时间:2025-05-09 17:12:26 来源:网络整理编辑:探索
When it comes to online currency, lulz just might outvalue Bitcoin. A unknown group of hackers is wo
When it comes to online currency, lulz just might outvalue Bitcoin.
A unknown group of hackers is working behind the scenes to restart the ransomware WannaCry, and one security expert believes the culprits this time around aren't who you think.
And neither is their motivation.
SEE ALSO:It won't be easy for WannaCry hackers to get their cashContrary to what you might expect, it appears not to be the initial group responsible for WannaCry now working to startle the ransomware monster awake from its slumber. Rather, we may have some internet randos to thank.
Why? The leading theory, proposed by security researcher Marcus Hutchins, suggests it's all about shits and giggles.
WannaCry rushed onto the international scene on May 12, infecting and encrypting hundreds of thousands of computer systems running unpatched Windows operating systems. The ransomware demanded that victims pay around $300 in the cryptocurrency Bitcoin to their attackers if they ever wanted to see their files again.
"Yeah, it's most likely scriptkiddies doing it for lulz."
Some paid up, but computers stayed encrypted.
And while the damage was bad — England's National Health Service was hit particularly hard — it could have been a lot worse. The ransomware -- which utilized a stolen NSA exploit called EternalBlue -- stopped spreading when Hutchins registered a mysterious domain he discovered in the malware code and sinkholed it.
Hutchins explained the process on his blog, noting that "a sinkhole is a server designed to capture malicious traffic and prevent control of infected computers by the criminals who infected them."
The ransomware, it seems, was designed to contact Hutchins' domain before it spread to the next victim. Hutchins' registration of that domain created a kind of kill switch — effectively telling WannaCry to stop spreading.
As long as that domain, and one other discovered and sinkholed by a different researcher, remain up and active the ransomware won't spread. Which brings us back to our lulz-pirates.
Hutchins has observed an intentional distributed denial of service attack aimed at his domain with the apparent goal of knocking it offline. Wiredreports that the traffic appears to be coming courtesy of the Mirai botnet — the same botnet, comprised of IoT devices like wireless security cameras, that brought down parts of the internet in the fall of 2016.
Tweet may have been deleted
Why would anyone do this? Could the initial WannaCry developers simply want more computers infected with the hope of making more money? Probably not.
As Hutchins confirmed via Twitter direct message, the initial attackers can't appear to even keep up with the volume of decryption requests they've already received.
"[The] decryption system is stupid and completely unscalable," he observed.
In other words, infecting more computers won't exactly translate to more Bitcoin in their wallets. That leaves another possibility: someone just looking to mess with people.
"Yeah, it's most likely scriptkiddies doing it for lulz," Hutchins further speculated — using a term that refers to relatively low-skilled hackers.
So there you have it. If someone manages to knock Hutchins' sinkhole offline, allowing WannaCry to spread further in the process, you'll likely have some random prankster with a messed up sense of humor to thank.
But don't stress about it too much. "The DDoS is unlikely to be successful," reassures Hutchins.
Phew. Now if only Hutchins could solve our other internet security problems.
TopicsCybersecurity
Airbnb activates disaster response site for Louisiana flooding2025-05-09 16:26
12 月 10 日梅西一傳一射,阿根廷點球大戰淘汰荷蘭,如何評價他在賽場的表現?(梅西傳射阿根廷進決賽了嗎現在)2025-05-09 16:15
2022卡塔爾世界杯 ,16強全部誕生,八分之一決賽對陣圖(世界杯2022成績)2025-05-09 15:38
結束49天等待 !梅西巴黎處子球創多項紀錄 一數據雖遜C羅但更驚人(梅西進過幾次決賽)2025-05-09 15:29
Twitter grants everyone access to quality filter for tweet notifications2025-05-09 15:05
即使梅西三次帶領阿根廷進入世界大賽的決賽 ,為什麽還有那麽多人說梅西在國家隊表現不好?(梅西為阿根廷國家隊打進多少球)2025-05-09 14:57
2022年卡塔爾世界杯 :葡萄牙vs烏拉圭比分預測 C羅大戰蘇亞雷斯(2022世界杯賽程分組)2025-05-09 14:52
2022世界杯阿根廷vs克羅地亞誰更厲害誰能贏、比分預測曆史戰績(克羅地亞厲不厲害)2025-05-09 14:51
Despite IOC ban, Rio crowds get their political messages across2025-05-09 14:50
封神 !梅西傳射阿根廷進決賽!32025-05-09 14:41
Watch MTV's Video Music Awards 2016 livestream2025-05-09 17:08
2022年卡塔爾世界杯 :荷蘭vs卡塔爾比分預測 東道主的尊嚴之戰(世界杯2022年賽程)2025-05-09 17:07
阿根廷vs墨西哥誰厲害(克羅地亞與阿根廷交戰記錄表)2025-05-09 16:38
小白觀看世界杯必讀 ,兩分鍾入門足球賽場規則及術語(足球守門員規則有哪些要求)2025-05-09 16:31
Ivanka Trump's unpaid interns share cringeworthy financial advice2025-05-09 16:16
克羅地亞VS阿根廷:連續兩屆殺入4強,回顧格子軍團25年的高低起伏(克羅地亞和阿根廷誰厲害些)2025-05-09 16:03
一戰瘋創多項紀錄 !可這會是梅西的生涯絕唱嗎?(梅西三次進決賽)2025-05-09 15:49
四年前輸給克羅地亞0:3,阿根廷主帥表示這次半決賽球隊更強大了(克羅地亞和阿根廷誰厲害一些)2025-05-09 15:45
This chart shows just how high Simone Biles can jump2025-05-09 14:53
荷蘭、阿根廷會師1/4決賽 梅西破門創多項紀錄(梅西奪冠幾次)2025-05-09 14:39