The inside story is amazing enough that the blackmail virus has not ended yet.

The outbreak of ransomware WannaCry (Eternal Blue) around the world is probably the most influential public security event these days. Since last Friday night, news of the outbreak of ransomware has spread among students from one of the Friends of chivalrous Island. At that time, the virus infection was mostly within the range of campus network. As the graduation season was approaching, many laboratories and students’ graduation designs and papers were severely affected. Over the past weekend, many friends of Uncle Dao were pulled back to the company or unit to work overtime and patch them to prevent large-scale infection caused by the “startup tide” on Monday workdays. In spite of this, today, in the news report, we still saw the news that many domestic universities, gas stations, railway stations, self-service terminals, hospitals, government-run terminals and so on were infected by this virus. Event I believe you have read many articles about the outbreak principle of the virus these days. In short, this worm ransomware attacks users by targeting a vulnerability in Windows, and implements high-intensity encryption of documents and pictures in the computer, and ask the user for the ransom paid in bitcoin. Otherwise, after seven days, the data cannot be recovered even if the ransom is paid. The encryption method is very complex, and each computer has different encryption serial numbers. With the current technical means, decryption is almost “helpless”. In today’s global network interconnection, the victims are certainly not limited to China. According to statistics from the 360 Threat Intelligence Center, after the outbreak on the 12th, more than 100000 organizations and institutions in nearly 100 countries around the world were captured, including 1600 American organizations and 11200 Russian organizations, more than 29000 IP addresses are infected in China. In Spain, the network systems of many companies including telecom giant Telefonica and power company Iberdrola, energy supplier Gas Natural were paralyzed; Portugal Telecom, American transportation giant FedEx, a local government in Sweden, russia’s second largest mobile telecom carrier Megafon have been exposed to attacks. According to Europol, the attack has affected 150 countries and regions. As the virus version is updated and iterated, the specific number may increase. Then, the question arises: Who did this?! Black Hand There is no answer. In the words of Zheng Wenbin, the head of 360 core security team, the traceability of ransomware has always been a difficult problem. The FBI once offered a reward of 3 million dollars to find the author of the ransomware, but there was no result. At present, there is no country in the world where the author of the ransomware comes from. However, from the perspective of blackmail, ransomware prompts in 15 languages including Chinese will appear after the computer is infected with the virus, and the whole payment will be carried out in such a very difficult way as Bitcoin and anonymous network, it is likely to be the organizational behavior under the Black industry chain. Ransomware is a new virus model that began to appear in 2013. Since 2016, the virus has entered the outbreak period. Up to now, more than 100 ransomware have benefited from this behavior. For example, last year, a variant of the CryptoWall virus family received 2.3 billion ransom. In recent years, different types of ransomware have also appeared in Apple computers, Android and iPhone phones. Although the underhand cannot be found at present, the tools it uses clearly point to an organization-NSA(National Security Agency), the US National Security Agency. This organization, also known as State secrets bureau, is affiliated to the U.S. Department of Defense and is the largest intelligence department among U.S. government agencies, specializing in collecting and analyzing foreign and domestic communication data. The eternal blue used by hackers is the network weapon developed by NSA against Microsoft MS17-010 vulnerabilities. Here’s the thing: the NSA itself has a large number of well-developed cyber weapons in its hands, but in June, 2013, more than a dozen weapons such as “Eternal Blue” were stolen by the hacker organization “Shadow Broker” (ShadowBreakers). In March this year, Microsoft released patches for this vulnerability, but first, some users did not have the habit of patching in time, second, many users around the world are still using earlier versions such as WindowsXP, which have stopped updating services, and cannot obtain patches, thus causing widespread spread around the world. With the feature of “worm” constantly scanning, it is easy to repeatedly infect the Internet and the intranet of campus, enterprise and government agencies. Another question came: Why Did NSA know Microsoft’s vulnerabilities and made special cyber weapons, and then some of these weapons fell into the hands of hackers? NSA Realistically speaking, as one of the operating systems, Windows is composed of hundreds of millions of lines of code. The logical relationship between them cannot be decided by one person, so it is difficult to eliminate vulnerabilities. Windows is the most commonly used operating system in the world, so it is normal for hackers to study vulnerabilities and attack them for profit. But as the National Security Agency of the United States, it is just to stare at the loopholes in this system, and it also specializes in weapons. What is the reason? In fact, Microsoft did not know the vulnerability existed until the hacker organization exposed it. In other words, only the NSA knows that the vulnerability exists, and only they know how long it has been known. In the opinion of cyber security experts on chivalrous island, it is very likely that NSA has known this vulnerability for a long time and exploited it, but this time it was used by the criminal team, that causes such great harm. From this point, we can see that the technology of the United States is really strong, and it is a unique global in the field of network security. At the same time, “vulnerability” has become a valuable strategic resource that soldiers must fight. In other words, attacking the reality through the network is no longer the scene patent of science fiction movies, but the reality that has happened. If you don’t believe me, tell you a true story– Snowden, the one who disclosed the “prism plan” that the US government monitored the world, was a former employee of the NSA. He confirmed that in 1999, the Obama administration ordered the use of cyber attack weapons-a virus codenamed “Zhenzhen network” to attack Iran’s nuclear facilities. The reason is complicated. In short, Israel managed to purchase centrifuge control software with a virus in Iran through Malaysian software companies. In 2010, the virus broke out, the centrifuges that controlled and destroyed Iran’s nuclear facilities, such as that, eventually caused permanent physical damage to more than 1,000 centrifuges and had to suspend the process of enriching uranium. This is also the first case of attacking and destroying the real world through virtual space in history, which has achieved the effect that only through military operations on the ground in the past. Last year, Ukraine’s power grid system was also attacked by hackers, resulting in power supply interruption for hundreds of households. How many cyber weapons does the NSA hold now? Of course, it is the secret of the United States. But according to WikiLeaks, not only does the NSA have it, but the CIA also has it, their network intelligence center has created more than 1,000 kinds of computer viruses and hacker systems-the number confirmed by Snowden in 2013. Therefore, after the outbreak of the “Eternal Blue”, the report of the New York Times said, “if it is confirmed that this incident was caused by cyber weapons leaked by the National Security Bureau (NSA), the government should be blamed because the U.S. government makes many hospitals, enterprises and other governments vulnerable to infection”. According to the NSA, its duty should be to “protect American citizens from attacks”; They have also accused many countries of carrying out cyber attacks on the United States. But the fact is just the opposite. The countries they blame are all victims of this virus. The cyber weapons they use to “defend” become the weapons used by hackers to attack American citizens. In the words of the national public broadcasting station, “This attack pointed out a fundamental problem in the security field, that is, the monitoring of the National Security Bureau is protecting the people or creating more irreversible damage, even exceeding its benefits”. Alert Of course, the NSA should reflect, although they have not yet come out to respond. But what is more worthy of reflection is an essential topic: Who is the master of network security? As far as this time, the decision-making process within the U.S. government is more worthy of criticism. There is a Process called VEP(Vulnerability Equity Process) inside, which is used to follow this Process when NSA or other U.S. government departments find a software Vulnerability, decide whether to expose the vulnerability. If the vulnerability is disclosed, Microsoft and other manufacturers can easily create patches, and the vulnerability disappears; If the vulnerability is not disclosed, these government departments can keep it for their own use for “law enforcement, intelligence collection or other aggressive use”. Although this process created by the Obama administration is neither a law nor a presidential decree, it has been implemented since 2008. In the eyes of people in other countries outside the United States, this process is obviously problematic: this process, which can almost be called “black box, the network security risks of the whole world are all determined by the internal mechanisms of the United States, and others are exposed to the risks without any doubt. In response, Microsoft President Brad Smith also said angrily on his blog, “If these government departments continue to hide in the dark and dig for loopholes in global computer systems, then make the so-called Arsenal to attack other countries or buy and sell, then you are the accomplices of cyber crime!” In this sense, Xi Jinping has said many times that “there is no national security without network security”, which is absolutely targeted. Just imagine, this virus is still within the controllable range. What if the next network attack is larger and the target is clearer? From the perspective of China, in most people’s impression, the last outbreak of the virus of this scale probably dates back to the “panda burning incense” more than a decade ago “. However, like this virus, it is rare to face the serious situation of “kidnapping” of important information once the trick is almost unsolvable. From the reaction of different places, the emphasis on network security is obviously different. The National Network Information Department, as well as Shanghai, Beijing and other provinces and cities, issued emergency notices almost on the 13th; The infection that occurred on the morning of the 15th was more in the central and western provinces. Some industry experts also pointed out that, for example, government, enterprises and institutions, campus and other institutions, many leaders still keep the concept of network security at the point of “Finding people to kill and kill viruses if computers are poisoned, many people also think that” physical isolation with intranet is fine “, and the concepts and protective measures are quite lagging behind. Things haven’t ended yet, and there are enough problems and shocks. This is like a public health event. It is the usual emphasis on safety and the degree of organization, which determines the extent to which the plague can spread. I have to say, this is a very vivid and profound network security education course. After all, today our personal information, assets, data, etc. have been increasingly connected with computers and networks, but this process is irreversible. The outbreak of the 5554 ransomware “WannaCry” (Eternal Blue) worldwide is probably the most influential public security event these days. Since last Friday night, the blackmail virus broke out in the student group of one of chivalrous island friends.

