Major cyberattack sweeps globe, India affected, Jawaharlal Nehru Port in Mumbai hit

Agencies
June 28, 2017

New Delhi, Jun 28: A major global cyber attack on Tuesday disrupted computers at Russia's biggest oil company, Ukrainian banks and multinational firms with a virus similar to the ransomware that last month infected more than 300,000 computers.

cyberattack

India was also among the countries affected by the ransomware with the country's largest port Jawaharlal Nehru Port Trust in Mumbai shutting down operations at one of its three terminals.

News agency reported that operations at one of the three terminals of the country's largest container port were impacted as a fallout of the global ransomware attack, which crippled some central banks and many large corporations in Europe.

The rapidly spreading cyber extortion campaign underscored growing concerns that businesses have failed to secure their networks from increasingly aggressive hackers, who have shown they are capable of shutting down critical infrastructure and crippling corporate and government networks.

It included code known as "Eternal Blue," which cyber security experts widely believe was stolen from the US National Security Agency (NSA) and was also used in last month's ransomware attack, named "WannaCry."

"Cyber attacks can simply destroy us," said Kevin Johnson, chief executive of cyber security firm Secure Ideas. "Companies are just not doing what they are supposed to do to fix the problem."

The ransomware virus crippled computers running Microsoft Corp's Windows by encrypting hard drives and overwriting files, then demanded USD300 in bitcoin payments to restore access. More than 30 victims paid into the bitcoin account associated with the attack, according to a public ledger of transactions listed on blockchain.info.

Microsoft said the virus could spread through a flaw that was patched in a security update in March.

"We are continuing to investigate and will take appropriate action to protect customers," a spokesman for the company said, adding that Microsoft antivirus software detects and removes it.

RUSSIA AND UKRAINE MOST AFFECTED

Russia and Ukraine were most affected by the thousands of attacks, according to security software maker Kaspersky Lab, with other victims spread across countries including Britain, France, Germany, Italy, Poland and the United States. The total number of attacks was unknown.

Security experts said they expected the impact to be smaller than WannaCry since many computers had been patched with Windows updates in the wake of WannaCry last month to protect them against attacks using Eternal Blue code.

Still, the attack could be more dangerous than traditional strains of ransomware because it makes computers unresponsive and unable to reboot, Juniper Networks said in a blog post analyzing the attack.

Researchers said the attack may have borrowed malware code used in earlier ransomware campaigns known as "Petya" and "GoldenEye".

Following last month's attack, governments, security firms and industrial groups aggressively advised businesses and consumers to make sure all their computers were updated with Microsoft patches to defend against the threat.

The US Department of Homeland Security said it was monitoring the attacks and coordinating with other countries. It advised victims not to pay the extortion, saying that doing so does not guarantee access will be restored.

In a statement, the White House National Security Council said there was currently no risk to public safety. The United States was investigating the attack and determined to hold those responsible accountable, it said.

The NSA did not respond to a request for comment. The spy agency has not publicly said whether it built Eternal Blue and other hacking tools leaked online by an entity known as Shadow Brokers.

Several private security experts have said they believe Shadow Brokers is tied to the Russian government, and that the North Korean government was behind WannaCry. Both countries' governments deny charges they are involved in hacking.

'DON'T WASTE YOUR TIME'

The first attacks were reported from Russia and Ukraine.

Russia's Rosneft, one of the world's biggest crude producers by volume, said its systems had suffered "serious consequences," but added oil production had not been affected because it switched over to backup systems.

Ukrainian Deputy Prime Minister Pavlo Rozenko said the government's computer network went down and the central bank reported disruption to operations at banks and firms including the state power distributor.

Danish shipping giant AP Moller-Maersk said it was among the victims, reporting outages at facilities including its Los Angeles terminal.

WPP, the world's largest advertising agency, said it was also infected. A WPP employee who asked not to be named said that workers were told to shut down their computers: "The building has come to a standstill."

A Ukrainian media company said its computers were blocked and it was asked to pay USD300 in the crypto-currency bitcoin to regain access.

"Perhaps you are busy looking for a way to recover your files, but don't waste your time. Nobody can recover your files without our decryption service," the message said, according to a screenshot posted on Ukraine's Channel 24.

Russia's central bank said there were isolated cases of lenders' IT systems being infected. One consumer lender, Home Credit, had to suspend client operations.

Other companies that identified themselves as victims included French construction materials firm Saint Gobain , US drugmaker Merck & Co and Mars Inc's Royal Canin pet food business.

JNPT AFFECTED

India-based employees at Beiersdorf, makers of Nivea skin care products, and Reckitt Benckiser, which owns Enfamil and Lysol, told Reuters the ransomware attack had impacted some of their systems in the country.

