Accept the updated privacy & cookie policy

The Indiatimes.com Privacy Policy has been updated to align with the new data regulations in European Union. Please review and accept these changes below to continue using the website. We use cookies to ensure the best experience for you on our website.

How Cyber Experts Are Working Hard To Protect India From The 'Biggest Ransomware' Attack Ever

Cybersecurity professionals worked round the clock over the weekend, trying to protect corporate clients against what experts are calling the biggest ransomware attack ever, before they open for business Monday morning.
Surabhi Agarwal & Aritra Sarkhel, ET Tech Updated on May 15, 2017, 13:48 IST

Cybersecurity professionals worked round the clock over the weekend, trying to protect corporate clients against what experts are calling the biggest ransomware attack ever, before they open for business Monday morning.

bccl/representational image

Cyber security firms told ET that though the impact on India from the Wanna-Cry onslaught has been relatively minimal so far, the real test will be on Monday when scores of professionals switch on their work systems.

Also Read:?Symantec: CIA's Leaked Hacking Tools Were Used In 40 Cyber Attacks In 16 Different Countries

A malicious piece of software that blocks access to computers until money is paid, ransomware WannaCry is said to have swamped machines in over 150 countries, including India. The hackers, who go by the name Shadow Brokers, are demanding $300 in virtual currency Bitcoin to unblock access to a user's files and had reportedly received over $25,000 till Saturday morning.

India is among the most vulnerable because a large number of organisations and individuals still rely on older, outdated versions of the Windows operating system. The country also has the highest number of pirated software users.

bccl/representational image

So far, those impacted include systems of the Andhra Pradesh Police, four manufacturing companies, two retailers, the India operations of a multinational, two banks and the Chennai facility of an automaker, according to reports.

Also Read:?India Fourth In List Of Countries That Faced Most Cyber Attacks, US And China On Top

Burgess Cooper, partner, cyber security, at audit and consultancy firm EY, told ET the real impact in India had not been felt yet. First intimations of the attack came in the UK at about afternoon local time on Friday, by when the weekend had begun in India. "On Monday morning you could see more activity when people come into work," he said.

Sivarama Krishnan, executive director at PwC, said his team had been working through the weekend alerting and assisting more than 2,000 clients in helping identify and block threats using firewalls. The root is said to be a vulnerability in Microsoft Windows that was exploited by the hackers.

bccl/representational image

Microsoft did release a patch to fix the issue in mid-March, so organisations and individuals who did not update their systems are at risk.

'Security hygiene'

Cooper said the worst hit are organisations that don't have security "hygiene" in place. "Manufacturing units, healthcare or pharma, energy and utility companies systems designed earlier not to connect to the Internet but are now connected will be highly impacted," he said. Equally vulnerable will be government establishments, he added.

Krishna said that while financial institutions, telcos and large corporates that have stringent security practices will be safe, their branch networks in far flung areas or small and medium businesses may be hit. "There is impact in India and it is not just a handful of organisations, it is much more than that," said Shree Parthasarathy, partner, Deloitte.

He said this was a wakeup call for organisations not investing enough in security since attacks will get more severe in the future. Experts did not divulge names of the organisations that have been hit.

reuters/representational image

Aruna Sundararajan, secretary, ministry of electronics and information technology (MeitY), said the government had initiated contact with relevant stakeholders in public and private sector to patch systems as prescribed in the advisory issued by the Indian Computer Emergency Response Team (CERT-In).

These include the National Informatics Centre (NIC) for all central and state government systems; Reserve Bank of India, National Payments Corporation of India and Unique Identification Authority of India for protection of the digital payments ecosystem; the Department of Telecommunications to alert Internet service providers for security of the telecommunications network; and Data Security Council of India and Centre for Development of Advanced Computing to circulate advisories to their constituencies so as to cover the industry and users in India, primarily in private sector.

Advisory issued

CERT-In has informed all chief information security officers regarding the ransomware and an advisory has been issued. MeitY has also asked Microsoft India to inform all its partners and customers to apply the relevant patches.

Amit Nath, head of Asia Pacific corporate business at F-Secure Corporation, said it was the biggest ransomware outbreak in terms of infections.

"Russia and India were hit particularly hard, largely because Microsoft's Windows XP, one of the operating systems most at risk, is still widely used in the countries." Ankush Johar, director at Human-Firewall.io, a phishing protection company, added that India will be among the top three worst-hit countries. "Phishing is at the heart of this ransomware attack. Humans are the weakest link in cyber security, and this ransomware attack proves that yet again," he said.

reuters/representational image

The global ransomware attack has reportedly hit the UK's National Health Service (NHS), Spanish telecom company Telefonica and government departments in Russia, Turkey, Germany, Vietnam, Spain and the Philippines. Trishneet Arora, CEO, TAC Security, said manufacturing companies in Mumbai, Gujarat and even jewellery manufacturing companies have reached out to him to safeguard their systems.

Fearing large-scale disruption on Monday, professional cyber security firms such as Arora's have been updating firewalls and trying to clean any possible malware infection before the week opens. The impact is said to be bigger than the CoNFicker attack in 2008 that hit 190 countries.

Akshat Kumar Jain, cofounder of Cyware, also said the risk of infection was high in India given poor individual cyber hygiene.

The government is planning a technical webcast on Monday, said Sundararajan. Details will be announced on MyGov and Social Media.

reuters/representational image

"The global reach is unprecedented. The latest count is over 200,000 victims in more than 150 countries, and those victims, many of those will be businesses, including large corporations," European Union police agency Europol's director Rob Wainwright said in a TV interview.

"At the moment, we are in the face of an escalating threat. The numbers are going up; I am worried about how the numbers will continue to grow when people go to work and turn (on) their machines on Monday morning."

ad
seductrice.net
universo-virtual.com
buytrendz.net
thisforall.net
benchpressgains.com
qthzb.com
mindhunter9.com
dwjqp1.com
secure-signup.net
ahaayy.com
tressesindia.com
puresybian.com
krpano-chs.com
cre8workshop.com
hdkino.org
peixun021.com
qz786.com
utahperformingartscenter.org
worldqrmconference.com
shangyuwh.com
eejssdfsdfdfjsd.com
playminecraftfreeonline.com
trekvietnamtour.com
your-business-articles.com
essaywritingservice10.com
hindusamaaj.com
joggingvideo.com
wandercoups.com
wormblaster.net
tongchengchuyange0004.com
internetknowing.com
breachurch.com
peachesnginburlesque.com
dataarchitectoo.com
clientfunnelformula.com
30pps.com
cherylroll.com
ks2252.com
prowp.net
webmanicura.com
sofietsshotel.com
facetorch.com
nylawyerreview.com
apapromotions.com
shareparelli.com
goeaglepointe.com
thegreenmanpubphuket.com
karotorossian.com
publicsensor.com
taiwandefence.com
epcsur.com
mfhoudan.com
southstills.com
tvtv98.com
thewellington-hotel.com
bccaipiao.com
colectoresindustrialesgs.com
shenanddcg.com
capriartfilmfestival.com
replicabreitlingsale.com
thaiamarinnewtoncorner.com
gkmcww.com
mbnkbj.com
andrewbrennandesign.com
cod54.com
luobinzhang.com
faithfirst.net
zjyc28.com
tongchengjinyeyouyue0004.com
nhuan6.com
kftz5k.com
oldgardensflowers.com
lightupthefloor.com
bahamamamas-stjohns.com
ly2818.com
905onthebay.com
fonemenu.com
notanothermovie.com
ukrainehighclassescort.com
meincmagazine.com
av-5858.com
yallerdawg.com
donkeythemovie.com
corporatehospitalitygroup.com
boboyy88.com
miteinander-lernen.com
dannayconsulting.com
officialtomsshoesoutletstore.com
forsale-amoxil-amoxicillin.net
generictadalafil-canada.net
guitarlessonseastlondon.com
lesliesrestaurants.com
mattyno9.com
nri-homeloans.com
rtgvisas-qatar.com
salbutamolventolinonline.net
sportsinjuries.info
wedsna.com
rgkntk.com
bkkmarketplace.com
zxqcwx.com
breakupprogram.com
boxcardc.com
unblockyoutubeindonesia.com
fabulousbookmark.com
beat-the.com
guatemala-sailfishing-vacations-charters.com
magie-marketing.com
kingstonliteracy.com
guitaraffinity.com
eurelookinggoodapparel.com
howtolosecheekfat.net
marioncma.org
oliviadavismusic.com
shantelcampbellrealestate.com
shopleborn13.com
topindiafree.com
v-visitors.net
djjky.com
053hh.com
originbluei.com
baucishotel.com
33kkn.com
intrinsiqresearch.com
mariaescort-kiev.com
mymaguk.com
sponsored4u.com
crimsonclass.com
bataillenavale.com
searchtile.com
ze-stribrnych-struh.com
zenithalhype.com
modalpkv.com
bouisset-lafforgue.com
useupload.com
37r.net
autoankauf-muenster.com
bantinbongda.net
bilgius.com
brabustermagazine.com
indigrow.org
miicrosofts.net
mysmiletravel.com
selinasims.com
spellcubesapp.com
usa-faction.com
hypoallergenicdogsnames.com
dailyupdatez.com
foodphotographyreviews.com
cricutcom-setup.com
chprowebdesign.com
katyrealty-kanepa.com
tasramar.com
bilgipinari.org
four-am.com
indiarepublicday.com
inquick-enbooks.com
iracmpi.com
kakaschoenen.com
lsm99flash.com
nana1255.com
ngen-niagara.com
technwzs.com
virtualonlinecasino1345.com
wallpapertop.net
casino-natali.com
iprofit-internet.com
denochemexicana.com
eventhalfkg.com
medcon-taiwan.com
life-himawari.com
myriamshomes.com
nightmarevue.com
healthandfitnesslives.com
androidnews-jp.com
allstarsru.com
bestofthebuckeyestate.com
bestofthefirststate.com
bestwireless7.com
britsmile.com
declarationintermittent.com
findhereall.com
jingyou888.com
lsm99deal.com
lsm99galaxy.com
moozatech.com
nuagh.com
patliyo.com
philomenamagikz.net
rckouba.net
saturnunipessoallda.com
tallahasseefrolics.com
thematurehardcore.net
totalenvironment-inthatquietearth.com
velislavakaymakanova.com
vermontenergetic.com
kakakpintar.com
jerusalemdispatch.com
begorgeouslady.com
1800birks4u.com
2wheelstogo.com
6strip4you.com
bigdata-world.net
emailandco.net
gacapal.com
jharpost.com
krishnaastro.com
lsm99credit.com
mascalzonicampani.com
sitemapxml.org
thecityslums.net
topagh.com
flairnetwebdesign.com
rajasthancarservices.com
bangkaeair.com
beneventocoupon.com
noternet.org
oqtive.com
smilebrightrx.com
decollage-etiquette.com
1millionbestdownloads.com
7658.info
bidbass.com
devlopworldtech.com
digitalmarketingrajkot.com
fluginfo.net
naqlafshk.com
passion-decouverte.com
playsirius.com
spacceleratorintl.com
stikyballs.com
top10way.com
yokidsyogurt.com
zszyhl.com
16firthcrescent.com
abogadolaboralistamd.com
apk2wap.com
aromacremeria.com
banparacard.com
bosmanraws.com
businessproviderblog.com
caltonosa.com
calvaryrevivalchurch.org
chastenedsoulwithabrokenheart.com
cheminotsgardcevennes.com
cooksspot.com
cqxzpt.com
deesywig.com
deltacartoonmaps.com
despixelsetdeshommes.com
duocoracaobrasileiro.com
fareshopbd.com
goodpainspills.com
hemendekor.com
kobisitecdn.com
makaigoods.com
mgs1454.com
piccadillyresidences.com
radiolaondafresca.com
rubendorf.com
searchengineimprov.com
sellmyhrvahome.com
shugahouseessentials.com
sonihullquad.com
subtractkilos.com
valeriekelmansky.com
vipasdigitalmarketing.com
voolivrerj.com
worldhealthstory.com
zeelonggroup.com
1015southrockhill.com
10x10b.com
111-online-casinos.com
191cb.com
3665arpentunitd.com
aitesonics.com
bag-shokunin.com
brightotech.com
communication-digitale-services.com
covoakland.org
dariaprimapack.com
freefortniteaccountss.com
gatebizglobal.com
global1entertainmentnews.com
greatytene.com
hiroshiwakita.com
iktodaypk.com
jahatsakong.com
meadowbrookgolfgroup.com
newsbharati.net
platinumstudiosdesign.com
slotxogamesplay.com
strikestaruk.com
techguroh.com
trucosdefortnite.com
ufabetrune.com
weddedtowhitmore.com
12940brycecanyonunitb.com
1311dietrichoaks.com
2monarchtraceunit303.com
601legendhill.com
850elaine.com
adieusolasomade.com
andora-ke.com
bestslotxogames.com
cannagomcallen.com
endlesslyhot.com
iestpjva.com
ouqprint.com
pwmaplefest.com
qtylmr.com
rb88betting.com
buscadogues.com
1007macfm.com
born-wild.com
growthinvests.com
promocode-casino.com
proyectogalgoargentina.com
wbthompson-art.com
whitemountainwheels.com
7thavehvl.com
developmethis.com
funkydogbowties.com
travelodgegrandjunction.com
gao-town.com
globalmarketsuite.com
blogshippo.com
hdbka.com
proboards67.com
outletonline-michaelkors.com
kalkis-research.com
thuthuatit.net
buckcash.com
hollistercanada.com
docterror.com
asadart.com
vmayke.org
erwincomputers.com
dirimart.org
okkii.com
loteriasdecehegin.com
mountanalog.com
healingtaobritain.com
ttxmonitor.com
nwordpress.com
11bolabonanza.com