Just in:
Adobe widens Saudi AI access with $4 billion programme // Alpha Dhabi lifts MICAD commitment to $1 billion // Hong Kong Ranks Fifth Among APAC’s Preferred Living Investment Destinations as 85% of Investors Plan to Increase Sector Investment // Macao Economic, Trade and Tourism Investment Promotion Seminar Held in Singapore, Deepening Multi-Domain Cooperation to Empower Regional Growth // Russia brings cryptocurrency market law into force // WisPaper Introduces TrueCite to Help Researchers Verify AI-Generated Academic References // SCX Corporation Accelerates SC Group’s Recurring-Income Businesses // LatAm gushers and possible Venezuela exit a nightmare for Opec // Inovatif Media Asia Sets Regional Ambitions in Motion with Tun Ahmad Fuzi as Strategic Advisor // Jungheinrich Marks 25 Years In Singapore, Leading APAC Strategic Hub And Electrification In The Market // Ingdan, Inc. (400.HK) Announces 2026 Interim Results // Haldwani purification row: Caste back on political centre-stage // Drone strike damages Kuwait residential complex, no injuries // India plans own orbital space outpost, second after China // The Mineral Boutique Limited Welcomes CCS Clarification and Reaffirms Asia Growth Strategy // InnoHK R&D Centres Establish Base at Science Park to Drive Emerging Industries and Pioneer Future Innovation // Amicura X1 Max Smart Cat Litter Box:AliExpress France Official Warehouse, Litter Box at One Click // US-Iran strikes revive confrontation across Hormuz and Jordan // What Shein’s $27bn IPO means for Mubadala // Qatar economy contracts 7% as energy output slumps //

Another large-scale cyberattack underway: experts

1495095026 adylkuzzisbe

Adylkuzz is believed to have infected more computers than WannaCry, using the same vulnerabilities

Another large-scale, stealthy cyberattack is underway on a scale that could dwarf last week’s assault on computers worldwide, a global cybersecurity firm told AFP on Wednesday.


The new attack targets the same vulnerabilities the WannaCry ransomware worm exploited but, rather than freeze files, uses the hundreds of thousands of computers believed to have been infected to mine .

Following the detection of the WannaCry attack on Friday, “researchers at Proofpoint discovered a new attack linked to WannaCry called Adylkuzz,” said Nicolas Godier, a researcher at the security firm.

“It uses the hacking tools recently disclosed by the NSA and which have since been fixed by Microsoft in a more stealthy manner and for a different purpose,” he said.

Instead of completely disabling an infected computer by encrypting data and seeking a ransom payment, Adylkuzz uses the machines it infects to “mine” in a background task a virtual currency, Monero, and transfer the money created to the authors of the virus.

Virtual currencies such as Monero and Bitcoin use the computers of volunteers for recording transactions. They are said to “mine” for the currency and are occasionally rewarded with a piece of it.

Proofpoint said in a blog that symptoms of the attack include loss of access to shared Windows resources and degradation of PC and server performance, effects which some users may not notice immediately.

“As it is silent and doesn’t trouble the user, the Adylkuzz attack is much more profitable for the cyber criminals. It transforms the infected users into unwitting financial supporters of their attackers,” said Godier.

Proofpoint said it has detected infected machines that have transferred several thousand dollars worth of Monero to the creators of the virus.

The firm believes Adylkuzz has been on the loose since at least May 2, and perhaps even since April 24, but due to its stealthy nature was not immediately detected.

“We don’t know how big it is” but “it’s much bigger than WannaCry”, Proofpoint’s vice president for email products, Robert Holmes, told AFP.

A US official on Tuesday put the number of computers infected by WannaCry at over 300,000.

“We have seen that before—malwares mining cryptocurrency—but not this scale,” said Holmes.

The WannaCry attack has sparked havoc in computer systems worldwide.

Britain’s National Health Service, US package delivery giant FedEx, Spanish telecoms giant Telefonica and Germany’s Deutsche Bahn rail network were among those hit.


Explore further:
Worldwide ransomware cyberattacks: What we know

Source link



Notice an issue?

Arabian Post strives to deliver the most accurate and reliable information to its readers. If you believe you have identified an error or inconsistency in this article, please don't hesitate to contact our editorial team at editor[at]thearabianpost[dot]com. We are committed to promptly addressing any concerns and ensuring the highest level of journalistic integrity.


Loading next story…