Petya Mainly A Threat To Unprepared And Unwilling Organizations

When the Petya malware arrived in Europe this week, it seemed at least at first like a repeat the WannaCry cyber-attacks in May.

The victims were running Microsoft Windows computers that had not been patched to close a vulnerability in the SMBv1 protocol.

Microsoft issued the patch in mid-March, and since that time the company has released security updates for Windows versions stretching back to XP. Yet those computers remained vulnerable.

Petya ransomware

When the Petya malware emerged this week companies in Europe were the hardest hit, although some U.S. companies were affected as well. If there is any good news, it’s that the rate of infection seems slower than last time and the malware doesn’t seem to be as efficient at attacking across networks as WannaCry was.

In addition, the lower rate of infection may be the result of organizations actually applying Microsoft’s patches on a timely basis.

But the obvious question has to be, why aren’t some companies bothering to fix their Windows operating systems, even in the face of an obvious threat? The excuses are many. Some IT managers worry that a patch may somehow break something in their IT environment.

Others don’t have the resources to do their jobs. Some organizations don’t have an actual IT staff, while in others work with shadow IT environments in which nobody really knows what computers are systems they are running and which need maintenance.

Originally published on eWeek

Continues on page 2…

Page: 1 2

Wayne Rash

Wayne Rash is senior correspondent for eWEEK and a writer with 30 years of experience. His career includes IT work for the US Air Force.

Recent Posts

EV Maker Lucid Buys Plant From Bankrupt Nikola

Luxury electric vehicle maker Lucid Motors buys Arizona factory, former headquarters of bankrupt Nikola, offers…

13 hours ago

Amazon Chief Jassy Defends AI Spending

Amazon chief executive Andy Jassy defends billions in spending on AI infrastructure, saying 'aggressive' expenditure…

13 hours ago

US Regulator Rejects Appeal Over Amazon Nuclear Deal

US energy regulator rejects request for rehearing after it rejected plan for Amazon to buy…

14 hours ago

Ireland Data Regulator Opens X Probe Over Grok AI Training

Ireland data protection commission investigates X, formerly Twitter, over use of EU users' data for…

14 hours ago

China Exempts Outsourced Chips From Tariffs

China will not levy duties on imports of US-branded chips unless they are actually manufactured…

15 hours ago

Tesla Stops Taking China Orders For US-Made Vehicles

Tesla stops taking orders in China for US-made Model S and Model X electric vehicles…

15 hours ago