Skip to content

Davey Winder

delivering award-winning technology journalism since 1991

  • home
  • about me
  • follow me on mastodon
  • privacy policy
  • Toggle search form
mocked up ransomware screen

Ransomware actors turn attention to holding websites hostage

Posted on August 18, 2017August 18, 2017 By Davey Winder 4 Comments on Ransomware actors turn attention to holding websites hostage

Ransomware actors are looking for new targets according to security vendor WordFence. That target would appear to be WordPress-powered websites…

Hot on the heels of WannaCry and NotPetya ransomware actors are looking for new targets. According to security vendor WordFence that target appears to be WordPress-powered websites. “During our analyses of malicious traffic targeting WordPress sites” the report states “we captured several attempts to upload ransomware that provides an attacker with the ability to encrypt a WordPress website’s files.”

It seems that the attack is badly coded, however, and decryption logic is missing from the supposed ‘ransom paid’ form. Victims wouldn’t be able to regain control of their files even if the ransom were to be paid.

Click here to read complete article

Analysis Tags:Business, Enterprise, ransomware, Web, WordPress

Post navigation

Previous Post: How secure is your localhost domain? Hint – it may not be what it says
Next Post: Ransomworms on the rise: yet another wake up call for the enterprise

Related Articles

Microsoft Outlook Warning: Critical New Email Exploit Triggers Automatically—Update Now Analysis
Is Bitwarden Doing Enough To Prevent Password Theft? New Research Reveals Attack Vector Analysis
Twitter Just Weakened Account Security For Almost 368 Million Users Analysis
Is ChatGPT a security threat? I asked, the AI bot replied. Analysis
Wordcloud with Cyber Security at centre No, PayPal Hasn’t Been Hacked: Yet Almost 35,000 Accounts Were Breached Analysis
You Need To Fix Google Chrome’s Mojo, Here’s How & Why Analysis

Comments (4) on “Ransomware actors turn attention to holding websites hostage”

  1. Peter Thornwright says:
    September 8, 2017 at 8:34 AM

    What is the best way to protect a website from this kind of ransomware attack?

  2. Davey Winder says:
    September 8, 2017 at 8:39 AM

    There is mitigation advice at the end of the linked article, and I suggest you jump over to SC Magazine UK and read it. That said, the bare minimum (and a pretty effective minimum truth be told) would be ensuring you have two-factor authentication on your admin logins, and a web-application firewall running.

  3. Peter Thornwright says:
    September 8, 2017 at 8:50 AM

    Google tells me a web application firewall “applies a set of rules to an HTTP conversation. Generally, these rules cover common attacks such as cross-site scripting (XSS) and SQL injection. While proxies generally protect clients, WAFs protect servers.” Which sounds complicated. Is it?

  4. Davey Winder says:
    September 8, 2017 at 8:55 AM

    It doesn’t have to be. The article itself was based on research by a WAF vendor called WordFence. If you are running a WordPress site then it’s probably worth taking a look at what they have to offer. At the very least you’ll get an idea of the type of security that a WAF-based approach can provide. See: https://www.wordfence.com/

Comments are closed.

Categories

Post Archive

Tags

0day Analysis Android Apple Apps breach bug bounty Business Chrome crime Cybercrime Data Protection Encryption Enterprise Google Government hack Hackers Hacking healthcare industry iOS IoT iPhone Malware Microsoft News NHS Opinion passwords Phishing Privacy ransomware Research Russia Samsung threat intelligence Threatscape Update Vulnerabilites vulnerabilities Vulnerability Windows Windows 10 zero-day

Copyright © 2023 Davey Winder .

×
Cookies
We serve cookies. If you think that's ok, just click "Accept all". You can also choose what kind of cookies you want by clicking "Settings". Read our cookie policy
Settings Refuse all Accept all
Cookies
Choose what kind of cookies to accept. Your choice will be saved for one year. Read our cookie policy
  • Necessary
    These cookies are not optional. They are needed for the website to function.
  • Statistics
    In order for us to improve the website's functionality and structure, based on how the website is used.
  • Experience
    In order for our website to perform as well as possible during your visit. If you refuse these cookies, some functionality will disappear from the website.
  • Marketing
    By sharing your interests and behavior as you visit our site, you increase the chance of seeing personalized content and offers.
Save Refuse all Accept all
GDPR Cookie Policy