Skip to main content

WannaCry Is Trying To Come Back From The Dead With The Help Of Mirai Botnet


mirai wannacry ddos
The pace of WannaCry ransomware was slowed down by an accidental kill switch. Now, the notorious hackers are trying to reignite the ransomware. They are trying to do so by DDoSing the kill switch domains using botnets made of Mirai malware. Marcus Hutchins, who discovered kill switch, says that these DDoS attacks don’t seem to be the work of the original WannaCry creators.

Over last week, WannaCry ransomware targeted hundreds of thousands of computer systems running older operating systems like Windows XP and Windows 7. It crippled numerous system in more than 150 countries. But, after a security researcher accidentally found a distinct feature in the form a kill switch, its pace was slowed down.
The kill switch worked this way — The ransomware, after infecting a computer, first tried to connect to a random-looking URL. This was done to make sure that the ransomware isn’t under scrutiny. If WannaCry was able to connect to that URL, it went dormant.
Now, the security researchers are claiming that the cyber criminals are working on a clever technique to bring back the malware from dead.
According to a report from Wired, hackers are using botnets to launch a DDoS attack against the kill switch domains. By taking down the domain, the attack might reignite. The report also notes that not all WannaCry infections would immediately reignite as ransomware stops scanning for new victims 24 hrs after installing itself on the computer.
Marcus Hutchins aka Malwaretech, who discovered kill switch, says that near-daily attacks from the botnets built with Mirai malware are slowly ticking up in impact and size. The first big DDoS attack came with 20 gigabits per second of traffic.
Hutchins says that setting up a Mirai botnet is very easy and the latest attacks don’t seem to be the work of the original WannaCry creators. “The initial developers were doing it for money,” he adds. “These people are doing it just for the fun of hurting people. Which I guess is worse.”
Meanwhile, security researchers have been able to find a fix for WannaCry ransomware, which can be downloaded here.

Comments

Follow Us

WHAT'S HOT

FAISS: Facebook Just Released A New Open Source Library For Clustering Big Data

FAISS is an open-source library released by Facebook for similarity search and clustering high-dimensional data. This library finds application in complex datasets like images and videos which could not fit in RAM all at once.

Best Gaming Linux Distros You Need To Try In 2017

Gaming on Linux scene is improving each year with better hardware support and increasing support from game developers. Apart from established distros like Ubuntu and Arch Linux, gamers are using gaming Linux distros like Steam OS to get a better experience. The other It’s gaming operating systems are Sparky Linux – Gameover

Russian Hackers Used Kaspersky Software To Steal NSA Secrets And Code

According to a  report from WSJ , NSA’s classified data, which wasn’t supposed to leave the facility’s perimeter where a contractor worked, was stolen by Russian hackers. This incident

How To Connect Android or iOS Phone To Windows 10

The  Continue on PC  feature is currently available to Windows Insiders, but it’ll arrive for regular users once the update starts landing on their PCs. If you’re running an Insider build, you can use the steps mentioned in this post to connect your phone to Windows 10 PC.