If your PC is ever locked by ransomware, paying up won't necessarily release your files; in fact, we recommend that you never hand over cash to these scammers.
What to do? There's a minor chance you can save your files without surrendering your wallet or trashing your PC entirely. A group of security researchers routinely examines the latest ransomware strains for flaws in their computer code, and develops free tools that can (sometimes) reverse the infection.
Michael Gillespie is among those researchers. He's a programmer by day, but in his free time he works as a ransomware hunter for the New Zealand-based antivirus firm Emsisoft, a leading provider of ransomware decryptors. Desperate victims frequently reach out to him for help. "I can get anywhere from 50 to 200 people contacting me per day. It's crazy," he said in an interview.
When a ransomware infection hits your PC, the malicious code encrypts your files and posts a note, demanding you pay up or never see your data again. If you give in, the hackers will (theoretically) send you a decryption key to recover your files. But like any piece of software, a ransomware strain can be buggy. Gillespie has exploited those vulnerabilities to create an estimated 100 decryptors, which anyone can download for free.
The bugs can happen for a number reason: The hacker behind the malicious code may be a newbie. Or the ransomware itself may be an early first version, and has yet to work out all its kinks. If there's a weakness in the encryption algorithmthe crucial process that will turn your files into gibberishthen a researcher can potentially unravel a ransomware attack and reverse the infection.
(Gillespie has a YouTube channel devoted to ransomware decryption.)
"The golden rule is that crypto (cryptography) is hard, and ransomware developers are human too," Gillespie said. Lately, victims have been reaching out to him for help to recover from the "STOP DJVU" strain, which often comes packaged with pirated software. Fortunately, Gillespie was able to create a decryptor since early versions of the attack embeded a usable decryption key to reverse the infection within the ransomware's computer code.
"Ransomware authors, as a whole, really don't learn," said Fabian Wosar, chief technology officer at Emsisoft. Wosar began hunting ransomware in 2012, and since then, he's created decryptors for an estimated 150 ransomware families or more, which he finds surprising.
(Emsisoft's decryption tool list)
"Four years ago, I was 100 percent sure that by now we would never see a ransomware family again that had any flaws that we could exploit," he said. "But we still see them at the same frequency."
He suspects the biggest reason why is because rookie hackers are routinely trying their hand at ransomware. "A whole bunch of new people are joining the game," he said. The more successful ransomware authors, on the other hand, can retire after raking in so many ransoms. "So we have a whole bunch of new people committing the same mistakes again and again."
Wosar estimates there's usually a one-in-five chance a brand-new ransomware strain can be successfully decrypted. Other strains have been reversed thanks to law enforcement agencies busting the hackers and retrieving decryption keys from their servers.
But many hackers behind the biggest ransomware attacks appear to be pros who continue to elude capture. Today's most notorious ransomware strainssuch as REvil and Ryukare likely linked to organized cybercriminal gangs that specialize in targeting businesses and city governments and have successfully extorted millions in bitcoin from victims.
(Ron Engelaar/AFP/Getty Images)
Researchers such as Wosar and Gillespie have made a major dent in some of the hackers' earnings, with their individual decryptors downloaded tens of thousands of times.
So why are these researchers helping victims for free? It's not exactly sound economics for an antivirus firm to create a decryptor at no cost. But it does generate good press for Emsisoft, which helps justify the time and effort.
"I feel like I'm doing my good part in the world, and getting my fame in," Gillespie said. Fascinated by cryptography, he began tackling ransomware over four years ago as a hobby.
As for Wosar: "Personally, my biggest reason why I'm doing this is I really enjoy pissing off the ransomware authors."
Still, foiling hackers can sometimes come at a price. Last year, Wosar left his home country of Germany over worries a ransomware author might one day try to track him down and send a hired killer. "At this point, we may have done $750 million in damages to all the different hacking groups," he estimated. "It would only take a tiny fraction of that amount to send someone to visit me, and convince me not to write decryptors anymore."
(Messages ransomware authors have left for Fabian Wosar over the years.)
Wosar says he's currently "laying low" in the UK, where he continues to examine and decrypt the latest ransomware strains. He also keeps a digital folder with screenshots of all the times hackers have insulted him for decrypting their ransomware attacks. In 2016, one cybercriminal even created a malware strain named "Fabiansomware" to troll Wosar.
"It's like flattery, almost," Wosar said.
Emsisoft isn't alone in developing ransomware decryptors. The industry, along with law enforcement, created Nomoreransom.org, which hosts various free decryptors, and has helped more than 200,000 victims recover from attacks, according to Europol.
US law enforcement is not part of the Nomoreransom.org project, though, likely because the website's partners include Russian antivirus firm Kaspersky Lab and the Russian Ministry of Internal Affairs.
An FBI spokesperson told us the agency's main role is with ransomware investigations, which can include privately consulting with victims on their recovery options. "We'll point people to decryption keys that are publicly available, and tell them to use their best judgment," the spokesperson added.
(The Nomoreransom.org site.)
Although the free decryption tools can provide some relief to the ongoing ransomware epidemic, they have their limits. That's because ransomware authors can be quick to fix their creations.
"Whenever you release a free decryption tool, you are telling the bad guys to tweak their code," said Jakub Kroustek, a security researcher at antivirus firm Avast, who also develops decryption tools. "If the hackers are clever enough, they will fix it."
"There are two sides of this coin," he added. "If a new ransomware strain arrives, and you're the first victim, the chances are quite good there's some flaw." But those decryption tools can also help hackers refine and debug their attacks, making their ransomware creations resistant to future attempts at decryption.
As a result, it'll take more than finding software bugs to stop the ongoing ransomware epidemic. Victimsincluding consumers, businesses, and governmentswill need to stop giving into the ransomware demands, and focus on protecting their computers.
"The number one prevention tip is backups," Gillespie said. "If all your safety nets fail, a backup is what can save your ass in the end."
Read more from the original source:
These Researchers Want to Save You From Ransomware (for Free) - PCMag
- Versions of the Golden Rule in dozens of religions and other ... [Last Updated On: June 10th, 2016] [Originally Added On: June 10th, 2016]
- Rockwell's "Golden Rule" - Norman Rockwell Museum [Last Updated On: June 12th, 2016] [Originally Added On: June 12th, 2016]
- Versions of the Golden Rule in dozens of religions and ... [Last Updated On: June 12th, 2016] [Originally Added On: June 12th, 2016]
- Golden Rule - Wikipedia, the free encyclopedia [Last Updated On: June 12th, 2016] [Originally Added On: June 12th, 2016]
- Golden Rule (fiscal policy) - Wikipedia, the free encyclopedia [Last Updated On: June 12th, 2016] [Originally Added On: June 12th, 2016]
- Rockwell's "Golden Rule" - Norman Rockwell Museum [Last Updated On: June 16th, 2016] [Originally Added On: June 16th, 2016]
- Health insurance made simple | UnitedHealthOne [Last Updated On: June 19th, 2016] [Originally Added On: June 19th, 2016]
- Health insurance made simple | UnitedHealthOne [Last Updated On: June 19th, 2016] [Originally Added On: June 19th, 2016]
- The Golden Rule - harryhiker.com [Last Updated On: June 19th, 2016] [Originally Added On: June 19th, 2016]
- What is the Golden Rule? - GotQuestions.org [Last Updated On: June 21st, 2016] [Originally Added On: June 21st, 2016]
- Golden Rule Plumbing Heating & Cooling [Last Updated On: June 21st, 2016] [Originally Added On: June 21st, 2016]
- Golden Rule: Treat People as You'd Like to Be Treated [Last Updated On: June 25th, 2016] [Originally Added On: June 25th, 2016]
- What is the Golden Rule? (with pictures) - wiseGEEK [Last Updated On: June 25th, 2016] [Originally Added On: June 25th, 2016]
- World Scripture - The Golden Rule - Unification [Last Updated On: June 28th, 2016] [Originally Added On: June 28th, 2016]
- Golden Rule: Treat People as You'd Like to Be Treated [Last Updated On: June 28th, 2016] [Originally Added On: June 28th, 2016]
- Golden Rule - New World Encyclopedia [Last Updated On: June 28th, 2016] [Originally Added On: June 28th, 2016]
- Golden rule (law) - Wikipedia, the free encyclopedia [Last Updated On: June 28th, 2016] [Originally Added On: June 28th, 2016]
- Golden Rule - Robinsons Brewery [Last Updated On: June 29th, 2016] [Originally Added On: June 29th, 2016]
- Live by the Golden Rule (pledge/petition/proclamation ... [Last Updated On: June 29th, 2016] [Originally Added On: June 29th, 2016]
- The Golden Rule in World Religions - TeachingValues.com [Last Updated On: June 29th, 2016] [Originally Added On: June 29th, 2016]
