Pages:
Author

Topic: Canadian university buckles and pays $20k in bitcoin to hackers (Read 1010 times)

newbie
Activity: 45
Merit: 0
Well I guess I wont become an IT student there Cheesy

Don't want to impinge on your promising fry cook career?
hero member
Activity: 854
Merit: 1009
JAYCE DESIGNS - http://bit.ly/1tmgIwK
This is negative publicity for the university.

Now who will enroll in their IT classes after we clearly see that their IT department is incompetent?

Can't they just backup their data and have proper security measures?... you know, this is a university after all with PHD IT experts.

Well I guess I wont become an IT student there Cheesy
sr. member
Activity: 420
Merit: 250
Everyone should just use clouds and this would never happen. Just back up everything on the cloud and be worry free.
hero member
Activity: 952
Merit: 1009
Best way is to backup using tapes, which few organizations do in the age of the cloud.

Is that still a thing? Why would a tape be better than ...oh, any other format?

Yes tapes are still a thing because they are the cheapest per GB at $0.01/GB and have lower error rates than drives and generally last longer. http://www.overlandstorage.com/blog/?p=323

Main reason is some tapes cannot be overwritten, so its not possible for ransomware to encrypt your backups. That happens quite a lot http://www.sbsfaq.com/?p=4046
member
Activity: 84
Merit: 10
Best way is to backup using tapes, which few organizations do in the age of the cloud.

Is that still a thing? Why would a tape be better than ...oh, any other format?
legendary
Activity: 2604
Merit: 1036
give it a week and one of their own pupils will probably use the script to make the ransomware. load it onto his colleges servers and ransom the college himself

Yeah mate it's very shocking how colleges and universities hire so incompetent IT staff sometimes who can't even ensure minimum level essential security of their network which completely boggles my mind. But I think it's highly possible some teacher downloaded some malicious file or something probably from a fake email sent to the university's inbox. You will be amazed how computer-illiterate some people may be regardless of teaching at a university. But surely this news will bring the attention of hackers to other colleges and universities because they are very easy pickings for ransomware attacks. Plus I have read about universities already gathering Bitcoin funds to hand out to hackers in the event of getting compromised so yeah Bitcoin hackers and thieves have already won the battle.
legendary
Activity: 1512
Merit: 1012
Ransomware will encrypt the backups too if it can. If the backups are stored on a server or network drive they are toast. Best way is to backup using tapes, which few organizations do in the age of the cloud.

I assume that someone capable of running a big University infrastructure is aware of that and stores backups in a separate, preferably offline server. But yes, this can happen, but backups in a separate server are guaranteed to make things better and easier when being attacked.

They only attack vector that wont ever be fixed is called humans Tongue

True Grin

give it a week and one of their own pupils will probably use the script to make the ransomware. load it onto his colleges servers and ransom the college himself

That would be absolutely despicable.

How ironic would it be if this fiasco actually helped increase bitcoin awareness in that university leading to more adoption there.

Haha, it would be amazing Grin
hero member
Activity: 952
Merit: 1009
Proper, frequent backups would solve the problem. You would only lose the most recently updated changes, since the last backup.

As long as the ransomware doesn't encrypt the backups too.

If you are backing up "to the cloud", to a server or to a networked drive, then goodbye backups. And almost every large organization is primarily relying on one of those for backups.
legendary
Activity: 2114
Merit: 1040
A Great Time to Start Something!
How does this work, you pay the ransom and get a password that unlocks your computer?

Yes. Your important files are encrypted and the only way to decrypt them is using the password.

Proper, frequent backups would solve the problem. You would only lose the most recently updated changes, since the last backup.
hero member
Activity: 952
Merit: 1009
How does this work, you pay the ransom and get a password that unlocks your computer?

Yes. Your important files are encrypted and the only way to decrypt them is using the password.
member
Activity: 84
Merit: 10
give it a week and one of their own pupils will probably use the script to make the ransomware. load it onto his colleges servers and ransom the college himself

Bitcoin democratizes extortion, now even a child can extort his school!
I love you, Blockchain technology. Is there anything you can't do?! Smiley
sr. member
Activity: 420
Merit: 250
How does this work, you pay the ransom and get a password that unlocks your computer?
legendary
Activity: 1512
Merit: 1000
How ironic would it be if this fiasco actually helped increase bitcoin awareness in that university leading to more adoption there.
legendary
Activity: 1218
Merit: 1006
I think the one who hacked the college server with ransomeware is one of their own student who really like cryptography. But even before bitcoin there were lots of ransomeware events in internet world, so i don't think bitcoin is responsible for all this ransomeware attempts.
legendary
Activity: 4424
Merit: 4794
give it a week and one of their own pupils will probably use the script to make the ransomware. load it onto his colleges servers and ransom the college himself
hero member
Activity: 1470
Merit: 655
If you are so smart to call yourself an university teacher, one should expect that they know the importance to hire good people in the IT section that are knowledgeable on Bitcoin, ransomware, and security in general.

Honestly ramsonware only happens if you are doing idiotic stuff with the computer. If you are cautious and take basic security measures you will not get infected by ramsonware.

It only takes one person in the company or university to slip up and open an email attachment infected with ransomware. This is why ransomware is so common.

yes that is true but the files that are important like in this case the students profiles and other information should be kept on a server with restricted access so that one random person who is stupid and gets infected doesn't infect the server too.

also there should be always a backup of these things stored in a separate place which [good] universities do.
newbie
Activity: 45
Merit: 0
Honestly ramsonware rape only happens if you are doing idiotic stuff with the computer dressing like a fucking slut. If you are cautious and take basic security measures you will not get infected by ramsonware. raped.
FTFY. Great attitude you got there, buddy, "Put better locks on your doors, and our son won't keep breaking into your house." How about no?
Banning bitcoin outright is much simpler than regulating it, get caught with bitcoin software on your computer? Same as child porn, problem solved Smiley
Posting like yours, that's what people judge bitcoiners by. Thanks for making us look like assholes.
legendary
Activity: 2464
Merit: 1145
They only attack vector that wont ever be fixed is called humans Tongue
legendary
Activity: 1904
Merit: 1074
If you are so smart to call yourself an university teacher, one should expect that they know the importance to hire good people in the IT section that are knowledgeable on Bitcoin, ransomware, and security in general.

Honestly ramsonware only happens if you are doing idiotic stuff with the computer. If you are cautious and take basic security measures you will not get infected by ramsonware.

You will still get infected, but with expert help and good incremental backup systems, the downtime will be reduced and the impact of this threat will be almost zero downtime. I think the majority of

these guys, did not do frequent backups at all, and then have to pay these people to retrieve their data. Why would you pay, if you had recent backups? We have offsite backups and we have several

hard copies of the archived data. Just do the backups regularly and you will be fine...  Wink
legendary
Activity: 1918
Merit: 1012
★Nitrogensports.eu★

It is not a Bitcoin horror story, it is just a horror story.
I expect university systems to be more secure than this.
Pages:
Jump to: