Western Digital, maker of the favored My Disk exterior onerous drives, is recommending clients unplug My Book Live storage units from the Internet till additional discover whereas firm engineers examine unexplained compromises which have utterly wiped information from units around the globe.
The mass incidents of disk wiping got here to mild on this thread on Western Digital’s help discussion board. So far, there aren’t any reviews of deleted information later being restored.
All my information is gone
“I have a WD mybook live connected to my home LAN and worked fine for years,” the individual beginning the thread wrote. “I have just found that somehow all the data on it is gone today, while the directories seems there but empty. Previously the 2T volume was almost full but now it shows full capacity.”
Other My Book Live customers shortly joined the dialog to report they, too, had skilled exactly the identical factor. “All my data is gone too,” one consumer quickly responded. “I am totally screwed without that data… years of it.”
Multiple customers reported that the info loss coincided with a manufacturing facility reset that was carried out on their units. One individual posted a log that confirmed unexplained conduct occurring on Wednesday:
Jun 23 15:14:05 MyBookLive factoryRestore.sh: start script:
Jun 23 15:14:05 MyBookLive shutdown: shutting down for system reboot
Jun 23 16:02:26 MyBookLive S15mountDataVolume.sh: start script: begin
Jun 23 16:02:29 MyBookLive _: pkg: wd-nas
Jun 23 16:02:30 MyBookLive _: pkg: networking-general
Jun 23 16:02:30 MyBookLive _: pkg: apache-php-webdav
Jun 23 16:02:31 MyBookLive _: pkg: date-time
Jun 23 16:02:31 MyBookLive _: pkg: alerts
Jun 23 16:02:31 MyBookLive logger: hostname=MyBookLive
Jun 23 16:02:32 MyBookLive _: pkg: admin-rest-api
“I believe this is the culprit of why this happens,” the individual wrote. “No one was even home to use this drive at this time.”
The My Book is a well-liked storage gadget for customers and companies. It plugs into computer systems, sometimes via USB. The affected mannequin right here, generally known as My Book Live, makes use of an ethernet cable to hook up with an area community. From there, customers can remotely entry their information and make configuration modifications via Western Digital cloud infrastructure. Western Digital stopped supporting the My Book Live in 2015. The help discussion board thread was first reported by Bleeping Computer.
On its web site, Western Digital suggested clients to disconnect their My Book Live units to stop additional assaults whereas the corporate investigates the mass wiping.
In an e mail, Western Digital officers wrote:
The incident is beneath energetic investigation from Western Digital. We would not have any indications of a breach or compromise of Western Digital cloud providers or programs.
We have decided that some My Book Live units have been compromised by a risk actor. In some instances, this compromise has led to a manufacturing facility reset that seems to erase all information on the gadget. The My Book Live gadget acquired its ultimate firmware replace in 2015.
At this time, we’re recommending that clients disconnect their My Book Live units from the Internet to guard their information on the gadget.
We have issued the next assertion to our clients and can present updates to this thread when they’re out there: https://group.wd.com/t/action-required-on-my-book-live-and-my-book-live-duo/268147
The restricted quantity of knowledge out there in the mean time makes it onerous to find out what’s inflicting this mass information destruction. Reading between the strains, Western Digital’s assertion appears to be saying buyer accounts have been individually compromised. The recommendation to unplug units whereas the investigation continues is warranted, and customers ought to observe it as quickly as potential.
In the meantime, My Book Live customers try to handle the hardship introduced on by the incident.
“It is very scary and devastating that someone can do factory restore on my drive without any permission granted from the end user,” one consumer wrote. “I need a remedy to this issue immediately as this is already incurring a great cost to me.”
Post up to date to emphasise that solely My Book Live units are reported to be affected.