Another Large-Scale Cyber-Attack Underway, Says Proofpoint

Advertisement
By Agence France-Presse | Updated: 17 May 2017 23:56 IST

Another large-scale, stealthy cyber-attack is underway on a scale that could dwarf last week's assault on computers worldwide, a global cybersecurity firm told AFP on Wednesday.

The new attack targets the same vulnerabilities the WannaCry ransomware worm exploited but, rather than freeze files, uses the hundreds of thousands of computers believed to have been infected to mine virtual currency.

Following the detection of the WannaCry attack on Friday, researchers at Proofpoint discovered a new attack linked to WannaCry called Adylkuzz, said Nicolas Godier, a researcher at the computer security firm.

Advertisement

Hackers Mint Crypto-Currency With New Mining Technique

"It uses the hacking tools recently disclosed by the NSA and which have since been fixed by Microsoft in a more stealthy manner and for a different purpose," he said.

Advertisement

Instead of completely disabling an infected computer by encrypting data and seeking a ransom payment, Adylkuzz uses the machines it infects to "mine" in a background task a virtual currency, Monero, and transfer the money created to the authors of the virus.

Virtual currencies such as Monero and Bitcoin use the computers of volunteers to record transactions. They are said to "mine" for the currency and are occasionally rewarded with a piece of it.

Advertisement

Proofpoint said in a blog that symptoms of the attack include loss of access to shared Windows resources and degradation of PC and server performance, effects which some users may not notice immediately.

"As it is silent and doesn't trouble the user, the Adylkuzz attack is much more profitable for the cyber criminals. It transforms the infected users into unwitting financial supporters of their attackers," said Godier.

Advertisement

Proofpoint said it has detected infected machines that have transferred several thousand dollars worth of Monero to the creators of the virus.

The firm believes Adylkuzz has been on the loose since at least May 2, and perhaps even since April 24, but due to its stealthy nature was not immediately detected.

"We don't know how big it is" but "it's much bigger than WannaCry", Proofpoint's vice president for email products, Robert Holmes, told AFP.

A US official on Tuesday put the number of computers infected by WannaCry at over 300,000.

"We have seen that before - malwares mining cryptocurrency - but not this scale," said Holmes.

The WannaCry attack has sparked havoc in computer systems worldwide.

Britain's National Health Service, US package delivery giant FedEx, Spanish telecoms giant Telefonica and Germany's Deutsche Bahn rail network were among those hit.

While the rate of new infections has slowed, researchers at cybersecurity firm Check Point said the malware continues to spread rapidly.

And another expert added that despite a quick breakthrough that WannaCry to be slowed down, researchers don't fully understand it.

"The problem is that we're still not certain about the origin of the infections" as contrary to many previous attacks it wasn't via emails which deceive users into installing the virus, said the expert on condition of anonymity.

More attacks could be soon be underway as the hacker group The Shadow Brokers that leaked the vulnerabilities used by WannaCry and Adylkuzz has threatened to publish more.

It said in a post it would begin providing information monthly by subscription in June, saying that in addition to Windows 10 vulnerabilities it would include "compromised network data from Russian, Chinese, Iranian, or North Korean nukes and missile programs".

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo V70 Elite, Vivo V70 Will Launch in India on This Date
  2. Vivo V70 Elite Visits Geekbench With a Snapdragon 8s Gen 3 Chipset
  3. Tecno Pova Curve 2 Confirmed to Launch Soon in These Colour Options
  4. Google Pixel 10a Will Be Available for Pre-Order Later This Month
  5. Samsung Galaxy S26 Ultra Could Miss Out on Magnets for Qi2 Charging
  6. Realme P4 Power 5G With 10,001mAh Battery Goes on Sale in India
  7. Google Hits Historic $400B Revenue as AI Bet Pays Off: 5 Things to Know
  8. Maa Behen OTT Release Confirmed: Where to Watch Madhuri Dixit Starrer Series Online?
  9. Talaash: A Mother's Search OTT Release Confirmed: What You Need to Know
  10. Apple's M5 Max, M5 Ultra Chips Referenced in Upcoming iOS 26.3 Update
  1. Realme P4 Power 5G With 10,001mAh Battery, 50-Megapixel Camera Goes on Sale in India: Price, Offers
  2. Spotify Announces Lyrics Previews, Offline Lyrics; Begins Rolling Out Lyric Translation Globally
  3. Samsung Galaxy S26 Ultra Tipped to Rely on Magnetic Cases for Qi2 Charging Instead of Built-in Magnets
  4. Vivo V70 Elite, Vivo V70 India Launch Date Announced: Expected Specifications, Features
  5. Apple’s iOS 26.3 RC Update Reportedly Contains References to Anticipated M5 Max, M5 Ultra Chips
  6. Steam Machine May Be Delayed Due to RAM, Storage Shortages and Price Hikes
  7. Honor Magic V6 3C Listing Hints at Faster 120W Charging; Satellite Messaging Variant Also Spotted
  8. Talaash: A Mother’s Search OTT Release Confirmed: Know Everything About This Upcoming Thriller Series
  9. Xiaomi's Futuristic Modular Optical System Enters Production a Year After MWC 2025 Showcase, Tipster Claims
  10. Oppo Find N6, Honor Magic V6 Tipped to Launch With Advanced Stylus Support, 7,000mAh Battery
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.