Page 2 of 2 FirstFirst 12
Results 17 to 22 of 22

Thread: Do people just run anything they get emailed?

  1. #17
    The late but legendary peterb - Onward and Upward peterb's Avatar
    Join Date
    Aug 2005
    Location
    Looking down & checking on swearing
    Posts
    19,378
    Thanks
    2,892
    Thanked
    3,403 times in 2,693 posts

    Re: Do people just run anything they get emailed?

    Quote Originally Posted by Lucio View Post

    I'm interested in people's opinions on this thought, should someone get fired for being stupid enough to click on a virus attachment? After all, the cost of the action could run to tens of thousands of pounds in a small company, and for those improperly prepared, actually take the company out of business.
    It partly depends on the company policies in force. If there is a policy that says "never open attachments" and sayts that doing so is treated as gross mis-conduct, then a company might have a case. But I am not a lawyer!

    A defence might be that the company didn't take reasonable precautions to protect its systems.... but I am not a lawyer.

    There are products that will quarantine any e mail with any attachment that require positive confirmation that the e mail is expected and genuine before it is released, which puts the onus directly on the user to validate the sender before opening anything.
    (\__/)
    (='.'=)
    (")_(")

    Been helped or just 'Like' a post? Use the Thanks button!
    My broadband speed - 750 Meganibbles/minute

  2. #18
    Not a good person scaryjim's Avatar
    Join Date
    Jan 2009
    Location
    Gateshead
    Posts
    15,196
    Thanks
    1,231
    Thanked
    2,291 times in 1,874 posts
    • scaryjim's system
      • Motherboard:
      • Dell Inspiron
      • CPU:
      • Core i5 8250U
      • Memory:
      • 2x 4GB DDR4 2666
      • Storage:
      • 128GB M.2 SSD + 1TB HDD
      • Graphics card(s):
      • Radeon R5 230
      • PSU:
      • Battery/Dell brick
      • Case:
      • Dell Inspiron 5570
      • Operating System:
      • Windows 10
      • Monitor(s):
      • 15" 1080p laptop panel

    Re: Do people just run anything they get emailed?

    We've got this at work apparently - at least 6 instances. AFAIK ITS have managed to scope and restore all the affected files, but it's a bit worrying people will run pretty much anything they get emailed, even in a corporate environment. Particularly in a corporate environment in fact, because it'll hit network shares too - so you only need one person in a department to run it and potentially the entire department's key files get screwed.

    But given you have to transfer money to someone for the attackers to actually benefit from this, I'm amazed it's not easier to find and prosecute the perpetrators....

  3. #19
    Account closed at user request
    Join Date
    Aug 2003
    Location
    Elephant watch camp
    Posts
    2,150
    Thanks
    56
    Thanked
    115 times in 103 posts
    • wasabi's system
      • Motherboard:
      • MSI B85M-G43
      • CPU:
      • i3-4130
      • Memory:
      • 8 gig DDR3 Crucial Rendition 1333 - cheap!
      • Storage:
      • 128 gig Agility 3, 240GB Corsair Force 3
      • Graphics card(s):
      • Zotac GTX 750Ti
      • PSU:
      • Silver Power SP-S460FL
      • Case:
      • Lian Li T60 testbanch
      • Operating System:
      • Win7 64bit
      • Monitor(s):
      • First F301GD Live
      • Internet:
      • Virgin cable 100 meg

    Re: Do people just run anything they get emailed?

    Quote Originally Posted by scaryjim View Post
    worrying people will run pretty much anything they get emailed, even in a corporate environment. Particularly in a corporate environment in fact,
    People are more irresponsible in a work environment. Modern AV / anti-spam systems are almost too good. 10 years ago people were used to getting spam. Nowadays it rarely happens, so people instinctively trust what is in their inbox. Besides, in most places, the IT department are the kicktoys of everyone else, so if something goes wrong it is IT's fault and up to them to fix it.

  4. #20
    Banhammer in peace PeterB kalniel's Avatar
    Join Date
    Aug 2005
    Posts
    31,025
    Thanks
    1,871
    Thanked
    3,383 times in 2,720 posts
    • kalniel's system
      • Motherboard:
      • Gigabyte Z390 Aorus Ultra
      • CPU:
      • Intel i9 9900k
      • Memory:
      • 32GB DDR4 3200 CL16
      • Storage:
      • 1TB Samsung 970Evo+ NVMe
      • Graphics card(s):
      • nVidia GTX 1060 6GB
      • PSU:
      • Seasonic 600W
      • Case:
      • Cooler Master HAF 912
      • Operating System:
      • Win 10 Pro x64
      • Monitor(s):
      • Dell S2721DGF
      • Internet:
      • rubbish

    Re: Do people just run anything they get emailed?

    Quote Originally Posted by scaryjim View Post
    But given you have to transfer money to someone for the attackers to actually benefit from this, I'm amazed it's not easier to find and prosecute the perpetrators....
    If only they would so good as to place themselves under UK jurisdiction..

  5. #21
    Senior Member
    Join Date
    Jul 2009
    Location
    West Sussex
    Posts
    1,721
    Thanks
    197
    Thanked
    243 times in 223 posts
    • kompukare's system
      • Motherboard:
      • Asus P8Z77-V LX
      • CPU:
      • Intel i5-3570K
      • Memory:
      • 4 x 8GB DDR3
      • Storage:
      • Samsung 850 EVo 500GB | Corsair MP510 960GB | 2 x WD 4TB spinners
      • Graphics card(s):
      • Sappihre R7 260X 1GB (sic)
      • PSU:
      • Antec 650 Gold TruePower (Seasonic)
      • Case:
      • Aerocool DS 200 (silenced, 53.6 litres)l)
      • Operating System:
      • Windows 10-64
      • Monitor(s):
      • 2 x ViewSonic 27" 1440p

    Re: Do people just run anything they get emailed?

    Quote Originally Posted by scaryjim View Post
    But given you have to transfer money to someone for the attackers to actually benefit from this, I'm amazed it's not easier to find and prosecute the perpetrators....
    Well, they ransom is mostly Bitcoins which makes it rather hard to trace.

    As for holding individual users liable, not sure about that one. While they might be in breach of a policy, surely the individual could successfully argue that firstly the companies anti-virus wasn't fit for purpose and secondly that their backup policy was no good if it doesn't allow them to restore files back to a certain time/date.

    Seems some good group policies should be able to prevent the current CryptLocker from installing (restricting AppData/Roaming) but they culprits could easily change the location & filenames so that's just a catchup thing.

    Bleepingcomputer.com wrote a guide:

    http://www.bleepingcomputer.com/viru...re-information

    The most important point is surely that if you have encrypted files which are important, then paying the ransom is the safest bet. 2048-bit encryption is pretty much impossible to break and $300 is not that much compared to the alternatives.

    However, a policy for preventing the virus from encrypting files to which the user has write access is a lot harder and I haven't seen any usable suggestions yet.

  6. #22
    0iD
    0iD is offline
    M*I*A 0iD's Avatar
    Join Date
    Jul 2003
    Location
    Happy Llama Land
    Posts
    13,247
    Thanks
    1,435
    Thanked
    1,209 times in 757 posts
    • 0iD's system
      • Motherboard:
      • Leave my mother out of it!
      • CPU:
      • If I knew what it meant?
      • Memory:
      • Wah?
      • Storage:
      • Cupboards and drawers
      • Graphics card(s):
      • Slate & chalk
      • PSU:
      • meh
      • Case:
      • Suit or Brief?
      • Operating System:
      • Brain
      • Monitor(s):
      • I was 1 at skool
      • Internet:
      • 28k Dialup

    Re: Do people just run anything they get emailed?

    Anyone running an emailed executable and/or doesn't have some form of malware protection deserves a cattle prod to the sensitive bits.

    Repeatedly.
    [
    Quote Originally Posted by Blitzen
    When I say go, both walk in the opposite direction for 10 paces, draw handbags, then bitch-slap each other!

Page 2 of 2 FirstFirst 12

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •