Skip to main content

Ransomware attacks Takes Adobe to Flash Emergency Update

An emergency update is issued on Thursday by Adobe Systems Inc (ADBE.O) to its widely used Flash software for Internet browsers after researchers discovered a security flaw that was being exploited to deliver ransomware to Windows PCs.


The software maker urged the more than 1 billion users of Flash on Windows, Mac, Chrome and Linux computers to update the product as quickly as possible after security researchers said the bug was being exploited in "drive-by" attacks that infect computers with ransomware when tainted websites are visited.

Ransomware encrypts data, locking up computers, then demands payments that often range from $200 to $600 to unlock each infected PC.

Japanese security software maker Trend Micro Inc (4704.T) said that it had warned Adobe that it had seen attackers exploiting the flaw to infect computers with a type of ransomware known as 'Cerber' as early as March 31.

Cerber "has a 'voice' tactic that reads aloud the ransom note to create a sense of urgency and stir users to pay," Trend Micro said on its blog. (bit.ly/1L9YYMP)

Adobe's new patch fixes a previously unknown security flaw. Such bugs, known as "zero days," are highly prized because they are harder to defend against since software makers and security firms have not had time to figure out ways to block them. They are typically used by nation states for espionage and sabotage, not by cyber criminals who tend to use widely known bugs for their attacks.

Use of a "zero day" to distribute ransomware highlights the severity of a growing ransomware epidemic, which has disrupted operations at a wide range of organizations across the United States and Europe, including hospitals, police stations and school districts.

Ransomware schemes have boomed in recent months, with increasingly sophisticated techniques and tools used in such operations.

"The deployment of a zero day highlights potential advancement by cyber criminals," said Kyrk Storer, a spokesman for FireEye Inc (FEYE.O). "We have observed ransomware and crimeware deployed via 'zero-day' before; however, it is rare."

FireEye said that the bug was being leveraged to deliver ransomware in what is known as the Magnitude Exploit Kit. This is an automated tool sold on underground forums that hackers use to infect PCs with viruses through tainted websites.

Exploit kits are used for "drive-by" attacks that automatically seek to attack the computers of people who view an infected website.

Source : Reuters

Comments

Popular posts from this blog

Nigerian army Claims the Second Rescue of Chibok Girl

A second schoolgirl that was seized in the Nigerian town of Chibok has been found, the army says. But a spokesman for the Chibok girls' parents has cast doubt on the claims, saying that the girl's name is not on the families' list of those missing. An army spokesman said Serah Luka was among a group of 97 women and children rescued by troops in the north-east. Islamist militant group Boko Haram has abducted thousands of other girls in recent years, rights groups estimate. This comes two days after the rescue of the first Chibok girl, Amina Ali Nkeki. The army has previously given misleading statements about the rescue of the Chibok girls - in its initial statement after Ms Nkeki was found, it used a wrong name. In all, 218 girls remain missing after their abduction by the Boko Haram Islamist group from Chibok secondary school in north-eastern Nigeria in 2014. Ms Nkeki told a Chibok community leader that six of the kidnapped girls had died, but...

Obama administration Issues Transgender Access to School Bathrooms

The issue of directing public schools to allow transgender students to use bathrooms matching their gender identity is being discussed by the Obama administration on Friday. A joint letter from the Departments of Education and Justice will go out to schools on Friday with guidelines to ensure that "transgender students enjoy a supportive and nondiscriminatory school environment," the Obama administration said on Thursday. The announcement comes amid heated debate over transgender rights in schools and public life, which includes a legal standoff between the administration and North Carolina over its controversial House Bill 2. The guidance goes beyond the bathroom issue, touching upon privacy rights, education records and sex-segregated athletics, all but guaranteeing transgender students the right to identify in school as they choose. "There is no room in our schools for discrimination of any kind, including discrimination against transgender students on ...

Will Ferrell and His Bird Collectian As "The Birds are for God"

An acclaimed actor and comedic genius like Will Ferrell is incredibly pleased to spend some valued time with his incredibly expensive bird collection, according to his good friend Adam McKay. McKay, who has directed Ferrell in films like "Anchorman" and "Step Brothers," told HuffPost Live on Monday that Ferrell's home is brimming with birds of all kinds, and Ferrell himself is a bit of a bird whisperer. "He has giant cages on his property filled with different tropical birds, and these are the kind of birds that will bite you, that you have to be careful with, but when it's him, they just fly right to his arm," McKay said. "Often times if you're at his house ... he has, like, a cockatiel on his shoulder for long stretches." An affinity for birds isn't exactly surprising, but what will shock you is the enormous monetary value of Ferrell's flock. "He had to have his bird collection insured, and I think it's wor...