Tuesday, June 27th 2017

Several Critical Ukrainian Targets Hit by "Petya" Ransomware, Fear of Outbreak

After last month's WannaCry outbreak (which persisted in its effects as recently as last week), we now have a new variant of ransomware infecting PCs across Europe. The outbreak seems centered in Ukraine, where several government facilities and critical pieces of infrastructure have been shutdown due to the attacks. The Ukrainian government seemed almost defiantly optimistic, posting this decidedly awesome response to twitter during the attack.
As if to signify not all is well, the attack has been widespread enough to even effect the radiation monitoring systems at Chernobyl, which have been reportedly switched to "manual mode" following an infection.

There are concerns that the ransomware could spread, and by the time this article was written, reports have already come in of infection across the Ukrainian borders, including in Denmark (with shipping conglomerate Maersk hit), and even isolated reports as far away as Russia and the USA.

The Director of Global Research for Kaspersky Labs, Costin Raiu, reports that the ransomware has made the most impact in the Ukraine, with the Russian Federation coming in at second. Poland takes third place, followed by Italy and then Germany. The infection is obviously spreading actively, so this list may not be accurate for long. One hopes it will not morph into a global outbreak.

UPDATE 5:45PM PST: As of this time, the network has hit the USA full force and is currently being covered on US news services. See the ABC news source for details.

The bitcoin wallet associated with this attack has already garnered more than 3.5 BTC at time of this writing, meaning at least some of the ransoms are being paid. The infection vector appears to be a compromised accounting software auto-update used common to most of the infected companies.
Sources: Ukraine Twitter Account, wired.co.uk, ABC News, Blockchain.info, Microsoft Technet
Add your own comment

26 Comments on Several Critical Ukrainian Targets Hit by "Petya" Ransomware, Fear of Outbreak

#26
_JP_
Prima.VeraDo those guys never heard of Proxies, Firewalls, IDPSes, and most importantly good AntiVirus/Malware solutions installed on your stations???
Seriously, they deserve all of this crap 100% and more.
All useless against exploits and lack of common sense. That's why regular users are a ingenious bunch that make the most advanced threat seem amateur in effect.
Posted on Reply
Add your own comment
Dec 22nd, 2024 14:59 EST change timezone

New Forum Posts

Popular Reviews

Controversial News Posts