Ransomware

Carding

Professional
Messages
2,828
Reputation
17
Reaction score
2,097
Points
113
What Is Ransomware?
Ransomware is a cyber-extortion tactic that uses malicious software to hold a user’s computer system hostage until a ransom is paid. Ransomware attackers often demand ransom in cryptocurrency such as Bitcoin due to its perceived anonymity and ease of online payment. The malicious software used in a ransomware attack locks a user’s computer for a limited time after which the ransom increases in price or the user’s data is destroyed.

KEY TAKEAWAYS
  • Ransomware is a form of malware that encrypts a user's computer files for a period of time, rendering them inaccessible, until a ransom is paid to the attacker.
  • The ransom is often demanded in a cryptocurrency such as Bitcoin, which facilitates the online and anonymous payment.
  • If the ransom is not paid in a timely manner, the amount demanded may increase until ultimately the user's data is destroyed entirely.
  • Ransomware attacks have been identified around the world, costing billions of dollars in bounty paid each year.

Understanding Ransomware
Ransomware is a rapidly advancing criminal activity that affects businesses, financial institutions, government agencies, medical institutions and other organizations; it is the product of the advancement of digital technology. Although the advancement of digital technology has made a way for companies to enhance their relationships with consumers by offering more personalized services at personalized costs, technology isn't only used by legitimate users to improve their processes. Miscreants are also using emergent technology tools to improve their online attacks, either for fun or profit. Data breaches are done to steal personally identifiable information of individuals that will be sold through underground web channels for legal tender or cryptocurrencies.

Cyberattacks like Denial of Service (DoS) may be carried out for fun or to make a statement. Some attackers deny a business access to its computer by demanding a certain amount of Bitcoin as payment in order to gain re-entry into the system. This latter unscrupulous means of getting a paycheck is done through Ransomware, which in a way is a form of a DoS attack.

$7.5 billion
Ransomware is suspected to have cost the global economy $7.5 billion in 2019


How Ransomware Works
Ransomware is a type of malicious software, or malware, that encrypts a computer’s system data with a key that only the attacker has. The malware is normally injected in an email attachment, software, or unsecured website. A user who tries to access any of these infected programs will trigger the ransomware which either locks the computer screen or encrypts the files in the system. A full-screen window pops up with information that states the user’s computer has been blocked, the amount in money or Bitcoins required to unlock the system, and a countdown timer which indicates the amount of time left before the data held hostage is destroyed or before the ransom is increased. Ransomware attackers usually demand payment to be wired through Western Union or paid through a specialized text message. Some attackers demand payment in the form of gift cards like an Amazon or iTunes Gift Card. Ransomware demands can be as low as a few hundred dollars to as much as $50,000. After payment is made, the hackers decrypt the files and release the system.

Ransomware attackers can infect many computers at once through the use of botnets. A botnet is a network of devices compromised by cybercriminals without the knowledge of the owners of the devices. The hackers infect the computers with malware that gives them control of the systems, and use these breached devices to send millions of compromised email attachments to other devices and systems. By kidnapping multiple systems and expecting the ransom to be paid, the perpetrators are banking on having a huge payday.

Example of Ransomware
A company that has been held hostage by ransomware can have its proprietary information destroyed, operations disrupted, reputation harmed, and finances lost. In 2016, Hollywood Presbyterian Medical Center paid about $17,000 in Bitcoins to ransomware attackers who had taken the data of the hospital’s patients hostage. During the crisis, some patients had to be transferred to other hospitals for treatment and the medical records system was inaccessible for ten days, disrupting the daily operations of the hospital.

(c) https://www.investopedia.com/terms/r/ransomware.asp
 

Carding 4 Carders

Professional
Messages
2,731
Reputation
13
Reaction score
1,373
Points
113

Ransomware spreads as Bitcoin grows​


Does the value of Bitcoin affect the number of ransomware viruses?
We want to answer this question in this post.

Ransomware programs

image-17-600x377.png

A ransomware program is a nasty thing that can end up on your device.

Once your device is infected with a ransomware program, it can be very difficult to get back control of the device, and in addition, there are many different families of ransomware, which literally means that different behavior can be expected from a ransomware virus.

[B2]20 families of ransomware viruses[/B]
В списке, приведенном ниже вы найдете небольшую коллекцию различных семейств программ вымогателей:
  1. Dharma
  2. TeslaCrypt
  3. TorrentLocker
  4. Locky
  5. CryptoWall
  6. CTB-Locker
  7. FAKBEN
  8. PayCrypt
  9. PadCrypt
  10. Gandcrab
  11. CryptXXX
  12. DMALocker
  13. SamSam
  14. CryptoLocker
  15. GlobeImposter
  16. WannaCry
  17. CryptoTorLocker
  18. NoobCrypt
  19. Globe
  20. NotPetya
  21. Razy

The relationship of bitcoin and ransomware viruses
In a study conducted by the company "Cvareware", it is mentioned that so far 98% of the preferred cryptocurrency in ransomware attacks is still bitcoin.

This literally means that Bitcoin is used for initial payments to be able to get back locked files using ransomware.

$ 65,000 will affect the company that was exposed to the ransomware virus
The same study also mentions that a successful ransomware attack on a company will cost an average of $ 65,000.

Targeted ransomware attacks
We also need to remember that we are dealing with cybercriminals, most of them are organized and know how to optimize their profits.
This means that they choose specific sectors to attack.
At the moment when cybercriminals have compromised, for example, a hospital, there is a very high probability that they will receive a payment in bitcoins.
A Florida city has paid $ 600,000 to cybercriminals to recover files infected with ransomware.

image-15-600x233.png


If you pay, will you restore access for sure?
Well, according to a study conducted by Coveware, companies that were compromised by ransomware and who chose to pay them actually regained access to their files.
In 96% of cases, companies that paid received a working ransomware decryption tool.
In addition, 93% of the compromised data was actually recovered, and consequently 7% of the data was lost.

image-16-600x190.png


The use of ransomware by cybercriminals depends on how profitable they can become through ransomware attacks.
If we take into account that the price of Bitcoin can continue to rise, it will be beneficial for cybercriminals to focus on attacks that will allow them to force their victims to pay with Bitcoins.

So why Bitcoin?
Bitcoin is particularly useful here because it is fast, reliable, and verifiable.
Cybercriminals use the public blockchain to find out when a payment was made.
A cybercriminal can create a unique billing address for each victim and automate the process of unlocking their files when a bitcoin transaction is confirmed to this unique address.[/B]
 
Top