Petya Ransomware: India Globally Seventh Worst-Affected by Cyber-Attacks, Says Symantec

Advertisement
By Indo-Asian News Service | Updated: 29 June 2017 14:15 IST
Highlights
  • India has come out as the worst-hit Asian country affected by Petya
  • Petya ransomware attack hit major global companies on Tuesday
  • In India, Mumbai's JNPT port reported to have been compromised too

India has become the worst-hit country in the Asia Pacific and Japan (APJ) region and the seventh most affected nation globally as a new ransomware 'Petya' hit on June 27, global cyber-security firm Symantec said on Thursday.

Mumbai's Jawaharlal Nehru Port Trust (JNPT), the country's largest container port and some local manufacturing units of global companies were hit, the government confirmed on Wednesday.

However, according to Information Technology Minister Ravi Shankar Prasad, India has largely remained insulated so far from the massive ransomware attack that started in Ukraine and Russia.

Advertisement

"The Petya ransomware attack was clearly inspired by the WannaCry attack, which received so much attention last month. The motives behind WannaCry are still unclear, however, it was not an effective approach to making money for its authors," said Gavin O'Gorman, an investigator in Symantec Security Response, in a post on Thursday.

Advertisement

The Petya ransomware was spread, at least in part, through updates to a Ukrainian tax accounting software. Symantec has confirmed that MEDoc, a tax and accounting software package, is used for the initial insertion of Petya into corporate networks.

MEDoc is widely used in Ukraine, indicating that organisations in that country were the primary target.

Advertisement

Once on a computer, the malware attempts to spread to all machines on the network, using a combination of stolen credentials and the "Eternal Blue" exploit.

"It also attempts to connect to any computers that the infected computer has recently interacted with. However, unlike WannaCry, it does not attempt to connect to random IP addresses across the internet," O'Gorman added.

Advertisement

Cyber-security experts believe that the new attack was caused by a variant of the Petya ransomware which was unleashed in 2016.

It differs from typical ransomware as it doesn't just encrypt files, it also overwrites and encrypts the master boot record (MBR), demanding that $300 (roughly Rs. 20,000) in Bitcoins be paid to recover files.

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Interstellar Visitor 3I/ATLAS Brightens Faster Than Expected, Surprising Scientists
  2. Samsung Galaxy S26 Ultra Said to Get a Major Design Upgrade
  3. This Is How You Can Get ChatGPT Go Subscription for Free
  4. How to Disable the Liquid Glass Effect After Updating to iOS 26.1
  5. NASA Confirms Plans to Retire and Deorbit the ISS Over Point Nemo
  1. Dark Matter May Behave Like Ordinary Matter Under Gravity, New Study Finds
  2. Interstellar Visitor 3I/ATLAS Brightens Faster Than Expected, Surprising Scientists
  3. Point Nemo: The Remote Ocean Graveyard Where the ISS Will Make Its Final Descent in 2030
  4. Meteorite May Have Hit Moving Car in Australia, Scientists Investigate
  5. Keio University Team Measures Ancient Cosmic Temperature, Confirming Big Bang Prediction
  6. Mysterious 1950s Sky Flashes Re-Examined in New Astronomical Study
  7. Scientists Discover Ancient Asteroid Crater Hidden Beneath the Atlantic Ocean
  8. 16-Year-Old Student Creates Lifelike Robotic Hand Using LEGO Parts
  9. Mirai Hindi OTT Release Date: When and Where to Teja Sajja’s Superhero Drama Online in Hindi?
  10. Shakthi Thirumagan Now Streaming on JioHotstar: What You Need to Know About Vijay Antony’s Political Action Thriller
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.