Thursday, December 13, 2018

Five of the most destructive cyber attacks in history

There have been many cyber attacks that have occurred, both from the most ordinary to the most sophisticated. In the worst case that has ever happened for example, the user gets the threat of ransom payment on the screen, notifying that the computer is encrypted and the key can be opened if it has made a payment.

In addition there is also silent malware, which acts quietly hidden in the device to maximize data theft before the action is caught. Most people still don't know how much danger a cyber attack poses.

Because, cyber criminals can attack from industrial level to national level with extraordinary consequences. Here are five of the most spectacular cyber attacks that have occurred throughout history based on data released by Kaspersky Lab.

1. WannaCry

The WannaCry attack makes ransomware and malware known to all users, including those who cannot distinguish bytes by bite. In four days, the spread of WannaCry paralyzed more than 200 thousand computers in 150 countries. In several hospitals, WannaCry encrypted all devices including medical equipment, and several factories were forced to stop production activities.

2. NotPetya / ExPetr

There is an opinion that the most detrimental attack is not WannaCry, but other encryption malware (technically it is an eraser but does not change its base) called ExPetr, also known as NotPetya. The principle of operation is the same: Using EternalBlue and EtrernalRomance that exploit, worms that move on the Web, then encrypt everything in its path.

Although smaller in terms of the number of machines infected, Notpetya itself is a 'more expensive' malware epidemic because it targets the business sector with an estimated loss of 10 billion dollars. Whereas WannaCry, according to various estimates, resulted in losses in the range of 4-8 billion dollars. NotPetya is considered the most expensive global cyber attack in history.

3. DarkHotel

It's no secret that public Wi-Fi networks in cafes or airports are not the safest. There are still many who believe that hotel Wi-Fi is still much safer. Because even though the hotel network is still public, at least authorization is needed to access it.

Such misunderstandings have harmed many high-ranking and high-ranking company employees. When connected to the hotel network, they are asked to install updates that look legitimate on popular software.

Then their device will immediately be infected with spyware DarkHotel, which is specifically carried out by the attacker to the network a few days before the arrival of the user and deleted a few days later. The hidden spyware records keystrokes and allows cyber criminals to carry out targeted phishing attacks.

4. Stuxnet

Perhaps this malware is most famous for its complex and multifaceted attacks. Stuxnet deactivated centrifuges of uranium enrichment in Iran, which slowed nuclear programs in the country for several years. Stuxnet is the first to be discussed regarding the use of cyber weapons against industrial systems.

At that time, no one could match Stuxnet for its complexity or shrewdness that could spread worms in hiding through USB devices, even through computers that were not connected to the Internet or local networks.

5. Mirai

The existence of Botnet has been monitored for a long time, but the emergence of the Internet of Things provides a new life for the botnet. Devices that have never been noticed for security and have not been installed on an antivirus suddenly begin to be infected on a large scale.

This device then tracks other devices of the same type and immediately spreads the transmission. This zombie fleet was built on a malware called Mirai (translated from Japanese as "the future"), which continued to spread while waiting for instructions.

Then on October 21, 2016 the owner of this giant botnet decided to test his abilities. The owner ordered millions of digital video recorders, routers, IP cameras, and other 'smart' equipment to flood the Dyn DNS service providers.

Dyn can't resist such a large DDoS attack. DNS, and its services cannot run. Services such as PayPal, Twitter, Netflix, Spotify, PlayStation online services, and many others in the United States are affected. Dyn finally recovered, but the scale of the big Mirai attack made the world sit and think about the security of smart devices.

This phenomenon finally awakens everyone's awareness of cyber security. The Mirai attack began with attacks on millions of small smart devices (such as web cameras and washing machines) and eventually became known as 'The Fall of the Internet'.

No comments:

Post a Comment