CERT mailing list archives
Multiple Ransomware Infections Reported
From: "US-CERT" <US-CERT () ncas us-cert gov>
Date: Fri, 12 May 2017 15:37:50 -0500
U.S. Department of Homeland Security US-CERT National Cyber Awareness System: Multiple Ransomware Infections Reported [ https://www.us-cert.gov/ncas/current-activity/2017/05/12/Multiple-Ransomware-Infections-Reported ] 05/12/2017 03:05 PM EDT Original release date: May 12, 2017 US-CERT has received multiple reports of WannaCry ransomware infections in several countries around the world.Ransomware [ https://www.us-cert.gov/security-publications/Ransomware ] is a type of malicious software that infects a computer and restricts users access to it until a ransom is paid to unlock it. Individuals and organizations are discouraged from paying the ransom, as this does not guarantee access will be restored. Ransomware spreads easily when it encounters unpatched or outdated software. The WannaCry ransomware may be exploiting a vulnerability in Server Message Block 1.0 (SMBv1). For information on how to mitigate this vulnerability, review the US-CERT article onMicrosoft SMBv1 Vulnerability [ https://www.us-cert.gov/ncas/current-activity/2017/03/16/Microsoft-SMBv1-Vulnerability ] and the Microsoft Security Bulletin MS17-010 [ https://technet.microsoft.com/library/security/MS17-010 ]. Users and administrators are encouraged to review the US-CERT Alert TA16-091A [ https://www.us-cert.gov/ncas/alerts/TA16-091A ] to learn how to best protect against ransomware. Please report any ransomware incidents to the Internet Crime Complaint Center (IC3) [ https://www.ic3.gov/default.aspx ]. ________________________________________________________________________ This product is provided subject to this Notification [ http://www.us-cert.gov/privacy/notification ] and this Privacy & Use [ http://www.us-cert.gov/privacy/ ] policy. ________________________________________________________________________ A copy of this publication is available at www.us-cert.gov [ https://www.us-cert.gov ]. If you need help or have questions, please send an email to info () us-cert gov. Do not reply to this message since this email was sent from a notification-only address that is not monitored. To ensure you receive future US-CERT products, please add US-CERT () ncas us-cert gov to your address book. OTHER RESOURCES: Contact Us [ http://www.us-cert.gov/contact-us/ ] | Security Publications [ http://www.us-cert.gov/security-publications ] | Alerts and Tips [ http://www.us-cert.gov/ncas ] | Related Resources [ http://www.us-cert.gov/related-resources ] STAY CONNECTED: Sign up for email updates [ http://public.govdelivery.com/accounts/USDHSUSCERT/subscriber/new ]
Current thread:
- Multiple Ransomware Infections Reported US-CERT (May 12)
- <Possible follow-ups>
- Multiple Ransomware Infections Reported US-CERT (Oct 24)