Unlike unbalanced tires, shaking caused by a bad wheel bearing should be obvious from the side of the car where the bearing is failing.

Hey, is it OK to pay ransom? Not OK to pay ransom? This is my personal advice – depending on the situation you’re dealing with, if it’s a life and death situation, where the physical security case of hospitals, it’s the life of the patients that are there getting treatment, if the systems are down because there was an encryption attack carried out, you will have to pull the trigger in order to save those, those real lives.

You can service or replace tapered wheel bearings yourself. Never reuse any wheel bearing that’s loose, worn, noisy or shows any signs of wear.

Deepen Desai: Many of these – and I’m going to generalise, since RansomHub is one of several ransomware-as-a-service affiliates – they all have a similar profit-sharing model where there are initial access groups. We call them initial access brokers, right? Those are basically experts at getting inside your environment, whether it’s through phishing, whether it’s through vishing, [or] whether picking up the phone and calling your IT help desk, we’re seeing more and more initial access brokers leveraging different techniques to get inside and then they’re renting this ransom-as-a-service infrastructure to carry out end-to-end ransomware attacks, including encrypting the file, decryption tools, data exfiltration, lateral propagation, all of that.

Image

In any of these attacks that we see, they are following four stages, where they find you, they compromise that first identity, first asset, first application. They move laterally in your environment; this third stage, where they move from that first identity, first asset, to all your assets in the environment, leading them to the crown jewel application, is the biggest damaging stage of the ransomware attack.

And so, the government cracks down, and regulation around this will continue to increase because they ultimately want to stop this threat. And there are a lot of global operations being carried out, but it’s a hard problem to solve.

What you’re seeing is even though the growth is not that high in terms of percentage, and I wish we had that number, which is the ransom amount that was demanded from all these victims, that amount is slowly and steadily going up. And as you saw in the latest report, we spotted US$75 million as the highest ransom getting paid this year, in March, by a Fortune 50 company. So we’re seeing more of a big game hunting approach, where they’re going after smaller targets, more opportunistic, but where the probability of payout is very, very high, and large payout is what we’re talking about.

Simply stated, wheel bearings allow cars and trucks to run smoother and more efficiently by reducing friction and supporting vehicle weight. When they start to fail, you can usually tell.

David Hollingworth has been writing about technology for over 20 years, and has worked for a range of print and online titles in his career. He is enjoying getting to grips with cyber security, especially when it lets him talk about Lego.

Similarly, there are a lot of scenarios where there is so much sensitive information that is getting stolen by these bad guys that it can cause a national security risk, or it could risk an IP that this company will entirely go down, and they will have to pull the trigger in that case, as well as paying the ransom. We’ve also seen examples like, in the US, a gaming casino chose not to pay ransom, right? And then they incurred a big loss because it was not operational for a few days while they were recovering.

A bad wheel bearing can cause a tire/wheel to move or glide unevenly or sluggishly. It can also cause your brakes to drag, pulling your vehicle to one side when you try to stop.

According to Simes, a failing wheel bearing will likely produce a soft, faint vibration that’s felt before it’s heard. There may also be a vague rhythmic humming or droning sound that increases over time and with speed.

On many vehicles, the ABS sensor is built into the wheel bearing, or it’s externally mounted adjacent to the spinning part of the bearing where the sensor measures vehicle speed. Damaged from a wobbly wheel bearing, the sensor will send erratic readings to the vehicle’s computer, illuminating the ABS light.

It’s already happening, though. It’s not like organisations over here are not on that path, but it needs to be pushed by the government as well, where… “Hey, this needs to be a bare minimum zero-trust requirement, where you’re able to get ahead of some of these common TTPs that we’re seeing over and over again in many of these attacks”. Entry point is the only changing thing.

Read on to learn the most common bad wheel bearing symptoms, based on my experience (50 years in the industry) and that of Joe Simes, a National Institute for Automotive Service Excellence (ASE) certified and Toyota master technician. But first, a little background.

Cyber Daily: So earlier this year, RansomHub was particularly, particularly active in Australia. It felt like every other day I was writing a story about them. They got three engineering firms, just randomly. What do Australian businesses need to know about how a gang like RansomHub, which is a ransomware-as-a-service operation, go about doing what they do to their victims?

In the case of the US$75 million ransom that we mentioned in the report, they did not encrypt the files. They did not cause any business disruption, so the company stayed operational. This is a Fortune 50 company, but they stole tons and tons of data, which is falling in that category that I just described, which is so sensitive that it cannot leak out, and then these guys pay up.

