Locky ransomware got hacked

Locky ransomware has raising destruction all over the world for past two months. Security researchers has already rated Locky as one of the most dangerous ransomware right now – researchers has failed to decrypt the files of Locky ransomware. However there is security holes in Locky ransomware also, which a White Hat hacker exploited according to Avira a German security firm.

Locky spread through email spam campaigns and encrypts the data of your computer once you download the infected attached file. Once the user clicks on attached file after downloading it; the Locky ransom the data and extort money from the user. There are many small and big business fallen victim to this deadly ransomware.

According to the German Cyber Security firm; an anonymous White Hat hacker was able to access and infiltrate a Locky C&C server and replace the ransomware payload with what it described as a dummy file which when downloaded on a victim’s computer displays the message “Stupid Locky” rather than encrypting its contents.

Sven Carlsen an employee of Avira said; “I don’t believe that cyber criminals themselves would have initiated this operation because of the potential damage to their reputation and income stream,” He further added that; “He doesn’t think that Locky Ransomware is dead after this security breach of their servers. The infiltration of a Locky C&C server does suggest that the operation is perhaps not as airtight as its operators might want to think”.

This isn’t the first time a White Hat hacker has hacked a ransomware or malware server. Dridex a well known banking Trojan has been previously suffered similar hacking attack. Hacking a Trojan or Ransomware is a unique thing because usually the skills of cyber criminals are much better than any White Hat or Security researcher. But, despite all those skills we are witnessing these cyber criminals out smarted by White Hat hackers time after time.

Details of White Hat hacker who hacked into Locky server are a big secret. The hack of Locky ransomware has showed the cyber criminals that, despite all their security measures they are vulnerable just like any organization in this era of security. 
Locky ransomware uses different servers established world wide to spread the malware; so hacking into a single server will not entirely impact the Locky ransomware threat. This Ransomware is spreading all over the world (specially in first world country) at an alarming speed. Every day the number of Locky ransomware victims are increasing and once you are infected user will consider paying those criminals what they demand to get his data back. 
Only way to secure yourself from this deadly ransomware is to take steps towards your security. There are many solutions available in the market; which can help you in securing your data from ransomware attack. 
Ehacking Staff
With more than 50 global partners, we are proud to count the world’s leading cybersecurity training provider. EH Academy is the brainchild of Ehacking, which has been involved in the field of training since the past Five years and continues to help in creating professional IT experts.

Most Popular

What Makes ICS/OT Infrastructure Vulnerable?

Infrastructure security for operational technologies (OT) and industrial control systems (ICS) varies from IT security in several ways, with the inverse confidentiality, integrity, and...

Everything You Must Know About IT/OT Convergence

What is an Operational Technology (OT)? Operational technology (OT) is a technology that primarily monitors and controls physical operations. It can automate and control machines,...

Understand the OT Security and Its Importance

This article discusses OT security and why it is essential for protecting industrial systems from cyberattacks. We will also discuss common control objectives that can...

What is Deepfake, and how does it Affect Cybersecurity?

Producing deepfake is easy. It is hard to detect. They operate with a description of reality rather than reality itself (e.g., a video). Any...