
Ransomware Attacks Large UK News Site, Demands Bitcoin Payment
A new Cryptesla ransomware is making the rounds throughout the web locking up users files and demanding Bitcoin. Recently the UK news publication The Independent was allegedly compromised by the malicious malware. Trend Micro Blog said that the Cryptesla 2.2.0 had infected the media site by focusing in on its blog page and possibly threatening readers using the WordPress it’s platform. A spokesperson from the Independent tells BBC News:
“IT APPEARS THAT AN ADVERT APPEARING ON THAT BLOG SITE MAY HAVE INCLUDED MALWARE, — THERE IS NO SUGGESTION OR EVIDENCE THAT ANY OF OUR USERS HAVE BEEN AFFECTED BY THIS.” — INDEPENDENT UK SPOKESPERSON

This software finds its way into a host computer through an array of vectors and encrypts files, folders and individual areas denying you access to the target regions. Typically users are directed to a ransom note with a timer and asked to pay a sum of bitcoin so the files can be decrypted. There have been many names and types of ransomware including a few variants of the TeslaCrypt version. There haven’t been many successful reports of those paying the ransom demands to the cyber criminals account. However, the ransom note typically gives a 96-hour time frame and says once the ransom is paid a decryption key is given to users so files can be read again. The decryption must take place or users files will always be corrupted and unreadable nonsense.

“UNFORTUNATELY, UNLESS YOU CAPTURE THE ENCRYPTION KEY AT THE TIME OF THE INFECTION THERE IS NO WAY OF DECRYPTING YOUR FILES WITHOUT PAYING THE RANSOM.” — BLEEPING COMPUTER

Thankfully quite a few ransomware threats have been decoded by people and organizations throughout the web. People volunteering or also charge a small fee have figured out ways to disable the locking mechanism. Resources can be found at the Kaspersky website, and many other antivirus researchers. It’s recommended that you stay away from untrustworthy domains and odd emails being sent from unknown senders. It’s also suggested to immediately find online help or decryption services that can unlock your files without settling with the demands from a malicious hacker. A bunch of Cryptolocker variants have been cracked so paying a ransom may not be necessary.
What do you think of the rise of ransomware? Let us know in the comments below!
0 Comments
Post a Comment