French researchers find ways to crack WannaCry: No ransom

Netease Technology News May 20, according to Reuters, French researchers said on Friday that they have found the last chance for technicians to be able to save Windows files encrypted by WannaCry's blackmail virus. WannaCry publisher Vicki threatened to start locking up computers that had been infected with the virus a week ago, and for this reason, cybersecurity researchers are racing against time to find a way to crack before the deadline.

WannaCry began to wreak havoc globally on Friday, infecting more than 300,000 computers in 150 countries. Its publishers threatened that they would not be able to access their locked files if they had not paid between $300 and $600 for a week after their computer was infected.

A loosely-organized team of network security researchers scattered around the world stated that they have found a solution through cooperation in order to crack the encryption key that WannaCry has locked files. This news was confirmed by several independent security researchers.

The researchers warned that their solution can only work under certain conditions, that is, the computer has not been restarted since it was infected, and the victim uses the repair tool before the file is permanently locked.

Europol stated on Twitter that the European Cybercrime Center tested the new tools developed by the team and found that “in some cases it is possible to recover data”.

The team includes Adrien Guinet, a French cyber security expert; Matthieu Suiche, an internationally renowned hacker; and Benjamin Delpy, a French amateur security researcher. Working at the Bank of France, using the night to help solve network security issues.

Delpi said: "We know we must fight against the seconds because the chances of recovering (infected files) become less and less over time." After spending the second sleepless night this week, he was able to be in Paris. At 6 am Friday, a feasible method was released to decrypt files locked by WannaCry.

For this free tool that can decrypt the infected computer without paying the ransom, Delpy names it "Wanakiwi".

Sujche published a blog post summarizing the technical details of "Wanakiwi" and is stepping up to share it with the technical staff of WannaCry-affected organizations.

He said that through a quick test, it was shown that "Wanakiwi" is valid for Windows 7 and earlier versions of Windows XP and Windows 2003. He added that he believes that this hastily developed repair software is also applicable to Windows 2008 and Windows Vista, which means that all affected computers can be covered.

Suic told Reuters via "direct message" on Twitter that "(this method) should apply to any operating system from Windows XP to Windows 7,".

He added that so far, banks, energy sources and some government intelligence agencies from several European countries and India have contacted him on the issue of restoration.

Gunnett is a security researcher at the Paris cybersecurity company Quarkslab. He released the theoretical technology to decrypt files locked by WannaCry on Wednesday and Thursday. Delphi is also in Paris, and he found it possible to turn the technology into a practical tool that can save files locked by WannaCry.

Su Yiche, currently in Dubai, is one of the top independent security researchers in the world. He provided advice and tests to ensure that "Wanakiwi" works on all versions of Windows.

His blog post provides a link to Delpi's "Wanakiwi" decryption tool, which is based on the concept originally proposed by Gonett. Gunnet's idea included using prime numbers to extract the key to the WannaCry encryption code, rather than attempting to destroy the infinite set of numbers behind the malware's full encryption key.

Su Yiqie said: "This is not a perfect solution. But so far, this is the only feasible solution to help companies recover files, provided that the files have been infected but no backup. This allows users to not pay ransoms. Restore the data."

According to data provided by the Internet company Kryptos Logic, as of Wednesday, half of the global Internet addresses infected by WannaCry are located in China and Russia, accounting for 30% and 20% respectively.

According to Kryptos Logic, the United States accounted for only 7% of infected global Internet sites, compared with 2% in the United Kingdom, France, and Germany.

As of Friday, within seven days of the outbreak of the WannaCry virus, WannaCry’s cunning account appeared to receive only 309 payments worth about $94,000.

This is less than one thousandth of the estimated victim.

This may reflect a variety of factors that security experts say, including doubt that the attackers will fulfill their commitments, or that some organizations have backup storage plans that allow them to restore data without paying ransom.

(Liu Chun)

This article is NetEase original manuscript, copyright is owned by Netease, may not be reproduced without authorization, has been authorized to download the media must indicate the source of the manuscript: Netease, and offenders will be held accountable according to law.
.ep-statement{ clear: both;float: left;line-height: 2;font: 12px/22px 'Sim sun';color: #888;margin-top: 10px;}

ZGAR AZ Bingo Vape

ZGAR AZ Bingo Vape


ZGAR electronic cigarette uses high-tech R&D, food grade disposable pod device and high-quality raw material. All package designs are Original IP. Our designer team is from Hong Kong. We have very high requirements for product quality, flavors taste and packaging design. The E-liquid is imported, materials are food grade, and assembly plant is medical-grade dust-free workshops.


Our products include disposable e-cigarettes, rechargeable e-cigarettes, rechargreable disposable vape pen, and various of flavors of cigarette cartridges. From 600puffs to 5000puffs, ZGAR bar Disposable offer high-tech R&D, E-cigarette improves battery capacity, We offer various of flavors and support customization. And printing designs can be customized. We have our own professional team and competitive quotations for any OEM or ODM works.


We supply OEM rechargeable disposable vape pen,OEM disposable electronic cigarette,ODM disposable vape pen,ODM disposable electronic cigarette,OEM/ODM vape pen e-cigarette,OEM/ODM atomizer device.



Disposable E-cigarette, ODM disposable electronic cigarette, vape pen atomizer , Device E-cig, OEM disposable electronic cigarette,disposable vape,zgar bingo box

ZGAR INTERNATIONAL(HK)CO., LIMITED , https://www.szvape-pen.com