LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Non-*NIX Forums > General
User Name
Password
General This forum is for non-technical general discussion which can include both Linux and non-Linux topics. Have fun!

Notices


Reply
  Search this Thread
Old 04-07-2016, 02:05 PM   #1
cousinlucky
Member
 
Registered: Nov 2005
Location: Staten Island N.Y.
Distribution: Antix 16 and PCLinuxOS Mate
Posts: 303

Rep: Reputation: 515Reputation: 515Reputation: 515Reputation: 515Reputation: 515Reputation: 515
Ransomware!!


So someone hacks into your computer and installs " ransomeware " and you can not access your computers files until the bitcoin ransom has been paid!!

http://arstechnica.com/security/2016...omware-attack/
 
Old 04-07-2016, 02:42 PM   #2
MensaWater
LQ Guru
 
Registered: May 2005
Location: Atlanta Georgia USA
Distribution: Redhat (RHEL), CentOS, Fedora, CoreOS, Debian, FreeBSD, HP-UX, Solaris, SCO
Posts: 7,831
Blog Entries: 15

Rep: Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669
I often tell people my DR plan is to keep an updated resume/CV handy.
 
Old 04-07-2016, 02:46 PM   #3
Habitual
LQ Veteran
 
Registered: Jan 2011
Location: Abingdon, VA
Distribution: Catalina
Posts: 9,374
Blog Entries: 37

Rep: Reputation: Disabled
I don't run JBOSS.
 
Old 04-07-2016, 03:18 PM   #4
John VV
LQ Muse
 
Registered: Aug 2005
Location: A2 area Mi.
Posts: 17,624

Rep: Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651
well when one of the "bosses" opens a attachment and installs the malware........
 
Old 04-07-2016, 03:37 PM   #5
dugan
LQ Guru
 
Registered: Nov 2003
Location: Canada
Distribution: distro hopper
Posts: 11,225

Rep: Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320
The impact of ransomware should be minimal if you've been following proper data security (i.e. locking down write permissions) and backup procedures.
 
Old 04-07-2016, 04:02 PM   #6
Jeebizz
Senior Member
 
Registered: May 2004
Distribution: Slackware15.0 64-Bit Desktop, Debian 11 non-free Toshiba Satellite Notebook
Posts: 4,186

Rep: Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379
Quote:
Originally Posted by dugan View Post
The impact of ransomware should be minimal if you've been following proper data security (i.e. locking down write permissions) and backup procedures.
That should have been a given in a work/corporate environment. However I am still sure there are home Windows users to this day that still run under admin privileges for whatever reason, although that probably isn't the case much though if said malware can at least attack the users directory and lock anything in there, if the person has happened to have gone to a compromised site and were the subject of a drive-by download attack.
 
Old 04-07-2016, 09:24 PM   #7
jefro
Moderator
 
Registered: Mar 2008
Posts: 21,982

Rep: Reputation: 3625Reputation: 3625Reputation: 3625Reputation: 3625Reputation: 3625Reputation: 3625Reputation: 3625Reputation: 3625Reputation: 3625Reputation: 3625Reputation: 3625
Pretty easy for the average home user and most business users to run in an awful state. Everywhere you look people say stupid things like turn off firewall and disable this or that to those in need.

Still amazes me that ISP's don't do more to block this stuff.

I keep backups on a NAS in a fireproof safe. Even scares me to transfer images to it.

Last edited by jefro; 04-08-2016 at 08:31 PM.
 
Old 04-08-2016, 07:28 AM   #8
sundialsvcs
LQ Guru
 
Registered: Feb 2004
Location: SE Tennessee, USA
Distribution: Gentoo, LFS
Posts: 10,659
Blog Entries: 4

Rep: Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941
Well, many computer users have no backups at all, so they are vulnerable to any sort of hard driveasd;fkajf; ;hd cfash, whih;dcajfh;ahvc; h, of course, never actually happens in real lif
I/O Error: Failed to read from device (sd0,2). Retrying.
I/O Error: Failed to read from device (sd0,2). Retrying.
I/O Error: Failed to read from device (sd0,2). Retrying.
Kernel panic. Syncing!

 
Old 04-08-2016, 10:51 AM   #9
Jeebizz
Senior Member
 
Registered: May 2004
Distribution: Slackware15.0 64-Bit Desktop, Debian 11 non-free Toshiba Satellite Notebook
Posts: 4,186

Rep: Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379
Post The ransomware that knows where you live

"A widely distributed scam email that quoted people's postal addresses links to a dangerous form of ransomware, according to a security researcher."

http://www.bbc.com/news/technology-35996408
 
Old 04-08-2016, 11:30 AM   #10
sundialsvcs
LQ Guru
 
Registered: Feb 2004
Location: SE Tennessee, USA
Distribution: Gentoo, LFS
Posts: 10,659
Blog Entries: 4

Rep: Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941
If you allow any sort of software to install itself on your computer and to run in your name, and if you have no backup copy of (millions(!) of) files on that computer, then you are a sitting duck.

Don't be a duck . . .
 
Old 04-08-2016, 01:18 PM   #11
mjolnir
Member
 
Registered: Apr 2003
Posts: 815

Rep: Reputation: 99
" Apr 8, 2016 - Adobe patches Flash bug that’s being exploited to install ransomware
"Actively exploited" critical flaw has been in wild for more than a week."

http://arstechnica.com/security/2016...re-windows-10/

"Adobe has released security updates for Adobe Flash Player for Windows, Macintosh, Linux and ChromeOS. These updates address critical vulnerabilities that could potentially allow an attacker to take control of the affected system.

Adobe is aware of reports that CVE-2016-1019 is being actively exploited on systems running Windows 10 and earlier with Flash Player version 20.0.0.306 and earlier. Please refer to APSA16-01 for details."

https://helpx.adobe.com/security/pro...apsb16-10.html

Last edited by mjolnir; 04-08-2016 at 01:20 PM.
 
Old 04-08-2016, 04:30 PM   #12
sundialsvcs
LQ Guru
 
Registered: Feb 2004
Location: SE Tennessee, USA
Distribution: Gentoo, LFS
Posts: 10,659
Blog Entries: 4

Rep: Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941
... However, I am much more alarmed by the more expansive capabilities of HTML5 and JavaScript, which represent an environment that can be dynamically modified because almost eveything in the JavaScript environment can be modified. If you tap sufficiently deeply into the "prototype" layer of JavaScript, you can completely transform the operational behavior of software without modifying any of a site's source code.
 
Old 04-08-2016, 04:50 PM   #13
Jeebizz
Senior Member
 
Registered: May 2004
Distribution: Slackware15.0 64-Bit Desktop, Debian 11 non-free Toshiba Satellite Notebook
Posts: 4,186

Rep: Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379
I don't think javascript and HTML5 is going to be more dangerous, or less dangerous vs flash. Its just another platform, but I still prefer going to websites that are flash free at least. I would rather have HTML5 over flash. Also php can be compromised, so can python, perl, etc etc.
 
Old 04-08-2016, 07:17 PM   #14
Jeebizz
Senior Member
 
Registered: May 2004
Distribution: Slackware15.0 64-Bit Desktop, Debian 11 non-free Toshiba Satellite Notebook
Posts: 4,186

Rep: Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379Reputation: 1379
Case in point, yet another flash exploit: http://www.linuxquestions.org/questi...it-4175577009/

Not really seeing a whole lot HTML5 exploits , I didn't say there weren't any, but clearly flash is the clear winner on this.

I still prefer if all sites just went HTML5, I don't see why I need to worry about resources just for viewing an fscking website.
 
Old 04-08-2016, 09:11 PM   #15
frankbell
LQ Guru
 
Registered: Jan 2006
Location: Virginia, USA
Distribution: Slackware, Ubuntu MATE, Mageia, and whatever VMs I happen to be playing with
Posts: 19,324
Blog Entries: 28

Rep: Reputation: 6142Reputation: 6142Reputation: 6142Reputation: 6142Reputation: 6142Reputation: 6142Reputation: 6142Reputation: 6142Reputation: 6142Reputation: 6142Reputation: 6142
This is I think tangentially related at least.

My girlfriend got an email from her IT Department yesterday about ransomware on Macs (we don't have one of those, by the by). Apparently someone who works at her shop got nailed (her employer is a Windows shop).

She worried about it all day, and she is a cautious user of the web and email--she delights in catching spams in her inbox--and likely the last person who would fall for something hinky.

The email included a link to an article on how to back up your iJunk to Apple's cloud thingee.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Ransomware for Macs... ardvark71 General 6 03-12-2016 03:50 AM
Is Linux susceptible to Ransomware ? drmjh Linux - Security 23 03-10-2016 01:06 PM
Ransomware now targetting Linux servers Kropotkin Linux - Security 6 11-15-2015 11:51 AM
LXer: First Linux ransomware program cracked, for now LXer Syndicated Linux News 0 11-10-2015 10:10 AM

LinuxQuestions.org > Forums > Non-*NIX Forums > General

All times are GMT -5. The time now is 09:47 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration