{"id":33286,"date":"2017-06-28T10:46:24","date_gmt":"2017-06-28T10:46:24","guid":{"rendered":"http:\/\/www.biphoo.com\/bipnews\/?p=33286"},"modified":"2017-06-28T10:46:24","modified_gmt":"2017-06-28T10:46:24","slug":"cyber-attack-sweeps-globe-researchers-see-wannacry-link","status":"publish","type":"post","link":"https:\/\/www.biphoo.com\/bipnews\/world-news\/cyber-attack-sweeps-globe-researchers-see-wannacry-link.html","title":{"rendered":"Cyber attack sweeps globe, researchers see WannaCry link"},"content":{"rendered":"<h2 style=\"text-align: justify\"><span style=\"font-size: 18pt\"><strong><span style=\"font-family: Arial, Helvetica, sans-serif\">Cyber attack sweeps globe, researchers see WannaCry link<\/span><\/strong><\/span><\/h2>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">A major global cyber attack disrupted computers at Russia&#8217;s biggest oil company, Ukrainian banks and multinational firms with a virus similar to the ransomware that infected more than 300,000 computers last month .<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">The rapidly spreading cyber extortion campaign, which began on Tuesday, underscored growing concerns that businesses have failed to secure their networks from increasingly aggressive hackers, who have shown they are capable of shutting down critical infrastructure and crippling corporate and government networks.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Businesses in the Asia-Pacific region reported some disruptions on Wednesday with the operations of several European companies hit, including India&#8217;s largest container port, although the impact on companies and governments across the wider region appeared to be limited.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">The ransomware virus includes code known as &#8220;Eternal Blue&#8221;, which cyber security experts widely believe was stolen from the U.S. National Security Agency (NSA) and was also used in last month&#8217;s ransomware attack, named &#8220;WannaCry&#8221;.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">&#8220;Cyber attacks can simply destroy us,&#8221; said Kevin Johnson, chief executive of cyber security firm Secure Ideas. &#8220;Companies are just not doing what they are supposed to do to fix the problem.&#8221;<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">The virus crippled computers running Microsoft Corp&#8217;s (MSFT.O) Windows by encrypting hard drives and overwriting files, then demanded $300 in bitcoin payments to restore access. More than 30 victims paid into the bitcoin account associated with the attack, according to a public ledger of transactions listed on blockchain.info.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Microsoft said the virus could spread through a flaw that was patched in a security update in March.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">&#8220;We are continuing to investigate and will take appropriate action to protect customers,&#8221; a spokesman for the company said, adding that Microsoft antivirus software detects and removes it.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">AUSTRALIA, INDIA HIT<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Operations at one of the three terminals of Jawaharlal Nehru Port (JNPT) in Mumbai, India&#8217;s largest container port, were disrupted.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">The impacted terminal is operated by Danish shipping giant AP Moller-Maersk (MAERSKb.CO), which also reported disruptions in Los Angeles. JNPT chairman Anil Diggikar told Reuters the port has been trying to clear containers manually and is operating at about a third of its capacity.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">India-based employees at Beiersdorf, makers of Nivea skin care products, and Reckitt Benckiser (RB.L), which owns Enfamil and Lysol, told Reuters the ransomware attack had affected some of their systems.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">In Australia, a Cadbury chocolate factory was hit, a trade union official said. Production at the Hobart factory on the island state of Tasmania ground to a halt late on Tuesday after computer systems went down.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Cadbury owner Mondelez International Inc said in a statement overnight staff in various regions were experiencing technical problems but it was unclear whether this was due to a cyber attack.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Cybersecurity firms Kaspersky Lab and FireEye Inc told Reuters they had detected attacks in other Asia-Pacific countries but did not provide details.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Globally, Russia and Ukraine were most affected by the thousands of attacks, according to Kaspersky Lab, with other victims spread across countries including Britain, France, Germany, Italy, Poland and the United States. The total number of attacks was unknown.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Security experts said they expected the impact to be smaller than WannaCry because many computers had been patched with Windows updates in the wake of the WannaCry ransom attack last month to protect them against attacks using Eternal Blue code.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Still, the attack could be more dangerous than traditional strains of ransomware because it makes computers unresponsive and unable to reboot, Juniper Networks (JNPR.N) said in a blog post analysing the attack.