The cyber attack targeted systems running Windows including the servers and even embedded systems. I AM NOT KIDDING about even embedded systems becoming the victims! It had targeted tons of organizations including the standard users and the solutions by the tech companies and security researchers were already outpaced by the attackers by this time with the new version of the attack that goes against the kill switch.
Generally, without data backup, security patches and even the latest virus database, you're already screwed if your data is encrypted by the attackers. What do you do when that happens? Do you reinstall Windows or something? Even using the other hard drive isn't going to help and don't bother paying up the ransom.
This isn't the ordinary cyber attack everyone has discovered as the attackers might have used the tools that were leaked from National Security Agency. The tools were leaked by another cyber-attack group called The Shadow Brokers, without the agency's knowledge but from the amount of exploits discovered by Microsoft, they were fixed with patches you should get via Windows Update. Originally, before the leak, the tools had been used for surveillance but the leakage already opened doors for other cyber-attackers and investigation is going to take months or years to find the culprits behind the attacks.
Right now, I'm not infected with this cyber catastrophe but being vigilant from cyber-attacks is one important key as there's a chance of the malware being evolved after the solutions are discovered or something for instance.
Lastly, about embedded systems infected by this, there are already such cases like in these picture tweets for instance:
- https://twitter.com/Sweet_Orange69/status/863780324756430848
- https://twitter.com/Lighting_Speed2/status/863552528377499648
It's a cyber catastrophe at a global level and if the culprits behind it are not found ASAP, who knows what will happen next?
One more thing I forgot to mention is about disabling the SMB as the workaround to this extraordinary cyber threat. In addition, Microsoft already had released the important security patches that you should apply like I already did. Well, I sort of patched my computer with the April and May security rollup patches but it seemed that I wasn't able to get the January one. Not to mention that even Windows Defender/Microsoft Security Essentials has the latest virus database so it looked like Microsoft said that Windows 10 users are secure with it and the security patches. However, there is a fear/worry that this safeness will not last long. I can also hope that even the editions of Windows that don't support running EXE files should be patched as well. Lastly, needless to say, catching cyber-criminals is no easy task. Not only is the investigation taking months to years or something, but also the fact that they have to be careful in tracking down the cyber-criminals without violating people's privacy. Violating people's cyber-privacy is unacceptable even by mistake as there will be lawsuits against organizations or perhaps cyber-criminals.