AP Moller-Maersk, one of the affected entities globally, operates the Gateway Terminals India (GTI) at JNPT, which has a capacity to handle 1.8 million standard container units.

"We have been informed that the operations at GTI have come to a standstill because their systems are down (due to the malware attack). They are trying to work manually," a senior JNPT official said tonight.

The official explained that JNPT is trying to help the company, but there is little that others can do as the problem s with the systems.

Fearing some clogging up of cargo, additional parking space is being made available, the official said, promising to help in any way that is possible.

Western Pennsylvania's Heritage Valley Health System's entire network was shut down by a cyber attack on Tuesday, according to local media reports.

WANNACRY

Last's month's fast-spreading WannaCry ransomware attack was crippled after a 22-year-old British security researcher Marcus Hutchins created a so-called "kill switch" that experts hailed as the decisive step in slowing the attack.

Security experts said they did not believe that the ransomware released on Tuesday had a kill switch, meaning that it might be harder to stop.

Ukraine's cyber police said on Twitter that a vulnerability in software used by MEDoc, a Ukrainian accounting firm, may have been an initial source of the virus, which researchers including cyber intelligence firm Flashpoint said could have infected victims via an illegitimate software update.

In a Facebook post, MEDoc confirmed it had been hacked but denied responsibility for originating the attack.

An adviser to Ukraine's interior minister said earlier in the day that the virus got into computer systems via "phishing" emails written in Russian and Ukrainian designed to lure employees into opening them.

According to the state security agency, the emails contained infected Word documents or PDF files as attachments.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
April 20,2024

Union Finance Minister Nirmala Sitharaman, on Friday, said that the Bharatiya Janata Party (BJP) plans to reintroduce electoral bonds in some capacity following extensive consultations with all stakeholders, should it come back to power in the 2024 general elections, according to a report in the Hindustan Times (HT).

HT cited Nirmala Sitharam as saying, “We still have to do a lot of consultation with stakeholders and see what is it that we have to do to make or bring in a framework which will be acceptable to all, primarily retain the level of transparency and completely remove the possibility of black money entering into this.”

However, the Centre has not yet decided whether to seek a review of the ruling made by the Supreme Court (SC), she said.

She further added, “What the scheme, which has been just thrown out by the Supreme Court, brought in was transparency. What prevailed earlier was just free-for-all.”

Launched in 2018, electoral bonds were accessible for acquisition at any State Bank of India (SBI) branch. Contributions made through this programme by corporations and even foreign entities via Indian subsidiaries received full tax exemption, while the identities of the donors remained confidential, safeguarded by both the bank and the recipient political parties.

On February 15, a five-judge Constitution Bench struck down the scheme, deeming it ‘unconstitutional’ due to its complete anonymisation of contributions to political parties. Additionally, the Bench stated that the articulated objectives of curbing black money or illegal election financing did not warrant disproportionately infringing upon voters’ right to information.

FM Sitharaman said, some aspects of the scheme need improvement and they will be brought back following consultations.

She also lashed out at the Opposition’s claims that the BJP disregarded criminal charges against leaders who switched from other parties to join the ruling party.

The HT quoted her as saying, “The BJP can’t sit here and say, you come to my party today, and the case will be closed tomorrow. The case has to go through the courts that have to take a call; they will not just say, “Oh, he’s come to your party, close the case.” Doesn’t happen that way. So is this washing machine a term they want to use for the courts?”

She further said that the Union government plans to simplify the process of taxation and make it easy for investments to come through into the country.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
April 25,2024

EVM.jpg

Electronics Corporation of India Ltd and Bharat Electronics Ltd have refused to disclose the names and contact details of the manufacturers and suppliers of various components of EVMs and VVPATs under the RTI Act citing "commercial confidence", according to RTI responses from the PSUs to an activist.

Activist Venkatesh Nayak had filed two identical Right To Information applications with the ECIL and BEL, seeking the details of the manufacturers and suppliers of various components used in the assembling of the electronic voting machines (EVMs) and voter-verifiable paper audit trail (VVPATs).

The VVPAT is an independent vote verification system which enables electors to see whether their votes have been cast correctly.

The ECIL and the BEL, public sector undertakings under the Ministry of Defence, manufacture EVMs and VVPATs for the Election Commission.

Nayak also sought a copy of the purchase orders for the components from both PSUs.

"Information sought is in commercial confidence. Hence details cannot be provided under Section 8(1)(d) of the RTI Act," BEL said in its response.

A similar response was sent by ECIL which said the details requested are related to a product which is being manufactured by ECIL, and third party in nature.

