QNAP advises users to disconnect NAS from internet to avoid DeadBolt ransomware ransomware
Typically, NAS is preferred for local storage via LAN. However, many users knowingly or unknowingly allow remote NAS access. New ransomware called DeadBolt is actively scanning to find these internet-connected NAS systems. If a NAS has an internet connection and is not secured, the ransomware will encrypt the data on them.
The DeadBolt ransomware isn't complicated at all. However, NAS systems that are not up-to-date or properly configured are easy targets.
Once infiltrated, the ransomware sends a notification to the victim that their data has been encrypted. It is not clear how DeadBolt sends the notification. Most likely the guys behind this ransomware left a written note on one of the compromised NAS drives.
QNAP side confirmed that DeadBolt ransomware demands ransom in Bitcoin.
The company asks users to pay attention to the message: "The System Administration service can be directly accessible from an external IP address via the following protocols: HTTP" on the dashboard.
If this message appears, it means that your NAS is exposed to the internet. QNAP recommends that all existing NAS users disconnect their NAS from the internet. This will block NAS access over the internet but local access will still be maintained. Currently, QNAP's NAS systems are all running the QTS operating system.
To ensure even more safety, QNAP also recommends that users disable all port forwarding on the main router that the NAS connects to and also disable the UPnP function completely.
If you feel the above steps are a bit drastic, you should at least update your NAS operating system regularly and double-check authentication and usage policies.
You should read it
- Ransomware can encrypt cloud data
- General guidelines for decoding ransomware
- What is Ransomware Task Force (RTF)?
- [Infographic] 7 effective ways to protect businesses from Ransomware
- How to decode ransomware InsaneCrypt (Everbe 1.0)
- Why is Ransomware the perfect hack?
- Learn about Ransomware: 6 ransomware on computers
- Detecting two unusual versions of ransomware, shows that the world of ransomware has become diversified
May be interested
- Warning: Quantum Ransomware is being rapidly deployed in lightning attacksransomware (ransomware) is probably not a new concept for most computer users. however, quantum ransomware is a term not everyone has heard of.
- List of the 3 most dangerous and scary Ransomware viruseswhile security solutions to protect us from threats, hackers are increasingly improving, while malicious programs (malware) are also becoming more and more 'cunning'. and one of the recent threats is how to extort money through ransomware.
- Turn on / off the computer disconnect feature from the network in Windows 10starting with windows 10 build 17763.404, microsoft added the enable windows to soft-disconnect a computer from a network setting. this guide will show you how to disable / disconnect the computer from the network in windows 10.
- There is a tool to decrypt the ransomware that specializes in attacking businessesthis new ransomware is still in development.
- How to enable ransomware restrictions on Windowswindows has built-in ransomware mitigation features, and here's how to enable them to avoid becoming a victim.
- Ransomware can encrypt cloud dataransomware is as small as a grain of sand, they are everywhere around us. and they can encrypt hard drive attacks but also attack other system drives, and cloud drives don't get out of sight.
- How to enable Ransomware Protection on Windowsransomware protection is a useful feature included with windows 11 to help secure users' devices against ransomware attacks.
- General guidelines for decoding ransomwarein this guide, tipsmake.com will try to help unfortunate readers infected with ransomware and encrypted files on the computer.
- What is Ransomware Task Force (RTF)?ransomware has become one of the top security threats in the past three years. the first ransomware strain and one of the worst nightmares in the history of global cybersecurity - wannacry - was discovered in may 2017.
- If you don't want to be a victim of Ransomware, read this articleno matter what platform you are using, your computer, tablet or smartphone, remember to always update the updates available to upgrade your device version to ensure safety.