Read More

Chen Xingui, deputy director of Henan environmental protection department, was reviewed for serious disciplinary violations.

According to the news of Henan Provincial Commission for Discipline Inspection: With the approval of Henan Provincial Party Committee, Chen Xingui (Deputy Department level), a member of the Party group and deputy director of Henan provincial environmental protection department, is suspected of serious disciplinary violations and is currently under organizational review. (Henan Provincial Commission for Discipline Inspection) Resume of Chen Xingui From August 1975 to September 1979, workers of machinery factory in Leiyang County. From September 1979 to July 1981, Yunyang Normal School studied. From July 1981 to May 1982, he served as a cadre of Xingyang county education bureau. From May 1982 to June 1984, the office officer of the county Party committee of Leiyang County. From June 1984 to July 1986, he served as a member of the Party committee of Beiyi Township, Xingyang county. From June, 1984 to July, 1986, he Nan Radio and Television University specialized subjects for Party and government cadres. From July 1986 to July 1987, he served as deputy secretary of Party Committee of Xingyang county Wangcun township. From July 1987 to February 1988, he served as deputy director of Xingyang county Party committee office. From February, 1988 to November, 1989, he served as the secretary of the Party committee of Xiwo township, Xingyang county. From November 1989 to May 1994, he served as Standing Committee member and office director of Xingyang county Party committee of the Communist Party of China. From May 1994 to November 1994, he served as the standing committee and office director of Xingyang Municipal Committee of the Communist Party of China. From November 1994 to March 1997, he served as deputy secretary of the CPC Xinmi Municipal Committee. From March 1997 to July 1999, he served as deputy secretary of the CPC Xinmi Municipal Committee and mayor of the municipal people’s government. From July 1999 to June 2003, he served as secretary of the CPC Xinmi Municipal Committee. From June, 2003 to February, 2009, he served as deputy director of Henan Provincial Environmental Protection Bureau and member of the Party group. From February 2009 to now, he served as a member of the Party group and deputy director of the Environmental Protection Department of Henan province. 1011 according to the news of Henan Provincial Commission for Discipline Inspection: With the approval of Henan Provincial Party Committee, Chen Xingui (Deputy Department level), the party member and deputy director of Henan provincial environmental protection department, is suspected of serious disciplinary violations and is currently under organizational review. (Henan Provincial Commission for Discipline Inspection) resume of Chen Xingui from August, 1975 to 19

