Today’s Massive Ransomware Attack Was Mostly Preventable—Here’s How To Avoid It

Ransomware may be mostly thought of as a (sometimes costly) nuisance, but when it hinders the ability of doctors and nurses to help people with an emergency medical problems, that qualifies as armed robbery. Read more…

View original post here:
Today’s Massive Ransomware Attack Was Mostly Preventable—Here’s How To Avoid It

New Ransomware ‘Jaff’ Spotted; Malware Groups Pushing 5M Emails Per Hour To Circulate It

An anonymous reader writes: The Necurs botnet has been harnessed to fling a new strain of ransomware dubbed “Jaff”. Jaff spreads in a similar way to the infamous file-encrypting malware Locky and even uses the same payment site template, but is nonetheless a different monster. Attached to dangerous emails is an infectious PDF containing an embedded DOCM file with a malicious macro script. This script will then download and execute the Jaff ransomware. Locky — like Jaff — also used the Necurs botnet and a booby-trapped PDF, security firm Malwarebytes notes. “This is where the comparison ends, since the code base is different as well as the ransom itself, ” said Jerome Segura, a security researcher at Malwarebytes. “Jaff asks for an astounding 2 BTC, which is about $3, 700 at the time of writing.” Proofpoint reckons Jaff may be the work of the same cybercriminals behind Locky, Dridex and Bart (other nasty malware) but this remains unconfirmed. And Forcepoint Security Labs reports that malicious emails carrying Jaff are being cranked out at a rate of 5 million an hour on Thursday, or 13 million in total at the time it wrote up a blog post about the new threat. Read more of this story at Slashdot.

Originally posted here:
New Ransomware ‘Jaff’ Spotted; Malware Groups Pushing 5M Emails Per Hour To Circulate It

Windows Server will add the Linux subsystem, join the Insider program

(credit: Microsoft) SEATTLE—When Microsoft first introduced the Windows Subsystem for Linux (WSL) at last year’s Build developer conference , it said that it was doing so to make developers who were familiar with the Linux command line feel comfortable on Windows . The immediate and inevitable question was “Well, what about Windows Server?” Development is one thing, but what if organizations wanted to occasionally deploy their Linux software on Windows? Although Windows Server 2016 and Windows 10 share many components, the Server operating system hasn’t thus far included WSL, consistent with the “developer only” rationale. But that’s going to change: at Build this week, Microsoft announced that WSL will be included in Server later this year. Microsoft still isn’t positioning this as a way of running Linux server in production on Windows; rather, the company says the addition will be useful for administrative tasks. With WSL, Windows can run scripts written for Linux. But we’re hard-pressed to see things stopping there; it seems inevitable that at some point, Windows will offer the ability to run Linux server software as one of its features. Read 3 remaining paragraphs | Comments

Taken from:
Windows Server will add the Linux subsystem, join the Insider program

Today’s Massive Ransomware Attack Was Mostly Preventable—Here’s How To Avoid It

Ransomware may be mostly thought of as a (sometimes costly) nuisance, but when it hinders the ability of doctors and nurses to help people with an emergency medical problems, that qualifies as armed robbery. Read more…

See the original article here:
Today’s Massive Ransomware Attack Was Mostly Preventable—Here’s How To Avoid It

New Ransomware ‘Jaff’ Spotted; Malware Groups Pushing 5M Emails Per Hour To Circulate It

An anonymous reader writes: The Necurs botnet has been harnessed to fling a new strain of ransomware dubbed “Jaff”. Jaff spreads in a similar way to the infamous file-encrypting malware Locky and even uses the same payment site template, but is nonetheless a different monster. Attached to dangerous emails is an infectious PDF containing an embedded DOCM file with a malicious macro script. This script will then download and execute the Jaff ransomware. Locky — like Jaff — also used the Necurs botnet and a booby-trapped PDF, security firm Malwarebytes notes. “This is where the comparison ends, since the code base is different as well as the ransom itself, ” said Jerome Segura, a security researcher at Malwarebytes. “Jaff asks for an astounding 2 BTC, which is about $3, 700 at the time of writing.” Proofpoint reckons Jaff may be the work of the same cybercriminals behind Locky, Dridex and Bart (other nasty malware) but this remains unconfirmed. And Forcepoint Security Labs reports that malicious emails carrying Jaff are being cranked out at a rate of 5 million an hour on Thursday, or 13 million in total at the time it wrote up a blog post about the new threat. Read more of this story at Slashdot.

