• the feed
    • Tech
    • Auto
    • Guides
    • Opinions
  • Reviews
    • READERS’ CHOICE
    • ALL REVIEWS
    • ━
    • SMARTPHONES
    • CARS
    • HEADPHONES
    • ACCESSORIES
    • LAPTOPS
    • TABLETS
    • WEARABLES
    • SPEAKERS
    • APPS
  • screen time
    • TV & MOVIE REVIEWS
    • SPOTLIGHT
  • GAMING
    • GAMING NEWS
    • GAME REVIEWS
  • quick bytes
Reading: A Decryption Tool For The WannaCry Ransomware is Available
Font ResizerAa
Font ResizerAa
  • menu
  • SEARCH
  • the feed
    • TECH
    • AUTOMOTIVE
    • GUIDES
    • OPINIONS
  • REVIEWS
    • READERS’ CHOICE
    • ALL REVIEWS
    • ━
    • SMARTPHONES
    • CARS
    • HEADPHONES
    • ACCESSORIES
    • LAPTOPS
    • TABLETS
    • WEARABLES
    • SPEAKERS
    • APPS
  • screen time
    • TV & MOVIE REVIEWS
    • SPOTLIGHT
  • GAMING
    • GAMING NEWS
    • GAME REVIEWS
  • quick bytes
Follow US

A Decryption Tool For The WannaCry Ransomware is Available

GEEK DESK
GEEK DESK
May 20, 2017
WannaCry Ransomware Attack Countries
A map of countries that have so far been affected by WannaCry

Last week a form of Ransomware swept the globe shutting down systems around the world including the British National Health Service (NHS) as well as numerous factories by automobile manufacturers. Its name is WannaCry, a malicious type of software that required victims to transfer an amount of money (initially $300 in Bitcoin) to the executors of the hack.

However, if you’ve fallen victim to the WannaCry ransomware you might be in some luck as a method of decrypting all of your files has been found. The method is applicable to computers that run Windows XP. It was discovered by a French security researcher from Quarkslab, Adrien Guinet. WannaKey, as the fix is aptly called, works by trying to retrieve the two prime numbers needed to get the encryption keys needed. These prime numbers are not deleted from memory from memory before freeing the associated memory. Unfortunately, it only works on computers running Windows XP.

According to Guinet, WannaKey retrieves the prime numbers needed by “searching for them in the wcry.exe process. This is the process that generates the RSA private key. The main issue is that the CryptDestroyKey and CryptReleaseContext does not erase the prime numbers from memory before freeing the associated memory.”

However, what’s frustrating is that even though a fix has been found, it only applies to devices running Windows XP. Furthermore, there’s an even narrower range of devices that can have the fix applied and its devices that have not been rebooted. That’s right, the common phrase “have you tried turning it off and then on again” may have actually ruined the one chance people currently have for decrypting their files.

As a result, the number of computers that have been affected and which can apply this fix may be in the minority.

Source: The Hacker News

What do you think?
Happy0
Sad0
Love0
Surprise0
Cry0
Angry0
Dead0
Spotify may finally let users cap how much storage its cache uses
Statik PowerStand makes your boring USB-C cable surprisingly useful
Motorola Signature 27 Extreme packs a ridiculous 200MP zoom camera
Huawei Watch GT 7 hits UAE with massive 21-day battery
Honor of Kings just turned its MOBA into battle royale
Adidas drops massive 67-piece Pokémon collection for its 30th anniversary
Follow US
Caffeine. Chaos. Content.
© Absolute Geeks Media FZE LLC 2014–2026.
Proudly made in Dubai, UAE ❤️
Contact · About · Editorial Policy · Privacy Policy
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?