Results 1 to 4 of 4

Thread: Hacker Encrypts Hard Drive

  1. #1
    Join Date
    Oct 2008
    Location
    UK
    Beans
    1,816
    Distro
    Ubuntu Mate 22.04 Jammy Jellyfish

    Hacker Encrypts Hard Drive

    If one dual boots Windows and Ubuntu using separate partitions (ntfs for windows and ext4 for ubuntu) what happens if a hackers encrypts the hard drive via the windows environment? Is only the windows partitions locked out/encrypted or the whole disk?

  2. #2
    Join Date
    Aug 2006
    Beans
    13,354
    Distro
    Ubuntu Mate 20.04 Focal Fossa

    Re: Hacker Encrypts Hard Drive

    This is too general, but, in case someone has admin access to Windows, it would be possible to encrypt all partitions. Some may say that Windows can't read linux partitions by default, but, there are drivers for that, and a stranger having admin access can alter the defaults anyway.

  3. #3
    Join Date
    Nov 2011
    Beans
    2,336
    Distro
    Ubuntu

    Re: Hacker Encrypts Hard Drive

    It would depend on the intent, skills and interests of the person who wrote the software doing the encryption. The crypto-ransom malware victimizing Windows users is a criminal money making effort. Linux partitions are not invisible to Windows. The partition itself is visible. It's just that Windows isn't equipped to read the Linux file systems used on those partitions. A malware developer could add the capability to read Linux filesystems. Or, perhaps, do the encryption at a "bare metal" level. But that seems, as usual, a bad investment of time and resources given the small Linux user population.

    Simply deleting a Linux partition wouldn't be difficult. Nor would writing zeros over the partition, given enough time.

  4. #4
    Join Date
    Jan 2010
    Location
    Hyperborea
    Beans
    2,045
    Distro
    Ubuntu 16.04 Xenial Xerus

    Re: Hacker Encrypts Hard Drive

    AFAIK A more likely scenario is that a compromised Windows PC is connected to a Linux network. The malware is just searching for file extensions like .doc, it won't see that they are connected by Samba. That is to say the malware will just see folders full of files and not the underlying file system.

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •