Audio By Carbonatix
A massive ransomware campaign appears to have infected a number of organisations around the world.
Screenshots of a well known program that locks computers and demands a payment in Bitcoin have been shared online by parties claiming to be affected.
There have been reports of infections in the UK, US, China, Russia, Spain, Italy, Vietnam, Taiwan and others.
Security researchers are linking the incidents together.
One cyber-security researcher tweeted that he had detected 36,000 instances of the ransomware, called WannaCry and variants of that name.
"This is huge," he said.
Another, at cyber-security firm Kaspersky, said that the ransomware had been spotted cropping up in 74 countries and that the number was still growing.
The UK's National Health Service (NHS) was also hit by a ransomware outbreak on the same day and screenshots of the WannaCry program were shared by NHS staff.
A number of Spanish firms were among the apparent victims elsewhere in Europe.
Telecoms giant Telefonica said in a statement that it was aware of a "cybersecurity incident" but that clients and services had not been affected.
Power firm Iberdrola and utility provider Gas Natural were also reported to have suffered from the outbreak.
There were reports that staff at the firms were told to turn off their computers.
Screenshots of WannaCry with text in Spanish were also shared online.
In Italy, one user shared images appearing to show a university computer lab with machines locked by the same program.
Bitcoin wallets seemingly associated with the ransomware were reported to have already started filling up with cash.
"This is a major cyber attack, impacting organisations across Europe at a scale I've never seen before," said security architect Kevin Beaumont.
According to security firm Check Point, the version of the ransomware that appeared today is a new variant.
"Even so, it's spreading fast," said Aatish Pattni, head of threat prevention for northern Europe.
Several experts monitoring the situation have linked the infections to vulnerabilities released by a group known as The Shadow Brokers, which recently claimed to have dumped hacking tools stolen from the NSA.
A patch for the vulnerability was released by Microsoft in March, but many systems may not have had the update installed.
Some security researchers have pointed out that the infections seem to be deployed via a worm - a program that spreads by itself between computers.
Latest Stories
-
Inflation to average 11.3% in 2027 – Fitch Solutions
20 minutes -
I didn’t campaign for NDC to come and do this nonsense – Kpebu on EOCO
21 minutes -
Fitch Solutions maintains its policy rate forecast of 14% by December 2026
27 minutes -
Diaspora Nasara Caucus congratulates Mohammed Ali Suraj, new NPP executives
2 hours -
Dr Antwi-Boasiako’s cybersecurity book showcased at UN crime prevention congress
2 hours -
We will empower the grassroots and protect every vote – NPP’s 1st Vice Chair Kojo Bamba
2 hours -
I do not see myself as better than anyone – NPP’s 1st Vice Chair Kojo Bamba
3 hours -
Police blur the line between invitations and arrests – Reindorf Twumasi Ankrah
3 hours -
Turning invitations into arrests is making citizens reluctant to assist police – Twumasi Ankrah
4 hours -
The Traffitech-GH SMS spot-fine system: The good, the sad, and the funny – Bright Simons writes
4 hours -
Hawa Koomson pledges experienced and mature leadership of NPP women’s wing
5 hours -
Young woman found dead at Kasoa Peace Town
6 hours -
Playback: The Law examined lawful arrest in Ghana
6 hours -
Mahama urges African governments to treat healthcare as an investment, not budget cost
7 hours -
Bawumia congratulates John Boadu and new NPP executives, pledges support ahead of 2028
7 hours