{"id":292366,"date":"2021-07-07T00:00:02","date_gmt":"2021-07-06T21:00:02","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/us-software-firm-moves-to-restart-after-huge-ransomware-attack\/"},"modified":"2021-07-07T00:00:02","modified_gmt":"2021-07-06T21:00:02","slug":"us-software-firm-moves-to-restart-after-huge-ransomware-attack","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/us-software-firm-moves-to-restart-after-huge-ransomware-attack\/","title":{"rendered":"#US software firm moves to restart after huge ransomware attack"},"content":{"rendered":"<p>&#8220;<strong>#US software firm moves to restart after huge ransomware attack<\/strong>&#8221;<\/p>\n<div>\n<div class=\"article-gallery lightGallery\">\n<div data-thumb=\"https:\/\/scx1.b-cdn.net\/csz\/news\/tmb\/2021\/a-us-software-firm-scr.jpg\" data-src=\"https:\/\/scx2.b-cdn.net\/gfx\/news\/2021\/a-us-software-firm-scr.jpg\" data-sub-html=\"A US software firm scrambled to restart its systems after a massive ransomware attack affecting organizations worldwide.\">\n<figure class=\"article-img\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/scx1.b-cdn.net\/csz\/news\/800a\/2021\/a-us-software-firm-scr.jpg\" alt=\"A US software firm scrambled to restart its systems after a massive ransomware attack affecting organizations worldwide\" title=\"A US software firm scrambled to restart its systems after a massive ransomware attack affecting organizations worldwide.\" width=\"800\" height=\"530\"\/><figcaption class=\"text-darken text-low-up text-truncate-js text-truncate mt-3\">\n                A US software firm scrambled to restart its systems after a massive ransomware attack affecting organizations worldwide.<br \/>\n            <\/figcaption><\/figure>\n<\/div>\n<\/div>\n<p>A US software firm hit by a major ransomware attack that crippled hundreds of companies worldwide said it was on track to restart its servers later Tuesday to bring customers back online.<\/p>\n<p>                                                                                Kaseya, the Miami-based IT company at the center of the hack, said it pushed back its forecast by two hours and hoped to resume operations between 2000 and 2300 GMT.<\/p>\n<p>The <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/news\/\" data-internallinksmanager029f6b8e52c=\"2\" title=\"News\" target=\"_blank\" rel=\"noopener\">news<\/a> comes after an unprecedented attack that affected an estimated 1,500 businesses and prompted a ransom demand of $70 million.<\/p>\n<p>The systems were being brought back online with &#8220;enhanced security measures&#8221; and &#8220;the ability to quarantine and isolate files and entire &#8230; servers&#8221; in case of infection.<\/p>\n<p>&#8220;Later today we will release a customer-ready statement for you to use to communicate to your customers on the incident and the security measures that we have put in place,&#8221; a Kaseya statement said.<\/p>\n<p>While Kaseya is little known to the public, analysts say it was a ripe target as its software is used by thousands of companies, allowing the hackers to paralyze a huge number of businesses with a single blow. <\/p>\n<p>Kaseya provides IT services to some 40,000 businesses globally, some of whom in turn manage the computer systems of other businesses.  <\/p>\n<p>The hack affected users of its signature VSA software, which is used to manage networks of computers and printers.<\/p>\n<div class=\"article-gallery lightGallery\">\n<div data-thumb=\"https:\/\/scx1.b-cdn.net\/csz\/news\/tmb\/2021\/swedens-coop-supermark-1.jpg\" data-src=\"https:\/\/scx2.b-cdn.net\/gfx\/news\/2021\/swedens-coop-supermark-1.jpg\" data-sub-html=\"Sweden's Coop supermarket chain is racing to reopen hundreds of stores closed as a result of the ransomware attack.\">\n<figure class=\"article-img text-center\"><img decoding=\"async\" src=\"https:\/\/scx1.b-cdn.net\/csz\/news\/800a\/2021\/swedens-coop-supermark-1.jpg\" alt=\"Sweden's Coop supermarket chain is racing to reopen hundreds of stores closed as a result of the ransomware attack\"\/><figcaption class=\"text-left text-darken text-truncate text-low-up mt-3\">\n                Sweden&#8217;s Coop supermarket chain is racing to reopen hundreds of stores closed as a result of the ransomware attack.<br \/>\n            <\/figcaption><\/figure>\n<\/div>\n<\/div>\n<p>Experts believe this could be the biggest &#8220;ransomware&#8221; attack on record\u2014an increasingly lucrative form of digital hostage-taking in which hackers encrypt victims&#8217; data and then demand money for restored access.<\/p>\n<p>The Kaseya attack has ricocheted around the world, affecting businesses from pharmacies to gas stations in at least 17 countries, as well as dozens of New Zealand kindergartens.<\/p>\n<p>Most of Sweden&#8217;s 800 Coop supermarkets were shut for a third day running after the hack paralyzed its cash registers. <\/p>\n<p>Kaseya said Monday that while less than 60 of its own customers were &#8220;directly compromised&#8221;, it estimated that up to &#8220;1,500 downstream businesses&#8221; had been affected. <\/p>\n<p>White House spokeswoman Jen Psaki said the administration was monitoring the situation amid reports that the attacks came from a Russia-based cyber gang. But she noted that &#8220;the intelligence community has not yet attributed the attack&#8230; we will continue to allow that assessment to continue.&#8221;<br \/>\n                                            <!-- Google middle Adsense block --><\/p>\n<p>Psaki reiterated the warning President Joe Biden gave to his counterpart Vladimir Putin about Russia harboring cybercriminals, stating that &#8220;if the Russian government cannot or will not take action against criminal actors residing in Russia we will take action, or reserve the right to take action on our own.&#8221;<\/p>\n<p>Biden, asked about the incident Tuesday, said that so far there <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/download-scripts-themes-apps\/\" data-internallinksmanager029f6b8e52c=\"9\" title=\"Download Scripts &amp; Themes &amp; Apps\" target=\"_blank\" rel=\"noopener\">app<\/a>eared to be &#8220;minimal damage to US businesses&#8221; but that &#8220;we are still gathering information to the full extent of the attack.