Serangan siber WannaCry: Perbezaan antara semakan

Kandungan dihapus Kandungan ditambah
svg
Tiada ringkasan suntingan
Baris 44:
'''WannaCry''' (atau '''WannaCrypt''',<ref name="microsoftreleases" >{{cite web|last1=MSRC Team|title=Customer Guidance for WannaCrypt attacks|url=https://blogs.technet.microsoft.com/msrc/2017/05/12/customer-guidance-for-wannacrypt-attacks/|publisher=[[Microsoft]]|access-date=13 May 2017}}</ref> '''WanaCrypt0r 2.0''',<ref>{{cite web|author1=Jakub Kroustek|title=Avast reports on WanaCrypt0r 2.0 ransomware that infected NHS and Telefonica.|url=https://blog.avast.com/ransomware-that-infected-telefonica-and-nhs-hospitals-is-spreading-aggressively-with-over-50000-attacks-so-far-today|website=Avast Security News|publisher=Avast Software, Inc|date=12 May 2017}}</ref><ref name=":0">{{Cite news|url=https://www.forbes.com/sites/thomasbrewster/2017/05/12/nsa-exploit-used-by-wannacry-ransomware-in-global-explosion/|title=An NSA Cyber Weapon Might Be Behind A Massive Global Ransomware Outbreak|last=Fox-Brewster|first=Thomas|work=Forbes|access-date=12 May 2017}}</ref> '''Wanna Decryptor'''<ref>{{Cite news|url=http://www.wired.co.uk/article/wanna-decryptor-ransomware|title=Wanna Decryptor: what is the 'atom bomb of ransomware' behind the NHS attack?|last=Woollaston|first=Victoria|work=WIRED UK|access-date=2017-05-13|language=en-GB}}</ref> atau yang serupa{{efn|Juga dikenali dengan nama serupa.}}) merupakan satu program [[perisian tebusan]] yang mensasarkan [[Microsoft Windows]].<ref>{{cite web|last1=The GenX Times Team|title=WannaCry Ransomware attack computers worldwide, using NSA exploit codenamed Eternalblue|url=http://www.thegenxtimes.com/world/wannacry-ransomware-attack-computers-worldwide-using-nsa-exploit-codenamed-eternalblue/|access-date=13 May 2017}}</ref> Pada hari Jumaat, 12 Mei 2017, satu [[serangan siber]] besar-besaran yang menggunakannya telah dilancarkan, menjangkiti lebih 230,000 komputer di 150 negara, meminta wang tebusan dalam bentuk [[bitcoin]] dalam 28 bahasa.<ref>{{cite web|title=WannaCry Infecting More Than 230,000 Computers In 99 Countries|url=https://www.eyerys.com/articles/timeline/wannacry-infecting-more-230000-computers-99-countries|website=Eyerys|date=12 May 2017}}</ref> Serangan tersebut dinyatakan oleh [[Europol]] sebagai yang tidak pernah berlaku sebelum ini dari segi skala.<ref name=":3">{{Cite news|url=http://www.bbc.com/news/world-europe-39907965|title=Cyber-attack: Europol says it was unprecedented in scale|date=2017-05-13|work=BBC News|access-date=2017-05-13|language=en-GB}}</ref> Serangan tersebut memberi kesan terhadap [[Telefónica]], [[FedEx]], [[Deutsche Bahn]]<ref>{{Cite web|url=https://motherboard.vice.com/en_us/article/a-massive-ransomware-explosion-is-hitting-targets-all-over-the-world|title=A Massive Ransomware 'Explosion' Is Hitting Targets All Over the World|website=Motherboard|first=Joseph|last=Cox|date=12 May 2017|language=en-us|access-date=12 May 2017}}</ref><ref name="cnn99countries">{{Cite news |url=http://money.cnn.com/2017/05/12/technology/ransomware-attack-nsa-microsoft/ |title=Massive ransomware attack hits 99 countries |last=Larson |first=Selena |date=12 May 2017 |work=CNN |access-date=12 May 2017}}</ref>, dan Perkhidmatan Kesihatan Kebangsaan UK (NHS)<ref name="BBC news">{{Cite news|url=http://www.bbc.co.uk/news/health-39899646|title=NHS cyber-attack: GPs and hospitals hit by ransomware|date=12 May 2017|work=BBC News|access-date=12 May 2017|language=en-GB}}</ref><ref>{{Cite news|url=https://www.theguardian.com/technology/2017/may/12/nhs-ransomware-cyber-attack-what-is-wanacrypt0r-20|title=What is 'WanaCrypt0r 2.0' ransomware and why is it attacking the NHS?|last=Hern|first=Alex|date=12 May 2017 |work=[[The Guardian]] |location=London|access-date=12 May 2017|last2=Gibbs|first2=Samuel |issn=0261-3077}}</ref><ref>{{Cite web|url=https://digital.nhs.uk/article/1491/Statement-on-reported-NHS-cyber-attack|title=Statement on reported NHS cyber attack|website=digital.nhs.uk|language=en-GB|access-date=12 May 2017}}</ref>, di samping beberapa entiti kerajaan dan korporat yang lain.<ref>{{cite web|url=https://www.theguardian.com/society/2017/may/12/global-cyber-attack-nhs-trusts-malware|title=The NHS trusts hit by malware – full list|first=Sarah|last=Marsh|date=12 May 2017 |access-date=12 May 2017 |work=[[The Guardian]] |location=London}}</ref>
 
WannaCry dipercayai menggunakan [[eksploitasi (keselamatan komputer)|eksploitasi]] [[EternalBlue]], yang dibangunkan oleh [[Agensi Keselamatan Kebangsaan]] AS (NSA)<ref name="independent">{{cite web|title=NHS cyber attack: Edward Snowden says NSA should have prevented cyber attack|url=http://www.independent.co.uk/news/uk/home-news/nhs-cyber-attack-edward-snowden-accuses-nsa-not-preventing-ransomware-a7733941.html|publisher=[[The Independent]]|access-date=13 May 2017}}</ref><ref name="telegraph">{{cite web|title=NHS cyber attack: Everything you need to know about 'biggest ransomware' offensive in history|url=http://www.telegraph.co.uk/news/2017/05/13/nhs-cyber-attack-everything-need-know-biggest-ransomware-offensive/|publisher=[[The Daily Telegraph]]|access-date=13 May 2017}}</ref> untuk menyerang komputer yang menggunakan sistem pengendalian [[Microsoft Windows]].<ref name=":0" /><ref>{{Cite web|url=http://money.cnn.com/2017/05/12/technology/ransomware-attack-nsa-microsoft/index.html|title=Massive ransomware attack hits 74 countries|last=Larson|first=Selena|date=12 May 2017|website=CNNMoney|access-date=12 May 2017}}</ref> Walaupun satu perisian tampalan bagi membuang kelemahan tersebut telah dikeluarkan pada 14 Mac 2017,<ref name="microsoft.com"/> pengguna yang bertangguh ketika mengenakan kemas kini keselamatan, ataupun yang menggunakan versi Windows yang sudah tidak lagi disokong, masih terdedah.<ref>{{cite web|url=https://www.theregister.co.uk/2017/05/12/spain_ransomware_outbreak/|title=WanaCrypt ransomware snatches NSA exploit, fscks over Telefónica, other orgs in Spain|first1=12 May 2017 at|last1=15:58|first2=John Leyden|last2=tweet_btn()|website=theregister.co.uk|access-date=12 May 2017}}</ref> Microsoft telah mengambil satu langkah luar biasa dengan mengeluarkan kemas kini bagi [[Windows XP]] dan [[Windows Server 2003]] yang sudah tidak lagi disokong dan perisian tampalan bagi sistem pengendalian [[Windows 8]].<ref name="microsoftreleases"/><ref name="unsupported">{{cite news|last1=Surur|title=Microsoft release Wannacrypt patch for unsupported Windows XP, Windows 8 and Windows Server 2003|url=https://mspoweruser.com/microsoft-release-wannacrypt-patch-unsupported-windows-xp-windows-8-windows-server-2003/|access-date=13 May 2017|date=13 May 2017}}</ref>
 
Tidak lama kemudian selepas serangan 12 Mei, beberapa baris kod telah dijumpai oleh seorang pengkaji anti perisian jahat yang berfusi sebagai [[suis pemati]], dan telah diaktifkan oleh pengkaji tersebut. Ia menghentikan sementara penyebaran virus tersebut. Kod tersebut asalnya dilaporkan dalam media sebagai [[suis pemati]] terbina dalam; namun, sesetengah penganalisa pula membuat keputusan bahawa ia merupakan kesilapan pengaturcaraan.<ref name="malwaretech">Malware Tech's blog: [https://www.malwaretech.com/2017/05/how-to-accidentally-stop-a-global-cyber-attacks.html How to Accidentally Stop a Global Cyber Attacks]</ref>