Huge cyberattack forces Microsoft to offer free tech fix – Phys.Org

May 13, 2017 by Sylvia Hui And Jim Heintz An exterior view shows the main entrance of St Bartholomew's Hospital, in London, one of the hospitals whose computer systems were affected by a cyberattack, Friday, May 12, 2017. A large cyberattack crippled computer systems at hospitals across England on Friday, with appointments canceled, phone lines down and patients turned away. (AP Photo/Matt Dunham)

Teams of technicians worked "round the clock" Saturday to restore hospital computer systems in Britain and check bank or transport services in other nations after a global cyberattack hit dozens of countries and crippled the U.K.'s health system.

The worldwide attack was so unprecedented that Microsoft quickly changed its policy and announced that it will make security fixes available for free for older Windows systems, which are still used by millions of individuals and smaller businesses.

In Russia, where a wide array of systems came under attack, officials said services had been restored or the virus contained.

The extortion attack, which locked up computers and held users' files for ransom, is believed to be the biggest of its kind ever recorded, disrupting services in nations as diverse as the U.S., Russia, Ukraine, Spain and India.

Europol, the European Union's police agency, said the onslaught was at "an unprecedented level and will require a complex international investigation to identify the culprits."

The ransomware appeared to exploit a vulnerability in Microsoft Windows that was purportedly identified by the U.S. National Security Agency for its own intelligence-gathering purposes and was later leaked to the internet.

Before Friday's attack, Microsoft had made fixes for older systems, such as 2001's Windows XP, available only to mostly larger organizations that paid extra for extended technical support. Microsoft says now it will make the fixes free for everyone.

It was not yet known who perpetrated Friday's attacks. Two security firmsKaspersky Lab and Avastsaid they had identified the malicious software behind the attack in over 70 countries, although both said the attack had hit Russia the hardest.

In Britain, the National Cyber Security Center said it is "working round the clock" with experts to restore vital health services.

British Home Secretary Amber Ruddwho was chairing a government emergency security meeting Saturday in response to the attacksaid 45 public health organizations were hit, though she stressed that no patient data had been stolen. The attack froze computers at hospitals across the country, with some canceling all routine procedures. Patients were asked not to go to hospitals unless it was an emergency and even some key services like chemotherapy were canceled.

Security officials in Britain urged organizations to protect themselves from ransomware by updating their security software fixes, running anti-virus software and backing up data elsewhere.

The Russian Interior Ministry, which runs the country's police, confirmed it was among those that fell victim to the ransomware, which typically flashes a message demanding a payment to release the user's own data.

Ministry spokeswoman Irina Volk was quoted by the Interfax news agency Saturday as saying the problem had been "localized" and that no information was compromised. But the ministry's website still carried a banner on Saturday afternoon saying that technical work was continuing.

A spokesman for the Russian Health Ministry, Nikita Odintsov, said on Twitter that the cyberattacks on his ministry were "effectively repelled."

"When we say that the health ministry was attacked you should understand that it wasn't the main server, it was local computers ... actually nothing serious or deadly happened yet," German Klimenko, a presidential adviser, said on Russian state television.

Russian cellular phone operators Megafon and MTS said some of their computers were hit and the Russian national railway system said although it was attacked, rail operations were unaffected.

Russia's central bank said Saturday that no incidents had "compromising the data resources" of Russian banks, state news agency Tass reported.

French carmaker Renault's assembly plant in Slovenia halted production after it was targeted in the global cyberattack. Radio Slovenia said Saturday the Revoz factory in the southeastern town of Novo Mesto stopped working Friday evening to stop the malware from spreadingand was working with the central office in France to resolve the problem.

Krishna Chinthapalli, a doctor at Britain's National Hospital for Neurology & Neurosurgery who wrote a paper on cybersecurity for the British Medical Journal, said many British hospitals still use Windows XP software, introduced in 2001.

Security experts said the attack appeared to be caused by a self-replicating piece of software that enters companies when employees click on email attachments, then spreads quickly internally from computer to computer when employees share documents.

The security holes it exploits were disclosed several weeks ago by TheShadowBrokers, a mysterious group that has published what it says are hacking tools used by the NSA. Shortly after that disclosure, Microsoft announced that it had already issued software "patches," or fixes, for those holesbut many users haven't yet installed the fixes or are using older versions of Windows.

