openPR Logo
Press release

Paladion Releases a Public Cyber Advisory to Contain the WannaCry Ransomware Threat

05-18-2017 12:32 PM CET | IT, New Media & Software

Press release from: Vistar Communications

Paladion Releases a Public Cyber Advisory to Contain

Paladion—a global cyber defence company announced today that since Sunday, May 14, 2017, it has discovered new variants of the WannaCry Ransomworm. These new variants have no connection to the previous Kill Switch found in the original ransomware, which started wreaking havoc across the globe on May 12, 2017.

Speaking about the latest global cyber attack, Amit Roy, executive vice president and regional head for EMEA at Paladion, said, “The first large wave of WannaCry may have died down because a domain the ransomware was calling was registered by a security researcher, thus revealing a kill switch. However, the fact remains that if affected devices are not patched immediately and mitigation steps are not taken, there is still a high possibility of re-infection.”

The WannaCry ransomware was created in such a way that before every infection it would try to call the domain iuqerfsodp9ifjaposdfjhgosurijfaewrwergwea.com. If there wasn’t a response, it would lock the victim’s machines. However, if the domain was up and running, the malware would stop in its tracks – slowing down the spread.

“Since Sunday, we have discovered WannaCry Ransomworm versions without a connection to the previous Kill Switch. Of the variants that surfaced on 14th May 2017, two have an updated domain name or kill switch and one does not have a kill switch. However, the variant with no kill switch has bugs that are preventing it from encrypting user data. But then, the propagation part via ETERNALBLUE and DOUBLEPULSAR works without a hitch,” explained Roy.

In order to contain the spread of the cyber attack and to mitigate, Paladion advices that MS17-010 and related patches for CVE-2017-0143 to CVE-2017-0148 should be patched immediately.

Also important is the Shadow Brokers leak of exploit tools that became public in April 2017. The dump includes several other CVEs, and these patches should be prioritized to stay protected from imminent threats. The patches are listed against each exploit below:

Exploit Name Solution
EternalBlue Addressed by MS17-010

EmeraldThread Addressed by MS10-061

EternalChampion Addressed by CVE-2017-0146 & CVE-2017-0147

ErraticGopher Addressed prior to the release of Windows Vista
EskimoRoll Addressed by MS14-068

EternalRomance Addressed by MS17-010

EducatedScholar Addressed by MS09-050

EternalSynergy Addressed by MS17-010

EclipsedWing Addressed by MS08-067

About Paladion:

Paladion is a global cyber defence company that provides Managed Detection and Response Services, DevOps Security, Cyber Forensics, Incident Response, and more by tightly bundling its semi-autonomous cyber platform and managed services with leading security technologies. Paladion is consistently rated and recognized by analyst firms such as Gartner and IDC, and awarded by CRN, Asian Banker, Red Herring, amongst others.

For 17 years, Paladion has been actively managing cyber risk for over 700 customers from its six cyber operations centres placed across the globe. It houses 900+ cyber security professionals including security researchers, threat hunters, ethical hackers, incident responders, solution architects, consultants and more, and provides comprehensive cyber security services Paladion is also actively involved in several information security research forums such as OWASP, and has authored several books on security monitoring, application security and more.
For more information, please visit www.paladion.net

628, Business Village
Tower B, Deira
Dubai, UAE

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release Paladion Releases a Public Cyber Advisory to Contain the WannaCry Ransomware Threat here

News-ID: 541727 • Views:

More Releases from Vistar Communications

Spectrami wins the Top Distributor for Network Security of the Year Award
Spectrami wins the Top Distributor for Network Security of the Year Award
Spectrami, the region’s primary cyber security value-added distributor today announced that it has won the coveted ‘Top Distributor for Network Security of the Year’ award at the GEC Awards 2020, organised by the leading technology media company in the Middle East, GEC Media group. The 7th edition of GEC Awards this year were one of the first live in-person awards that were conducted since the outbreak of coronavirus in the region.
AOC launches brand new series of Surveillance Monitors
AOC launches brand new series of Surveillance Monitors
AOC, the display specialist today announced the expansion of product portfolio with the introduction of its brand new E1 series of surveillance monitors targeting the fast growing regional market for video surveillance. According to the analysts 6Wresearch, the Middle East commercial security market will grow by nearly 17 percent annually over the next six years, valuing US$7.4 billion in 2024, compared to an estimated US$2.9 billion in 2018. Video surveillance
ESET launches new security solutions to protect constantly-connected users
The latest version of ESET NOD32 Antivirus, ESET Internet Security and ESET Smart Security Premium that offers fortified multilayered protection, enhanced IoT protection, product referral and a new security report feature is released today. Users can rely on the best balance of speed, detection and usability acknowledged by multiple testing bodies to protect their constantly-connected devices. It is predicted that by 2025, there will be over 75 billion connected devices

More Releases for Paladion

Paladion Cited among 10 Top Emerging Managed Security Services Providers
Paladion is among the 10 top emerging managed security service providers (MSSPs), according to The Forrester Wave: Emerging Managed Security Services Providers (MSSPs), Q3 2018. To build their list, the firm performed a comprehensive review of emerging MSSPs, and evaluated providers on 24 criteria. The results were published in the Forrester Wave report, which stated that “Paladion’s' strength lies in its actionable data and dashboard. “We are happy that Forrester named
Paladion Wins Best Managed Detection and Response Service Provider Award
Paladion, a global leader in Managed Detection and Response, today announced that it has been honoured with the ‘Best Managed Detection and Response Service Provider Award’ at the 2018 TahawulTech.com Future Security Awards ceremony. The event was attended by 200 industry leaders, and awards made to a select group of 20 organisations and IT security leaders for their accomplishments. Future Security Awards organised by TahawuLtech.com recognises the top security minds and projects
Paladion Recognized as a Representative Vendor in Gartner’s 2017 Market Guide …
Paladion—a global cyber defense company that provides managed detection and response services— today announced its placement in Gartner’s Market Guide for Managed Detection and Response as a representative vendor. Gartner identified Paladion as a representative vendor for its advanced threat detection and incident response capabilities using their proprietary security analytics and orchestration platform, which are capabilities profiled in this research. In this research, Gartner recommends IT security buyers: “Use MDR
Independent Report Recognizes Paladion as an MSSP that specializes in advanced [ …
Paladion—a global cyber defence company that provides managed detection and response services, DevOps security, Cyber Forensics, and Professional Services—today announced its placement in Forrester’s April 2017 report, Vendor Landscape: Global Managed Security Services. Forrester recognized Paladion as an MSSP that "specializes in advanced [security] analytics and automation." The report noted that Paladion's solution "makes heavy use of statistical and machine learning models across the data sets it collects from clients. Heavy
Paladion underlines the importance of security analytics for faster detection an …
Paladion, a global cyber security provider, in its commitment to enabling enterprises with the right tools to combat today’s advanced cyber threats, sponsored a two day cyber security conference organized by MESCON on the 11th and 12th of April 2017 . The conference hosted over 200 plus CISOs from different business verticals from the Middle East. Rajesh Gopinath, Paladion’s Pre-Sales Head for MEA, addressed a packed room of CISOs and
Cybersecurity needs a new paradigm- Speed, says Paladion
Paladion, a specialized information risk-management provider, participated in Finsec, the Banking Security Summit that was held at The Address Marina in Dubai, UAE Finsec brought together leading banking security professionals, banking specialists, risk managers, CISOs and IT heads from leading financial organisations such as Kuwait Finance House, Central Bank of the UAE, UBS, Mashreq Bank, National Bank of Fujairah and Banque Du Caire. The summit covered various interesting topics ranging