As you’ve undoubtedly heard, a second global ransomware attack is underway affecting the countries of Russia, Ukraine, Europe and the United States so far. Here are some facts about the latest attack:
- Attackers are using multiple attack vectors to spread the virus, such as: ETERNALBLUE, ETERNALROMANCE, and the PsExec command line utility.
- The ransomware, known as Petya encrypts the Master File Table (MFT) which effectively locks victims out of their entire system.
- Because the email account for accepting ransom payments was shut down, victims are unable to pay the criminals to get their files back. So once encrypted, the files are lost.
You should immediately make sure systems are patched and limit users from running with admin credentials.
XSolutions is an Elite Partner of Datto, the world leader in Hybrid-Cloud Business Continuity solutions whose systems protect 250+ Petabytes of data with over 800 employees around the globe. Call (845) 362-9675 and let us introduce you to the ultimate defense against data loss—whatever the cause.