5 ms·
WCry 2.0 functions perfectly under Wine
- aeleos 9y agoThat is pretty scary. Anyone know if there is any info on if it will only encrypt the c_drive folder that wine makes or the entire fs?
- swiley 9y agoIsn't the entier fs exposed as Z: or so in wine? I know there's some way to get to the user's home directory which is probably good enough to cause essentially the same amount of pain.
- aeleos 9y agoyea it seems Z: is mapped to the root fs, so if wine has the right permissions it could cause some damage.
- pinpeliponni 9y agoMost interesting. However, you have to butcher your system a bit in order to make that happen... That doesn't say there aren't setups like that, but they are really one out of million.
- marcoperaza 9y agoHow is that so? I believe Wine processes have r/w access to the user's home directory.
- Sammi 9y agoAnd most of your valuable stuff will be in your user dir if you're on a personal computer.
- viraptor 9y ago> entier fs exposed as Z: or so in wine By default only. You can easily disable that. It always made me worried that anything in wine got access to my system, even though I normally wanted something closer to an isolated instance, so I always disabled that.
- gpvos 9y agoThere may also be links to your home directory as "Desktop", "My Documents", etc. See winecfg for these. And note that your registry files may refer to Z: (mostly for fonts, it seems), or even directly to files outside your Wine directory.
- CyberShadow 9y agoIf the software is Wine-aware, it doesn't matter. The \\unix\ filesystem namespace allows programs running under Wine to access the host filesystem whether it's mapped as a drive or not. And, of course, since Wine Is Not an Emulator, it could also use POSIX APIs or Linux kernel syscalls directly if it wanted to.
- gpvos 9y agoHave there been reports of Wine-aware malware already? (If not, the next generation probably will, though.)
- tinus_hn 9y agoWine is not an isolation layer. You can disable the Z: drive but the applications running in Wine still have about the same access a normal application has.
- Retr0spectrum 9y agoOn that note, is is possible to sandbox wine so that it can only access the c_drive folder, not the whole host fs?
- chinarulezzz 9y agoYep. Try apparmor or similar.
- daxfohl 9y agoWeird. Is wine based off XP?
- microcolonel 9y agoNo, you don't need to exploit the bug to run the software; this involves running it manually.
- michaelmrose 9y agowannacry isn't limited to windows xp
- nthcolumn 9y agoif you know of a wcry windows xp infection let us know please.
- ibic 9y agoWCry set up an example how to let users screw up themselves easily.
- flukus 9y agoAnd I still can't get Starcraft HD to work...
- deleted 9y ago[deleted]
- chipperyman573 9y agoYeah, well over encrypts your files and the other is a full game
- rickdg 9y agoBlizzard and Adobe, the guardians of Windows.
- ailideex 9y agoMany blizzard games work almost perfectly under wine including warcraft 3, starcraft and world of warcraft. Last time I tried starcraft anthology (digital download) I did not have any problems.
- frubar 9y agoEh? I'm under the strong impression that Adobe works nicer on Mac than Windows.
- lois 9y agoI haven't noticed much of a difference. Even if there is, there's the matter of the Mac price tag. and the utter agony of using a Mac if you're used to Windows. If you lack the budget for a Mac but you want to do graphic design, Windows is the logical choice.
- frubar 9y agoFair enough but the parent comment claimed that Adobe (and Blizzard) were keeping Windows alive. How can that be if it runs better or at least just as good on Mac?
- joveian 9y agoA good reminder to run wine as a different user...
- helb 9y ago…and disable the Z: drive (which maps to linux / by default).
- shimon_e 9y agoRun wine inside an emulator... oh wait
- Asooka 9y agoI use a separate user session with a separate X server to run games, which is about 100% of my use of Wine. Granted, that's not out of paranoia, but because video mode switching makes my windows resize and go all over the place and sometimes the window manager crashes, so simply running a barebones OpenBox session specifically for games results in less pain than letting them run on my main desktop.
- janwillemb 9y agoOne of the comments: "truly this is the year of the Linux desktop"
- ScalaNovice 9y agoThe entire reply chain is gold
- deleted 9y ago[deleted]
- red2awn 9y agoI uninstalled wine a few weeks ago :)
- kabes 9y agoSo I could run this in Wine on top of windows subsystem for linux and screw up my host windows?
- davidgerard 9y agoWine has long been sufficiently compatible with Windows to run malware. I added a bit about this to the Wine FAQ in 2009 I think ;-) IIRC the ZeroWine malware analyser would run malware in Wine in Debian in a QEMU virtual machine. The question here is not whether it runs, but whether it can infect.
- hd4 9y agoNo, the more pressing question is whether it can run, specifically whether it can run without intervention, and I'm willing to bet a lot of money/bitcoins that it can't, purely because it couldn't gain access to the machine unless those ports were open.
- pietrasagh 9y agoIs there any way to isolate wine and limit write permisions to user files? I only found this https://askubuntu.com/questions/327223/how-to-isolate-wine#327259 https://askubuntu.com/questions/327223/how-to-isolate-wine#3...
- mike-cardwell 9y agoSame way you isolate any program on Linux. SELinux, AppArmor, or running as a dedicated user. [edit] I suppose there are containers nowadays too.
- pmlnr 9y agocontainers still need apparmor/selinux to be secure; a container is just a packaging method without those.
- basemi 9y agoI would try firejail https://firejail.wordpress.com/
- deleted 9y ago[deleted]
- giis 9y agoI'd like to give it a try later today with Wine under Linux VM. Anyone know the download link for wannacry? I'll update the findings here :)
- capitalF 9y agohttps://github.com/ytisf/theZoo/tree/master/malwares/Binaries/Ransomware.WannaCry https://github.com/ytisf/theZoo/tree/master/malwares/Binarie...