TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

New Site Recovers Files Locked by Cryptolocker Ransomware

278 点作者 Albuca将近 11 年前

9 条评论

TeMPOraL将近 11 年前
&gt; <i>The free decryption service was made possible because Fox-IT was somehow able to recover the private keys...</i><p>Part of me is <i>so</i> hoping that they extracted those keys from the crooks using rubber-hose cryptanalysis. There are many types of Internet scams, some more evil than others, but this is one of the nastiest I ever heard of.
评论 #8147193 未加载
评论 #8148712 未加载
nospecinterests将近 11 年前
I know they are doing this as a community service... because, I assume they feel it is their honor and duty to do so... but why the hell do these guys NOT have at least a donate link&#x2F;button on their site!!!!! This is crazy. I know they are going to get awesome press which would have normally cost thousands but it never hurts to throw up a link and see how much your appreciated.
评论 #8147232 未加载
评论 #8146787 未加载
评论 #8147995 未加载
aresant将近 11 年前
Key from one of the comments &quot;It’s not too late if you still have the encrypted files, as I suspect many people do, hoping that someday a program like this would come along.&quot;<p>That is awesome. I&#x27;m sure a large percentage of people with irreplaceable files hung onto them, hope these guys get the exposure they deserve for the site.<p>#1 on HN is a good start.
评论 #8147904 未加载
mp4box将近 11 年前
Relevant <a href="http://blog.cassidiancybersecurity.com/post/2014/02/Bitcrypt-broken" rel="nofollow">http:&#x2F;&#x2F;blog.cassidiancybersecurity.com&#x2F;post&#x2F;2014&#x2F;02&#x2F;Bitcrypt...</a>
评论 #8146276 未加载
userbinator将近 11 年前
This is interesting because it&#x27;s one of those cases where <i>insecurity</i> can turn out to be a good thing - had those cybercriminals been more careful with their systems and made them more secure, this may have never been possible; but then again, the malware might not have been able to do this in the first place if the users&#x27; systems were more secure. How that could be accomplished is also worth considering - there is a school of thought that suggests taking control away from the users and disallowing them from doing anything that some entity (corporate or government) does not approve of on the assumption that users will always make mistakes (e.g. Trusted Computing), but this also means loss of freedom - as the saying goes, &quot;freedom is not worth having if it does not include the freedom to make mistakes.&quot;<p>However, if on the other hand we allow the users freedom, and thus assume that mistakes (such as being infected with malware like this) will happen, then it makes sense that a means of recovery should be available, which is not something that &quot;perfect&quot; security allows. To use an analogy, people who have lost their keys or had them stolen should still be able to gain access to their house. In the physical world, perfect security is nearly impossible, but with digital data, it&#x27;s not. Locking an item in a safe means it can still be retrieved if the key is lost by, in the worst possible circumstance, cutting open the safe, no matter how physically strong it is. Encrypting data with a long-enough key and sufficiently strong algorithm means it&#x27;s truly practically <i>destroyed</i> without the key. I think this point - that encryption can be really, really, <i>really</i> unrecoverably strong - needs to be made more aware as we continue to use more of it.<p>It would be particularly ironic if this recovery was made possible through exploiting the malware servers with something like Heartbleed...
评论 #8146393 未加载
RAB1138将近 11 年前
Relevant: Neil Stephenson&#x27;s Reamde takes the principle of Ransomware and plays it out to a fun conclusion. This site would have come in handy. Highly recommended <a href="http://www.audible.com/pd/Sci-Fi-Fantasy/Reamde-Audiobook/B005PMU12U?bp_ua=y" rel="nofollow">http:&#x2F;&#x2F;www.audible.com&#x2F;pd&#x2F;Sci-Fi-Fantasy&#x2F;Reamde-Audiobook&#x2F;B0...</a>
gordon_freeman将近 11 年前
I just hope as many people as possible who were affected by this lockdown and who have not paid ransom yet would know about this. As per the Krebs&#x27; article only 1.3% paid ransom so it&#x27;s not too late.
timsayshey将近 11 年前
Has anyone here looked at the software? It requires you to manually run a command from the command prompt for every file. Decryptolocker.exe --key &quot;&lt;key&gt;&quot; &lt;Lockedfile&gt;<p>If I have thousands of files, that will take forever, anyway to batch decrypt?
评论 #8147351 未加载
评论 #8147622 未加载
评论 #8170312 未加载
xxxmadraxxx将近 11 年前
Of course, the conspiracy theorist might say that it&#x27;s a bit <i>too</i> convenient to suppose the hitherto extremely clever criminals helpfully and stupidly copied their private keys across to computers controlled by &#x27;the feds&#x27;. A bit like those supposedly &#x27;random&#x27; police stopping of vehicles which turn out to be full of drugs or explosives.<p>Maybe public&#x2F;private key pairs aren&#x27;t as secure as we&#x27;ve been lead to believe.
评论 #8146451 未加载
评论 #8146757 未加载