RansomWeb: Crooks Start Encrypting Websites and Demanding Thousands of Dollars
forbes.com
forbes.com
Maybe they didn't think it that far through?
I'm hoping that jedisct1 will add a parallel functionality to libsodium soon. :)
The specific similarity with PGP that jumped to mind is that you're not actually using your key (or recipients key) to encrypt the message. You're actually generating a random session key to encrypt the message contents and then you're encrypting the session key against the recipients key and sending them that.
I was really taken by surprise the first time I read that, but after playing some more with crypto "obviously" you'd have to -otherwise what happens when your message is longer than your key?
How the heck does this happen to a real company, supposedly with a disaster recovery plan?
Seems like the obvious fix is blow away / reformat the compromised server, reload web application source code (backed up on another box, right?), reload application data (backed up on another box, right?) and away we go....
For a financial company???? <sadness>
So, restoring from a backup wouldn't get you much of anywhere, since the backed-up data would still be encrypted. Even assuming your backups are separate and uncompromised, you'd still have to go back to before the original compromise and lose 6 months worth of data.