Waterloo Region Record

Cyberattac­k ebbs, but risk of more

200,000 victims in 150 countries still struggling to recover from WannaCry virus

- Jill Lawless and Danica Kirka

LONDON — The “ransomware” cyberattac­k that has hit companies and government­s around the world ebbed in intensity on Monday, though experts warned that new versions of the virus could emerge.

Thousands more infections were reported Monday, largely in Asia, which had been closed for business when the malware first struck Friday. The cases were more contained, however, than the systemic outbreak that last week paralyzed computers running factories, banks, government agencies and transport systems around the world.

Many of the 200,000 victims in more than 150 countries were still struggling to recover from the first attack of the so-called WannaCry virus.

Carmaker Renault said one of its French plants, which employs 3,500 people, wasn’t reopening Monday as a “preventive step.”

Britain’s National Health Service said about a fifth of NHS trusts — the regional bodies that run hospitals and clinics — were hit by the attack on Friday, leading to thousands of cancelled appointmen­ts and operations. Seven of the 47 affected trusts in England were still having IT problems that disrupted services Monday. Thirteen health bodies in Scotland that were hit were up and running Monday, Scottish First Minister Nicola Sturgeon said.

As cybersecur­ity firms worked around the clock to monitor the situation and install a software patch, new variants of the rapidly replicatin­g malware were discovered Sunday. One did not include the so-called kill switch that allowed researcher­s to interrupt the malware’s spread Friday by diverting it to a dead end on the Internet.

Ryan Kalember, senior vice-president at Proofpoint Inc., which helped stop its spread, said the version without a kill switch could spread. It was benign because it contained a flaw that prevented it from taking over computers and demanding ransom to unlock files but other more malicious ones will likely pop up.

“We haven’t fully dodged this bullet at all until we’re patched against the vulnerabil­ity itself,” Kalember said.

Lynne Owens, director-general of Britain’s National Crime Agency, said there was no indication of a second surge of the cyberattac­k, “But that doesn’t mean there won’t be one.”

Tim Stevens, a lecturer in global security at King’s College London, said the incident should be a wake-up call to both the public and private sectors to incorporat­e security into computer systems from the ground up, rather than as an afterthoug­ht.

“This thing cannot be brushed under the carpet,” he said. “It is so visible and so global. There is going to have to be change at levels where change can be made.”

On Monday, Chinese state media said 29,372 institutio­ns there had been infected along with hundreds of thousands of devices.

Newspapers in English

Newspapers from Canada