![]() |
Updated: Large Global Scale Cyber-Attack
BREAKING: Some Hospitals across the Country are reporting they have been hit by Large Scale Cyber Attack and are saying there is huge problems with Information Technology and Telephony Networks.
More to follow... http://news.sky.com/story/nhs-trusts...ttack-10874280 |
Re: Large Scale Cyber-Attack Hits Some NHS Hospitals
|
Re: Large Scale Cyber-Attack Hits Some NHS Hospitals
Looks like a ransomware attack, that is mental if it is.
|
Re: Large Scale Cyber-Attack Hits Some NHS Hospitals
Yeah looking at the current reports it's looking like they've been hit by a speculative, malicious email campaign and people have been clicking on the links. There were some nasty ones containing fake docusign links kicking about last week.
|
Re: Large Scale Cyber-Attack Hits Some NHS Hospitals
Some GP's said to be using just Pen and Paper.
Ransomeware appears to demand $300 Bitcoin payment to decrypt files. |
Re: Large Scale Cyber-Attack Hits Some NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits Some NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits Some NHS Hospitals
Just been listening to some cyber experts bemoaning the fact that outdated Windows software is a common factor in situations such as this, highlighting that lots of organisations (including within the NHS) still use Windows XP and haven't updated their security. For those thinking that this is another case of the UK being well behind in these matters, another expert called in to say that Paris Airport's IT systems are based on Windows 3.1!!
Of course it helps greatly if people using these systems, of whatever age, are more careful about what they click on. |
Re: Large Scale Cyber-Attack Hits Some NHS Hospitals
NHS now declaring this a Major Incident : 40 NHS hospitals now said to have been hit by this Ransomeware.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
PAH in Harlow is currently uneffected, but been taken down as a precaution
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
If this doesn't serve to be a huge wake up call for a lot of people then nothing will.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
This is bigger than just the NHS.
Telefonica (O2) has been hit, along with other companies across Europe. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
So it appears this nasty bit of kit is using the leaked NSA vulnerability which attacks the SMB filesharing protocol behind part of the Windows network infrastructure. There have been warnings kicking about over this for weeks.
This was the focus of those critical Windows security updates in the middle of last month so it looks like someone (for one reason or another) is behind in their patching :doh: |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Microsoft Security Bulletin MS17-010 - Critical |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
This has hit a few countries including russia and china whoever it is they better make a lot of money out of this they are going to need it.
|
Re: Large Scale Cyber-Attack Hits Some NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Anyone that blindly clicks links should be fired imo it's not as though this issue is new or not heard of and it's just not acceptable these days for anyone to do it. I can't remember where i read it but some security company sent out an email with the header of "i love you" with an attachment that apparently showed who loved them and clicking on the attachment sent a message to the security company that it had been opened 10k sent and over 6k reported back it's crazy how many people will do it. Blaming the OS is the easy way out and sounds good to those who don't know any better but if an idiot is at the desk at the right time no OS can protect when it's told not too.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
The one thing you can't fix is stupidity!
At the last count I've seen, 74 countries and over 45,000 companies affected in 10hrs. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Tracking down a user who clicked it is something you would never find in a hospital or any large organisation. They will never admit to it, unfortunately you can only tell these idiots so many times they never listen even on basic things.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Wondering if whitelist security / captive app list (eg. "child account") would have stopped this in it's tracks.
Sure, the old version of windows may be a hindrance, but when there is only a clearly defined set of apps that should be run, locking down permissions should greatly increase security |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
All because a 2 month old security patch wasn't installed by the relevant IT departments of the companies. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
No patch for XP. NHS outdated systems screwed them, combined with Bob who thought he'd won Jupiter's weekly lottery.
Warned after Vault 8 about sitting on Zero day exploits. Warned after the NSA literally lost theirs in a hack. Allowing rogue organisations to harvest zero days and create cyber weapons, still a good thing or...? |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
------------- |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Yes people shouldn't class click on dodgy links but it only takes one. Even if they did, the IT should be secure enough to protect them. It's another symptom of chronic underfunding in the NHS. Where is Jeremy Hunt btw, missing in action again ? It was probably him that clicked it!!
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Apparently there should be back ups..
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Do you not think it handy, that all your GP/hospital records, results, x-rays, should be available to any Dr. at the click of a button? The NHS is still dependent on faxs !. The IT industry seriously let the country down again on a big project and reaped the profits.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
One possible way to mitigate this type of attack would be for emails to be opened in a sandbox.
The cost for businesses to implement throughout their network could be prohibitive. A back-up on the other hand costs a damn site less. Any Hospitals down today??? ---------- Post added at 10:44 ---------- Previous post was at 10:33 ---------- Quote:
I go to the doctor with say a knee complaint, he sends me the the hospital for an X-ray. When I go back to him he clicks on a button and can see the X-ray result on screen and can make a decision on treatment. This actually happened to me and enabled me to have a knee replacement within a year! No FAX's! |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
But you never thought of that did you before you opened your big mouth. You'd rather blame the NHS as a whole. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Put all our eggs in one NHS basket and fax issues in a clinic extrapolated to NHS issue. What a crock of...
:rofl: |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
sounds like someone disabled doctor google .
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Mr K: How was your day dear? Mrs K: It was hell, we ran out of FAX toner catridges. Mr. K: It's the Governments fault! Have a drink dear. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Just heard that, of the 48 NHS trusts affected, all but 6 are now back up and running normally.
http://www.bbc.co.uk/news/uk-39909441 Thankfully not quite the paralysis and doom some predicted then but let's hope that what lessons needed to be learned have been. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
My local NHS trust was hit. Disgusting attack by cowards.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Apparently the spread of it has been "accidentally" stopped.
Most if not all NHS systems are back up now. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
M$ still support embedded* XP systems (until ~2020) so they're just making public a patch that exists anyway.
*Gaming machines, pub quiz, airport schedule displays etc |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Maybe MS could just develop products which don't have so many serious vulnerabilities that require patching in the first place. ;) |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
XP is a very old operating system at this point and for major architectural changes they need to move on with new releases. XP was supported for 12 years and the British government had a contract for even further support which they, foolishly, cancelled in 2015. How long can Microsoft be expected to continue providing support for an operating system released in 2001? The world has moved on.
As papa smurf said the fault here lies with the Government and the NHS. You simply cannot justify using XP so long after it's release and long past it's generous support window ending. They had more than enough time to to update or commission new software that was dependent on XP. They had more than enough time to update the hardware. Microsoft have been aggressively warning about the end of support for over 5 years. An XP machine connected to the internet is a recipe for disaster. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
I can remember sitting in front of a terminal and it would go unresponsive. Ah yes the computer is about to crash and restart and thats back in the 1980's. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Windows 10 is more secure. The nature of software means it's always an arms-race with these things and the nature of the threat evolves.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
This worm affects all versions of windows upto and including W10. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
I hadn't heard Windows 10 was vulnerable to this. Ars state it's not: https://arstechnica.co.uk/security/2...dows-versions/ whereas previous ones such as Windows 8 and 7 are still in their extended support cycles so should have been patched already. Any Windows 8 or 7 machine that kept up to date would also not be vulnerable. This post better explains what happened: https://www.troyhunt.com/everything-...pt-ransomware: Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
I've managed to stay trouble free since the days of Win 3.1 (touching wood :erm: ) so quite happy with with what MS have provided. Then again I don't go surfing dodgy sites and blindly clicking on every email I receive. I know personal responsibility seems to be going out of fashion in some areas of our lives but maybe HMG should launch a new public information campaign. How about: THINK before you CLICK!! |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Now over 200,000 people affected in 150 countries.
Cyber-attack threat escalating - Europol - http://www.bbc.co.uk/news/technology-39913630 |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
I actually saw on a gaming forum someone admitting they were now opening any email so they could see what this does and it was ok because if anything happened to his laptop he would get his dad to sort it out. Suddenly made it clear to me how these things spread so quick.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Smurf-mad IT expert who saved the world from ransomware virus now helping GCHQ prevent new attacks
http://www.telegraph.co.uk/news/2017...e-virus-lives/ |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
One thing that strikes me as odd about the timing of this attack. It seems weird it has only happened in the run up to a General Election, where Labour are facing oblivion. Conspiracy theorists will have a field day with that one.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Due to the nature of the exploit used it was only a matter of time and the warnings in security circles were kicking about for weeks. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
What I want to know is where do the victims of this get $300 worth of Bitcoin with which to unlock (supposedly) their machines?... :spin:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
(do you know how many computers the NHS has ?, last estimate I heard was in the hundreds of thousands). Just imagine the cost of liceces for all of them, plus many would not have the hardware to support newer windows versions, so that needs replacing as well, and then there is huge amount man power needed to change them over. Its not some 5 minute job. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Suddenly it's down to cuts, and nothing to do with useless NHS IT managers failing to keep their patches up to date.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
You cannot keep up to date with a patch that doesnt exist. MS only released them for XP today.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
The NSA can take some of the damn rap for this for not being able to control their staff and their data.
