SIGforum
Garmin Ransomware Attack

This topic can be found at:
https://sigforum.com/eve/forums/a/tpc/f/320601935/m/5980037274

July 25, 2020, 11:00 AM
NOCkid
Garmin Ransomware Attack
Haven't been able to access Garmin Express for a couple days, guess this is why:

https://www.forbes.com/sites/b...outage/#1110e8283164
July 25, 2020, 11:05 AM
Balzé Halzé
Same with my Garmin Connect for my Garmin 520 Edge. Said they were down for maintenance. Guess it's a bit more complicated than that.


~Alan

Acta Non Verba
NRA Life Member (Patron)
God, Family, Guns, Country

Men will fight and die to protect women... because women protect everything else. ~Andrew Klavan

July 25, 2020, 01:18 PM
Tn226
What’s really irksome is that security firms and government agencies know exactly Who these a-holes are.

The Russian cybercrime group known as Evil Corp has added a new ransomware to its arsenal called WastedLocker. This ransomware is used in targeted attacks against the enterprise.

https://www.bleepingcomputer.c...ake-program-updates/

The U.S. Department of Justice (DoJ) charged Russian citizens Maksim V. Yakubets and Igor Turashev for deploying the Dridex malware (aka Bugat and Cridex), and for their involvement in international bank fraud and computer hacking schemes.

The phrase “nuke’em from orbit” comes to mind
July 25, 2020, 02:01 PM
IntrepidTraveler
quote:
Originally posted by Tn226:
What’s really irksome is that security firms and government agencies know exactly Who these a-holes are......


Apparently so does the media:

quote:
However, they did manage to compromise devices used by employees of over 30 major US private firms using fake software update alerts displayed by the malicious SocGholish JavaScript-based framework delivered through dozens of hacked U.S. newspaper websites.

(From the bottom of THIS ARTICLE) (BleepingComputer)


Interestingly, the article doesn't say WHICH newspaper websites.




Thus the metric system did not really catch on in the States, unless you count the increasing popularity of the nine-millimeter bullet.
- Dave Barry

"Never go through life saying 'I should have'..." - quote from the 9/11 Boatlift Story (thanks, sdy for posting it)
July 25, 2020, 02:07 PM
bigwagon
It's long been said that Garmin makes great hardware, but they suck at software, and this just proves it.
July 25, 2020, 02:23 PM
FlyingScot
This is awful, and I have to hope that governments are getting aggressive in going after these hackers.

There are steps that can be taken to minimize the risk, as well as ensure rapid recovery “when” this happens. Software security is a constantly escalating war of new attacks, counters, and then new attacks that circumvent the countermeasures.

Many companies have learned it is a matter of “when” not “if”, so having recovery options in place as well as the right architectures to minimize impact + security software is critical. Even in my own home and families devices, over the last few years we have gradually increased the security, backup/recovery levels. keeping our data out of the hackers hands...well has happened to almost everyone. So monitor, change passwords and join the “game”.

I really do think going on the offensive with our Government is critical - but that is also a slippery slope. Who’s to say it is not already happening?





“Forigive your enemy, but remember the bastard’s name.”

-Scottish proverb
July 25, 2020, 02:41 PM
Horn
Is this old information?
I just checked my Garmin and all's well.
PoliViejo
July 25, 2020, 02:51 PM
Balzé Halzé
quote:
Originally posted by Horn:
Is this old information?
I just checked my Garmin and all's well.
PoliViejo


This is in regards to online support accounts like Garmin Connect which my Garmin Edge syncs to after every ride. My device works perfectly fine, but none of my past rides' data that was uploaded to Connect is accessible anymore.


~Alan

Acta Non Verba
NRA Life Member (Patron)
God, Family, Guns, Country

Men will fight and die to protect women... because women protect everything else. ~Andrew Klavan

July 25, 2020, 03:09 PM
bigwagon
It doesn't affect your hardware device, and if you use a different online platform to upload and analyze your data like Strava, Runkeeper, etc., it's a non-issue. It only affects Garmin Connect users. I have an account there, but I primarily use Strava.

https://connect.garmin.com/modern
July 25, 2020, 05:56 PM
creslin
hah... had a case for them come across my desk yesterday at work.
they wanted my help recovering from the ransomware.





This is where my signature goes.
July 25, 2020, 08:46 PM
ridja75
quote:
Originally posted by bigwagon:
It doesn't affect your hardware device, and if you use a different online platform to upload and analyze your data like Strava, Runkeeper, etc., it's a non-issue. It only affects Garmin Connect users. I have an account there, but I primarily use Strava.

https://connect.garmin.com/modern


Strava retrieves your information from Garmin Connect... To post directly to Strava you need to track your activity using Strava's (underwhelming, inaccurate, battery eating) recording within the app.
July 25, 2020, 10:39 PM
bigwagon
quote:
Originally posted by ridja75:
quote:
Originally posted by bigwagon:
It doesn't affect your hardware device, and if you use a different online platform to upload and analyze your data like Strava, Runkeeper, etc., it's a non-issue. It only affects Garmin Connect users. I have an account there, but I primarily use Strava.

https://connect.garmin.com/modern


To post directly to Strava you need to track your activity using Strava's (underwhelming, inaccurate, battery eating) recording within the app.

That's incorrect. You can manually upload to Strava directly from any Garmin device with a mini USB connection, which is how I logged most of the 20,000 miles I've ridden on my road bike.
July 26, 2020, 06:01 AM
ridja75
quote:
Originally posted by bigwagon:
quote:
Originally posted by ridja75:
quote:
Originally posted by bigwagon:
It doesn't affect your hardware device, and if you use a different online platform to upload and analyze your data like Strava, Runkeeper, etc., it's a non-issue. It only affects Garmin Connect users. I have an account there, but I primarily use Strava.

https://connect.garmin.com/modern


To post directly to Strava you need to track your activity using Strava's (underwhelming, inaccurate, battery eating) recording within the app.

That's incorrect. You can manually upload to Strava directly from any Garmin device with a mini USB connection, which is how I logged most of the 20,000 miles I've ridden on my road bike.


You're absolutely correct, I didn't read your post as such... My apologies.

I've gotten so used to my rides loading up via Bluetooth that loading the GPX via USB was a long forgotten process. Now to figure out how to get my last 3 rides uploaded!
July 26, 2020, 07:14 AM
4MUL8R
The attack has rekindled my interest in an Apple Watch, with cellular capabilities. My wife and I may go to Verizon to get a couple for a couple.


-------
Trying to simplify my life...
July 26, 2020, 10:17 AM
bigwagon
quote:
Originally posted by ridja75:

I've gotten so used to my rides loading up via Bluetooth that loading the GPX via USB was a long forgotten process. Now to figure out how to get my last 3 rides uploaded!

A side benefit to manual upload is that the device also recharges through the mini USB connection when it's plugged into the computer. Saves me from having to remember to plug my Garmin 500 in and recharge it separately.