Read More

Special roll call, what did Shanghai “six Tigers” do?

On the 15th, the Liberation Daily published the full text of the work report made by the Shanghai Municipal Commission for Discipline Inspection at the 11th Congress of the Communist Party of China in Shanghai. “Political Affairs” noticed that the report mentioned Shanghai’s anti-corruption achievements in the past five years: A total of 117 problem of discipline violation and 155 people were investigated for responsibility in Shanghai, involving 53 bureau-level cadres and 54 department-level cadres. The report also specifically listed the names of six officials at the bureau level of Ma Ma: Dai haibo, former deputy secretary-general of shanghai municipal government, li yaoxin, former director of municipal economic information committee, jiang xiafu, former secretary of baoshan district committee, feng jun, former general manager of municipal power company, guangming food (group) wang Zongnan, former chairman of the limited company, and Cheng Guanjun, former general manager of Shanghai Material Trade Co., Ltd. 53 bureau-level cadres were investigated. Why did the report specifically name the above six officials? What did they do? Dai Haibo: he was exposed to a long-term report by his ex-wife. “Political Affairs” noticed that Dai Haibo, former deputy secretary general of Shanghai municipal government, had been tried on March this year, involving two charges of bribery and concealing overseas deposits. Prosecution charges: from 1998 to 2015, Dai Haibo served as the general manager of Shanghai Zhangjiang Hi-Tech Park development company, Shanghai Zhangjiang (Group) Co., Ltd. and the chairman of Shanghai Zhangjiang integrated circuit industrial zone Development Co., Ltd, deputy secretary and deputy district chief of pudong new area district committee of shanghai, former secretary of nanhui district committee of shanghai, director of shanghai economic and information committee and other positions are convenient, seeking benefits for others and accepting bribes worth more than ,000 yuan. In addition, in April 2001, Dai Haibo opened Bank, stock and fund accounts in Citibank, Hong Kong, and failed to truthfully declare to the competent authorities in accordance with national regulations. As of march 2015, the above accounts still have stocks and funds with a deposit of hk $380900 and a market value of hk $1.5822 million, which is equivalent to more than RMB 1.58 million in total. Dai Haibo was born in 1962and is 55 years old. He once worked in the Communist Youth League system. At the age of 31 in 1993, he was already the deputy secretary of Shanghai Municipal Committee of the Communist Youth League. After that, dai haibo was transferred to work in pudong new area of shanghai, one of the frontier positions of reform and opening up, and served as director of social development bureau, minister of organization department, deputy secretary of pudong new area committee, first deputy (district) chief and other important positions, he witnessed the early development and growth of Pudong New Area. After the establishment of shanghai free trade zone in 2013, dai haibo also served as deputy secretary general of shanghai municipal government and executive deputy director of shanghai free trade zone management committee. In september, 2014, on the eve of the first anniversary of the establishment of shanghai free trade zone, dai haibo was removed from the post of executive deputy director of the management committee of shanghai free trade zone. At that time, the central inspection team was inspecting in Shanghai. Some media reported that one of the “incentives” of Dai Haibo’s dismissal was that his ex-wife had long reported that he was suspected of corruption during his reign in Pudong New Area of Shanghai, or involved in Disney’s land acquisition and demolition projects, as well as problems such as owning multiple properties. However, the above “incentives” have not been officially confirmed. Half a year after being removed from the post of executive deputy director of the administrative committee of Shanghai Pilot Free Trade Zone, Dai Haibo was announced to investigate. Li Yaoxin: he was Dai Haibo’s successor “Political affairs” noticed that li yaoxin, the second official named in the work report of the shanghai municipal commission for discipline inspection, had an intersection with dai haibo. In february, 2013, dai haibo was transferred to the deputy secretary general of shanghai municipal people’s government by the director of shanghai municipal economic and information commission. In the same month, Li Yaoxin was transferred from the deputy secretary and district chief of Changning District Committee of Shanghai to the deputy secretary of Shanghai Economic and Information Committee, and then succeeded Dai Haibo as the director of Shanghai Economic and Information Committee. Li Yaoxin is two years older than Dai Haibo. He was born in 1960 and is 57 years old. There is an important experience in his career history. “Tian han corruption case” (tian fengshan case, tian fengshan once served as the governor of heilongjiang province and minister of land and resources; Han guizhi case, han guizhi once served as the minister of organization department of heilongjiang provincial party committee and chairman of heilongjiang provincial political consultative conference) after the occurrence, in 2005, the Central Organization Department provided cadres and talents support for revitalizing the construction of the old industrial base in Northeast China. He once sent more than 20 cadres to work in Heilongjiang, and Li Yaoxin, who was the deputy district chief of Jiading district of Shanghai, was one of them. According to the report of weiwang oriental weekly under xinhua news agency, song fantang, then secretary of the heilongjiang provincial party committee, said when the central government sent a large number of cadres to work in heilongjiang, “this is in line with the revitalization of northeast china, it’s not that some people outside said that the cadres in northeast china are going to change their blood, which has nothing to do with tian han’s case.” Li Yaoxin worked in Heilongjiang for 3 years. He served as deputy mayor and mayor of