- 18 Practical Tips for Living the Golden Rule : zen habits [Last Updated On: June 29th, 2016] [Originally Added On: June 29th, 2016]
- Golden Rule Plumbing Heating & Cooling [Last Updated On: June 29th, 2016] [Originally Added On: June 29th, 2016]
- Health insurance helps you manage your health care costs ... [Last Updated On: June 29th, 2016] [Originally Added On: June 29th, 2016]
- Upcoming Events Welcome the Golden Rule to Poulsbo ... [Last Updated On: August 16th, 2016] [Originally Added On: August 16th, 2016]
- UCF Golden Rule UCF [Last Updated On: August 23rd, 2016] [Originally Added On: August 23rd, 2016]
- VFP Golden Rule Project | Advancing VFP Opposition to ... [Last Updated On: September 2nd, 2016] [Originally Added On: September 2nd, 2016]
- Bible Verses About Golden Rule - King James Bible [Last Updated On: September 29th, 2016] [Originally Added On: September 29th, 2016]
- Why Choose UnitedHealthcare? - uhone.com [Last Updated On: October 13th, 2016] [Originally Added On: October 13th, 2016]
- Golden Rule Charter School [Last Updated On: November 6th, 2016] [Originally Added On: November 6th, 2016]
- Golden Rule Chronology - Gensler's Home Page [Last Updated On: November 6th, 2016] [Originally Added On: November 6th, 2016]
- The Golden Rule | Our Daily Bread [Last Updated On: November 6th, 2016] [Originally Added On: November 6th, 2016]
- Golden Rule Community CU [Last Updated On: November 21st, 2016] [Originally Added On: November 21st, 2016]
- Golden Rule - Wikipedia [Last Updated On: November 23rd, 2016] [Originally Added On: November 23rd, 2016]
- Golden LivingCenter Golden Rule [Last Updated On: December 9th, 2016] [Originally Added On: December 9th, 2016]
- The Golden Rule - Life, Hope & Truth [Last Updated On: December 9th, 2016] [Originally Added On: December 9th, 2016]
- Transition Probabilities and Fermi's Golden Rule [Last Updated On: January 11th, 2017] [Originally Added On: January 11th, 2017]
- Rockwell's "Golden Rule" - Norman Rockwell Museum - The Home ... [Last Updated On: January 13th, 2017] [Originally Added On: January 13th, 2017]
- Golden calf - Wikipedia [Last Updated On: January 15th, 2017] [Originally Added On: January 15th, 2017]
- Matriarchy - Wikipedia [Last Updated On: January 21st, 2017] [Originally Added On: January 21st, 2017]
- Opinion: No room for walls in Gospel's Golden Rule - The Catholic Register [Last Updated On: February 6th, 2017] [Originally Added On: February 6th, 2017]
- Rev. Jeff Bobin: The Golden Rule - GoErie.com [Last Updated On: February 6th, 2017] [Originally Added On: February 6th, 2017]
- No Gods, No Masters: Live the Golden Rule - Dissident Voice [Last Updated On: February 6th, 2017] [Originally Added On: February 6th, 2017]
- Let the Golden Rule be our response locally and globally - Berkeley Independent [Last Updated On: February 6th, 2017] [Originally Added On: February 6th, 2017]
- Good neighbors and the Golden Rule - WiscNews [Last Updated On: February 11th, 2017] [Originally Added On: February 11th, 2017]
- Shock on The Voice UK as coaches break a golden rule of the show and meet rejected Blind Audition singer Ciara Harvie - Radio Times [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- Following the golden rule in times of tumult - College Heights Herald [Last Updated On: February 14th, 2017] [Originally Added On: February 14th, 2017]
- The Golden Rule of Business - Times-Citizen Communications [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- A Fool's Golden Rule - Word and Way - Word and Way [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- LETTER: Living by 'Golden Rule' would defeat ISIS - Daily Record - Daily Record [Last Updated On: February 17th, 2017] [Originally Added On: February 17th, 2017]
- h3cz: The Golden Rule of Twitter - Dexerto [Last Updated On: February 17th, 2017] [Originally Added On: February 17th, 2017]
- Motivating Your Team: Why The Golden Rule Doesn't Always Apply - Forbes [Last Updated On: February 17th, 2017] [Originally Added On: February 17th, 2017]
- Would golden rule survive if we were under siege? - Port Huron Times Herald [Last Updated On: February 20th, 2017] [Originally Added On: February 20th, 2017]
