Navigation

MCA @ U.C College Back

UCC MCA Spotlight

EternalBlue

Posted on 1 month ago       Comments

EternalBlue

EternalBlue

Experts at RiskSense have ported the leaked NSA exploit named ETERNALBLUE for the Windows 10 platform. This is the same exploit that was used by the WannaCry ransomware as part of its SMB self-spreading worm in the mid-May WannaCry outbreak that affected over millions of computers across the world.

The exploit was dumped online in mid-April by a group known as The Shadow Brokers, who claimed they stole it from the Equation Group, a codename given to the NSA.

Researchers who analyzed the exploit said ETERNALBLUE only worked against older Windows versions such as Windows XP, Windows Vista, Windows 7, Windows Server 2003, and Windows Server 2008. Nonetheless, during the WannaCry ransom ware attacks, because of the way the exploit was implemented, it mainly targeted Windows 7 machines, while on Windows XP, ETERNALBLUE caused a Blue Screen of Death.

Soon after the WannaCry update, researchers ported ETERNALBLUE for the Windows 8, Windows 8.1, and Windows Server 2012  platforms.

UCC MCA Spotlight

EternalBlue

EternalBlue

Posted on 1 month ago

EternalBlue

Experts at RiskSense have ported the leaked NSA exploit named ETERNALBLUE for the Windows 10 platform. This is the same exploit that was used by the WannaCry ransomware as part of its SMB self-spreading worm in the mid-May WannaCry outbreak that affected over millions of computers across the world.

The exploit was dumped online in mid-April by a group known as The Shadow Brokers, who claimed they stole it from the Equation Group, a codename given to the NSA.

Researchers who analyzed the exploit said ETERNALBLUE only worked against older Windows versions such as Windows XP, Windows Vista, Windows 7, Windows Server 2003, and Windows Server 2008. Nonetheless, during the WannaCry ransom ware attacks, because of the way the exploit was implemented, it mainly targeted Windows 7 machines, while on Windows XP, ETERNALBLUE caused a Blue Screen of Death.

Soon after the WannaCry update, researchers ported ETERNALBLUE for the Windows 8, Windows 8.1, and Windows Server 2012  platforms.