SIGforum
Garmin Ransomware Attack
July 25, 2020, 11:00 AM
NOCkidGarmin Ransomware Attack
Haven't been able to access Garmin Express for a couple days, guess this is why:
https://www.forbes.com/sites/b...outage/#1110e8283164July 25, 2020, 11:05 AM
Balzé HalzéSame with my Garmin Connect for my Garmin 520 Edge. Said they were down for maintenance. Guess it's a bit more complicated than that.
~Alan
Acta Non Verba
NRA Life Member (Patron)
God, Family, Guns, Country
Men will fight and die to protect women... because women protect everything else. ~Andrew Klavan
July 25, 2020, 01:18 PM
Tn226What’s really irksome is that security firms and government agencies know exactly Who these a-holes are.
The Russian cybercrime group known as Evil Corp has added a new ransomware to its arsenal called WastedLocker. This ransomware is used in targeted attacks against the enterprise.
https://www.bleepingcomputer.c...ake-program-updates/The U.S. Department of Justice (DoJ) charged Russian citizens Maksim V. Yakubets and Igor Turashev for deploying the Dridex malware (aka Bugat and Cridex), and for their involvement in international bank fraud and computer hacking schemes.
The phrase “nuke’em from orbit” comes to mind
July 25, 2020, 02:01 PM
IntrepidTravelerquote:
Originally posted by Tn226:
What’s really irksome is that security firms and government agencies know exactly Who these a-holes are......
Apparently so does the media:
quote:
However, they did manage to compromise devices used by employees of over 30 major US private firms using fake software update alerts displayed by the malicious SocGholish JavaScript-based framework delivered through
dozens of hacked U.S. newspaper websites.
(From the bottom of
THIS ARTICLE) (BleepingComputer)
Interestingly, the article doesn't say WHICH newspaper websites.
Thus the metric system did not really catch on in the States, unless you count the increasing popularity of the nine-millimeter bullet.
- Dave Barry
"Never go through life saying 'I should have'..." - quote from the 9/11 Boatlift Story (thanks, sdy for posting it) July 25, 2020, 02:07 PM
bigwagonIt's long been said that Garmin makes great hardware, but they suck at software, and this just proves it.
July 25, 2020, 02:23 PM
FlyingScotThis is awful, and I have to hope that governments are getting aggressive in going after these hackers.
There are steps that can be taken to minimize the risk, as well as ensure rapid recovery “when” this happens. Software security is a constantly escalating war of new attacks, counters, and then new attacks that circumvent the countermeasures.
Many companies have learned it is a matter of “when” not “if”, so having recovery options in place as well as the right architectures to minimize impact + security software is critical. Even in my own home and families devices, over the last few years we have gradually increased the security, backup/recovery levels. keeping our data out of the hackers hands...well has happened to almost everyone. So monitor, change passwords and join the “game”.
I really do think going on the offensive with our Government is critical - but that is also a slippery slope. Who’s to say it is not already happening?
“Forigive your enemy, but remember the bastard’s name.”
-Scottish proverb July 25, 2020, 02:41 PM
HornIs this old information?
I just checked my Garmin and all's well.
PoliViejo
July 25, 2020, 02:51 PM
Balzé Halzéquote:
Originally posted by Horn:
Is this old information?
I just checked my Garmin and all's well.
PoliViejo
This is in regards to online support accounts like Garmin Connect which my Garmin Edge syncs to after every ride. My device works perfectly fine, but none of my past rides' data that was uploaded to Connect is accessible anymore.
~Alan
Acta Non Verba
NRA Life Member (Patron)
God, Family, Guns, Country
Men will fight and die to protect women... because women protect everything else. ~Andrew Klavan
July 25, 2020, 03:09 PM
bigwagonIt doesn't affect your hardware device, and if you use a different online platform to upload and analyze your data like Strava, Runkeeper, etc., it's a non-issue. It only affects Garmin Connect users. I have an account there, but I primarily use Strava.
https://connect.garmin.com/modernJuly 25, 2020, 05:56 PM
creslinhah... had a case for them come across my desk yesterday at work.
they wanted my help recovering from the ransomware.
This is where my signature goes. July 25, 2020, 08:46 PM
ridja75quote:
Originally posted by bigwagon:
It doesn't affect your hardware device, and if you use a different online platform to upload and analyze your data like Strava, Runkeeper, etc., it's a non-issue. It only affects Garmin Connect users. I have an account there, but I primarily use Strava.
https://connect.garmin.com/modern
Strava retrieves your information from Garmin Connect... To post directly to Strava you need to track your activity using Strava's (underwhelming, inaccurate, battery eating) recording within the app.
July 25, 2020, 10:39 PM
bigwagonquote:
Originally posted by ridja75:
quote:
Originally posted by bigwagon:
It doesn't affect your hardware device, and if you use a different online platform to upload and analyze your data like Strava, Runkeeper, etc., it's a non-issue. It only affects Garmin Connect users. I have an account there, but I primarily use Strava.
https://connect.garmin.com/modern
To post directly to Strava you need to track your activity using Strava's (underwhelming, inaccurate, battery eating) recording within the app.
That's incorrect. You can manually upload to Strava directly from any Garmin device with a mini USB connection, which is how I logged most of the 20,000 miles I've ridden on my road bike.
July 26, 2020, 06:01 AM
ridja75quote:
Originally posted by bigwagon:
quote:
Originally posted by ridja75:
quote:
Originally posted by bigwagon:
It doesn't affect your hardware device, and if you use a different online platform to upload and analyze your data like Strava, Runkeeper, etc., it's a non-issue. It only affects Garmin Connect users. I have an account there, but I primarily use Strava.
https://connect.garmin.com/modern
To post directly to Strava you need to track your activity using Strava's (underwhelming, inaccurate, battery eating) recording within the app.
That's incorrect. You can manually upload to Strava directly from any Garmin device with a mini USB connection, which is how I logged most of the 20,000 miles I've ridden on my road bike.
You're absolutely correct, I didn't read your post as such... My apologies.
I've gotten so used to my rides loading up via Bluetooth that loading the GPX via USB was a long forgotten process. Now to figure out how to get my last 3 rides uploaded!
July 26, 2020, 07:14 AM
4MUL8RThe attack has rekindled my interest in an Apple Watch, with cellular capabilities. My wife and I may go to Verizon to get a couple for a couple.
-------
Trying to simplify my life...
July 26, 2020, 10:17 AM
bigwagonquote:
Originally posted by ridja75:
I've gotten so used to my rides loading up via Bluetooth that loading the GPX via USB was a long forgotten process. Now to figure out how to get my last 3 rides uploaded!
A side benefit to manual upload is that the device also recharges through the mini USB connection when it's plugged into the computer. Saves me from having to remember to plug my Garmin 500 in and recharge it separately.