{"id":10864,"date":"2016-09-07T06:37:12","date_gmt":"2016-09-07T12:37:12","guid":{"rendered":"http:\/\/al-ba.com\/wp2\/?p=10864"},"modified":"2016-09-07T10:10:18","modified_gmt":"2016-09-07T16:10:18","slug":"lessons-from-a-ransomware-attack","status":"publish","type":"post","link":"https:\/\/al-ba.com\/wp2\/lessons-from-a-ransomware-attack\/","title":{"rendered":"Lessons from a ransomware attack"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-10865\" src=\"http:\/\/al-ba.com\/wp2\/wp-content\/uploads\/2016\/09\/ransomware-money-or-data.jpg\" alt=\"ransomware-money-or-data\" width=\"300\" height=\"214\" srcset=\"https:\/\/al-ba.com\/wp2\/wp-content\/uploads\/2016\/09\/ransomware-money-or-data.jpg 300w, https:\/\/al-ba.com\/wp2\/wp-content\/uploads\/2016\/09\/ransomware-money-or-data-210x150.jpg 210w, https:\/\/al-ba.com\/wp2\/wp-content\/uploads\/2016\/09\/ransomware-money-or-data-150x107.jpg 150w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/>We received the following account of a\u00a0computer hack\u00a0on an Alabama radio station Tuesday\u00a0&#8230;<\/p>\n<p>At 3:45AM an Alabama broadcaster received an alarm that the computer running automation in their control room\u00a0had stopped.<\/p>\n<p>He was unable to\u00a0reboot it from home.\u00a0 When\u00a0he\u00a0arrived at the station\u00a0and rebooted the computer it came back up but would only play one file and stop again.<\/p>\n<p>After careful inspection of the system folders,\u00a0he discovered hundreds of our files had been replaced by a strange named file (.zepto).\u00a0 Later, his IT vendor told him it is similar to the &#8220;Encrypto Virus.&#8221;<\/p>\n<p>Almost two thousand files were destroyed or deleted from their system, including music, liners and over 900 ads.<\/p>\n<p>The hackers installed a\u00a0file entitled &#8220;Help.&#8221;\u00a0 Without opening the file, the broadcaster was able to inspect it enough to see that it was saying the computer had been taken hostage and would only be released for a fee.<\/p>\n<p>The broadcaster\u00a0contacted his\u00a0IT\u00a0vendor and about three hours later,\u00a0they had the computer back up and\u00a0operating normally without paying any ransom.<\/p>\n<p><strong>This hacking event didn&#8217;t prevent them from airing their normal programming because they had TWO backup systems that had all the ads, music, etc., they needed.\u00a0 They were able to replace all 2,000 files that had been destroyed.<\/strong><\/p>\n<p>The station has TWO firewalls and anti-virus software in place.\u00a0 Hackers went through two servers with separate IP addresses and different passwords to do this damage.\u00a0 Obviously, it can be done.<\/p>\n<p>The lesson here is to have BACKUPS to the BACKUPS!<\/p>\n<p>We appreciate the broadcaster alerting the ABA so we\u00a0may\u00a0pass along the warning.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We received the following account of a\u00a0computer hack\u00a0on an Alabama radio station Tuesday\u00a0&#8230; At 3:45AM an Alabama broadcaster received an alarm that the computer running automation in their control room\u00a0had stopped. He was unable to\u00a0reboot it from home.\u00a0 When\u00a0he\u00a0arrived at the station\u00a0and rebooted the computer it came back up but would only play one file &hellip; <a href=\"https:\/\/al-ba.com\/wp2\/lessons-from-a-ransomware-attack\/\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">Lessons from a ransomware attack<\/span> <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"ngg_post_thumbnail":0,"footnotes":""},"categories":[1],"tags":[],"class_list":["post-10864","post","type-post","status-publish","format-standard","hentry","category-dead"],"_links":{"self":[{"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/posts\/10864","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/comments?post=10864"}],"version-history":[{"count":2,"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/posts\/10864\/revisions"}],"predecessor-version":[{"id":10883,"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/posts\/10864\/revisions\/10883"}],"wp:attachment":[{"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/media?parent=10864"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/categories?post=10864"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/al-ba.com\/wp2\/wp-json\/wp\/v2\/tags?post=10864"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}