If you're going to code vulnerabilities into an OS with stolen source code and/or people on the inside at Redmond then at least keep it under lock and key and give the key to someone who can be trusted to look after it. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Here's a question how many users on here use Internet Explorer instead of one of the other browsers and if you don't use Microsoft internet explorer could it be because it you feel its more vulnerable than the others to attack ? |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Yes there is also a cost involved but that's the price you pay to have a functioning and secure network. There are always ongoing costs and you pay them at least in part to avoid something like this. And there is no excuse for them not patching Windows 7 and 8. ---------- Post added at 20:56 ---------- Previous post was at 20:56 ---------- Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
The only patch for Windows 8 was for 8.1, the patch for 8(.0) was only released with the XP patch. Quote:
They could not provide a patch for XP, since none existed. -------- On another note, even a patch existing does not mean it will work. I checked the windows update logs on all my W7 PC's, and the patch for this this (which was released in March) is marked as "Failed" on one of them - which presumably means it hasnt installed. I wonder how many others failed. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Some sites require certain scripts to run to enable special features like baskets, checkouts and card verification. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Quote:
It's not just public organisations that suffer it. Look at the problems experienced by customers of certain banks. Problems caused by the fact that although the bank's customer facing hardware and software is relatively new, it's using backend servers that were installed in the 80s, or in some cases, the 70s. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
Whilst referring to cashpoint machines, he said that the problem was that the original software was written in the 60's or 70's and had been updated as time went by. This meant that a lot of today's IT workers have the problem of working with ancient programmes that they may not fully understand. When I asked why they didn't simply ask the original programmers, he replied that they were probably dead! Perhaps this is also the case with other IT systems in various organisations and this is contributing to the problems that we are now experiencing?? |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
On the contrary it's the move away from mainframes running UNIX to networked PC's running Windows that has made our infrastructure so vulnerable.
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
But you're correct in that miscreants generally don't have access to the hardware and/or a means to seek out vulnerabilities plus the nature of these legacy systems don't present the variety of attack vectors present in a Windows based domain/network. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
The administration needs to be properly focussed on the needs of the staff providing direct services instead of getting hung up on the kind of nonsense they come up with such as unnecessary reorganisations that make no real difference to the provision of services. It is really quite worrying that a huge layer of bureaucracy (the Primary Care Trusts) have been abolished with no discernable impact on the provision of services. Seriously, the NHS does not need an ever increasing amount of money, it needs a generous dose of efficiency in the way it is managed. |
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
Quote:
|
Re: Large Scale Cyber-Attack Hits 40 NHS Hospitals
BREAKING: There seems to a large scale cyber attack taking place across the globe similar to the attack which struck NHS hospitals, back in May.
http://news.sky.com/story/live-chern...ttack-10929065 Quote:
|
Re: Updated: Large Global Scale Cyber-Attack
Most likely idiots again opening attachments from sources they don't know.
|
Re: Updated: Large Global Scale Cyber-Attack
Quote:
|
Re: Updated: Large Global Scale Cyber-Attack
Has Sky News website been hacked as When I click to go to their webpage It's showing old stories without pics. Im on my iPad, so it's not showing cached content my side ?
http://news.sky.com Showing Ken Clarke story as the top story ? |
Re: Updated: Large Global Scale Cyber-Attack
|
Re: Updated: Large Global Scale Cyber-Attack
ok here top story hillsborough criminal charges
take that back its ken clark now the home page is all over the place |
Re: Updated: Large Global Scale Cyber-Attack
Quote:
|
Re: Updated: Large Global Scale Cyber-Attack
Quote:
|
All times are GMT +1. The time now is 10:17. |
Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, vBulletin Solutions Inc.
All Posts and Content are © Cable Forum