Mudanjiang city and deputy director of Heilongjiang Provincial Development and Reform Commission. It is reported that the main task of his job in Mudanjiang is local investment promotion. At that time, more than a month after he came to Mudanjiang, he once said at the Standing Committee: “I am very accustomed to living and working in Mudanjiang. The only maladjustment is that I have not received domestic businessmen or foreign businessmen once this month; Almost every day, meetings are small cycles; For a city, attracting investment is obviously the first priority of development; I am a little impatient about this “. After returning to Shanghai from Heilongjiang in 2008, Li Yaoxin served as deputy director of Shanghai Municipal Development and Reform Commission, director of Changning district of Shanghai, and director of Shanghai Economic and Information Commission. The investigation was announced on last September. On January this year, the prosecution filed an investigation against Li Yaoxin on suspicion of accepting bribes. Jiang Xifu: 71 years old when the investigation was announced “Political Affairs” noticed that Jiang Xifu was named “post-40s” and was born in March, 1943. when he was announced to investigate in December, 2014, he was 71 years old. According to the public resume, Jiang Xie Fu served as deputy director of Shanghai Municipal Agricultural Committee, secretary of Fengxian County Party Committee, vice president of Party School of Municipal Party Committee, secretary of Baoshan district Party committee, secretary of Party Committee of Municipal Real Estate and resources bureau, etc. In February 2003, he was elected as a member of the Standing Committee of Shanghai Municipal People’s Congress and deputy director of the Municipal People’s Congress urban construction and environmental protection committee. In the curriculum vitae, Jiang Xifu retired in 2008. When he was announced to investigate, he had retired for 6 years. “Political affairs” found that after retirement in 2008, jiang xie fu had been serving as an independent non-executive director of shanghai group until he resigned from the post half a year before the investigation was announced. In August 2015, the prosecution filed a public prosecution against Jiang Xie Fu on suspicion of accepting bribes. The prosecution charged that jiang xifu took advantage of his position to seek benefits for others during his tenure as the secretary of shanghai baoshan district committee to the deputy director of shanghai municipal people’s congress urban construction and environmental protection committee, the total value of illegal bribery is more than 1.74 million yuan. Feng Jun: the amount involved in the case of “Electric Tiger” was over 100 million and was sentenced to life. “Political Affairs” noticed that on March this year, Feng Jun, the former general manager of Shanghai Electric Power Company, was sentenced to life imprisonment in the first instance for committing bribery and the crime of huge unidentified property sources. The court found out that Feng Jun took advantage of his position to seek benefits for others and took bribes totaling more than 43.46 million yuan, and the total amount of property with unknown sources was more than 7600 million yuan. In other words, the total amount involved reached more than 0.11 billion yuan. According to the disclosure, Feng Jun’s family held 4 sets of real estate at the time of the crime, worth more than ,000 yuan; The total value of bank and securities deposits was more than ,000 yuan; There were also calligraphy and painting, jewelry and jade, high-grade wine, ivory, 4239 pieces of 12 categories of valuables such as clocks and watches, worth more than 5300 million yuan. Feng jun was once a man of the wind and cloud in guodian system, and was awarded the title of special model worker of state grid corporation, national labor day medal winner, representative of national people’s congress, etc. However, according to Legal Daily, Feng Jun “led the management of such a centralized, capital-intensive and resource-rich enterprise after reaching a high position, the huge power made him go crazy slowly, or exchange power and money, or ask for it in disguise.” According to reports, Feng Jun often “killed” and formed a “cooperative relationship” with bribers that “I tray your house and car at a high price, and you help me make money quickly”. In 2007, feng jun, then deputy general manager of jiangsu electric power company, took a fancy to a real estate. However, he consciously “was too conspicuous”, so he let “friend” li hong buy it first at the price of 3.9 million and then transfer the ownership to himself. After that, he paid the house to Li Hong, but the transfer fee and taxes of the house were paid by Li Hong, totaling more than 310000 yuan. Three years later, Feng Jun told Li Hong that his wife was managing money. Feng Jun said, “Li Hong is a relatively smart person, and he knows that what I mean is to let him finance my wife with the 3.9 million yuan I paid him in other forms”. According to Li Hong, Feng Jun’s wife was given a savings card, which contained 4 million yuan and a little more than 99000 dollars. Feng Jun got a set of real estate worth 3.9 million yuan for “free”, and he also got 100000 yuan and 99000 dollars. Wang Zongnan: “dialling” by old leader Chen Liangyu” Wang Zongnan, the former chairman of “political affairs” Co., Ltd., was sentenced to 18 years in prison in the first trial for embezzlement of public funds and bribery. The court found out that from 2001 to 2006, when wang zongnan was the general manager of friendship group and the chairman of lianhua supermarket, he joined the former general manager of lianhua supermarket, liangwei and others, the public funds of Lianhua supermarket and its subordinate units have been embezzled for more than ten times, totaling more than 0.195 billion yuan, and Wang Zongnan has obtained illegal income from it for more than 1.2 million yuan. Chairman of “political affairs” CO., LTD. According to the report of honest and clean government, wang zongnan was also a member of the officialdom before taking up the above positions in the business system. He once held the positions of deputy minister of organization in huangpu

