. 24/7 Space News .
CYBER WARS
As ransomware rages, debate heats up on response
By Rob Lever
Washington (AFP) July 14, 2019

City services in Baltimore, Maryland, were paralyzed earlier this year when a ransomware attack locked up computer networks and made it impossible for residents to make property transactions or pay their municipal bills.

Officials refused to meet hacker demands for a ransom of $76,000 to unlock the systems, but have been saddled with an estimated $18 million in costs of restoring and rebuilding the city's computer networks.

The dilemma in Baltimore and in a similar case in Atlanta a year earlier highlight tough choices faced by cities, hospitals and corporations hit by ransomware, which can shut down critical services for organizations with dated or vulnerable computer networks.

Two Florida cities reportedly paid a total of $1 million in ransom this year, after which a new attack by the same group hit the state court system in Georgia.

Globally, losses from ransomware rose by 60 percent last year to $8 billion, according to data compiled by the Internet Society's Online Trust Alliance.

At least 170 county, city or state government systems have been hit since 2013, with 22 incidents this year, according to the US Conference of Mayors, which adopted a resolution opposing ransomware payments.

"We're seeing more attacks against cities because it's clear cities are ill-prepared, and even if they know what's going on they don't have the funds to fix it," said Gregory Falco, a researcher at Stanford University specializing in municipal network security.

- Epidemic proportions -

Frank Cilluffo, head of Auburn University's Center for Cyber and Homeland Security, said the attacks have reached epidemic levels.

"The scale and scope of the problem is striking, affecting everywhere from relatively robust states to major metropolitan areas to smaller cities and counties," Cilluffo told a congressional hearing last month.

"Targets include police and sheriff departments, schools and libraries, health agencies, transit systems, and courts... no jurisdiction is too small or too large to go unaffected."

Ransomware has been a thorny cybersecurity issue for several years in the US and globally, marked by global ransomware attacks known as "WannaCry" and "NotPetya."

Health care institutions have been frequent victims, and Hollywood Presbyterian Medical Center revealed in 2016 it paid $17,000 to hackers to decrypt important data.

The French Interior Ministry said in a recent report authorities responded to some 560 ransomware incidents in 2018 but also noted that most incidents are unreported.

The same ministry report said hackers have shifted their strategy from attacking many systems with demands for small ransoms to more targeted attacks with higher potential payout.

- Pay or resist? -

While the FBI and others warn against paying ransoms, some analysts say there is no clear answer for victims when critical data is locked.

"You have to do what's right for your organization," Falco said. "It's not the FBI's call. You might have criminal justice information, you could have decades of evidence. You have to weigh this for yourself."

Josh Zelonis at Forrester Research offered a similar view, saying in a blog post that victims need to consider paying the ransom as a valid option, alongside other recovery efforts.

But Randy Marchany, chief information security officer for Virginia Tech University, said the best answer is to take a hardline "don't pay" attitude.

"I don't agree with any organization or city paying the ransom," Marchany said.

"The victims will have to rebuild their infrastructure from scratch anyway. If you pay the ransom, the hackers give you the decryption key but you have no assurance the ransomware has been removed from all of your systems. So, you have to rebuild them anyway."

- Prevention is best -

Victims often fail to take preventive measures such as software updates and data backups that would limit the impact of ransomware.

But victims may not always be aware of potential remedies that don't involve paying up, said Brett Callow of Emsisoft, one of several security firms that offer free decryption tools.

"If the encryption in ransomware is implemented properly, there is a zero chance of recovery unless you pay the ransom," Callow said.

"Often it isn't implemented properly, and we find weaknesses in the encryption and undo it."

Callow also points to coordinated efforts of security firms including the No More Ransom Project, which partners with Europol, and ID Ransomware, which can identify some malware and sometimes unlock data.

Analysts point out that ransomware attacks may be motivated by more than just money. Two Iranians were charged last year in the attack on Atlanta that prosecutors said was an attempt to disrupt US institutions.

"Attackers which aren't such big fans of the US might want to cause economic disruption," Falco said.

"Instead of trying to take down the whole electric grid, they may try to create chaos in a number of cities."


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues


Thanks for being there;
We need your help. The SpaceDaily news network continues to grow but revenues have never been harder to maintain.

With the rise of Ad Blockers, and Facebook - our traditional revenue sources via quality network advertising continues to decline. And unlike so many other news sites, we don't have a paywall - with those annoying usernames and passwords.

Our news coverage takes time and effort to publish 365 days a year.

If you find our news sites informative and useful then please consider becoming a regular supporter or for now make a one off contribution.
SpaceDaily Monthly Supporter
$5+ Billed Monthly


paypal only
SpaceDaily Contributor
$5 Billed Once


credit card or paypal


CYBER WARS
AFRL and IBM to pioneer quantum information technology for DoD
Rome NY (SPX) Jul 13, 2019
The Air Force Research Laboratory is breaking new ground in their efforts to partner with industry, academia, and the Department of Defense to apply quantum information science to Air Force concerns and ensure they remain the most advanced and capable force in the World. AFRL has formally joined the IBM Q Network, the first ever partnership of its kind in the Department of Defense. This alliance will provide AFRL and its collaborators with access to commercial quantum systems to explore practical ... read more

Comment using your Disqus, Facebook, Google or Twitter login.



Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle

CYBER WARS
Russian Federatsiya spacecraft crew could be killed in case of water landing

What a Space Vacation Deal

LightSail 2 phones home to mission control

Keeping NASA's Oldest Explorers Going

CYBER WARS
Vega rocket fails after takeoff in French Guiana

China to launch constellation with 72 satellites for Internet of Things

Ball Aerospace begins on-orbit testing of green fuel

Pioneer satellites launched

CYBER WARS
Sustaining Life on Long-Term Crewed Missions Will Require Planetary Resources

InSight Uncovers the 'Mole' on Mars

Mars 2020 Rover Gets a Super Instrument

Methane vanishing on Mars

CYBER WARS
From Moon to Mars, Chinese space engineers rise to new challenges

China plans to deploy almost 200 AU-controlled satellites into orbit

Luokung and Land Space to develop control system for space and ground assets

Yaogan-33 launch fails in north China, Possible debris recovered in Laos

CYBER WARS
To be a rising star in the space economy, Australia should also look to the East

Israeli space tech firm hiSky expands to the UK

All-alectric Maxar 1300-Class comsat delivers broadcast services for Eutelsat customers

Newtec collaborates with QinetiQ, marking move into space sector

CYBER WARS
New high-definition satellite radar can detect bridges at risk of collapse from space

Boeing selects Raytheon for B-52 radar replacement

Tungsten as interstellar radiation shielding?

Astroscale advances debris removal concept through ESA and OneWeb Sunrise Project

CYBER WARS
Discovering Exoplanets with Gravitational Waves

Planet Seeding and Panspermia

ALMA Pinpoints Formation Site of Planet Around Nearest Young Star

NASA's TESS Mission Finds Its Smallest Planet Yet

CYBER WARS
Kuiper Belt Binary Orientations Support Streaming Instability Hypothesis

Study Shows How Icy Outer Solar System Satellites May Have Formed

Astronomers See "Warm" Glow of Uranus's Rings

Table salt compound spotted on Europa









The content herein, unless otherwise known to be public domain, are Copyright 1995-2024 - Space Media Network. All websites are published in Australia and are solely subject to Australian law and governed by Fair Use principals for news reporting and research purposes. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA news reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. All articles labeled "by Staff Writers" include reports supplied to Space Media Network by industry news wires, PR agencies, corporate press officers and the like. Such articles are individually curated and edited by Space Media Network staff on the basis of the report's information value to our industry and professional readership. Advertising does not imply endorsement, agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. General Data Protection Regulation (GDPR) Statement Our advertisers use various cookies and the like to deliver the best ad banner available at one time. All network advertising suppliers have GDPR policies (Legitimate Interest) that conform with EU regulations for data collection. By using our websites you consent to cookie based advertising. If you do not agree with this then you must stop using the websites from May 25, 2018. Privacy Statement. Additional information can be found here at About Us.