Who's Profiting From The WannaCry Ransoms? (cnn.com)
CNN reports:
For months, the ransom money from the massive WannaCry cyberattack sat untouched in online accounts. Now, someone has moved it. More than $140,000 worth of digital currency bitcoin has been drained from three accounts linked to the ransomware virus that hit hundreds of thousands of computers around the world in May.
Meanwhile, a Ukrainian law firm wants NotPetya victims to join a collective lawsuit against Intellect-Service LLC, the company behind the M.E.Doc accounting software, said to be the point of origin of the NotPetya ransomware outbreak. An anonymous reader quotes BleepingComputer: The NotPetya ransomware spread via a trojanized M.E.Doc update, according to Microsoft, Bitdefender, Kaspersky, Cisco, ESET, and Ukrainian Cyber Police. A subsequent investigation revealed that Intellect-Service had grossly mismanaged the hacked servers, which were left without updates since 2013 and were backdoored on three different occasions... The Juscutum Attorneys Association says that on Tuesday, Ukrainian Cyber Police confirmed that M.E.Doc servers were backdoor on three different occasions in an official document. The company is now using this document as the primary driving force behind its legal action.
The law firm says victims must pay all of the court fees -- and give them 30% of any awarded damages.
Meanwhile, a Ukrainian law firm wants NotPetya victims to join a collective lawsuit against Intellect-Service LLC, the company behind the M.E.Doc accounting software, said to be the point of origin of the NotPetya ransomware outbreak. An anonymous reader quotes BleepingComputer: The NotPetya ransomware spread via a trojanized M.E.Doc update, according to Microsoft, Bitdefender, Kaspersky, Cisco, ESET, and Ukrainian Cyber Police. A subsequent investigation revealed that Intellect-Service had grossly mismanaged the hacked servers, which were left without updates since 2013 and were backdoored on three different occasions... The Juscutum Attorneys Association says that on Tuesday, Ukrainian Cyber Police confirmed that M.E.Doc servers were backdoor on three different occasions in an official document. The company is now using this document as the primary driving force behind its legal action.
The law firm says victims must pay all of the court fees -- and give them 30% of any awarded damages.
Sounds like the attorneys. And the court system, more generally. Parties to the suit? They all end up in the hole.
Marcus Hutchins
The point of origin is in the Russian military hacking service. They were the Ukrainian accounting software firm whose software was hijacked.
And it was believed to be an employees creditials that were used to hack it:
https://www.bleepingcomputer.com/news/security/ukrainian-firm-facing-legal-action-for-damages-caused-by-notpetya-ransomware/
"In a report released last night, Cisco experts say that the NotPetya group — suspected to be a cyber-espionage group named TeleBots — had infiltrated the company's infrastructure by gaining access to an employee's credentials. Cisco says the NotPetya gang used these credentials to embed a backdoor in the M.E.Doc software package, but also place a PHP webshell on the company's web server."
APK hosts file generator makes me immune from such attacks. No ones gonna profit from me!
Trust me, this is the kind of law firm that will take a lot more than 30%.
Except for the scammer himself, of course.
"sat untouched in online accounts. Now, someone has moved it."
And why exactly wasn't the money seized? And why is "someone" anonymous when you cannot be anonymous whenever money is involved? Always these unanswered questions. None of the articles posted here ever make any sense.
We should not care who profits from the ransoms. The only thing we should concern ourselves with is ensuring that people pay the ransom.
Always, always, ALWAYS pay your ransoms.
Seriously.
Most ACs are not even worth the keystrokes to insult them. Be generically insulted by this and ignored otherwise.
who is winning on Americas, Chinas, Russias etc obsession with spying? NOBODY! THATS WHO! We all lose... and all future generations as well!