Read More

Urumqi airport encountered 5,000 people stranded in windy days

Since this morning, Urumqi DIWO Fort international airport has been hit by strong winds, and the wind reaches 8-9 when the wind is at its peak. By 12:00, 88 inbound and outbound flights had been delayed, standby, returning or canceled, and more than 5,000 passengers were stranded at the airport. Weather forecast shows that the weather conditions at the airport will improve after 19:00. Since this morning, Urumqi DIWO Fort international airport has been hit by strong winds, and the wind reaches 8-9 when the wind is at its peak. As of 12:00, 88 inbound and outbound flights have been delayed, standby, returning or canceled, and more than 5,000 passengers have been delayed.

Read More

The central bank established the Financial Science and Technology Committee to enrich regulatory measures

Recently, the People’s Bank of China established the Financial Science and Technology (FinTech) committee to strengthen the research planning and overall coordination of financial science and technology work. Financial technology is a technology-driven financial innovation, which has injected new vitality into financial development and brought new challenges to financial security. The People’s Bank of China will organize in-depth study on the impact of the development of financial science and technology on monetary policy, financial market, financial stability, payment and settlement and other fields, and earnestly do a good job in the strategic planning and policy guidelines for the development of financial science and technology in China. Further strengthen exchanges and cooperation at home and abroad, establish and improve the financial science and technology innovation management mechanism suitable for China’s national conditions, handle the relationship between security and development, and guide the correct use of new technologies in the financial field. Strengthen the application practice of regulatory technology (RegTech), actively use big data, artificial intelligence, cloud computing and other technologies to enrich financial supervision methods, improve the identification of cross-industry and cross-market financial risks, ability to prevent and resolve. The People’s Bank of China is willing to join hands with all parties of industry, university and research to jointly promote the healthy and orderly development of China’s financial technology and contribute to serving the real economy and practicing inclusive finance. Recently, the People’s Bank of China established the Financial Science and Technology (FinTech) committee to strengthen the research planning and overall coordination of financial science and technology work. Financial technology is a technology-driven financial innovation, which injects new vitality into financial development and also gives gold

Read More

Shandong Linyi held the 70th anniversary of the victory of Meng Liangzhang campaign

Representatives of veterans who participated in the battle of Meng Liangzhang. Today (May 16) morning, the 70th anniversary of the victory of Meng Liangzhang battle was held in Meng Liangzhang, Linyi city. 70 years ago today, the battle of Meng Liangzhen won in Yimeng Mountain area, Shandong province. Chen Yi and Su Yu commanded the East China Field Army to clamp the left and right wings of the Kuomintang army with four columns, and to carry out intermediate breakthroughs with five columns, after three days and nights of fierce fighting, the 74th division and the 83th division, one of the five main forces of the Kuomintang army, were totally 32000 people, and Zhang Lingfu, the 74th division commander of the Kuomintang army, was killed, the plan to make the Kuomintang army focus on attacking Shandong juj East China Field Army failed. It played an important role in the transformation of the East China War, leaving a glorious chapter in the history of the party, the history of the People’s Army, and the history of the Republic. Representatives of veterans who participated in the battle of Meng Liangzhang. Today (May 16) morning, the 70th anniversary of the victory of Meng Liangzhang battle was held in Meng Liangzhang, Linyi city. 70 years ago today, the battle of Meng Liangzhen won in Yimeng Mountain area, Shandong province. Chen Yi,

Read More

The WanaCrypt worm ransomware does not have 2.0 variants.

At present, all the news about “WanaCrypt” with 2.0 variants comes from an article called “WannaCry Kill-Switch(ed)? It s Not Over! Foreign news WannaCry 2.0 Ransomware Arrives (/wannacry-ransomware-cyber-attack.html) The news mentioned that “CostinRaiu”, the head of global research and analysis of Kaspersky Laboratory, said his team found the existence of variant samples without kill-switch, which is called “WanaCrypt” 2.0 in China. kill-switch here refers to “WanaCrypt when the main module is running, if you can access http://www.iuqerfsodp9ifjaposdfjhgosurijfaewrwergwea.com, it will stop working” This emergency shutdown mechanism-this is the most effective immunization method against the virus at present. After obtaining the message “2.0 variant”, rising analyzed all intercepted WanaCrypt worms and found no variant samples without Kill-switch switch. At 07:40 on May 14, Beijing time, CostinRaiu apologized on his Twitter and admitted the mistake. He said on Twitter: After analyzing all WanaCrypt(Wannacry) worm modules, it was found that kill-switch was included. Currently, no variant version without switch has been found. Therefore, rising security experts said that at present, there is no so-called 2.0 variant. Through the emergency shutdown mechanism of domain names, the spread of WanaCrypt can be effectively suppressed. 1234 currently, all the news about “WanaCrypt” with 2.0 variants comes from an article called “WannaCryKill-Switch(ed)? It sNotOver! Wan

