Criminals encrypt files in extortion attempt

By
Follow google news

Security companies have tracked a new type of internet attack that encrypts files on a user's machine and then demands payment for a decoder tool.

According to Websense, the attack starts when a user visits a malicious website that exploits a known vulnerability in Microsoft Internet Explorer. The site downloads a Trojan that searches for files with various extensions on the user's system and encrypts them.


The Trojan also sends a message to the user's system with instructions on how to buy a tool to decode the files. The message directs users to deposit money for the tool into an online account.

Symantec rated the attack as a Level One threat - the least serious - but said it illustrates the trend of malware writers teaming with criminals intent on profit.

"The attack is yet another indicator of the growing trend of criminals using technology for financial gain," Oliver Friedrichs, senior manager at Symantec Security Response, said in a statement. "The good news is that this threat is not self-propagating, which limits its ability to spread in the wild."

www.symantec.com
www.websense.com

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

ASD to critical infrastructure ops: be ready to isolate systems for three months

ASD to critical infrastructure ops: be ready to isolate systems for three months

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

OpenAI models running benchmark breached AI platform Hugging Face

OpenAI models running benchmark breached AI platform Hugging Face

Its AI agent spent days hacking a company, but sources say OpenAI did not notice for a week

Its AI agent spent days hacking a company, but sources say OpenAI did not notice for a week

Log In

  |  Forgot your password?