10 ms·
Ransomware – Unauthorized access to Fujifilm servers
- axiosgunnar 5y agoAnd another one bites the dust!
- totetsu 5y agodupe https://news.ycombinator.com/item?id=27373455 https://news.ycombinator.com/item?id=27373455 ?
- neom 5y agoTheir cloud storage is down, and ironically their ransomware protection service AirGap. https://datastorage-na.fujifilm.com/stop-ransomware/ https://datastorage-na.fujifilm.com/stop-ransomware/
- netr0ute 5y ago> Their cloud storage is down That's why I never trust "non-cloud" companies with cloud storage, because you never know if they suddenly don't want to do it anymore, or in this case get hacked because of incompetencies.
- bouncycastle 5y agoFunny, because I always think of Amazon is as a "non-cloud" company, especially when most think of it as a place to shop. Of course, I know it's not. Seriously though, fujifilm is a conglomerate and known for their pivots. If they did not reinvent themselves, the would have been joining Kodak.
- paxys 5y agoThis is actually somewhat true at all major cloud companies. Google, Microsoft and Amazon all have very limited usage of their own commercial cloud services among engineering teams.
- sterlind 5y agoI'm not sure about Google, but at MS we absolutely use our own cloud heavily. sometimes there's big legacy stuff, but nowadays most of that has gone onto Azure under the hood. I've heard Amazon is much the same way. the only exception I can really think of is infrastructure that you need to recover from disasters, which isn't on Azure for obvious bootstrapping reasons.
- paxys 5y agoUntil I was at Microsoft a few years ago there was always a struggle to get internal teams to use Azure. There were constant talks to get O365 and Bing (so, the bulk of internet-facing servers) on Azure, but nothing never materialized. I have heard Google is a lot worse in this regard.
- londons_explore 5y agoI wonder how many times ransomware has gotten into Google/Amazon's employees laptops? Having 100k employees, most of whom have admin access to their own machines (cos developer) has got to make it almost impossible to stop it happening.
- babelfish 5y agoI have a friend who works at G that told me shortly after he started working there, he accidentally typed some portion of his password into another website, at which point his laptop immediately locked down and he was forced to change his password before doing anything else.
- tremon 5y agoAre you implying Google had his password stored in reversible form?
- awwaiid 5y agoMaybe they keylog and incrementally hash everything including password subset? Seems implausible.
- weird-eye-issue 5y agoNothing about the comment that you replied to would require them to store their password in "reversible form"
- londons_explore 5y ago> some portion of his password Doing a partial string match on a password would effectively require it in reversible form. Even if you hashed all the possible substrings of the password, it would be trivial to brute force given all the hashes of the same string with one extra character on the end... But OP was mistaken - the tool Google uses only alerts if the entire password is typed. Meaning that OP's friend was careless with password hygiene. As is nearly every new Google employee.
- beermonster 5y agoLots of folk (not solely non-technical) treat cloud sync as a backup - when often it’s not. Can’t comment on Fujitsi’s offering. In any case it should only be one of the three copies of your data. Anecdotally, photographers - especially professional ones , take backups quite seriously. I’ve often read good blogposts written by them on how to backup your images. And I believe the 3-2-1 rule originally came from a photographer Peter Krogh.
- beermonster 5y agoDoes anyone know the details of their AirGap service? Taking services/networks offline is common during incident response management so it might be indicative of them taking appropriate action rather than them being knocked off-line. Let’s hope their service lives up to the marketing.
- nix23 5y agoI hope it's something like that: https://www.nexor.com/nexor-data-diode/ https://www.nexor.com/nexor-data-diode/
- gdsdfe 5y agoHmm but why target such a well known company? It's almost guaranteed that they will not pay to save face, no?
- Thorrez 5y agoDidn't Garmin pay a ransom? Which is more well known?
- pmlnr 5y agoGarmin more well known than Fuji?! In what world?!
- markdown 5y agoIn the world of GPS equipment I guess.
- weird-eye-issue 5y agoProbably in This world https://trends.google.com/trends/explore?date=all&q=%2Fm%2F047lkx,%2Fm%2F01djsj https://trends.google.com/trends/explore?date=all&q=%2Fm%2F0...
- Thorrez 5y agoWow, you can see the big spike in Garmin interest when they got hacked in July 2020.
- dspillett 5y agoMy personal life certainly. I'm well aware of both companies, but what do Fuji do that is as recognisable to many of the general public as the watch on their wrist or the mapping device in their car? Some might own a Fuji brand camera, printer or other device, might put fujifilm brad paper in their printer, etc, but they probably aren't significantly aware of the rest of the business. I'd wager that the average person on the street is more aware of Garmin.
- beermonster 5y agoAn update : https://www.fujifilm.com/jp/en/news/hq/6642# https://www.fujifilm.com/jp/en/news/hq/6642#
- xupybd 5y agoI'm the only person in my company with any IT knowledge. I'm a developer, not an IT expert. These stories terrify me. I have no mandate or time to work on our security. What would you do to protect your company. I have limited backups but we would be done with systems down for days.
- amelius 5y agoPlease note that backups aren't a good measure against ransomware, unless you do them absolutely correctly. The problem is that ransomware will encrypt your files, rendering them useless, but they still end up in encrypted form in your backup.
- WJW 5y agoAlmost every backup system I've seen will keep multiple versions of the file around with decreasing frequency as time progresses, ie one for every day of last week, every sunday of the last month, the first of every month for the last year, etc. That way if you get hit by ransomware, you can restore to a point in time where you are (fairly) sure no infection was present yet. Nothing is perfect, but this does give a decent amount of protection for "most" important files as they tend not to change that often. For things that do change often like databases, different strategies may be needed.
- amelius 5y agoYes, but if your system is hacked, then any application (including your backup software) might "see" the file as unencrypted.
- WJW 5y agoYes? Some of your backups will be the encrypted version of the file. As long as your system remains hacked it is useless to restore anything. You will first need to purge every disk in your organisation and reinstall everything from scratch (depending on the sophistication of the ransomware, maybe just buy new disks altogether), THEN restore from a version that is good.
- 1970-01-01 5y agoNews is reporting its Qbot. They must be on a Windows version < 8.1 as Qbot is nothing new and is detected by Win Defender https://malpedia.caad.fkie.fraunhofer.de/details/win.qakbot https://malpedia.caad.fkie.fraunhofer.de/details/win.qakbot https://www.microsoft.com/en-us/wdsi/threats/malware-encyclopedia-description?Name=Trojan:Win32/Qbot.MT!MTB https://www.microsoft.com/en-us/wdsi/threats/malware-encyclo...