Skip to main content

Ransomware attacks Takes Adobe to Flash Emergency Update

An emergency update is issued on Thursday by Adobe Systems Inc (ADBE.O) to its widely used Flash software for Internet browsers after researchers discovered a security flaw that was being exploited to deliver ransomware to Windows PCs.


The software maker urged the more than 1 billion users of Flash on Windows, Mac, Chrome and Linux computers to update the product as quickly as possible after security researchers said the bug was being exploited in "drive-by" attacks that infect computers with ransomware when tainted websites are visited.

Ransomware encrypts data, locking up computers, then demands payments that often range from $200 to $600 to unlock each infected PC.

Japanese security software maker Trend Micro Inc (4704.T) said that it had warned Adobe that it had seen attackers exploiting the flaw to infect computers with a type of ransomware known as 'Cerber' as early as March 31.

Cerber "has a 'voice' tactic that reads aloud the ransom note to create a sense of urgency and stir users to pay," Trend Micro said on its blog. (bit.ly/1L9YYMP)

Adobe's new patch fixes a previously unknown security flaw. Such bugs, known as "zero days," are highly prized because they are harder to defend against since software makers and security firms have not had time to figure out ways to block them. They are typically used by nation states for espionage and sabotage, not by cyber criminals who tend to use widely known bugs for their attacks.

Use of a "zero day" to distribute ransomware highlights the severity of a growing ransomware epidemic, which has disrupted operations at a wide range of organizations across the United States and Europe, including hospitals, police stations and school districts.

Ransomware schemes have boomed in recent months, with increasingly sophisticated techniques and tools used in such operations.

"The deployment of a zero day highlights potential advancement by cyber criminals," said Kyrk Storer, a spokesman for FireEye Inc (FEYE.O). "We have observed ransomware and crimeware deployed via 'zero-day' before; however, it is rare."

FireEye said that the bug was being leveraged to deliver ransomware in what is known as the Magnitude Exploit Kit. This is an automated tool sold on underground forums that hackers use to infect PCs with viruses through tainted websites.

Exploit kits are used for "drive-by" attacks that automatically seek to attack the computers of people who view an infected website.

Source : Reuters

Comments

Popular posts from this blog

Hong Kong Lunar New Year Celebrations Erupt in Violence as Police Clear Food Stalls

Hong Kong's Lunar New Year celebrations have descended into chaos as police leared illegal food stalls set up on a busy junction for Lunar New Year celebrations, leaving dozens injured or arrested. Riot police used batons and pepper spray and fired warning shots into the air early on Tuesday after authorities tried to move illegal street vendors from a district in the city. Protesters hurled bricks at police as scuffles broke out, while other demonstrators set fire to rubbish bins in the streets of Mong Kok, a gritty neighbourhood across the harbour from the heart of the Asian financial centre. A police statement said that three men aged 27 to 35 were arrested for assaulting a police officer and obstructing police, while another three police officers received hospital treatment. Broadcaster RTHK said later that 24 people had been arrested. The scuffles broke out after police moved in to clear "hawkers", or illegal vendors who sell local delicacies, trinkets and ...

Trump Allowed Military To Set Up The Number of Troops in Afghanistan

The President of the United States, Donald Trump, has given the Secretary of Defense, Jim Mattis, an authority to to set troops deployed in Afghanistan. As reported by Reuters, the decision also allowed an opportunity for the secretary to increase the number of personnel in Afghanistan that are currently 8,400. The decision was taken shortly after Mattis warned Congress that the Afganistan troops which is backed by U.S. could not defeat the Taliban after 15 years of fighting. "We never win in Afghanistan. We will fix this as soon as possible," said Mattis said the Senate Armed Forces Committee, Tuesday (13/6), as quoted Reuters. Earlier, the General of U.S. Army, John Nicholson, also said that he needs "a few thousand" soldiers deployed in Afghanistan, as additional. Some officials said, U.S. estimated around 3,000-5,000 soldiers was needed for the air force crew and helped training the Afghanistan troops. However, other officials question the advantag...

Kit Harington Confirms He Filmed New Game of Thrones Scenes, But Only As A Dead Body

We're hardly waiting for it, Game of Thrones. We all know Jon Snow will be back in some shape or form this season, and at this point we're ready for the show to just come back already and stop teasing us. Enough with the cagey interviews, the oh-look-everyone-is-dead promos, and all the other taunting we've had to put up with for the past year. Just give us our beautiful show and let us be shocked in peace! Kit Harington, the portrayer of the dead guy in question, is the one who's confusing us this time. Instead of just saying "you'll have to wait and see," or some other kind of spoiler-free stock answer about future plot points (like he gave last time he was asked), Harington is now just feeding us lies. In an interview with Time Out London that was supposed to be about the West End play he's in, Harington claimed he's done with Game of Thrones. "Look, I'm not in the show anymore. I'm definitely not in the new series,...