LINE

    Text:AAAPrint
    Sci-tech

    WannaCry invasion preventable with patch, security updates: Kaspersky

    1
    2017-05-22 17:24Xinhua Editor: Mo Hong'e ECNS App Download

    The installation of the official Microsoft patch and security software updates can be an effective way to protect computers from attacks of the WannaCry ransomware, Russian security software company Kaspersky Lab said in a recent interview with Xinhua.

    A massive number of organizations across the globe have been targeted by the malware since May 12. Hackers used the Trojan encrypter WannaCry to lock computers and demand a payment for the decryption. So far, it has hit more than 200,000 computers in 150 countries, crippling hospitals, governments and businesses.

    WannaCry takes advantage of the Windows exploit known as Eternal Blue which exploits a vulnerability that Microsoft patched in security update MS17-010 on March 14, to gain remote access to users' computers and install malicious driver programs before locking files and demanding a ransom, Kaspersky told Xinhua.

    According to a statement provided by Kaspersky, its computer system monitoring tool has detected 11 kinds of such malicious programs that WannaCry uses to encrypt computer files.

    The cyber security provider warned against using the means of decryption offered on the Internet or received in emails, as WannaCry's encryption algorithm can not be decoded with existing methods, which, worse still, may cause even greater harm to the infected computer and others connected to it, thus accelerating the propagation.

    Currently, the only right approach in case of a WannaCry infection that has been found effective is system reinstallment at the expense of encrypted file, Kaspersky said.

    "If you find that your computer has been infected, you should turn it off and contact the information security service for further instruction," Kaspersky said.

    Noting that precautions play a crucial part in defending against the WannaCry virus, Kaspersky suggests users install an official patch from Microsoft that closes the vulnerability used in the attack as well as upgrade the security software scanning critical areas at all time to detect potential infection as early as possible.

    It is also suggested to create file backup copies on a regular basis and store copies on storage devices that are not constantly connected to the computer.

    For computers within corporate networks, once an attack is spotted, disconnection of the invaded computer from the Internet and internal networks needs to be done immediately.

    In addition, while unpatched Windows computers can be remotely attacked with the Eternal Blue exploit and infected by the WannaCry ransomware, the lack of existence of this vulnerability doesn't really prevent the ransomware component from working, Kaspersky said.

    "Nevertheless, the presence of this vulnerability appears to be the most significant factor that caused the outbreak," it said.

    At present, network security companies, including Kaspersky, are developing more effective means of fighting the WannaCry virus and decoding maliciously encrypted files, and relevant information will be released in a timely manner, Kaspersky said.

      

    Related news

    MorePhoto

    Most popular in 24h

    MoreTop news

    MoreVideo

    News
    Politics
    Business
    Society
    Culture
    Military
    Sci-tech
    Entertainment
    Sports
    Odd
    Features
    Biz
    Economy
    Travel
    Travel News
    Travel Types
    Events
    Food
    Hotel
    Bar & Club
    Architecture
    Gallery
    Photo
    CNS Photo
    Video
    Video
    Learning Chinese
    Learn About China
    Social Chinese
    Business Chinese
    Buzz Words
    Bilingual
    Resources
    ECNS Wire
    Special Coverage
    Infographics
    Voices
    LINE
    Back to top Links | About Us | Jobs | Contact Us | Privacy Policy
    Copyright ©1999-2018 Chinanews.com. All rights reserved.
    Reproduction in whole or in part without permission is prohibited.
    主站蜘蛛池模板: 张家口市| 开化县| 东乌珠穆沁旗| 黄陵县| 揭阳市| 胶南市| 九龙城区| 始兴县| 昆明市| 平潭县| 利津县| 红原县| 新兴县| 罗江县| 潜江市| 淮阳县| 文成县| 寿阳县| 双江| 自贡市| 南城县| 商都县| 临泽县| 蒙自县| 永兴县| 普兰店市| 化德县| 保山市| 太仓市| 防城港市| 正镶白旗| 比如县| 安国市| 鄱阳县| 新津县| 陕西省| 昌都县| 抚宁县| 阿鲁科尔沁旗| 阳山县| 娄底市|