In the U.S., FedEx Corp. reported that its Windows computers were "experiencing interference" from malware, but wouldn't say if it had been hit by ransomware.

Elsewhere in Europe, the attack hit companies including Spain's Telefonica, a global broadband and telecommunications company.

Germany's national railway said Saturday departure and arrival display screens at its train stations were affected, but there was no impact on actual train services. Deutsche Bahn said it deployed extra staff to busy stations to help customers, and recommended that they check its website or app for information on their connections.

Other European organizations hit by the massive cyberattack included soccer clubs in Norway and Sweden, with IF Odd, a 132-year-old Norwegian soccer club, saying its online ticketing facility was down.

Explore further: Nations battle cyberattack damages; UK focuses on hospitals

2017 The Associated Press. All rights reserved.

Teams of technicians worked "round the clock" Saturday to restore hospital computer systems in Britain and check transport services in other nations after a global cyberattack that hit dozens of countries crippled the U.K.'s ...

Dozens of countries were hit with a huge cyberextortion attack Friday that locked up computers and held users' files for ransom at a multitude of hospitals, companies and government agencies.

Britain's National Cyber Security Center says teams are working "round the clock" to restore hospital computer systems after a global cyberattack that hit dozens of countries forced British hospitals to cancel and delay treatment ...

A huge range of organisations around the world have been affected by the WannaCry ransomware cyberattack, described by the EU's law enforcement agency as "unprecedented".

Russia's interior ministry said Friday that some of its computers had been hit by a "virus attack" amid reports of major cyber strikes across the globe.

A large cyberattack crippled computer systems at hospitals across England on Friday, with appointments canceled, phone lines down and patients turned away.

The cyberattack that spread malicious software around the world, shutting down networks at hospitals, banks and government agencies, was stemmed by a young British researcher and an inexpensive domain registration, with help ...

Teams of technicians worked "round the clock" Saturday to restore hospital computer systems in Britain and check bank or transport services in other nations after a global cyberattack hit dozens of countries and crippled ...

International investigators hunted Saturday for those behind an unprecedented cyber-attack that affected systems in dozens of countries, including at banks, hospitals and government agencies, as security experts sought to ...

A fast-moving wave of cyberattacks swept the globe Friday, apparently exploiting a flaw exposed in documents leaked from the US National Security Agency.

In just a few years, well-mannered self-driving robotaxis will share the roads with reckless, law-breaking human drivers. The prospect is causing migraines for the people developing the robotaxis.

Microsoft on Thursday debuted hardware for reaching into virtual worlds powered by its technology as it looked to "mixed reality" as the next big computing platform.

Adjust slider to filter visible comments by rank

Display comments: newest first

More USA state-sponsored terrorism

You should be thanking us.

Frenemy - Wikipedia https://en.wikipe.../Frenemy "Frenemy" (less commonly spelled "frienemy") is an oxymoron and a portmanteau of "friend" and "enemy" that refers to "a person with whom one is friendly, despite a fundamental dislike or rivalry" or "a person who combines the characteristics of a friend and an enemy."

Do you think all his nasty work will go unanswered?

This is a frustrating situation because it's exactly what experts expected was going to happen. The NSA develops hacking weapons, they get leaked or stolen by criminal enterprises, and then get used to attack key infrastructure...

Hmm, yes and no. Shouldnt these government bodies be notifying the public about these vulnerabilities and telling to get patched ASAP as opposed to looking for exploits that they can use to their advantage that puts millions at risk at the same time?

I think the blame is being directed at the wrong groups here.

This entire incident is *exactly*what they were warned about. They demanded backdoors anyway. They have yet to prove conclusively that their backdoors had any positive impact on any intelligence gathering activity.

I hope other companies hotly refuse any such requests in the future. We've seen the end result now. To do anything but refuse to cooperate with the NSA on this is total madness.

Please sign in to add a comment. Registration is free, and takes less than a minute. Read more

Go here to see the original:
Huge cyberattack forces Microsoft to offer free tech fix - Phys.Org

Related Posts

Comments are closed.