BleepingComputerVerified account

@BleepinComputer

Breaking technology news, security guides, and tutorials that help you get the most from your computer. DMs are open. Feel free to use it to send story tips.

New York
Joined June 2009

Tweets

You blocked @BleepinComputer

Are you sure you want to view these Tweets? Viewing Tweets won't unblock @BleepinComputer

  1. Sorry , this headline does tell the full story. Get back to tweaking your algorithms.

    BERJAYA
    Show this thread
    Undo
  2. Research firm does not believe WastedLocker was created by Evil Corp, so there is opposing research in this area.

    Show this thread
    Undo
  3. As WastedLocker is attributed to Evil Corp, who has been sanctioned by the US govt, this can become quite a sticky situation for Garmin.

    Show this thread
    Undo
  4. To confirm that this was a valid decryptor, BleepingComputer encrypted a virtual machine using the WastedLocker sample we discovered used in Garmin's attack. We were then able to use the decryptor to recover our files.

    Show this thread
    Undo
  5. Analysis of the WastedLocker ransomware shows its encryption algorithms to be secure, so it not possible to create a free decryptor. Based on the timestamp in the script, the ransom was likely paid and decryption received on July 24th or 25th.

    Show this thread
    Undo
  6. The embedded script clearly indicates that the package was created by the APAC division of Garmin's IT department.

    BERJAYA
    Show this thread
    Undo
  7. The decryptor was included in a workstation restoration package created by Garmin's IT department that decrypts a workstation and then installs a variety of security software.

    BERJAYA
    Show this thread
    Undo
  8. BleepingComputer has been able to obtain the decryptor received by Garmin after they likely paid the ransom to the WastedLocker operators.

    Show this thread
    Undo
  9. BREAKING: BleepingComputer has confirmed that Garmin received decryptor for their WastedLocker Ransomware attack.

    Show this thread
    Undo
  10. Undo
  11. Retweeted
    20 hours ago

    DMCA takedown to a tweet from 2016 December. The tweet says DON'T download "cracked" VPNs, then linking to VirusTotal for an example malware + a screenshot. Taken down w/ reason "This twitter post is providing link to download ExpressVPN software crack illegally"... 🤦‍♂️😫

    BERJAYA
    BERJAYA
    BERJAYA
    Show this thread
    Undo
  12. Undo
  13. Retweeted
    Undo
  14. Show this thread
    Undo
  15. Show this thread
    Undo
  16. Show this thread
    Undo
  17. Other crabs be like..

    Show this thread
    Undo
  18. Undo
  19. Show this thread
    Undo
  20. In February 2018, US authorities indicted 36 more defendants for alleged roles in the Infraud Organization, and apprehended 13 individuals in the United States and six other countries. Their roles are explained in a superseding indictment.

    Show this thread
    Undo

Loading seems to be taking a while.

Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.

    You may also like

    ·