Newsletters
News & Information for Technology Purchasers NewsFactor Sites:       NewsFactor.com     Enterprise Security Today     CRM Daily     Business Report     Sci-Tech Today  
   
This ad will display for the next 20 seconds. Please click for more information, or scroll down to pass the ad, or Close Ad.
Home Enterprise I.T. Cloud Computing Applications Hardware More Topics...
APC Free White Paper
Optimize your network investment &
Enter to win a Samsung Galaxy Note

www.apc.com
Computing
Fiercely productive scanners
Average Rating:
Rate this article:  
Widespread Cyberattack Hits South Korean Sites
Widespread Cyberattack Hits South Korean Sites

By Jennifer LeClaire
March 20, 2013 11:44AM

    Bookmark and Share
"The attack was first noticed when a number of Web sites began to experience problems," Symantec said in blog post about the cyberattack on South Korea. "Customers of banks could not access their online accounts and reports of other sites being down began to surface." A number of South Korean Web sites had their hard drives wiped by the Trojan virus.
 



South Korea was hit with a cyberattack Wednesday. Specifically, the computer systems at two banks, three major broadcasters and other targets were hit. Some are pointing fingers at North Korea.

According to Symantec, the attack included the defacement of a Korean ISP and telecoms provider and also the crippling of servers belonging to several organizations. The defacement displays an elaborate animated Web page with sound effects, the firm reports, showing three skulls and including a message by the claimed attackers calling themselves the "Whois" team.

"The attack was first noticed when a number of Web sites began to experience problems," Symantec said in blog post. "Customers of banks could not access their online accounts and reports of other sites being down began to surface. While specific details are not known at this time, it has been reported that a number of sites affected had their hard drives wiped, leaving the affected computers in a crippled state."

Wiping Hard Drives

Symantec detects the suspected malware as Trojan Horse/Trojan.Jokra and WS.Reputation.1 and is currently performing a detailed analysis of it. However, the security company can already confirm that the malware performs several actions, including creating a file-mapping object to reference itself, killing two processes related to local antivirus/security product vendors.

The malware also enumerates all drives and begins to overwrite the master boot record and any data stored on it by writing the either the string "PRINCPES" or "HASTATI." This, Symantec said, will wipe all contents of the hard disk. The firm said the threat may also attempt to perform the same wiping actions on any drives attached or mapped to the compromised computer, and forces the computer to reboot by executing "shutdown -r -t 0," which renders the system unusable as the master boot record and contents of the drive are now missing.

"The results of the disk wiping actions are consistent with the major outages reported in that region," Symantec said. "Disk wiping is not a new activity, in a separate incident in August 2012, a number of Middle-Eastern organizations were hit by the W32.Disttrack (Shamoon) threat which caused a similar type of damage by wiping hard disks."

Attacks on Critical Infrastructure

Amrit Williams, CTO of Lancope, said that given previous rhetoric coming from nation-sponsored threats and incidents against government and enterprise targets in the United States, we have entered an era that will be marked by unprecedented attacks on critical infrastructure.

"No matter whether the attacks are originating in North Korea, China or other nation-states, ultimately the U.S. government needs to be accountable for ensuring that services such as critical infrastructure are available and the U.S. thrives," Williams told us. "Today, however, the U.S. is ill-prepared to deal with mainstream malware outbreaks and unsophisticated network intrusions, let alone a highly coordinated attack that would actually justify such a response."
 

Tell Us What You Think
Comment:

Name:

Anonymous:

Posted: 2013-03-22 @ 2:42am PT
This is crazy. I would stay clear of warez, this is where virus' tend to reside.



APC has an established a reputation for solid products that virtually pay for themselves upon installation. Who has time to spend worrying about system downtime? APC makes it easy for you to focus on business growth instead of business downtime with reliable data center systems and IT solutions. Learn more here.


 Computing
1.   Google Street View Unravels CAPTCHAs
2.   Android Gets Chrome Remote Desktop
3.   IBM Adds Disaster Recovery to SoftLayer
4.   Mark Hurd's 5 Keys to Market Success
5.   How To Beat the Heartbleed Bug


advertisement
Product Information and Resources for Technology You Can Use To Boost Your Business

Network Security Spotlight
Google's Street View Software Unravels CAPTCHAs
The latest software Google uses for its Street View cars to read street numbers in images for Google Maps works so well that it also solves CAPTCHAs, those puzzles designed to defeat bots.
 
Canadian Teen Arrested for Heartbleed Hack
One week after the OpenSSL Heartbleed vulnerability was unveiled, Canadian authorities have made the first arrest -- a London, Ontario teenager -- connected to exploiting the security hole.
 
IBM Offers Security, Disaster Recovery as SoftLayer Service
New disaster recovery and security services for SoftLayer clients are being added by IBM. Big Blue said the new capabilities will speed cloud adoption by alleviating concern over business continuity.
 

Enterprise Hardware Spotlight
Vaio Fit 11A Battery Danger Forces Recall by Sony
Using a Sony Vaio Fit 11A laptop? It's time to send it back to Sony. In fact, Sony is encouraging people to stop using the laptop after several reports of its Panasonic battery overheating.
 
Continued Drop in Global PC Shipments Slows
Worldwide shipments of PCs fell during the first three months of the year, but the global slump in PC demand may be easing, with a considerable slowdown from last year's drops.
 
Google Glass Finds a Home in Medical Education, Practice
Google Glass may find its first markets in verticals in which hands-free access to data is a boon. Medicine is among the most prominent of those, as seen in a number of Glass experiments under way.
 

Mobile Technology Spotlight
Google Releases Chrome Remote Desktop App for Android
You're out on a sales call, and use your Android mobile device to grab a file you have back at the office on your desktop. That's a bit easier now with Google's Chrome Remote Desktop app for Android.
 
Amazon 3D Smartphone Pics Leaked
E-commerce giant Amazon is reportedly set to launch a smartphone after years of development. Photos of the phone, which may feature a unique 3D interface, were leaked by tech pub BGR.
 
Zebra Tech Buys Motorola Enterprise for $3.45B
Weeks after Lenovo bought Motorola Mobility’s assets from Google for $2.91 billion, Zebra Technologies is throwing down $3.45 billion for Motorola’s Enterprise business in an all-cash deal.
 

Navigation
NewsFactor Network
Home/Top News | Enterprise I.T. | Cloud Computing | Applications | Hardware | Mobile Tech | Big Data | Communications
World Wide Web | Network Security | Data Storage | Small Business | Microsoft/Windows | Apple/Mac | Linux/Open Source | Personal Tech
Press Releases
NewsFactor Network Enterprise I.T. Sites
NewsFactor Technology News | Enterprise Security Today | CRM Daily

NewsFactor Business and Innovation Sites
Sci-Tech Today | NewsFactor Business Report

NewsFactor Services
FreeNewsFeed | Free Newsletters | XML/RSS Feed

About NewsFactor Network | How To Contact Us | Article Reprints | Careers @ NewsFactor | Services for PR Pros | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2014 NewsFactor Network. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.