{"id":11637,"date":"2014-08-03T12:06:11","date_gmt":"2014-08-03T19:06:11","guid":{"rendered":"http:\/\/37prime.wordpress.com\/?p=11637"},"modified":"2014-08-03T12:06:11","modified_gmt":"2014-08-03T19:06:11","slug":"synology-vulnerability-and-ransomware","status":"publish","type":"post","link":"https:\/\/37prime.com\/news\/2014\/08\/03\/synology-vulnerability-and-ransomware\/","title":{"rendered":"Synology Vulnerability and Ransomware"},"content":{"rendered":"<p>In the early Sunday morning of August 3, 2014,\u00a0<a href=\"https:\/\/twitter.com\/MikeEvangelist\/status\/495970097497128960\" target=\"_blank\">a tweet by Mike Evangelist<\/a>\u00a0was linked on\u00a0<a href=\"https:\/\/news.ycombinator.com\/item?id=8128521\" target=\"_blank\">Hacker News<\/a>.<\/p>\n<blockquote><p>Lovely. My\u00a0<a href=\"https:\/\/twitter.com\/Synology\" target=\"_blank\">@Synology<\/a>\u00a0NAS has been hacked by ransomware calling itself Synolocker. Not what I wanted to do today.\u00a0<a href=\"http:\/\/pic.twitter.com\/YJ1VLeKqfY\" target=\"_blank\">pic.twitter.com\/YJ1VLeKqfY<\/a><\/p><\/blockquote>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-14278\" src=\"http:\/\/37prime.com\/news\/wp-content\/uploads\/2014\/08\/Mike-Evangelist-Tweet-Synology-Synolocker.jpg\" alt=\"Mike Evangelist Tweet Synology Synolocker\" width=\"960\" height=\"480\" \/><\/p>\n<p>I was somewhat scared by this news as some users at\u00a0<a href=\"http:\/\/forum.synology.com\/enu\/viewtopic.php?f=3&amp;t=88716\" target=\"_blank\">Synology forums<\/a>\u00a0reported\u00a0that they were also victims of \u00a0SynoLocker which is a\u00a0<a href=\"https:\/\/en.wikipedia.org\/wiki\/CryptoLocker\" target=\"_blank\">CryptoLocker malware<\/a>\u00a0which specifically targets Synology NAS. I am managing numbers of Synology NAS for a few small offices and homes. Granted that none of them are directly connected to the Internet, but I have to make sure none of them would be hacked and crypto-locked.<\/p>\n<p>Make sure your Synology NAS is running the latest DSM Operating System.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-14279\" src=\"http:\/\/37prime.com\/news\/wp-content\/uploads\/2014\/08\/Synology-Software-Update.jpg\" alt=\"Synology Software Update\" width=\"1920\" height=\"1080\" \/><\/p>\n<p>For now, disable the QuickConnect service.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-14280\" src=\"http:\/\/37prime.com\/news\/wp-content\/uploads\/2014\/08\/Synology-Disable-QuickConnect.jpg\" alt=\"Synology Disable QuickConnect\" width=\"1920\" height=\"1080\" \/><\/p>\n<p>Disable all port-forwarding if your Synology DiskStation is behind a NAT Firewall. This is a definite inconvenience; better to be safe than sorry.<\/p>\n<p>More importantly, back-up the content of your Synology NAS. Should anything happen, you still have your data.\u00a0<a href=\"http:\/\/vondur.com\/2014\/08\/03\/synology-vulnerability\/\" target=\"_blank\">My colleague<\/a>\u00a0has a great advice on backing up:<\/p>\n<blockquote><p><span style=\"font-style:normal;color:#666666;\">As always, if you have data on your Synology that you consider irreplaceable, make sure that you have it backed up to. I\u2019d recommend using the built in Amazon S3 client. It\u2019s cheap and fairly easy to set up, and should help you in case of a disaster.<\/span><\/p><\/blockquote>\n<p>I personally also run a backup to another hard drive locally for rapid recovery.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In the early Sunday morning of August 3, 2014,\u00a0a tweet by Mike Evangelist\u00a0was linked on\u00a0Hacker News. Lovely. My\u00a0@Synology\u00a0NAS has been hacked by ransomware calling itself Synolocker. Not what I wanted to do today.\u00a0pic.twitter.com\/YJ1VLeKqfY I was somewhat scared by this news as some users at\u00a0Synology forums\u00a0reported\u00a0that they were also victims of \u00a0SynoLocker which is a\u00a0CryptoLocker malware\u00a0which &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/37prime.com\/news\/2014\/08\/03\/synology-vulnerability-and-ransomware\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Synology Vulnerability and Ransomware&#8221;<\/span><\/a><\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2},"jetpack_post_was_ever_published":false},"categories":[4],"tags":[785,1966,2123,2648,2872,936,3039],"class_list":["post-11637","post","type-post","status-publish","format-standard","hentry","category-news","tag-cryptolocker","tag-malware","tag-nas","tag-security","tag-synology","tag-tech","tag-troubleshooting"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_shortlink":"https:\/\/wp.me\/pcNtU-31H","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/37prime.com\/news\/wp-json\/wp\/v2\/posts\/11637","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/37prime.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/37prime.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/37prime.com\/news\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/37prime.com\/news\/wp-json\/wp\/v2\/comments?post=11637"}],"version-history":[{"count":0,"href":"https:\/\/37prime.com\/news\/wp-json\/wp\/v2\/posts\/11637\/revisions"}],"wp:attachment":[{"href":"https:\/\/37prime.com\/news\/wp-json\/wp\/v2\/media?parent=11637"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/37prime.com\/news\/wp-json\/wp\/v2\/categories?post=11637"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/37prime.com\/news\/wp-json\/wp\/v2\/tags?post=11637"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}