Ukraine police make arrest in Petya ransomware case

0
179

0

Ukrainian police have arrested an individual accused of spreading the Petya malware, used in a cyberattack that knocked thousands of companies offline earlier this year.

An unnamed 51-year-old from the southern city of Nikopol was detained by the state cyber-police earlier this week after a raid was carried out at the alleged attacker’s home.

In a brief statement (translated for ZDNet), police say they seized computers that were used to spread the malware in the cyberattack.

The statement said that the person of interest told police he had uploaded the malware to a file-sharing account and shared a link on his blog with instructions on how to launch the malware.

The malware was downloaded about 400 times, police say.

Several companies downloaded the malware intentionally to “conceal criminal activity” and to “evade payments” to the state, police say.

But it’s not clear if police have declared the person of interest a formal suspect in the cyberattack that spread to more than 60 countries.

News of the outbreak began in late June, when predominantly Ukrainian systems were hit by a new strain of ransomware — just a month after a similar cyberattack that leveraged leaked NSA hacking tools to spread the WannaCry ransomware.

What separated this attack from the previous incident was that the ransomware needed just one infection point of entry, and was then able to spread laterally across an entire network.

Thousands of companies were affected by the Petya outbreak, with several major companies taking weeks to regain control of their systems, and suffering quarterly financial hits.

A decryption tool was eventually released.

Contact me securely

Zack Whittaker can be reached securely on Signal and WhatsApp at 646-755–8849, and his PGP fingerprint for email is: 4D0E 92F2 E36A EC51 DAAE 5D97 CB8C 15FA EB6C EEA5.

Read More

ZDNET INVESTIGATIONS

Leaked TSA documents reveal New York airport’s wave of security lapses

US government pushed tech firms to hand over source code

At the US border: Discriminated, detained, searched, interrogated

Millions of Verizon customer records exposed in security lapse

Meet the shadowy tech brokers that deliver your data to the NSA

Inside the global terror watchlist that secretly shadows millions

FCC chairman voted to sell your browsing history — so we asked to see his

With a single wiretap order, US authorities listened in on 3.3 million phone calls

198 million Americans hit by ‘largest ever’ voter records leak

Britain has passed the ‘most extreme surveillance law ever passed in a democracy’

Microsoft says ‘no known ransomware’ runs on Windows 10 S — so we tried to hack it

Leaked document reveals UK plans for wider internet surveillance

0