Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Latest Ransomware Attack is Brutal Reminder of Cyber Security Importance

Latest Ransomware Attack is Brutal Reminder of Cyber Security Importance

A new malware swept across the globe Tuesday, incorporating facets of many ransomwares that have made headlines recently. While it originally appeared to be a variant of the Petya ransomware, it has been determined that it shares more in common with WannaCry. However, “NotPetya,” as it has been named, has a few additional features that experts say make it worse than either of its predecessors.

Why NotPetya Isn’t Really a Ransomware
The first clue that researchers had that NotPetya had a different motivation was the fact that the ransom only demanded the Bitcoin equivalent of $300. Secondly, the only means of getting the decryption key was to send an email to an address hosted by German email provider Posteo. Despite the lack of preparation the payment method appeared to have, NotPetya itself was clearly designed to be able to infiltrate as many networks as possible and do maximum damage once inside.

A Hybrid Hacking Attack
Since the attack commenced, researchers have ascertained that despite its initial similarities with Petya, NotPetya shares many traits with other malicious programs. Like WannaCry, the attack that affected much of Europe, NotPetya leverages EternalBlue. EternalBlue is a National Security Agency hacking tool that targets unpatched systems and steals the passwords that allow administrator access. In addition to EternalBlue, NotPetya also utilizes EternalRomance, another code that was stolen from the NSA.

Once NotPetya has infected one computer, it extracts passwords from its memory or the local filesystem to allow itself to spread--including onto updated and patched Windows 10 systems.

How To Protect Your Files
First off, don’t expect that you can retrieve your files just by paying the ransom. Even if those responsible for NotPetya intended to keep their word and return them once paid, Posteo has shut down the provided email account victims were to receive their keys from. As a result, unless a victim was already following certain best practices, their files are as of yet unrecoverable.

However, this does not mean that everyone is vulnerable to this attack. Before the EternalBlue and EternalRomance exploits were distributed on the dark web, Microsoft had already released patches for the vulnerabilities. However, if these patches were not applied, a user’s systems were (and are) still vulnerable.

The best method to avoid infection from this kind of attack is to ensure your users understand the importance of cyber security efforts, and that all of your business’ systems are reinforced against the latest threats by keeping your defenses up-to-date.

Furthermore, even an infected user is not without hope if they have been backing up their files. If they have done so, all they have to do is disconnect their computer from the Internet, reformat their hard drive and restore their data from their backup solution. However, for this to work, you have to also be sure that your backups are up-to-date, and that your backup is stored in an isolated location, separate from your network.

Voyage Technology has the experience and expertise to help prevent you from becoming a victim of a malware like this, whether we help you manage your backups or help educate your users to avoid attacks like these in the first place. Give us a call at 800.618.9844 today.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Friday, 25 April 2025

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Business Computing Data Productivity Business Software Innovation Hackers Cloud Network Security User Tips Internet Hardware Efficiency IT Support Malware Privacy Google Email Workplace Tips Phishing Computer IT Services Hosted Solutions Collaboration Users Mobile Device Ransomware Quick Tips Workplace Strategy Microsoft Cybersecurity Small Business Passwords Data Backup Communication Smartphone Backup Saving Money VoIP Smartphones Android Business Management Mobile Devices communications Managed Service Upgrade Disaster Recovery Data Recovery Browser Social Media Managed IT Services Microsoft Office Windows Network Remote Tech Term Current Events Internet of Things Productivity Artificial Intelligence Automation Facebook Gadgets Cloud Computing Covid-19 Miscellaneous AI Server Remote Work Managed Service Provider Outsourced IT Information Holiday Encryption Spam Employee/Employer Relationship Compliance Office Windows 10 Government Training Data Management Business Continuity Blockchain Wi-Fi Business Technology Windows 10 Bandwidth Virtualization Apps Data Security Two-factor Authentication Mobile Office Networking App Employer-Employee Relationship BYOD Vendor Mobile Device Management Chrome Gmail Budget Managed Services Voice over Internet Protocol Apple How To BDR Computing Hacker Information Technology Avoiding Downtime Applications Marketing Office 365 Access Control IT Support Tip of the week Conferencing WiFi Managed IT Services Operating System Computers Risk Management HIPAA Router Website Virtual Private Network Analytics Office Tips Health Augmented Reality Help Desk Storage Password Bring Your Own Device Retail Healthcare Big Data Scam Social Data loss Cooperation Free Resource Going Green Project Management Windows 7 Customer Service Patch Management Cybercrime Save Money Microsoft 365 Remote Monitoring Vulnerability End of Support Vendor Management Solutions Physical Security Display Printer Paperless Office Windows 11 Infrastructure Monitoring Firewall 2FA Excel Document Management The Internet of Things Remote Workers Telephone iPhone Licensing Entertainment Vulnerabilities Data Privacy Customer Relationship Management Images 101 Settings Wireless Printing Telephone System Multi-Factor Authentication Content Filtering Robot Mobility Hacking Cost Management YouTube Presentation Cryptocurrency Wireless Technology IT Management VPN Employees Meetings Integration Virtual Desktop Data storage User Tip LiFi Modem Processor Computer Repair Mobile Security Word Outlook Holidays Data Storage Money Humor Smart Technology Supply Chain Video Conferencing Machine Learning Managed Services Provider Safety Saving Time Virtual Machines Professional Services Sports Mouse Managed IT Service Maintenance Antivirus Administration Downloads Browsers Smartwatch Application Best Practice Connectivity IT Social Engineering Break Fix Scams Remote Computing Azure Hybrid Work Upload Procurement Buisness Social Network Telework IT solutions Cyber security Multi-Factor Security Tech Human Resources IBM Legal CES Business Growth Tablet IoT Communitications Dark Web Cables Alert Trends Supply Chain Management Managed IT Customer Resource management FinTech File Sharing Regulations Cortana Dark Data Google Calendar Term Google Apps Data Analysis Alt Codes Star Wars IT Assessment How To Microsoft Excel IT Maintenance Notifications Staff Value Business Intelligence Competition Gamification Flexibility Downtime Organization Hosted Solution Travel Social Networking Legislation Shortcuts Techology Fileless Malware Digital Security Cameras Typing Google Maps Smart Devices Ransmoware Wearable Technology Memory Vendors Content Remote Working Google Drive Health IT User Unified Threat Management Motherboard Data Breach Knowledge Comparison Google Play Be Proactive Unified Threat Management Directions Videos Assessment Electronic Health Records Permissions Workforce Wasting Time Threats 5G IP Address Google Docs Unified Communications Trend Micro Experience Network Congestion Specifications Security Cameras Workplace Strategies User Error Microchip Bitcoin Internet Exlporer Software as a Service Running Cable Fraud Meta Managing Costs Amazon Google Wallet Username Recovery Point of Sale eCommerce Black Friday SSID Hard Drives Windows 8 Database Surveillance Laptop Virtual Assistant Outsource IT Tech Support IT Technicians Virtual Machine Environment Media Domains Drones Network Management Proxy Server Reviews Cookies Monitors Cyber Monday Medical IT Refrigeration Tactics Development Halloween Hotspot Transportation Small Businesses Websites Mirgation Hypervisor Displays Public Speaking Lithium-ion battery Shopping Nanotechnology Optimization PowerPoint Electronic Medical Records Language Employer/Employee Relationships Outsourcing SharePoint Hacks Addiction Entrepreneur Scary Stories Management PCI DSS Chatbots Fun Navigation Lenovo Gig Economy Deep Learning Screen Reader Writing Distributed Denial of Service Workplace Virtual Reality Computing Infrastructure Teamwork Hiring/Firing Undo Service Level Agreement Internet Service Provider Server Management Regulations Compliance Education Private Cloud Identity Evernote Paperless Superfish Bookmark Identity Theft Smart Tech Memes Co-managed IT Twitter Alerts SQL Server Technology Care Mobile Computing Download Net Neutrality Financial Data Error History Search Business Communications

Blog Archive