Read More

Ransomware attack level unprecedented Chinese users are still at risk

Xinhua News Agency reporter Huang Yi “Heroes Save the World”? In the recent two days of global ransomware network attacks, the news came that a British network engineer stopped the disaster by registering a domain name. However, network security experts pointed out that the current situation is only slightly eased due to various reasons, and many network users, especially Chinese users, still face risks. The level of network attacks is unprecedented” On the 12th, networks in many countries around the world were attacked by ransomware called “want to cry”. According to statistics, it involved nearly 100 countries and regions such as China, Britain, Spain and Russia. After the computer is infected by ransomware, the file will be encrypted and locked. Only after the hacker pays the ransom can the file be decrypted and recovered. The attacked objects even include hospitals, universities and other public welfare institutions. Europol said the cyber attack “reached an unprecedented level”. This ransomware exploits a vulnerability in Microsoft’s Windows operating system. Although Microsoft has released security patches before, many computers that have not been updated are still infected. In view of the serious situation, Microsoft soon announced that it would take unusual security measures to provide patches for some old “windows” platforms that it no longer supports. Many network security vendors have also urgently launched security tools to deal with ransomware. On the 13th, the media reported that a British guy “saved the world”, saying that he had curbed the cyber attack by registering a domain name. The reporter’s investigation found that the British network engineer who has not disclosed information such as name so far runs a website that analyzes malware. He said on the website that by analyzing the “want to cry” software, it found that if it accesses a domain name, it will delete itself, and the domain name has not been registered, by registering this domain name and performing related operations, he successfully prevented the spread of “want to cry” software. “This statement is not all right. The role of domain names is actually limited,” Li pine and cypress, director of the security research and emergency response center of Antian company, told Xinhua News Agency, “some infected computers, it is true that you can access this domain name and stop the ransomware from being damaged. However, the biggest problem is that a large number of internal network nodes have been infected, while some nodes cannot access this domain name, and ransomware can easily modify new variants without this feature. Therefore, we cannot expect to save the world by this domain name.” “The number of attacks and infections we have detected has not dropped significantly, but only a slow flat and decline,” Zheng Wenbin, chief security engineer of 360 company, also told Xinhua News Agency, “As the media promotes and users realize the problem, the computers of the public and institutions are gradually patched, which is the main reason why the situation is slightly relieved at present.” Users still face risks “This relaxation is largely due to the weekend, and the 15th will be an important test pass,” Zheng Wenbin stressed. Due to the time zone relationship, China will be the country facing this risk earlier. Li pine and cypress also judged: “The network attack of ransomware broke out on a large scale at around 8 pm Beijing time on the 12th. At that time, a large number of network nodes of institutions and enterprises in China had been shut down, therefore, starting the machine on the 15th will face a safety test.” He also said that many important computer systems are in the internal network environment, unable to access the aforementioned domain names, and may not be able to update security patches in time, so they may still face greater risks. Network security experts suggest that users should disconnect the network and start it, that is, first unplug the network cable and then start it, which can basically avoid being infected by ransomware. After starting up, you should find a way to patch the security patch as soon as possible or install the defense tools launched by various network security companies for this matter before you can connect to the Internet. “Users must defend against ransomware threats in advance,” Li pine and cypress stressed. “because this ransomware uses encryption algorithms such as RSA and AES, it cannot be decrypted without a key.” In other words, for computers that have been infected and attacked, locked files cannot be opened temporarily. He said that there were rumors on the Internet that the author of ransomware had disclosed the key, but it had been confirmed that it was fake news. Li pine and cypress pointed out that it is not recommended that victims whose documents have been locked pay ransom according to Hacker demands, “compromise is the indulgence of crime, and it is impossible to determine the true intention of settler at present, if the ransom is paid, the key required for unlocking will not be received. We do not recommend that the victim pay the ransom.” Zheng Wenbin said that users whose files are locked can try to use some recovery tools. According to the nature of the locked files, there is a certain probability that data can be recovered. “Blackmail” may continue in the future Network security experts are waiting for the 15th pass. So, if you pass this pass, what will happen in the future? Zheng Wenbin said: “The attack of ransomware should continue for some time in the future.” “Some illegal hackers may also be inspired by this ransomware attack and combine more technical means with ransomware,” Li pine and cypress said, “Ransomware is inevitable to drive the resurgence of worms. Hackers may use botnets to distribute viruses, and may also create and spread virus software for vulnerabilities in IoT devices. These problems will occur.” The rise of Bitcoin has also helped ransomware. Bitcoin is a kind of virtual currency, which is difficult to track online transactions and has become a popular transaction medium for many hackers. In this incident, a user was extorted five bitcoins due to the infection of a computer, which is about 50000 yuan at present. The ransomware threatened not only individual users, but also many institutions and enterprises. Experts therefore remind that all network users should strengthen their security awareness in the future, pay attention to updating security patches and using various anti-virus tools. 2211 Xinhua News Agency, Beijing, May 14th News analysis: the threat of ransomware is far from disappearing. Xinhua News Agency reporter Huang Yi “heroes save the world”? In the recent two days of global ransomware network attacks, a British network project was reported.

