Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Endpoint

4/21/2016
10:00 AM
Connect Directly
Twitter
RSS
E-Mail

A Brief History Of Ransomware

A top ten chronicle of more than a decade of notable ransomware variants and trends.
2 of 11

AIDS Trojan

While the modern crypto ransomware variants didn't really come into the forefront until about 2005, the AIDS Trojan actually kick started the category decades earlier. Spread via floppy disk, the Trojan piggybacked on programs that 'measured a person's risk of contracting AIDS based on their responses to an interactive survey,' writes Alina Simone in a really interesting article about the virus in Unhackable. When the user rebooted, the trojan encrypted victims' files and asked for a 'licensing fee' of $189 to be mailed to Panamanian PO Box.

Image Credit: https://medium.com/un-hackable/the-bizarre-pre-internet-history-of-ransomware-bb480a652b4b#.mqtljkqfu

AIDS Trojan

While the modern crypto ransomware variants didn't really come into the forefront until about 2005, the AIDS Trojan actually kick started the category decades earlier. Spread via floppy disk, the Trojan piggybacked on programs that "measured a person's risk of contracting AIDS based on their responses to an interactive survey," writes Alina Simone in a really interesting article about the virus in Unhackable. When the user rebooted, the trojan encrypted victims' files and asked for a "licensing fee" of $189 to be mailed to Panamanian PO Box.

Image Credit: https://medium.com/un-hackable/the-bizarre-pre-internet-history-of-ransomware-bb480a652b4b#.mqtljkqfu

2 of 11
Comment  | 
Print  | 
Comments
Threaded  |  Newest First  |  Oldest First
Joe Stanganelli
50%
50%
Joe Stanganelli,
User Rank: Ninja
4/24/2016 | 11:08:33 AM
Link to spam
It is interesting to compare the rise of ransomware with the downfall (at least, from its heyday) of pharma spam.  As botnet masters and other black-hatters lost one of their primary sources of income, they had to start using their machines and know-how in other ways to make money.
MKultra
50%
50%
MKultra,
User Rank: Apprentice
4/24/2016 | 4:00:46 PM
ransomware - new tread or nonsense ?!!
hi fans,

well - i had never trouble with this special type of malware insofar, although i get lots of emails every day,

about 250 - 400, mostly newletters from newspapers all over the world !!!

i am very careful NOT clicking attachment links in emails, so the chance to get ransomware is very low.

i have lots of security software on my notebook - eg. antivius (avast free edition), good firewall (comodo), anti-

spyware (spyhunter and spybot search + destroy), anti-rootkit (avg) and many others, at last an intrusion                                                                                                                                                                                                                                                                                          

detection system (sax 2), if an excellent blackhat enters my computer ...

 

 

thats all for now - hope to hear from you

sincerly

diplom-engineer matthias klein (ANONYMOUS-hacker and universal genius !!!)
Nanireko
50%
50%
Nanireko,
User Rank: Apprentice
12/26/2016 | 1:57:37 PM
Ransomware Chronicle
It's just the begining 
Navigating Security in the Cloud
Diya Jolly, Chief Product Officer, Okta,  12/4/2019
US Sets $5 Million Bounty For Russian Hacker Behind Zeus Banking Thefts
Jai Vijayan, Contributing Writer,  12/5/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Our Endpoint Protection system is a little outdated... 
Current Issue
Navigating the Deluge of Security Data
In this Tech Digest, Dark Reading shares the experiences of some top security practitioners as they navigate volumes of security data. We examine some examples of how enterprises can cull this data to find the clues they need.
Flash Poll
Rethinking Enterprise Data Defense
Rethinking Enterprise Data Defense
Frustrated with recurring intrusions and breaches, cybersecurity professionals are questioning some of the industrys conventional wisdom. Heres a look at what theyre thinking about.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-19719
PUBLISHED: 2019-12-11
Tableau Server 10.3 through 2019.4 on Windows and Linux allows XSS via the embeddedAuthRedirect page.
CVE-2019-19720
PUBLISHED: 2019-12-11
Yabasic 2.86.1 has a heap-based buffer overflow in the yylex() function in flex.c via a crafted BASIC source file.
CVE-2019-19707
PUBLISHED: 2019-12-11
On Moxa EDS-G508E, EDS-G512E, and EDS-G516E devices (with firmware through 6.0), denial of service can occur via PROFINET DCE-RPC endpoint discovery packets.
CVE-2019-19708
PUBLISHED: 2019-12-11
The VisualEditor extension through 1.34 for MediaWiki allows XSS via pasted content containing an element with a data-ve-clipboard-key attribute.
CVE-2019-19709
PUBLISHED: 2019-12-11
MediaWiki through 1.33.1 allows attackers to bypass the Title_blacklist protection mechanism by starting with an arbitrary title, establishing a non-resolvable redirect for the associated page, and using redirect=1 in the action API when editing that page.