{"id":15212,"date":"2020-08-01T01:36:00","date_gmt":"2020-07-31T23:36:00","guid":{"rendered":"http:\/\/159.69.82.204\/win\/?p=15212"},"modified":"2020-09-15T23:11:53","modified_gmt":"2020-09-15T21:11:53","slug":"warnung-schwachstelle-in-qnap-nas-wird-angegriffen-62-000-infektionen","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2020\/08\/01\/warnung-schwachstelle-in-qnap-nas-wird-angegriffen-62-000-infektionen\/","title":{"rendered":"Warning: Vulnerability in QNAP NAS under attack, 62,000 infections"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline\" src=\"https:\/\/www.borncity.com\/blog\/wp-content\/uploads\/2015\/01\/Schutz.jpg\" width=\"40\" align=\"left\" height=\"47\">[<a href=\"https:\/\/www.borncity.com\/blog\/2020\/07\/31\/warnung-schwachstelle-in-qnap-nas-wird-angegriffen-62-000-infektionen\/\" target=\"_blank\" rel=\"noopener noreferrer\">German<\/a>]Another short warning for users who have QNAP NAS drives in use. The Qnatch malware has already managed 62,000 infections of such drives. In the meantime, the British and US governments are warning of this danger. <\/p>\n<p><!--more--><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" alt=\"\" src=\"https:\/\/vg05.met.vgwort.de\/na\/67d2e2f21b35460aa3bad517783a30c0\" width=\"1\" height=\"1\">I already became aware of the issue a few days ago via the following tweet &#8211; but I haven't had time to prepare it yet.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">Data-stealing, password-harvesting, backdoor-opening QNAP NAS malware Qsnatch reaches 62,000 infections <a href=\"https:\/\/t.co\/78jtwwITjK\">https:\/\/t.co\/78jtwwITjK<\/a><\/p>\n<p>\u2014 Nicolas Krassas (@Dinosn) <a href=\"https:\/\/twitter.com\/Dinosn\/status\/1287942384404365313?ref_src=twsrc%5Etfw\">July 28, 2020<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script> <\/p>\n<p>Security expert Nicolas Krassas points out that the malware Qsnatch has already infected 62,000 QNAP NAS drives. The Register has published an article <a href=\"https:\/\/www.theregister.com\/2020\/07\/27\/qnap_qsnatch_advisory\/\" target=\"_blank\" rel=\"noopener noreferrer\">Data-stealing, password-harvesting, backdoor-opening QNAP NAS malware cruises along at 62,000 infections<\/a> on this topic.&nbsp; Meanwhile, the British and US governments have issued a <a href=\"https:\/\/us-cert.cisa.gov\/ncas\/alerts\/aa20-209a\" target=\"_blank\" rel=\"noopener noreferrer\">joint statement with a warning<\/a> of this danger.&nbsp;&nbsp; <\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">UK\/US Governments Warn of QNAP NAS Malware <a href=\"https:\/\/t.co\/leFTF3i6zY\">https:\/\/t.co\/leFTF3i6zY<\/a><\/p>\n<p>\u2014 Infosecurity Magazine (@InfosecurityMag) <a href=\"https:\/\/twitter.com\/InfosecurityMag\/status\/1288047922546978818?ref_src=twsrc%5Etfw\">July 28, 2020<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script>In an alert, the authorities write that CISA and NCSC are monitoring the QSnatch malware family. Attackers have been using the malware since the end of 2019 against NAS (Network Attached Storage) devices from QNAP in order to compromise them.<\/p>\n<p>All QNAP NAS devices without the latest security fixes are potentially vulnerable to the QSnatch malware. This malware has infected thousands of devices worldwide with a particularly high number of infections in North America and Europe. In addition, once a device is infected, attackers can prevent administrators from successfully updating firmware. A downloadable PDF file contains some more information. <\/p>\n<p>But the whole topic is not new &#8211; in November 2019 I had reported in the blog post <a href=\"https:\/\/borncity.com\/win\/2020\/08\/01\/warnung-schwachstelle-in-qnap-nas-wird-angegriffen-62-000-infektionen\/\" target=\"_blank\" rel=\"noopener noreferrer\">QSnatch Malware infects QNAP NAS drives<\/a> that a malware called QSnatch targets network storage from QNAP. There you can also find hints what you should know about Qsnatch malware. The manufacturer QNAP offers firmware updates to protect against this malware. A security message from QNAP can be found <a href=\"https:\/\/www.qnap.com\/en-us\/security-advisory\/nas-201911-01\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>[German]Another short warning for users who have QNAP NAS drives in use. The Qnatch malware has already managed 62,000 infections of such drives. In the meantime, the British and US governments are warning of this danger.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[448,580],"tags":[950,1079],"class_list":["post-15212","post","type-post","status-publish","format-standard","hentry","category-devices","category-security","tag-nas","tag-sicherheit"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/15212","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=15212"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/15212\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=15212"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=15212"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=15212"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}