Taiwanese vendor QNAP has urged its customers to update the firmware and apps installed on NAS devices to avoid AgeLocker ransomware infections.

Security experts have warned that encoded files can’t be recovered without paying the ransom to the ransomware operators.

It’s observed that the new strain of ransomware is targeting QNAP devices since June.

Last week, QNAP published a security advisory that provides technical information about the AgeLocker and steps to alleviate threats.

The company labeled two attack situations that let the AgeLocker gain access to QNAP devices. In the first situation, the attackers could target the QNAP device firmware, while in the second one the target is signified by a default app that come preinstalled with new QNAP systems.

“Current intelligence pointed out that AgeLocker-affected systems are mostly macOS and Linux devices, and QNAP’s initial investigation showed that no unpatched vulnerabilities are found in QTS. All known affected NAS are running older, unpatched QTS versions.” reads a blog post published by the vendor.

The vendor also established that older versions of the PhotoStation app are impacted by known security flaws.

“QNAP Product Security Incident Response Team (PSIRT) has found evidence that the ransomware may attack earlier versions of Photo Station. We are thoroughly investigating the case and will release more information as soon as possible.” the company added in an alert published last week.

“Once again, QNAP urges users to periodically check and install product software updates to keep their devices away from malicious influences,” continues the post.

Earlier this, the company issued another alert to warn its users of a wave of attacks spreading a ransomware strain tracked as eCh0raix.

Leave a Reply

Your email address will not be published. Required fields are marked *