking attacks were confirmed Saturday at the Health Ministry, the state-run Russian Railways and the telecommunications company Megafon, along with the Interior Ministry, which manages the police force. There were also reports that the powerful Investigative Committee, which investigates high-level crime, and several other telecommunications companies had been targeted.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The Interior Ministry said that 1,000 of its computers had been blocked by prompts demanding payment. By Friday evening, the ministry said it had &ldquo;contained&rdquo; the attack and denied that any of its information had been stolen.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Jakub Kroustek, a malware researcher with Avast, a security software company in the Czech Republic, said in a blog post that Russia was the most-affected country so far. &ldquo;We are now seeing more than 75,000 detections of WanaCrypt0r 2.0 in 99 countries,&rdquo; he wrote Friday night.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Kaspersky Lab, a Moscow-based Internet security firm, also said that the attacks were mostly in Russia.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">One reason Russia may have been hit so hard is the use of outdated software by government agencies.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&ldquo;Russia has a very rickety, out-of-date infrastructure, using not just outdated software but pirated out-of-date software,&rdquo; said Mark Galeotti, a senior researcher at the Institute of International Relations Prague.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">According to Galeotti, one Interior Ministry official in 2013 estimated that 40 percent of the ministry&rsquo;s computers could be using pirated Windows software, which is widely available in Russia for download or at local computer markets.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">In Brazil, the attack struck at the heart of the government &mdash; employee computers at the Justice Ministry and Brazil&rsquo;s social security administration were infected. The local media also reported that the attack locked up computers in the country&rsquo;s labor courts and the public prosecutor&rsquo;s office.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">In Britain, which is in the middle of an election campaign, the cyberattack triggered criticism of the NHS&rsquo;s aging computer systems, particularly the use of Windows XP, an outdated version of the Microsoft operating system that doesn&rsquo;t have the same level of defense against cyberattacks as newer operating systems.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The opposition Labour Party&rsquo;s Jonathan Ashworth tweeted that the government had been complacent over cybersecurity. &ldquo;We need answers on whether funding squeeze compromised security,&rdquo; he wrote.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Rudd, the home secretary, stressed that there was no evidence that patient data had been compromised but said that there were lessons to learn.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">She told the BBC that Windows XP was &ldquo;not a good platform for keeping your data as secure as the modern ones because you can&rsquo;t download the effective patches and anti-virus software.&rdquo;<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"color:#000000;\"><span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&ldquo;I would expect NHS trusts to learn from this and to make sure that they do upgrade,&rdquo; she said.<\/span><\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:8px;\"><span style=\"color:#000000;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Source:-&nbsp;https:\/\/www.washingtonpost.com\/business\/economy\/more-than-150-countries-affected-by-massive-cyberattack-europol-says\/2017\/05\/14\/5091465e-3899-11e7-9e48-c4f199710b69_story.html?utm_term=.69ee9807c671<\/span><\/span><\/span><\/p>\n<div class=\"fb-background-color\">\n\t\t\t  <div \n\t\t\t  \tclass = \"fb-comments\" \n\t\t\t  \tdata-href = \"https:\/\/www.biphoo.com\/bipnews\/world-news\/150-countries-affected-massive-cyberattack-europol-says.html\"\n\t\t\t  \tdata-numposts = \"10\"\n\t\t\t  \tdata-lazy = \"true\"\n\t\t\t\tdata-colorscheme = \"light\"\n\t\t\t\tdata-order-by = \"social\"\n\t\t\t\tdata-mobile=true>\n\t\t\t  <\/div><\/div>\n\t\t  <style>\n\t\t    .fb-background-color {\n\t\t\t\tbackground: #ffffff !important;\n\t\t\t}\n\t\t\t.fb_iframe_widget_fluid_desktop iframe {\n\t\t\t    width: 630px !important;\n\t\t\t}\n\t\t  <\/style>\n\t\t  ","protected":false},"excerpt":{"rendered":"<p>More than 150 countries affected by massive cyberattack, Europol says More than 150 countries affected by massive cyberattack, Europol says:- Europol confirmed Sunday that computer networks in more than 150 countries and more than 200,000 people had been affected by one of the biggest cybersecurity attacks in recent history. &ldquo;It [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":29544,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[5470],"tags":[15685,15686,15687,18315],"class_list":["post-29542","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-world-news","tag-daily-news-online","tag-financial-world-news-online","tag-latest-world-news-online","tag-more-than-150-countries-affected-by-massive-cyberattack-europol-says"],"_links":{"self":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/posts\/29542","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/comments?post=29542"}],"version-history":[{"count":0,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/posts\/29542\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/media\/29544"}],"wp:attachment":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/media?parent=29542"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/categories?post=29542"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/tags?post=29542"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}