Read More

Chengde of Hebei property market purchase restriction: foreign residents can purchase 1 Suite for 1 year

Chengshi character [2017] No. 40 Notice of Chengde municipal people’s government on further strengthening regulatory measures to stabilize the city’s real estate market The people’s governments of all counties, autonomous counties and districts, the administrative committee of Chengde High-Tech Zone, the administrative committee of Yudaokou ranch management zone, and all departments of the municipal government: In order to further strengthen the regulation and control of the real estate market, adhere to the positioning of “houses are used for living, not for speculation, according to the” implementation opinions of the General Office of Hebei Provincial People’s Government on further promoting the steady and healthy development of the real estate market in the whole province “, combined with the actual situation of the current real estate market in our city, on the basis of conscientiously implementing the regulation measures such as” the opinions of Chengde Municipal People’s Government on strengthening the regulation of the city’s real estate market “(Chengshi Zi [2017] No. 27), the relevant matters are hereby notified as follows. I. Strict measures to restrict the purchase of commodity housing In urban areas (Shuangqiao district, Shuangluan District, Yingzi district, high-tech zone), Xinglong County, Luanping county, Fengning county, Chengde County and Pingquan county, this city can be provided for one year (including) for non-registered residents in this city with the above tax payment certificate or social insurance payment certificate, one set of housing (including newly-built commodity housing and second-hand housing) is restricted; it is impossible to provide one year (including) for household registration families in this city who have 2 or more houses and non-household registration families who have 1 or more houses in this city. Non-resident families whose tax payment certificate or social insurance payment certificate in this city above are suspended from selling houses to them in the above areas; For the introduction of talents and resident units, foreign household registration personnel who come to invest and start a business, etc., after being confirmed by the county and district government where the service is located, do not provide tax payment certificate or social insurance payment certificate to purchase a housing. The newly purchased commodity housing of non-registered residents in this city can only be transferred after two years of obtaining the real estate certificate. The paid tax payment certificate or social insurance shall not be used as a valid certificate for purchasing a house. II. Improve differentiated housing credit policy According to the relevant regulations of the People’s Bank of China, the Hebei provincial market interest rate pricing self-discipline committee has agreed to make the following requirements on differentiated housing credit policies: Buying ordinary housing for the first time and applying for commercial personal housing loans, the down payment ratio of household registration households in this city shall not be less than 30%, and the down payment ratio of non-household registration households in this city shall not be less than 50%; for households with household registration in this city who have owned one set of housing and have no house purchase loan or the loan has been settled, apply for commercial personal housing loan to purchase ordinary housing in order to improve living conditions, and the down payment ratio shall not be less than 40%; for the household registration households in this city who have one set of housing and the corresponding house purchase loan has not been settled, in order to improve the living conditions, apply for commercial personal housing loan to purchase ordinary housing again, the down payment ratio is not less than 50%. For households with registered residents in this city who already have 2 or more sets of housing, the commercial personal housing loans will be suspended. III. Adjust the housing accumulation fund policy All counties and districts should conscientiously implement the relevant provisions of “notice of Chengde Municipal People’s Government on adjusting housing provident fund loan policy” and suspend the handling of housing provident fund loans in different places throughout the city, stop handling the business of “housing provident fund loan replacement commercial bank personal housing loan. IV. Plus-sized market supervision All counties and districts should Plus-sized control the price of commercial housing, guide development enterprises to make rational pricing, and guide the pre-sale price of newly-built commercial housing, for projects whose declaration of value is significantly higher than the price of the surrounding projects on sale and the transaction price in the early stage of the project, and does not accept guidance, the pre-sale license of commercial housing will not be issued or the contract online signing and filing will not be handled; projects that have not obtained the pre-sale permit for commercial housing shall not be pre-sold, shall not collect or charge any price in disguise, and shall not participate in any exhibition activities. Real estate development projects that have obtained the pre-sale license or applied for the existing house filing shall disclose all the houses and sell them at one time within 10 days from the date of receipt. Strictly implement the regulations on the clear price of commercial housing sales and the price of one house and one house, and shall not exceed the filing price for external sales. Strictly implement the cancellation procedure of online signing and filing of newly-built commercial housing (pre-) sales contracts, and the transfer of commercial housing shall not be carried out by canceling the filing of commercial housing sales contracts. The housing and construction departments should strengthen the management of transaction funds, and all the pre-sale funds of commercial housing and second-hand housing transaction funds in counties and districts in 2017 will be supervised. V. Increase the supply of ordinary commodity housing and land All counties and districts should reasonably arrange the scale, structure and time series of land supply to stabilize the expectation of land market. Establish a land purchase fund review system to ensure that real estate development enterprises use compliance self-owned funds to purchase land. Real estate development enterprises whose sources of funds do not meet the requirements have been examined by land and resources departments and relevant financial departments, the land bidding qualification has been canceled, and it is forbidden to participate in land bidding within this city within a certain period of time. Strictly implement the dynamic inspection system of land use, urge real estate development enterprises to pay the land transfer price in full and timely, and start and complete the project in time in strict accordance with the contract, thus speeding up the pace of building and listing commercial housing projects, form effective market supply as soon as possible. VI. Carry out special actions to rectify and standardize the intermediary behavior of real estate development and sales Housing construction, land, market supervision, public security, price, urban management, People’s Bank of China, banking supervision and other departments should strengthen the linkage supervision of the whole process of real estate development, and continuously rectify and standardize the intermediary behavior of real estate development and sales. It is necessary to carry out in-depth special actions to regulate the operation behavior of real estate development enterprises, severely crack down on real estate development enterprises to hoard land speculation, maliciously speculate, pay off the price, drive up house prices, increase prices at disguised inflation and out of the money, and tie-up sales, as well as illegal acts such as violating the clearly marked price system and failing to implement the price declaration and filing system according to regulations. Carry out special actions to rectify Real estate intermediary, crack down on intermediary agencies to release false houses and false price information, monopolize houses to manipulate market prices, provide false certificates, and provide intermediary services for houses that do not meet the transaction conditions, false propaganda misleads market expectations, as well as illegal activities in off-site capital allocation financial business such as down payment loans, bridge loans and the establishment of capital pools. Strictly manage real estate notarization business to prevent notarization for illegal sales. The problems found should be dealt with in accordance with the law, and relevant information should be recorded in the integrity file in time for public exposure. Enterprises and individuals suspected of violating the law shall be handed over to public security and other departments for handling according to law. VII. Do a good job in market monitoring and analysis and public opinion guidance All counties and districts should continue to implement the real estate transaction information Daily report system, establish and improve working institutions, enrich staff, and ensure timely, complete and accurate data. Strengthen Market operation monitoring, analysis, research and judgment, establish early warning mechanism, and achieve early warning. Release real estate market information comprehensively, accurately and timely, do a good job in monitoring market public opinion, correctly interpret policies, crack down on the behavior of misleading consumption by making and spreading false information in various forms, and investigate the responsibilities of the parties according to law. All kinds of news media and network platforms should strengthen positive publicity and public opinion guidance, objectively and fairly report the real estate market situation, and stabilize market expectations. VIII. Clarify the main responsibility of local governments All counties, district governments and relevant departments of the municipal government should firmly establish the “four consciousness”, further unify thinking, fully understand the urgency and importance of the stable and healthy development of the real estate market and the control of housing prices, bubble prevention and risk prevention, take the main responsibility of promoting the steady and healthy development of the real estate market, and the main responsible comrades of the government are the first responsible person. It is necessary to improve the working mechanism and establish a joint meeting system of real estate regulation and control. The municipal government will hold the county, district government and relevant departments of the municipal government responsible for the implementation of policies and measures that are not in place, the house price rises too fast, the management behavior of real estate enterprises is not effective, and the real estate speculation behavior cannot be effectively curbed. This notice shall come into force as of May 15, 2017, and shall be issued by the Municipal Bureau of Housing and Urban-Rural Development, the Bureau of Land and Resources, the Housing Provident Fund Management Center, the local taxation bureau, the Bureau of Human Resources and Social Security, the central branch of Chengde City of the People’s Bank of China is responsible for formulating specific implementation rules. Chengde Municipal People’s Government May 14, 2017 Issued by Chengde municipal people’s government office on May 14, 2017 (100 copies in total) 2909 Chengshi Zi [2017] No. 40 Chengde Municipal People’s Government’s Notice on Further Strengthening control measures to stabilize the city’s real estate market the people’s governments of counties, autonomous counties and districts, Chengde High-tech Zone Management Committee, Yudaokou ranch management District Management Committee, municipal government

Read More

There are 155 stations with more than 100mm rainfall during heavy rainfall in Guangdong

There is not much rainfall in Guangzhou. Photo taken by Chen Xiaoxiao Zhongxin.com, Guangzhou, May 15 (Shen Zhao Zou Jinhua) the reporter learned from the chief defense officer of Guangdong province on the 15th that Guangdong province suffered a new round of heavy rainfall on the 15th, which led to Guangzhou city, conghua district and other places have launched high-level emergency response. From 8: 00 on May 14 to 4: 00 on May 15, there were 155 stations with rainfall over 100mm in Guangdong province. It is understood that this round of heavy rainfall is mainly concentrated in Guangzhou, Meizhou, Huizhou, Jiangmen, Yangjiang, Heyuan and other cities. Among them, stations such as Xishan station, Aotou town, Guanghua district, Guangzhou city, qixingdun station, Nankun town, Longmen county, Huizhou city, etc. received relatively heavy rainfall during the above periods, which were 242mm, 203.7mm, 184mm. The reporter learned from the Guangzhou three defense office that due to the impact of this round of heavy rainfall, a total length of about 250 meters scattered pipe surge occurred in the upper reaches of Longtan bridge on the left bank of the river bank of Zhijiang (II), Conghua district, the local government has organized personnel on-duty inspections and carried out emergency response work; Flooding occurred in the headway Primary School and urban area of Aotou town in Conghua district; 1900 mu of farmland in Aotou town in Conghua district was also flooded. Guangzhou Sanfang headquarters started the Level II emergency response to prevent rainstorm at 04:50 on May 15, and Conghua district started the Level I emergency response to prevent rainstorm at 5: 00 on May 15; Zhuhai City will flood control at 11:55 on May 15 (prevent rainstorm) level III emergency response has been upgraded to level II, and the current round of heavy rainfall prevention and control work has been fully organized. Deng Haiguang, deputy governor of Guangdong province and general commander of defense of Guangdong province, said when he went to the defense work of defense general of Guangdong Province on 15th that meteorological and hydrological departments should improve the pertinence and accuracy of forecast and early warning, and timely release fine forecast and forecast results, provide decision-making support for all regions to do defense work well; Guangdong defense manager should ensure the implementation of relevant defense measures in advance according to relevant forecast and early warning information, especially the implementation of personnel transfer measures in high-risk areas in advance. There is not much rainfall in Guangzhou. Chen Xiaoxiao shot zhongxin.com, Guangzhou, May 15 (Shen Zhao, Zou Jinhua) the reporter learned from the chief defense officer of Guangdong province on the 15th that Guangdong province suffered a new round of heavy rainfall on the 15th, to Guangzhou city, conghua district and other places started high-level response

Read More