Cisco Security Researchers Disable Big Distributor of Ransomware

Advertisement
By Reuters | Updated: 6 October 2015 18:50 IST
Cisco Systems Inc said it had managed to disrupt the spread of one of the most pernicious systems for infecting Internet users with malicious software such as so-called ransomware, which demands payment for decrypting users' data.

The investigators from Cisco's Talos security unit were looking at the Angler Exploit Kit, which analysts at several companies say has been the most effective of several kits at capturing control of personal computers in the past year, infecting up to 40 percent of those it targeted.

They found that about half of computers infected with Angler were connecting to servers at a hosting provider in Dallas, which had been hired by criminals with stolen credit cards. The provider, Limestone Networks, pulled the plug on the servers and turned over data that helped show how Angler worked.

The research effort, aided by carrier Level 3 Communications, allowed Cisco to copy the authentication protocols the Angler criminals use to interact with their prey. Knowing these protocols will allow security companies to cut off infected computers.

Advertisement

"It's going to be really damaging to the attacker's network," Telos manager Craig Williams told Reuters ahead of the release of the report.

Advertisement

Cisco said that since Limestone pulled the plug on the servers, new Angler infections had fallen off dramatically.

Limestone's client relations manager told Reuters his company had unwittingly helped the spread of Angler before the Cisco investigation.

Advertisement

Often sold in clandestine Internet forums or in one-to-one deals, exploit kits combine many small programs that take advantage of flaws in Web browsers and other common pieces of software. Buyers of those kits must also arrange a way to reach their targets, typically by sending spoof emails, hacking into websites or distributing malicious advertisements.

Once they win control of a target's computer, exploit kit buyers can install whatever they want, including so-called ransomware. This includes a number of branded programs, also sold online, that encrypt users' computer files and demand payment to release them.

Advertisement

Telos estimated that if three percent of infected users paid the ransom averaging $300 (roughly Rs. 20,000), the criminals that had used the Limestone servers to spread Angler could have made about $30 million (roughly Rs. 200 crores) a year.

© Thomson Reuters 2015

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Cisco, Encryption, Internet
Advertisement

Related Stories

Popular Mobile Brands
  1. Here's How Much the Samsung Galaxy Z TriFold May Cost in India
  2. OnePlus Ace 6T With Massive 8,300mAh Battery Launched at This Price
  3. Mrs Deshpande OTT Release: When, Where to Watch Madhuri Dixit's Serial Killer Mystery
  4. Motorola Edge 70 India Launch Date Leaked; Might Arrive With Bigger Battery
  5. iPhone 16 Price Drops Under Rs. 63,000 on Croma With Bank Discounts
  6. Motorola Edge 70 Ultra Leaked Renders Hint at Design, Colourways
  7. Sanchar Saathi App Pre-Installation is Not Mandatory, Government Says
  8. Redmi Note 15 5G Series Price, Specifications Tipped
  9. Pranav Mohanlal's Horror Thriller 'Dies Irae' Streams on OTT Soon
  10. Samsung's One UI 8.5 Changelog Leak Hints at Imminent Beta Release
  1. Dies Irae OTT Release: When, Where to Watch Pranav Mohanlal's Malayalam Horror Thriller Online
  2. A Nearby Planet May Have Formed the Moon Following a Collision With Early Earth: Study
  3. Netflix’s Gritty Frontier Drama The Abandons to Begin Streaming Soon: All You Need to Know
  4. Superman OTT Release Date Announced: Everything You Need to Know About Clark Kent's Latest Adventure
  5. International Space Station Makes History As Eight Visiting Spacecraft Simultaneously Dock
  6. Dulquer Salmaan’s Kaantha Set for OTT Debut: When and Where to Watch 1950's Period Drama Online?
  7. Motorola Edge 70 India Launch Date Leaked; Indian Variant Said to Feature Bigger Battery, Slim Design
  8. SpaceX Adds 29 New Starlink Satellites in Successful Falcon 9 Launch
  9. UK to Recognise Crypto as Property After Lawmakers Approve Landmark Bill
  10. Dyson HushJet Purifier Compact Launched in India With Electrostatic Filter, AQI Indicator, New HushJet Nozzle Design
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.