- Apply the Golden Rule to lift results - Business Management Daily [Last Updated On: February 22nd, 2017] [Originally Added On: February 22nd, 2017]
- United Way to present Golden Rule-Lightkeepers, Fabric of our Community Awards - Jacksonville Daily News [Last Updated On: February 23rd, 2017] [Originally Added On: February 23rd, 2017]
- 57th District It's the Golden rule: J. Central moves into 7th straight finals - The Independent [Last Updated On: February 23rd, 2017] [Originally Added On: February 23rd, 2017]
- From mushroom picker to deputy sheriff: Herc Avello relishes golden rule - Daily Local News [Last Updated On: February 24th, 2017] [Originally Added On: February 24th, 2017]
- The Golden Rule of Social Selling: Solve Your Customer's Problem - Business 2 Community [Last Updated On: February 24th, 2017] [Originally Added On: February 24th, 2017]
- Ron Forthofer: To live by the Golden Rule, we must recognize the 'others' - Longmont Times-Call [Last Updated On: February 24th, 2017] [Originally Added On: February 24th, 2017]
- Measuring life by the Golden Rule ... not a cellphone app - Bristol Herald Courier (press release) (blog) [Last Updated On: February 25th, 2017] [Originally Added On: February 25th, 2017]
- Apply the Golden Rule to immigrants - Statesman Journal [Last Updated On: February 28th, 2017] [Originally Added On: February 28th, 2017]
- Is the Golden Rule Still Alive and Well in America? - Huffington Post [Last Updated On: February 28th, 2017] [Originally Added On: February 28th, 2017]
- Five golden rules to always be in profit when you invest in equities - Economic Times [Last Updated On: March 1st, 2017] [Originally Added On: March 1st, 2017]
- Engineering's Golden Rule - Sourceable [Last Updated On: March 1st, 2017] [Originally Added On: March 1st, 2017]
- Email and The Golden Rule - Memphis Daily News - Memphis Daily News [Last Updated On: March 1st, 2017] [Originally Added On: March 1st, 2017]
- Golden Rule of Chaplaincy: Thy Shoes Matter - Boston.com [Last Updated On: March 4th, 2017] [Originally Added On: March 4th, 2017]
- Career Corner: The Golden Rule - Journal Record (subscription) [Last Updated On: March 4th, 2017] [Originally Added On: March 4th, 2017]
- Much to be gained from Golden Rule - Jackson Clarion Ledger [Last Updated On: March 5th, 2017] [Originally Added On: March 5th, 2017]
- OPINION: If only our institutions practiced the Golden Rule - Cape Cod Times (subscription) [Last Updated On: March 6th, 2017] [Originally Added On: March 6th, 2017]
- OPINION: If only our institutions practiced the Golden Rule - Nantucket Island Inquirer [Last Updated On: March 7th, 2017] [Originally Added On: March 7th, 2017]
- In the Neighborhood: A Meditation on the Golden Rule, Cheaters, and Prophets - Patheos (blog) [Last Updated On: March 11th, 2017] [Originally Added On: March 11th, 2017]
- The Golden Rule: Not So Golden Anymore | Issue 74 ... [Last Updated On: March 12th, 2017] [Originally Added On: March 12th, 2017]
- The Golden Rule | Our Daily Bread - odb.org [Last Updated On: March 12th, 2017] [Originally Added On: March 12th, 2017]
- Prairie Talk: Picture books teach us all - Herald & Review [Last Updated On: March 17th, 2017] [Originally Added On: March 17th, 2017]
- #3 Golden Rules for Entrepreneurs Starting Out Today - Entrepreneur [Last Updated On: March 17th, 2017] [Originally Added On: March 17th, 2017]
- A bowl of water and the golden rule - West Plains Daily Quill [Last Updated On: March 17th, 2017] [Originally Added On: March 17th, 2017]
- Hawaii judge upholds America's 'Golden Rule' - CNN [Last Updated On: March 17th, 2017] [Originally Added On: March 17th, 2017]
- Letter: If all could only follow the Golden Rule - Olean Times Herald [Last Updated On: March 19th, 2017] [Originally Added On: March 19th, 2017]
- 377A: Remember the golden rule in policymaking | TODAYonline - TODAYonline [Last Updated On: March 21st, 2017] [Originally Added On: March 21st, 2017]
- The Candlery keeps working partners busy - Muskogee Daily Phoenix [Last Updated On: March 23rd, 2017] [Originally Added On: March 23rd, 2017]
- Five golden rules to help solve your recycling dilemmas - The Conversation AU [Last Updated On: March 27th, 2017] [Originally Added On: March 27th, 2017]