Hackers Win 1.1 Million From San Berdo Sheriff...

Status
Not open for further replies.

K7MFC

WRAA720
Premium Subscriber
Joined
Nov 18, 2017
Messages
882
Reaction score
890
Location
Phx, AZ
Wow! Just... Wow! Rather than just plug the leaky hole and restore from backup, they chose to pay up.
Is the only reason to pay out for ransomware because you don’t have any backups? 😬
 

ProScan

Software Provider
Premium Subscriber
Joined
Jul 2, 2006
Messages
8,254
Reaction score
4,618
Location
Ontario, Calif.
Probably the hack was planted 6 months or more ago, got into the backups, and they were corrupted as well.
Could very well. It could have been a script hidden somewhere on the server. How was the hacker/s able to penetrate the login credentials in the 1st place? My guess is a 3rd party vendor.

I would think that the IT dept would have a Information security group that suppose to monitor for new files and files rewritten on the servers.
 
Last edited:

Ensnared

Member
Premium Subscriber
Joined
Jan 24, 2004
Messages
4,695
Reaction score
732
Location
Waco, Texas
One question. Does "Randy" have a different meaning in US English? A randy group of hoodlums would mean something very different in the UK, and is making me imagine a lot of weird things?
Interesting. I was under the impression "randy" meant being sexually aroused.

Here is a weird term you may not have in the UK.

In Texas, we have a phrase, "stump-broke." This is for those with zoophilic tendencies.

I was very pleased when I read about this event. Hackers are finding holes in a lot of places.
 

Ensnared

Member
Premium Subscriber
Joined
Jan 24, 2004
Messages
4,695
Reaction score
732
Location
Waco, Texas
We're still running an old Zetron 4048 console system. Consoles are stuck at Windows XP. The IT guys have an absolute cow when they see it, but it is still air gapped from everything else.

How long ago was XP put on the shelf? I am pretty sure they are no longer offering updates, LOL.
 

mmckenna

I ♥ Ø
Joined
Jul 27, 2005
Messages
27,563
Reaction score
33,635
Location
United States
How long ago was XP put on the shelf? I am pretty sure they are no longer offering updates, LOL.

A few years back.
But it's so prevalent as a stable package (stable being relative in Windows), and there's a lot of legacy equipment running it. I think the US Military still has a lot of it in use, as do a lot of older automation systems.
Due to the way PSAP consoles work and how they integrate with everything else, it's not something where you can just update to the latest version of Windows 10 and call it good. There's a lot more to it than that.
Also, replacing a radio console system is not like you go onto Amazon and have it delivered tomorrow. The purchasing processes are painfully slow.
 

K7MFC

WRAA720
Premium Subscriber
Joined
Nov 18, 2017
Messages
882
Reaction score
890
Location
Phx, AZ
Microsoft will support anything if you pay them; running XP in modern day production systems isn’t as outlandish or risky as some may think (if done correctly). I worked at a company that paid IBM big bucks to keep old mainframes up and running many years after they should have been retired 🤣
 

ke6gcv

Member
Joined
Feb 13, 2006
Messages
261
Reaction score
39
Location
Somewhere, Northern CA
Is the only reason to pay out for ransomware because you don’t have any backups? 😬
I'm sure they do have backups. And now I'm wondering if those got corrupted in the hack as well... ? Inquiring minds... Can you imagine the chaos if that were also true? I sure don't want to!

Will have to keep a watch on the news. See if there are any additional updates.
 

RFI-EMI-GUY

Member
Joined
Dec 22, 2013
Messages
7,882
Reaction score
5,096
Microsoft will support anything if you pay them; running XP in modern day production systems isn’t as outlandish or risky as some may think (if done correctly). I worked at a company that paid IBM big bucks to keep old mainframes up and running many years after they should have been retired 🤣
I kept Win XP operating until about 18 months ago when I could no longer find a browser compatible with the outside world. Win XP had such a nice GUI and the old Office 2003 was smooth. It was a hard decision.
 

hanlonmi06

Member
Premium Subscriber
Joined
Jul 16, 2009
Messages
233
Reaction score
77
Location
Pittsfield Twp, Michigan
The parent company of where I currently work got hacked. Multi-billion dollar global organization with a woefully understaffed IT department. What little I could glean from a the IT folks I regularly deal with was that the hackers were in the system for quite sometime. Serendipitously an consultant firm was hired to do an audit, found evidence of the hackers, they knew they were being found and pulled the trigger. The comment made to me was "...and they got the back-up's too". I didn't ask a whole lot of questions as it still seemed fresh and kind of a hot topic, but I wondered what the heck that meant. What's the point of having backups in such a manner as they could be "hacked" as well...I guess archaic thinking in terms of backups being there in the event of a system crash, not as a commodity to be used as bargaining chips at the ransom pay day table. Anyhow, they paid...they certainly had the cash to do it. I had also heard of a story where a "consultant" charged (winging numbers here...) 7 million for their services and paid the hackers the 5 million they wanted, just so the company could say they didn't pay the hackers.
 

Peter_SD911

Scan Sexy
Premium Subscriber
Joined
Jan 16, 2010
Messages
194
Reaction score
177
Location
Surfridge, CA.
The Sheriff's Dept had cyber-insurance "they" didn't pay the ransom.
Actually YOU paid for the ransom, because you people in the largest county paid the insurance premium.
YOU will also pay to have the system hardened, and you will also pay the new INFLATED premium cost for future coverage.

Too bad the crooks didn't publish the master encryption keys for the radios.

Scan Sexy...but guard your ones and zeros.

(avatar...Moto-fanboy and Greta)
 

K7MFC

WRAA720
Premium Subscriber
Joined
Nov 18, 2017
Messages
882
Reaction score
890
Location
Phx, AZ
The Sheriff's Dept had cyber-insurance "they" didn't pay the ransom.

Yeah..the taxpayer did. This stuff is preventable and incompetence caused it. Paying on a ransomware attack is an admission IT management was a disaster.
 

f40ph

CC actual
Feed Provider
Joined
Dec 15, 2009
Messages
733
Reaction score
210
Location
Largest County, USA
All true. My point is you won't see a line item reduction in the Sheriff's budget of 1.1M to account for the payment.
 

wa8pyr

Retired and playing radio whenever I want.
Staff member
Lead Database Admin
Joined
Sep 22, 2002
Messages
7,667
Reaction score
4,237
Location
Ohio
We're still running an old Zetron 4048 console system. Consoles are stuck at Windows XP. The IT guys have an absolute cow when they see it, but it is still air gapped from everything else.

Consoles here in our EOC are the ones imported from the SO when they upgraded to Zetron MAX. Zetron 4020 common control, and a bunch of WinXP computers running IntegratorRD. It's all totally off the network (and internet) specifically for that reason.

The zombies will be at the door, but your comms will still be working.

And I've got it set up that way for that very reason....
 

brcoz

Member
Premium Subscriber
Joined
Feb 23, 2007
Messages
150
Reaction score
28
Location
Florence, AZ
Glad I never had to deal with that type of attack. I remember having to join a conference call because some ID10T error user clicked on a link in an email and it was infecting PCs on the network in another state. This was at a Healthcare company I used to work at. I supported one of a few hundred Hospitals. Glad to be retired.
 
Status
Not open for further replies.
Top