Surfer worked from bedroom to beat 'WannaCry' cyberattack
British IT expert Marcus Hutchins who has been branded a hero for slowing down the WannaCry global cyber attack, during an interview in Ilfracombe, England on Monday, May 15, 2017. (AP / Frank Augstein)
Danica Kirka, The Associated Press
Published Tuesday, May 16, 2017 6:48AM EDT
Last Updated Tuesday, May 16, 2017 11:57AM EDT
ILFRACOMBE, England -- As a vast "ransomware" attack raced from computer to computer, infecting tens of thousands around the world, a young tech expert worked from his bedroom in England to bring the rampage to a halt.
But Marcus Hutchins doesn't consider himself a hero.
The 22-year-old credited with cracking the WannaCry cyberattack told The Associated Press he fights malware because "it's the right thing to do."
In his first face-to-face interview, Hutchins, who works for Los Angeles-based Kryptos Logic, said late Monday that hundreds of computer experts worked throughout the weekend to fight the virus, which paralyzed computers in some 150 countries.
"I'm definitely not a hero," he said. "I'm just someone doing my bit to stop botnets."
In the first hours after the virus struck Friday, the computer whiz and surfing enthusiast who lives with his family in a small seaside town in southwest England discovered a so-called "kill switch" that slowed the unprecedented outbreak. He then spent the next three days fighting the worm that crippled Britain's hospital network as well as factories, government agencies, banks and other businesses around the world.
WannaCry paralyzed computers running mostly older versions of Microsoft Windows by encrypting users' computer files and displaying a message demanding a ransom of $300 to $600 to release them; failure to pay would leave the data mangled and likely beyond repair.
Hutchins said he came across the solution when he was analyzing a sample of the malicious code and noticed it was linked to an unregistered web address. He promptly registered the domain, something he regularly does to discover ways to track or stop cyber threats, and found that stopped the worm from spreading.
Kryptos Logic chief executive Salim Neino said Hutchins' quick work allowed him to slow the virus on Friday afternoon European time, before it could fully affect the United States.
"Marcus, with the program he runs at Kryptos Logic, not only saved the United States but also prevented further damage to the rest of the world," Neino said in an interview from Venice, Italy. "Within a few moments, we were able to validate that there was indeed a kill switch. It was a very exciting moment."
Neino said the worm was "poorly designed" -- patched together and a "sum of different parts" with an unsophisticated payment system.
Kryptos Logic is one of hundreds of companies working to combat online threats for companies, government agencies and individuals around the world. Hutchins himself is part of a global community that constantly watches for attacks and works to thwart them, often sharing information on Twitter.
It's not uncommon for members to use aliases, to protect from retaliatory attacks and ensure privacy, and Hutchins has long tweeted under the handle MalwareTech, which features a profile photo of a pouty-faced cat wearing enormous sunglasses.
But he realizes his newfound fame will mean an end to the anonymity.
"I don't think I'm ever going back to the MalwareTech that everyone knew," said the curly-haired young man, shrugging and flashing a winning smile.
Hutchins' mother Janet, a nurse, couldn't be prouder -- and was happy to have the veil of anonymity lifted. When her son made the breakthrough, she said, she wanted to tell the world about it.
"I wanted to scream, but I couldn't," she said.
And now he's a celebrity. He's been in touch with the FBI, as well as British national cyber security officials.
His new life is likely to be a big adjustment. Hutchins works out of his bedroom in the seaside resort town of Ilfracombe on a sophisticated computer setup with three large screens. The concept of celebrity was clearly foreign to him.
He was nervous about giving an interview. The journalists were given the address minutes before it started, and had to provide a password before Hutchins would let them in. As he did a sound-check for the camera, he was so anxious he misspelled his last name, giving it as "H-U-T-C-H-I-S," without the "n." His mother made tea and coffee for the visitors.
Once Hutchins started to talk, he relaxed. Constantly smiling, he was shy and polite, and happy to explain how he fights malware. He said he was eager to get through the media frenzy and go back to his normal life.
"I felt like I should agree to one interview," he said.
Many will be following his next moves. CyberSecurity Ventures, which tracks the industry, estimates global spending on cybersecurity will jump to $120 billion this year from just $3.5 billion in 2004. It forecasts expenditures will grow between 12 per cent and 15 per cent annually for the next five years.
"While all other technology sectors are driven by reducing inefficiencies and increasing productivity, cybersecurity spending is driven by cybercrime," the firm said in a February report. "The unprecedented cybercriminal activity we are witnessing is generating so much cyber spending, it's become nearly impossible for analysts to keep track."
After more analysis, Hutchins, an avid surfer, plans to take a vacation -- travelling to Las Vegas and California on the company dime.
One guess on what he'll be doing:
Yes, surfing. On waves this time.
Associated Press writer Sheila Norman-Culp in London contributed to this report.