Cyber Daily: What really amazes me is how, with just 2 per cent of the world’s ransomware attacks targeting Australia, that still puts us at number seven on the list of most targeted countries, in this year’s report from Zscaler. Are these hackers simply opportunistic, or is there something about the Australian environment that makes us particularly susceptible to ransomware attacks – are we just an attractive target?

Image

But that’s a completely probable option as well for an organisation. Again, in that case, no life was getting lost. Yes, there was revenue getting lost. If the company wasn’t generating revenue for a week, maybe not. And that’s where… That’s the path they took.

But sealed wheel bearings are non-serviceable and should never be repaired, only replaced. Even if a pro suggests repairing a bearing, don’t let them. Trying to reuse a damaged wheel bearing can result in an accident and severe injury.

Depending on the vehicle, you can save hundreds in labor replacing wheel bearings yourself. Most auto parts stores will lend you the specialty tools and equipment needed to replace a wheel bearing.

We are no longer supporting IE (Internet Explorer) as we strive to provide site experiences for browsers that support new web standards and security practices.

But think about it: if you have a true zero-trust implementation, that entry point will lead to one incident, one machine, one identity incident, not an entire environment- or entire organisation-impacting incident like we see today.

Another casino, it chose the path of paying US$50 million in ransom. So again, there is a grey area where, depending on the business, depending on the situation you are in, you may choose to pay the ransom. You may not choose to pay ransom. But the core requirement is, especially in the US now, you have to report these attacks. You have to make people aware. The SEC mandates that for all publicly traded companies, and we will see more and more of regional enforcement across the globe around this, because what these bad guys are doing is they’re trying to stay under the radar. They don’t want law enforcement to know when they successfully target a victim.

Zscaler’s chief security officer and head of research believes paying a ransom can sometimes be the only option to keep sensitive data safe.

And the fourth stage is where they’re stealing data, and they’re stealing terabytes and terabytes of data. So, coming back to your question, what do organisations in Australia need to do? Just like we’re seeing a strong push from the US government around zero-trust adoption, we need to start seeing that over here as well.

Deepen Desai: The breakdown that you see in the report is where the team is actually tracking real successful ransomware attacks that are publicly known. So, these are where leak sites are already listing the companies.

Joe Simes is an ASE and Toyota master technician. After 20 years in the industry, Simes recently became a Pennsylvania Department of Education certified automotive technology instructor at North Montco Technical Career Center in Lansdale, Pennsylvania.

You’ll hear clicking, cracking, grinding, snapping, or whining noises coming from your wheels or tires. They’ll increase when accelerating or turning.

Friction from a failing wheel bearing produces heat. After driving, without touching the tires or wheels, carefully walk around your vehicle and use a non-touch thermometer to measure if one is hotter than the others.

The average cost to replace a sealed wheel hub bearing is $350 per wheel. However, depending on the make and model, shop labor rate, the cost of the bearing itself and any additional damage, the total could exceed $1,000.

Image

Seventy-three is what I see as successful attacks that we saw in our latest annual report. Before that, it was around 68, so it’s mostly flat, but it is still an attractive target.

Absolutely not. It’s crucial to get bad wheel bearings diagnosed and replaced ASAP. If not, you could lose a wheel or get in an accident.

The cage and rollers are held together inside a hardened metal ring called a “race.” The seal keeps grease in and damaging water and debris out. Wheel bearings are installed inside, and secured to, the suspension, either by press fit, bolts or a snap-ring. Once mounted, the wheel bearing rides on the axle shaft, allowing the tire/wheel to spin effortlessly.

NOTE: Whether you DIY or your mechanic replaces the bearing, always install a new axle hub nut. Most hub nuts are prevailing torque fasteners, used on critical components (like securing axle shafts to hub bearings) where a loose nut could lead to disastrous consequences.

On modern front- and four-wheel drive cars, wheel bearings are a set of permanently sealed, precisely machined steel ball or straight roller bearings. The balls, or rollers, are encased in a “cage” that supports the bearings, allowing them to rotate freely.

Cyber Daily: I guess that would mean targets like hospitals and education, you know, where you have this huge trove of intensely personal data and a community of people who do not want to see it compromised, and so the hospital or school will pay up just because it’s the safest thing to do. Do you think that’s the wise thing to do?