openPR Logo
Press release

Paladion Releases a Public Cyber Advisory to Contain the WannaCry Ransomware Threat

05-18-2017 12:32 PM CET | IT, New Media & Software

Press release from: Vistar Communications

Paladion Releases a Public Cyber Advisory to Contain

Paladion—a global cyber defence company announced today that since Sunday, May 14, 2017, it has discovered new variants of the WannaCry Ransomworm. These new variants have no connection to the previous Kill Switch found in the original ransomware, which started wreaking havoc across the globe on May 12, 2017.

Speaking about the latest global cyber attack, Amit Roy, executive vice president and regional head for EMEA at Paladion, said, “The first large wave of WannaCry may have died down because a domain the ransomware was calling was registered by a security researcher, thus revealing a kill switch. However, the fact remains that if affected devices are not patched immediately and mitigation steps are not taken, there is still a high possibility of re-infection.”

The WannaCry ransomware was created in such a way that before every infection it would try to call the domain iuqerfsodp9ifjaposdfjhgosurijfaewrwergwea.com. If there wasn’t a response, it would lock the victim’s machines. However, if the domain was up and running, the malware would stop in its tracks – slowing down the spread.

“Since Sunday, we have discovered WannaCry Ransomworm versions without a connection to the previous Kill Switch. Of the variants that surfaced on 14th May 2017, two have an updated domain name or kill switch and one does not have a kill switch. However, the variant with no kill switch has bugs that are preventing it from encrypting user data. But then, the propagation part via ETERNALBLUE and DOUBLEPULSAR works without a hitch,” explained Roy.

In order to contain the spread of the cyber attack and to mitigate, Paladion advices that MS17-010 and related patches for CVE-2017-0143 to CVE-2017-0148 should be patched immediately.

Also important is the Shadow Brokers leak of exploit tools that became public in April 2017. The dump includes several other CVEs, and these patches should be prioritized to stay protected from imminent threats. The patches are listed against each exploit below:

Exploit Name Solution
EternalBlue Addressed by MS17-010

EmeraldThread Addressed by MS10-061

EternalChampion Addressed by CVE-2017-0146 & CVE-2017-0147

ErraticGopher Addressed prior to the release of Windows Vista
EskimoRoll Addressed by MS14-068

EternalRomance Addressed by MS17-010

EducatedScholar Addressed by MS09-050

EternalSynergy Addressed by MS17-010

EclipsedWing Addressed by MS08-067

About Paladion:

Paladion is a global cyber defence company that provides Managed Detection and Response Services, DevOps Security, Cyber Forensics, Incident Response, and more by tightly bundling its semi-autonomous cyber platform and managed services with leading security technologies. Paladion is consistently rated and recognized by analyst firms such as Gartner and IDC, and awarded by CRN, Asian Banker, Red Herring, amongst others.

For 17 years, Paladion has been actively managing cyber risk for over 700 customers from its six cyber operations centres placed across the globe. It houses 900+ cyber security professionals including security researchers, threat hunters, ethical hackers, incident responders, solution architects, consultants and more, and provides comprehensive cyber security services Paladion is also actively involved in several information security research forums such as OWASP, and has authored several books on security monitoring, application security and more.
For more information, please visit www.paladion.net

628, Business Village
Tower B, Deira
Dubai, UAE

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release Paladion Releases a Public Cyber Advisory to Contain the WannaCry Ransomware Threat here

News-ID: 541727 • Views:

More Releases from Vistar Communications

Spectrami wins the Top Distributor for Network Security of the Year Award
Spectrami wins the Top Distributor for Network Security of the Year Award
Spectrami, the region’s primary cyber security value-added distributor today announced that it has won the coveted ‘Top Distributor for Network Security of the Year’ award at the GEC Awards 2020, organised by the leading technology media company in the Middle East, GEC Media group. The 7th edition of GEC Awards this year were one of the first live in-person awards that were conducted since the outbreak of coronavirus in the region.
AOC launches brand new series of Surveillance Monitors
AOC launches brand new series of Surveillance Monitors
AOC, the display specialist today announced the expansion of product portfolio with the introduction of its brand new E1 series of surveillance monitors targeting the fast growing regional market for video surveillance. According to the analysts 6Wresearch, the Middle East commercial security market will grow by nearly 17 percent annually over the next six years, valuing US$7.4 billion in 2024, compared to an estimated US$2.9 billion in 2018. Video surveillance
ESET launches new security solutions to protect constantly-connected users
The latest version of ESET NOD32 Antivirus, ESET Internet Security and ESET Smart Security Premium that offers fortified multilayered protection, enhanced IoT protection, product referral and a new security report feature is released today. Users can rely on the best balance of speed, detection and usability acknowledged by multiple testing bodies to protect their constantly-connected devices. It is predicted that by 2025, there will be over 75 billion connected devices

More Releases for Paladion

Paladion Cited among 10 Top Emerging Managed Security Services Providers
Paladion is among the 10 top emerging managed security service providers (MSSPs), according to The Forrester Wave: Emerging Managed Security Services Providers (MSSPs), Q3 2018. To build their list, the firm performed a comprehensive review of emerging MSSPs, and evaluated providers on 24 criteria. The results were published in the Forrester Wave report, which stated that “Paladion’s' strength lies in its actionable data and dashboard. “We are happy that Forrester named
Paladion Wins Best Managed Detection and Response Service Provider Award
Paladion, a global leader in Managed Detection and Response, today announced that it has been honoured with the ‘Best Managed Detection and Response Service Provider Award’ at the 2018 TahawulTech.com Future Security Awards ceremony. The event was attended by 200 industry leaders, and awards made to a select group of 20 organisations and IT security leaders for their accomplishments. Future Security Awards organised by TahawuLtech.com recognises the top security minds and projects
Paladion Launches the First AI-Driven SOC in the Middle East
Paladion has launched the first AI-driven SOC in the Middle East to protect enterprises in the region from next-generation threats. The leading-edge AI-driven SOC is located in Dubai, UAE, and will service customers in the MEA region. Paladion’s AI-Driven SOC is a response to changes in the global and regional threat landscape. Globally, cyber criminals have begun to deploy their own AI-driven cyber-attacks. They are using AI platforms to increase
Paladion announces its participation at Saudi Arabia’s biggest digital transfo …
Paladion, a global cyber security provider, today announced its participation at the Kingdom Digital Enterprise Transformation Show, the Saudi Arabia’s biggest digital transformation show that will be held in the capital city of Riyadh at Burj Rafal, Hotel Kempinski on 7th and 8th November 2017. The Kingdom Digital Enterprise Transformation Show is primarily created to support the Digital Transformation Movement within the Kingdom of Saudi Arabia in line with the Saudi
Paladion Joins the 10th Annual Cyber Defence Summit as the Gold Sponsor
Paladion, a global cyber security provider, is all set to present their comprehensive cyber security solution that enables an enterprise to detect the cyber threats faster and act with enhanced response capabilities to counter any cyber-attack at the 10th Annual Cyber Defence Summit organized by Naseba in Dubai. The event is aimed at bringing together experts in security technology, threat intelligence and incident response to address the challenges faced by
Cybersecurity needs a new paradigm- Speed, says Paladion
Paladion, a specialized information risk-management provider, participated in Finsec, the Banking Security Summit that was held at The Address Marina in Dubai, UAE Finsec brought together leading banking security professionals, banking specialists, risk managers, CISOs and IT heads from leading financial organisations such as Kuwait Finance House, Central Bank of the UAE, UBS, Mashreq Bank, National Bank of Fujairah and Banque Du Caire. The summit covered various interesting topics ranging