Showing posts with label Petya-Ransomware. Show all posts
Showing posts with label Petya-Ransomware. Show all posts

Wednesday, 5 July 2017

Developer Medoc Confirms Backdoor In Update



Ukrainian software company tax and accounting Medoc develops confirmed that attackers malicious code added to an update allowing the Petya-ransomware is installed. Initially the company denied even attackers had used the company's software to install Petya-ransomware. On Facebook , the company has been now confirms that the victim of a hack.

Previously, researchers at antivirus company ESET discovered attackers had added a backdoor on an update for Medoc which was released on June 22. The software company announced that it has developed an update that should fix the problem. The servers of the software have been seized by the police, so the update that addresses the issues and to prevent new attacks still can not be rolled. Ukrainian Police advise on Facebook to use non Medoc temporary and computers it is installed to disconnect from the network.

Cyber Security Council Wants More Companies To Be Notified Of Cyber Attack


The Cyber Security Council, the advisory body of the Cabinet when it comes to cyber security, wants more companies to be notified of a cyber attack, rather than just the vital sectors. According to Ron Moss, a member of the Council, the loss of Petya attack could have been less if companies such as APM Terminals and parcel TNT were warned before, let it faces BNR know.

In the case of the Petya-ransomware though there were no signs or information that the attack would take place, and the news was known until the outbreak had occurred. "If the attacks take place, then the damage is already done, then there is not much point to inform," said Ronald Prins of security firm Fox-IT. He points to the outbreak of the WannaCry-ransomware, which spread very rapidly. "And so there was no warning as possible."

D66 MP Kees Verhoeven endorses the opinion of the Cyber ​​Security Council and wants the government will implement it. "There could be considered a National Computer Emergency Response Team. A team which companies can exchange knowledge and information about cyber attacks." According to Verhoeven should be informed on the one hand on attacks and malware, but companies have on the other hand are structurally better prepared. "This is largely the responsibility of the companies themselves, but the government can play a supporting role. We have the National Cyber ​​Security Center. The infrastructure to do it so, but apparently works not yet."

Update


The opinion of the Cyber Security Council has now been published online ( pdf ). It calls for a nationwide system of information centers for information exchange covering all Dutch businesses. In addition, suppliers must of internet products and services have an active stance when it comes to offering safe products and have to do the simple declaration to cybercrime to the police.