&#8221;<\/p>\n<div class=\"article-gallery lightGallery\">\n<div data-thumb=\"https:\/\/scx1.b-cdn.net\/csz\/news\/tmb\/2021\/notable-cyber-attacks-1.jpg\" data-src=\"https:\/\/scx2.b-cdn.net\/gfx\/news\/2021\/notable-cyber-attacks-1.jpg\" data-sub-html=\"Notable cyber attacks since 2006.\">\n<figure class=\"article-img text-center\"><img decoding=\"async\" src=\"https:\/\/scx1.b-cdn.net\/csz\/news\/800a\/2021\/notable-cyber-attacks-1.jpg\" alt=\"Notable cyber attacks\"\/><figcaption class=\"text-left text-darken text-truncate text-low-up mt-3\">\n                Notable cyber attacks since 2006.<br \/>\n            <\/figcaption><\/figure>\n<\/div>\n<\/div>\n<p><b>Going out with a bang?<\/b><\/p>\n<p>REvil, a group of Russian-speaking hackers who are prolific perpetrators of ransomware attacks, are widely believed to be behind Friday&#8217;s assault. <\/p>\n<p>A post on Happy Blog, a site on the dark web associated with the group, claimed responsibility for the attack, saying it had infected &#8220;more than a million systems.&#8221;<\/p>\n<p>The hackers demanded $70 million in bitcoin in exchange for the publication of an online tool that would decrypt the stolen data. <\/p>\n<p>While the hackers are thought to have been reaching out to individual victims requesting smaller payments, the unprecedented demand for $70 million has surprised analysts. <\/p>\n<p>French cybersecurity expert Robinson Delaugerre suggested that REvil could be treating the Kaseya attack as a final spectacular act before going out of business. <\/p>\n<p>The group was responsible for around 29 percent of ransomware attacks in 2020, according to IBM&#8217;s Security X-Force unit, looting an estimated $123 million. <\/p>\n<p>&#8220;Our hypothesis is that REvil is going to disappear and this is its final big act,&#8221; he told AFP, predicting that the group\u2014which also goes by the name Sodinokibi\u2014could re-emerge under a new name. <\/p>\n<p>The FBI believes REvil was also behind a ransomware attack last month on global meat-processing giant JBS, which ended up paying $11 million to the hackers.<\/p>\n<p>The United States has been a particular target of high-profile cyber attacks in recent months blamed on Russia-based hackers, with the Colonial oil pipeline and IT firm SolarWinds among the targets.\n                                                                                                                        <\/p>\n<hr\/>\n<div class=\"article-main__explore my-4 d-print-none\">\n<p>                                            Up to 1,500 firms hit in Kaseya ransomware attack\n                                        <\/p><\/div>\n<hr class=\"mb-4\"\/>\n<p class=\"article-main__note mt-4\">\n                                                \u00a9 2021 AFP<\/p>\n<p>                                        <!-- print only --><\/p>\n<div class=\"d-none d-print-block\">\n<p>                                                 <strong>Citation<\/strong>:<br \/>\n                                                 US software firm moves to restart after huge ransomware attack (2021, July  6)<br \/>\n                                                 retrieved  6 July 2021<br \/>\n                                                 from https:\/\/techxplore.com\/news\/2021-07-software-firm-restart-huge-ransomware.html<\/p>\n<p>                                            This document is subject to copyright. Apart from any fair dealing for the purpose of private study or research, no<br \/>\n                                            part may be reproduced without the written permission. The content is provided for information purposes only.<\/p><\/div>\n<\/p><\/div>\n<p><script id=\"facebook-jssdk\" async=\"\" src=\"https:\/\/connect.facebook.net\/en_US\/sdk.js\"><\/script><\/p>\n<blockquote><p><strong><span style=\"color: #ff6600;\">If you liked the article, do not forget to share it with your friends. Follow us on\u00a0<span style=\"color: #ff0000;\"><a style=\"color: #ff0000;\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMLG0nwswvr63Aw\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Google News<\/a><\/span>\u00a0too, click on the star and choose us from your favorites.<\/span><\/strong><\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\">For forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more Like this articles, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/science\/\" target=\"_blank\" rel=\"noopener\">Science category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/techxplore.com\/news\/2021-07-software-firm-restart-huge-ransomware.html\" target=\"_blank\" rel=\"noopener\">Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8220;#US software firm moves to restart after huge ransomware attack&#8221; A US software firm scrambled to restart its systems after a massive ransomware attack affecting organizations worldwide. A US software firm hit by a major ransomware attack that crippled hundreds of companies worldwide said it was on track to restart its servers later Tuesday to&#8230;<\/p>\n","protected":false},"author":1,"featured_media":292367,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/scx2.b-cdn.net\/gfx\/news\/2021\/a-us-software-firm-scr.jpg","fifu_image_alt":"","footnotes":""},"categories":[16],"tags":[],"class_list":["post-292366","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-sciencee"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/292366","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=292366"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/292366\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/292367"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=292366"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=292366"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=292366"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}