Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Hackers Hit Dozens of Countries With a Stolen N.S.A. Tool
New York Times ^ | May 12, 2017 | By DAN BILEFSKY and NICOLE PERLROTH

Posted on 05/12/2017 1:00:35 PM PDT by Oldeconomybuyer

Hackers using a tool stolen from the United States government conducted extensive cyberattacks on Friday that hit dozens of countries around the world, severely disrupting Britain’s public health system and wreaking havoc on computers elsewhere, including Russia.

The tool was leaked by a group calling itself the Shadow Brokers, which has been dumping stolen N.S.A. hacking tools online since last year. Microsoft rolled out a patch for the vulnerability in March, but hackers apparently took advantage of the fact that vulnerable targets — particularly hospitals — had yet to update their systems.

The malware was circulated by email. Targets were sent an encrypted, compressed file that, once loaded, allowed the ransomware to infiltrate its targets.

Among the many other affected institutions were hospitals and telecommunications companies across Europe and Asia, according to MalwareHunterTeam, a security firm that tracks ransomware attacks.

But the extent of the ransomware attacks could be much broader, as the MalwareHunterTeam said it tracks only attacks that have been reported by the victims. Spain’s Telefónica and Russia’s MegaFon were among the largest of the businesses targeted.

Other countries where attacks were reported included Japan, the Philippines, Turkey and Vietnam.

Spain’s national cryptology center said it was dealing with “a massive ransomware attack” affecting Windows systems used by various organizations, without naming them.

Later on Friday, Portugal reported a similar attack. Carlos Cabreiro, the director of a police unit that fights cybercrime, told the newspaper Público that the country was facing “computer attacks on a large scale against different Portuguese companies, especially communication operators.”

(Excerpt) Read more at nytimes.com ...


TOPICS: Crime/Corruption; Foreign Affairs; News/Current Events
KEYWORDS: 201705; closedsource; corporate; cybersecurity; cyberwareattack; cyberwarfare; hack; microsoft; nsa; nsahackingtools; obamasfault; phishing; ransomeware; ransomewareattack; ransomware; shadowbrokers; trailertrash; windows; windowspinglist; worldwide
Navigation: use the links below to view more comments.
first previous 1-2021-30 last
To: Oldeconomybuyer; dayglored
It is CRITICAL that Windows users update their operating systems with MS17-010. Patching information can be found here.

All jokes and blame aside, this is being heavily exploited and is condition red/severity A across every major security vendor in the world. If you think you are safe by not patching your machine, you're in for a rude awakening.

If you think you're safe using an operating system older than Vista, you're really just biding your time until you lose everything.

This vulnerability is in the SMB (Server Message Block) framework and is very easy to exploit.

Please do not become a statistic!

21 posted on 05/12/2017 4:24:55 PM PDT by rarestia (Repeal the 17th Amendment and ratify Article the First to give the power back to the people!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: rarestia; Abby4116; afraidfortherepublic; aft_lizard; AF_Blue; amigatec; AppyPappy; arnoldc1; ...
PATCH NOW. RIGHT NOW! ... PING!

You can find all the Windows Ping list threads with FR search: just search on keyword "windowspinglist".

Thanks to rarestia for the ping!

22 posted on 05/12/2017 7:38:06 PM PDT by dayglored ("Listen. Strange women lying in ponds distributing swords is no basis for a system of government.")
[ Post Reply | Private Reply | To 21 | View Replies]

To: Oldeconomybuyer

Related article:

https://theintercept.com/2017/05/12/the-nsas-lost-digital-weapon-is-helping-hijack-computers-around-the-world/


23 posted on 05/12/2017 8:08:32 PM PDT by upchuck (Greed is a word leftists use to describe what conservatives call ambition. h/t Mike Rosen)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Oldeconomybuyer

Based on several articles I have read on this, the malware enters via a phishing email. Be careful out there.

I’ve added lots of filters to my email. About 40% of the email I receive is intercepted by the filters. In addition, my ISP has a block list for email which I use. The ISP sends me a list on a monthly basis listing the emails that have been blocked.

You can’t be too careful.


24 posted on 05/12/2017 8:26:38 PM PDT by upchuck (Greed is a word leftists use to describe what conservatives call ambition. h/t Mike Rosen)
[ Post Reply | Private Reply | To 1 | View Replies]

To: rarestia

Interesting: Microsoft no longer supports Vista, but they released a Vista patch for this exploit. Nothing for XP.


25 posted on 05/12/2017 9:09:55 PM PDT by TChad (Propagandists should not be treated like journalists.)
[ Post Reply | Private Reply | To 21 | View Replies]

To: TChad
Vista Service Pack 2 is technically supported until 2019. If you check the Lifecycle Policy, you'll note a support caveat for service packs:

Support ends 24 months after the next service pack releases or at the end of the product's support lifecycle, whichever comes first.

26 posted on 05/13/2017 4:31:35 AM PDT by rarestia (Repeal the 17th Amendment and ratify Article the First to give the power back to the people!)
[ Post Reply | Private Reply | To 25 | View Replies]

To: i_robot73

I’m thinking that Obama was head honcho when the NSA tools walked into the real world.


27 posted on 05/13/2017 4:50:44 AM PDT by Yo-Yo (Is the /sarc tag really necessary?)
[ Post Reply | Private Reply | To 18 | View Replies]

To: Buckeye McFrog
They can give you a heart transplant. They can repair a shattered pelvis. But they can't update Windows.

"Dammit Jim! I'm a doctor, not a systems analyst"

28 posted on 05/13/2017 5:01:08 AM PDT by Sirius Lee (In God We Trust, In Trump We Fix America)
[ Post Reply | Private Reply | To 10 | View Replies]

To: blam

Why doesn’t the NSA assume it’s POSSIBLE someone will steal their stuff... Then the NSA could build into the software a way to shut it down...

In all the thousand of lines of code it’s unlikely hackers would find the back door quickly enough...

Or can’t this be done?


29 posted on 05/13/2017 10:03:08 AM PDT by GOPJ (The liberal media is the thug arm of the Democrat Party.)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Oldeconomybuyer; Fedora

Relates to this recent article about the Shadow Brokers ?

http://freerepublic.com/focus/news/3630886/posts

Also see Equation Group


30 posted on 02/10/2018 11:32:17 AM PST by piasa (Attitude adjustments offered here free of charge)
[ Post Reply | Private Reply | To 1 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-30 last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson