Security News > 2021 > April > If you have a QNAP NAS, stop what you're doing right now and install latest updates. Do it before Qlocker gets you

If you have a QNAP NAS, stop what you're doing right now and install latest updates. Do it before Qlocker gets you
2021-04-22 21:57

QNAP has urged its customers to install and run its latest firmware and malware removal tools on their NAS boxes amid a surge in ransomware infections.

Two file-scrambling nasties, Qlocker and eCh0raix, are said to be tearing through vulnerable QNAP storage equipment, encrypting data and demanding ransoms to restore the information.

Install the latest software updates for the Multimedia Console, Media Streaming Add-on, and Hybrid Backup Sync apps on their QNAP NAS gear to close off vulnerabilities that can be exploited by ransomware to infect devices.

Install the latest Malware Remover tool from QNAP, and run a malware scan.

We'll assume for now that vulnerable devices are being found and attacked by miscreants scanning the internet for public-facing QNAP products - we've asked the manufacturer to comment on this.

The Qlocker plague this month, described as "Massive" by the malware trackers at Bleeping Computer, leaves victims with their files moved into encrypted and password-protected 7zip archives and a note demanding 0.01 Bitcoins for the necessary passphrases to unlock the data.


News URL

https://go.theregister.com/feed/www.theregister.com/2021/04/22/qnap_nas_ransomware_qlocker_ech0raix/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Qnap 93 15 113 112 32 272