Tag: wannacry

  • VB2018 paper: Since the hacking of Sony Pictures

    Recent activity shows that the Lazarus Group, which became (in)famous through the Sony Pictures breach and the WannaCry attack, is still very much active and targeting financial institutions around the world. Perhaps unsurprisingly, the group, which is generally believed to be linked to the North Korean government, has also been very active in South Korea,…

  • VB2018 paper: Since the hacking of Sony Pictures

    Recent activity shows that the Lazarus Group, which became (in)famous through the Sony Pictures breach and the WannaCry attack, is still very much active and targeting financial institutions around the world. Perhaps unsurprisingly, the group, which is generally believed to be linked to the North Korean government, has also been very active in South Korea,…

  • VB2018 paper: Now you see it, now you don’t: wipers in the wild

    Early computer viruses were often destructive in nature, but once criminals learned about the money they could make from malware, they realised that destructiveness hurt their goals. Destructive malware, however, has made a comeback in recent years, most importantly in nation-sponsored attacks. Some of these malware variants literally wipe all data off disks (hence the…

  • VB2018 paper: Now you see it, now you don’t: wipers in the wild

    Early computer viruses were often destructive in nature, but once criminals learned about the money they could make from malware, they realised that destructiveness hurt their goals. Destructive malware, however, has made a comeback in recent years, most importantly in nation-sponsored attacks. Some of these malware variants literally wipe all data off disks (hence the…

  • Paper: EternalBlue: a prominent threat actor of 2017–2018

    A little over a year ago, one of the defining security events of the decade occurred: the WannaCry outbreak. A damaging and destructive cyber attack that hit the UK’s National Health Service particularly hard. The high infection rate of WannaCry was in large part thanks to its implementation of ‘EternalBlue’, an exploit of a remote…

  • Paper: EternalBlue: a prominent threat actor of 2017–2018

    A little over a year ago, one of the defining security events of the decade occurred: the WannaCry outbreak. A damaging and destructive cyber attack that hit the UK’s National Health Service particularly hard. The high infection rate of WannaCry was in large part thanks to its implementation of ‘EternalBlue’, an exploit of a remote…

  • NCSC gives important advice on lateral movement

    Though not even a year and a half old, the UK’s National Cyber Security Centre (NCSC) has already managed to make a name for itself through its practical advice and guidance on many security topics. Earlier this month, the Centre published guidance on lateral movement : the techniques used by an attacker to move through…

  • NCSC gives important advice on lateral movement

    Though not even a year and a half old, the UK’s National Cyber Security Centre (NCSC) has already managed to make a name for itself through its practical advice and guidance on many security topics. Earlier this month, the Centre published guidance on lateral movement : the techniques used by an attacker to move through…

  • The case against running Windows XP is more subtle than we think it is

    Greater Manchester Police has admitted to the BBC that some 1,500 of its PCs (20% of the total) are still running Windows XP , an operating system that was considered end-of-life more than three years ago. This makes the organization an exception. Not because its systems are still running Windows XP , but because it…

  • The case against running Windows XP is more subtle than we think it is

    Greater Manchester Police has admitted to the BBC that some 1,500 of its PCs (20% of the total) are still running Windows XP , an operating system that was considered end-of-life more than three years ago. This makes the organization an exception. Not because its systems are still running Windows XP , but because it…