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Other security experts said they did not believe that the ransomware released on Tuesday had a &#8220;kill switch&#8221;, meaning that it might be harder to stop than WannaCry was last month.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Researchers said the attack may have borrowed malware code used in earlier ransomware campaigns known as &#8220;Petya&#8221; and &#8220;GoldenEye&#8221;.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Following last month&#8217;s attack, governments, security firms and industrial groups aggressively advised businesses and consumers to make sure all their computers were updated with Microsoft patches to defend against the threat.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">The U.S. Department of Homeland Security said it was monitoring the attacks and coordinating with other countries. It advised victims not to pay the extortion, saying that doing so did not guarantee access would be restored.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">The White House National Security Council said in a statement there was currently no risk to public safety. The United States was investigating the attack and determined to hold those responsible accountable, it said.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">The NSA did not respond to a request for comment. The spy agency has not said publicly whether it built Eternal Blue and other hacking tools leaked online by an entity known as Shadow Brokers.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Several private security experts have said they believe Shadow Brokers is tied to the Russian government, and that the North Korean government was behind WannaCry. Both countries&#8217; governments deny charges they are involved in hacking.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">The first attacks were reported from Russia and Ukraine.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Russia&#8217;s Rosneft (ROSN.MM), one of the world&#8217;s biggest crude producers by volume, said its systems had suffered &#8220;serious consequences&#8221; but said oil production had not been affected because it switched over to backup systems.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Ukrainian Deputy Prime Minister Pavlo Rozenko said the government&#8217;s computer network went down and the central bank reported disruption to operations at banks and firms, including the state power distributor.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">WPP (WPP.L), the world&#8217;s largest advertising agency, said it was also infected. A WPP employee who asked not to be identified said workers were told to shut down their computers. &#8220;The building has come to a standstill,&#8221; the employee said.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">A Ukrainian media company said its computers were blocked and had received the ransom demand.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">&#8220;Perhaps you are busy looking for a way to recover your files, but don&#8217;t waste your time. Nobody can recover your files without our decryption service,&#8221; the message said, according to a screenshot posted on Ukraine&#8217;s Channel 24.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-size: 14pt;font-family: Arial, Helvetica, sans-serif\">Russia&#8217;s central bank said there were isolated cases of lenders&#8217; IT systems being infected. One consumer lender, Home Credit, had to suspend client operations.<\/span><\/p>\n<p><span style=\"font-size: 8pt\">Source:-\u00a0http:\/\/www.reuters.com\/article\/us-cyber-attack-idUSKBN19I1TD<\/span><\/p>\n<div class=\"fb-background-color\">\n\t\t\t  <div \n\t\t\t  \tclass = \"fb-comments\" \n\t\t\t  \tdata-href = \"https:\/\/www.biphoo.com\/bipnews\/world-news\/cyber-attack-sweeps-globe-researchers-see-wannacry-link.html\"\n\t\t\t  \tdata-numposts = \"10\"\n\t\t\t  \tdata-lazy = \"true\"\n\t\t\t\tdata-colorscheme = \"light\"\n\t\t\t\tdata-order-by = \"social\"\n\t\t\t\tdata-mobile=true>\n\t\t\t  <\/div><\/div>\n\t\t  <style>\n\t\t    .fb-background-color {\n\t\t\t\tbackground: #ffffff !important;\n\t\t\t}\n\t\t\t.fb_iframe_widget_fluid_desktop iframe {\n\t\t\t    width: 630px !important;\n\t\t\t}\n\t\t  <\/style>\n\t\t  ","protected":false},"excerpt":{"rendered":"<p>Cyber attack sweeps globe, researchers see WannaCry link A major global cyber attack disrupted computers at Russia&#8217;s biggest oil company, Ukrainian banks and multinational firms with a virus similar to the ransomware that infected more than 300,000 computers last month . The rapidly spreading cyber extortion campaign, which began on [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":33287,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[5470],"tags":[20507,20508],"class_list":["post-33286","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-world-news","tag-cyber-attack-sweeps-globe","tag-researchers-see-wannacry-link"],"_links":{"self":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/posts\/33286","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/comments?post=33286"}],"version-history":[{"count":0,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/posts\/33286\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/media\/33287"}],"wp:attachment":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/media?parent=33286"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/categories?post=33286"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/tags?post=33286"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}