{"id":31506,"date":"2019-04-03T03:17:40","date_gmt":"2019-04-03T07:17:40","guid":{"rendered":"http:\/\/blog.cybercon1.com\/?p=31506"},"modified":"2019-04-03T03:17:40","modified_gmt":"2019-04-03T07:17:40","slug":"a-guide-to-lockergoga-the-ransomware-crippling-industrial-firms","status":"publish","type":"post","link":"https:\/\/blog.cyberconservices.com\/index.php\/2019\/04\/03\/a-guide-to-lockergoga-the-ransomware-crippling-industrial-firms\/","title":{"rendered":"A Guide to LockerGoga, the Ransomware Crippling Industrial Firms"},"content":{"rendered":"\n<p><a href=\"https:\/\/www.wired.com\/2017\/05\/hacker-lexicon-guide-ransomware-scary-hack-thats-rise\/\">Ransomware<\/a>\u00a0has long been the scourge of the cybersecurity industry. When that extortionate hacking goes beyond encrypting files to fully paralyze computers across a company, it represents not just a mere shakedown, but a crippling disruption. Now a nasty new breed of ransomware known as LockerGoga is inflicting that paralysis on industrial firms whose computers control actual physical equipment, and it&#8217;s enough to deeply spook security researchers.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"alignright is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/www.cyberconservices.com\/wp-content\/uploads\/2019\/03\/steel-mill-616536__340.jpg\" alt=\"\" class=\"wp-image-31507\" width=\"344\" height=\"220\"\/><\/figure><\/div>\n\n\n\n<p>Since the beginning of the year, LockerGoga has hit a series of industrial and manufacturing firms with apparently catastrophic consequences: After an initial infection at the French engineering consulting firm Altran, LockerGoga last week\u00a0<a rel=\"noreferrer noopener\" href=\"https:\/\/arstechnica.com\/information-technology\/2019\/03\/severe-ransomware-attack-cripples-big-aluminum-producer\/\" target=\"_blank\">slammed Norwegian aluminum manufacturer Norsk Hydro<\/a>, forcing some of the company&#8217;s aluminum plants to switch to manual operations. Two more manufacturing companies, Hexion and Momentive, have been hit by LockerGoga\u2014in Momentive&#8217;s case leading to a &#8220;global IT outage,&#8221; according to a\u00a0<a rel=\"noreferrer noopener\" href=\"https:\/\/motherboard.vice.com\/en_us\/article\/8xyj7g\/ransomware-forces-two-chemical-companies-to-order-hundreds-of-new-computers\" target=\"_blank\">report Friday by Motherboard<\/a>. And incident responders at security firm FireEye tell WIRED they&#8217;ve dealt with multiple LockerGoga attacks on other industrial and manufacturing targets they declined to name, which would put the total number of victims in that sector at five or more.<\/p>\n\n\n\n<p>Security researchers also say that the most recently discovered strain of the malware is particularly disruptive, shutting down computers entirely, locking out their users, and rendering it difficult for victims to even pay the ransom. The result is a dangerous combination: reckless hacking that targets a set of companies that are highly incentivized to quickly pay the ransom, but also ones where a cyberattack could wind up physically harming equipment or even a factory&#8217;s staff.  <a href=\"https:\/\/www.google.com\/url?rct=j&amp;sa=t&amp;url=https:\/\/www.wired.com\/story\/lockergoga-ransomware-crippling-industrial-firms\/&amp;ct=ga&amp;cd=CAEYACoTMTc4ODYzMDU1MzM5NzI4ODkzODIaZjk1ZDdkNTc3NTkyZGUyMTpjb206ZW46VVM&amp;usg=AFQjCNEAOHISVkOJNbEoguv0waL3Kjvmkw\">Read more:<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ransomware\u00a0has long been the scourge of the cybersecurity industry. When that extortionate hacking goes beyond encrypting files to fully paralyze computers across a company, it represents not just a mere shakedown, but a crippling disruption. Now a nasty new breed <span class=\"excerpt-dots\">&hellip;<\/span> <a class=\"more-link\" href=\"https:\/\/blog.cyberconservices.com\/index.php\/2019\/04\/03\/a-guide-to-lockergoga-the-ransomware-crippling-industrial-firms\/\"><span class=\"more-msg\">Continue reading &rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_exactmetrics_skip_tracking":false,"_exactmetrics_sitenote_active":false,"_exactmetrics_sitenote_note":"","_exactmetrics_sitenote_category":0,"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[636],"tags":[637],"class_list":["post-31506","post","type-post","status-publish","format-standard","hentry","category-ransomware","tag-ransomware"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack-related-posts":[],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts\/31506","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/comments?post=31506"}],"version-history":[{"count":0,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts\/31506\/revisions"}],"wp:attachment":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/media?parent=31506"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/categories?post=31506"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/tags?post=31506"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}