"Disclosing of details will affect the Competitive position of ECIL. Hence, Exemption is claimed under section 8(1) (d) of RTI ACT, 2005," it said.

In response to the purchase order copies, ECIL's central public information officer said the information is "voluminous" which would disproportionately divert the resources of the Public Authority.

"Further, the information will give away the design details of EVM components. The same may pose a danger to the machines produced. Hence, the exemption is claimed U/s 7(9) and under section 8(1)(d) of RTI Act, 2005," ECIL said.

Section 8(1)(d) of the RTI Act exempts from disclosure the information, including commercial confidence, trade secrets or intellectual property, the disclosure of which would harm the competitive position of a third party, unless the competent authority is satisfied that larger public interest warrants the disclosure of such information.

Section 7(9) of the Act says the information shall ordinarily be provided in the form in which it is sought unless it would disproportionately divert the resources of the public authority or would be detrimental to the safety or preservation of the record in question.

"I don't know whose interests they are trying to protect against the right to know of close to a billion-strong electorate. ECIL said that disclosure of the purchase orders will reveal the design details of the components and this may pose a danger to the machines produced. ECIL did not upload even a signed copy of its reply on the RTI Online Portal," Nayak said.

He said it is reasonable to infer that the two companies are not manufacturing every single item of the EVM-VVPAT combo or else the two companies would have replied that they are manufacturing all these components internally without any outsourcing being involved.

"But the electorate is expected to take everything about the voting machines based on what the ECI is claiming in its manuals and FAQs," Nayak said.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
April 24,2024

modiliar.jpg

Ambikapur (Chhattisgarh): Prime Minister Narendra Modi on Wednesday hit out at the Congress, saying the 'vote bank hungry' party wanted to implement reservation on the basis of religion.

Addressing a poll rally in Ambikapur, the headquarters of Surguja district in Chhattisgarh, PM Modi also said the Congress wanted to impose inheritance tax in the country and snatch the rights of people's children.

Some forces want a "weak" government of the Congress and "I.N.D.I." alliance in the country as they thought that if India becomes 'atmanirbhar' (self-reliant), their shops will be shut, he said.

"Today when I have come to Surguja, I want to present the Muslim League thinking of the Congress in front of the country. When their manifesto was released, on the same day I had said, and saying today also that the Congress manifesto has the imprint of Muslim League," Modi said.

When the Constitution was being drafted, it was decided under the leadership of Babasaheb Ambedkar that there would be no reservation on the basis of religion in India, he said.

"If there will be reservation then it will be for by Dalit brothers and sisters and tribal brothers and sisters," he said.

"But the vote bank hungry Congress never cared about the words of the great personalities, sanctity of the Constitution and the words of Babasaheb Ambedkar. Years ago, the Congress made an attempt to implement reservation on the basis of religion in Andhra Pradesh. Then Congress has planned to implement it in the entire country," Modi said.

They talked about implementing 15 per cent reservation on the basis of religion and said it will be done after curtailing the quota of the Scheduled Castes, Scheduled Tribes and Other Backward Classes, he added.

In its 2009 manifesto, Congress's intention was the same and in the 2014 manifesto, it clearly said it will not leave this issue, the prime minister said.

The Congress wanted to change the Constitution and hand over rights of the SCs, STs and OBCs to its vote bank, he said.

The intention of the Congress is not good, it is not according to the Constitution, social justice and secularism. If anyone can protect your reservation, it is the BJP, Modi said.

"The Congress's eyes are not only on your reservation, but also on your earnings, your houses, shops and farms. The 'shehzada' of Congress (apparently referring to Rahul Gandhi) says they will conduct an X-ray of the property of every house and every family in the country. The Congress will snatch all these from you and they say that they will equally distribute them," he said.

Do you know to whom they will distribute it after 'looting' it from you? Modi asked, to which the people replied in affirmative.

"I need not to tell you to whom they will distribute," he added.

Modi further said the 'dangerous intentions' of Congress are coming to forth one by one and now it says it will impose inheritance tax.

"The advisor of shehzada of the shahi parivar, who was also the advisor to the shehzada's father, had said that more tax should be imposed on the middle class and those who earn by toiling hard. Now the Congress says it will impose inheritance tax. It will impose tax on the assets inherited by people from their parents. Now, the panja (Congress poll symbol) will snatch the assets from your children," he said without taking any name.

The Congress' mantra is 'loot of Congress zindagi ke sath bhi, zindagi ke baad bhi', he said.

"They (Congress) want to snatch your assets and rights of your children," Modi added.

The PM also said he had come to seek people's blessings for a developed Chhattisgarh and a developed India.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.