Read More:
New Ransomware ‘Jaff’ Spotted; Malware Groups Pushing 5M Emails Per Hour To Circulate It

Windows Server will add the Linux subsystem, join the Insider program

(credit: Microsoft) SEATTLE—When Microsoft first introduced the Windows Subsystem for Linux (WSL) at last year’s Build developer conference , it said that it was doing so to make developers who were familiar with the Linux command line feel comfortable on Windows . The immediate and inevitable question was “Well, what about Windows Server?” Development is one thing, but what if organizations wanted to occasionally deploy their Linux software on Windows? Although Windows Server 2016 and Windows 10 share many components, the Server operating system hasn’t thus far included WSL, consistent with the “developer only” rationale. But that’s going to change: at Build this week, Microsoft announced that WSL will be included in Server later this year. Microsoft still isn’t positioning this as a way of running Linux server in production on Windows; rather, the company says the addition will be useful for administrative tasks. With WSL, Windows can run scripts written for Linux. But we’re hard-pressed to see things stopping there; it seems inevitable that at some point, Windows will offer the ability to run Linux server software as one of its features. Read 3 remaining paragraphs | Comments

Read the original post:
Windows Server will add the Linux subsystem, join the Insider program

Today’s Massive Ransomware Attack Was Mostly Preventable—Here’s How To Avoid It

Ransomware may be mostly thought of as a (sometimes costly) nuisance, but when it hinders the ability of doctors and nurses to help people with an emergency medical problems, that qualifies as armed robbery. Read more…

See more here:
Today’s Massive Ransomware Attack Was Mostly Preventable—Here’s How To Avoid It

Keylogger Found in Audio Driver of HP Laptops, Says Report

An anonymous reader writes: The audio driver installed on some HP laptops includes a feature that could best be described as a keylogger, which records all the user’s keystrokes and saves the information to a local file, accessible to anyone or any third-party software or malware that knows where to look. Swiss cyber-security firm modzero discovered the keylogger on April 28 and made its findings public today. According to researchers, the keylogger feature was discovered in the Conexant HD Audio Driver Package version 1.0.0.46 and earlier. This is an audio driver that is preinstalled on HP laptops. One of the files of this audio driver is MicTray64.exe (C:windowssystem32mictray64.exe). This file is registered to start via a Scheduled Task every time the user logs into his computer. According to modzero researchers, the file “monitors all keystrokes made by the user to capture and react to functions such as microphone mute/unmute keys/hotkeys.” Read more of this story at Slashdot.

Read More:
Keylogger Found in Audio Driver of HP Laptops, Says Report

Windows 10 fall update will restore (and improve) OneDrive’s best feature

Microsoft Windows 10 was a big improvement over Windows 8.1 in most important ways, but it made a big change to the way OneDrive syncing worked. In Windows 8.1, you could see all the files you had stored in OneDrive, but the operating system would only actually download and open the file when you needed to open it. At least for PCs that usually have Internet connections, this was a neat way to offer cloud file syncing without consuming gigabytes of space for infrequently used files on every computer you were signed into. But the behavior could be error-prone—apps could attempt to open the placeholder files created by OneDrive rather than the files themselves—and it could create confusion about which files were actually available offline. So in the initial releases of Windows 10, Microsoft changed the behavior to be more Dropbox-esque . All OneDrive files are now downloaded to your PC when you sign in, though as with Dropbox you can choose to only sync selected folders based on what you need to have available at all times. Read 4 remaining paragraphs | Comments

Continue reading here:
Windows 10 fall update will restore (and improve) OneDrive’s best feature

New Windows look and feel, Neon, is officially the “Microsoft Fluent Design System”

Enlarge / Project Neon in the Groove Music app. (credit: Tom Hounsell ) SEATTLE—Earlier this year, pictures of a new Windows look and feel leaked . Codenamed Project Neon , the new look builds on Microsoft Design Language 2 (MDL2), the styling currently used in Windows 10, to add elements of translucency and animation. Neon has now been officially announced, and it has an official new name: the Microsoft Fluent Design System. The awkward MDL2 name exists because the original codename for the geometric, text-centric style introduced with Windows Phone 7 and incrementally iterated ever since was subject of a trademark dispute. That look and feel was internally named Metro, but Microsoft had to stop using the Metro name after pushback from a German supermarket chain . The company didn’t initially have any particularly good name to refer to the styling formerly known as Metro, so many people continued to use that term for lack of anything better. It wasn’t until a couple of months after dropping “Metro” that a new name, “Microsoft Design Language,” was settled on. Our understanding is that Neon befell a similar fate; someone out there is using the Neon name, forcing Microsoft to pick a different appellation. This time around, however, the company has recognized that it’s important to have an official name for the style that it can talk about and describe, giving us “Microsoft Fluent Design System.” Read 6 remaining paragraphs | Comments

See more here:
New Windows look and feel, Neon, is officially the “Microsoft Fluent Design System”