Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Data Protection

Storage Maker QNAP Warns of Malware Targeting Its NAS Devices

Network-attached Storage (NAS) device maker QNAP has published a security advisory to alert of malware targeting its NAS devices. 

Network-attached Storage (NAS) device maker QNAP has published a security advisory to alert of malware targeting its NAS devices. 

Rated High severity, the alert reveals that some QNAP storage appliances are affected by a recently reported malicious program, but doesn’t offer details on which products are impacted. 

“A recently reported malware is known to affect QNAP NAS devices. We are currently analyzing the malware and will provide the solution as soon as possible,” reads the advisory from the Taiwanese company. 

QNAP NAS customers are advised to manually update Malware Remover to the latest version, to make sure the QTS software running on the device is up to date, and to also update all applications on storage devices. 

The advisory also provides customers with information on how to update the Malware Remover, QTS, and the applications on the NAS, but offers little in terms of information regarding the malware affecting these devices. 

For several weeks, users took it to the QNAP NAS Community Forum to complain about issues with their devices, but the company only appears to have started an investigation into the issue last week, following an article on The Register. 

Infected devices apparently make a large number of requests to IP address 0.0.0.0. 

Users posting on the forum report that the most common issues they observed included firmware and antivirus failing update checks, and inability to install the Malware Remover. Some say that even the manual installation fails. 

Advertisement. Scroll to continue reading.

QNAP has apparently updated the Malware Remover script and users who run the latest version should be able to clear the infection. 

Malware targeting QNAP NAS appliances isn’t new. In fact, the company’s storage devices have been among those targeted by the VPNFilter attack that hit a critical infrastructure organization in Ukraine last year.

Related: VPNFilter Targets More Devices Than Initially Thought

Related: Critical Vulnerabilities Patched in QNAP Storage Devices

Written By

Ionut Arghire is an international correspondent for SecurityWeek.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Data Protection

The cryptopocalypse is the point at which quantum computing becomes powerful enough to use Shor’s algorithm to crack PKI encryption.

Artificial Intelligence

The CRYSTALS-Kyber public-key encryption and key encapsulation mechanism recommended by NIST for post-quantum cryptography has been broken using AI combined with side channel attacks.

Malware & Threats

The NSA and FBI warn that a Chinese state-sponsored APT called BlackTech is hacking into network edge devices and using firmware implants to silently...

Compliance

The three primary drivers for cyber regulations are voter privacy, the economy, and national security – with the complication that the first is often...

Data Protection

While quantum-based attacks are still in the future, organizations must think about how to defend data in transit when encryption no longer works.