3 ms·
That was AFAIK WannaCry
by noway421 9y ago
That was AFAIK WannaCry
- mtgx 9y agoAlso Petya/NotPetya. And it used NSA's EternalBlue, too. https://redmondmag.com/articles/2017/06/27/petya-ransomware-outbreak.aspx https://redmondmag.com/articles/2017/06/27/petya-ransomware-...
- lawnchair_larry 9y agoBoth are correct. The NSA SMB exploit is typically ineffective for initial entry into a network because SMB is almost always blocked at the network boundary but almost never blocked internally. So both Petya and WannaCry had different means for the initial infection, then used SMB attacks to wreak havoc once inside. WannaCry was initially delivered using plain old email attachments, and Petya was delivered via a software update through a hacked update server.