-
Even though there’s a BlueKeep exploit for sale, it doesn’t work very well – doesn’t propagate, for example
Catalin Cimpanu wrote in ZDNet on Friday that there’s a “weaponized” BlueKeep exploit available if you have the cash.
(More BlueKeep info here.)
There are several reasons why I didn’t raise the alarm, among them one comment from the folks selling the “pen test” exploit:
our version is not self-propagating (a worm)
It’s ostensibly only used to test your system to see if it’s vulnerable to BlueKeep-style exploits.
A couple of hours ago, Kevin Beaumont (who invented the name “BlueKeep” and is following it intently) reinforced my reticence:
https://twitter.com/GossiTheDog/status/1155808509499514880
Still nothing to worry about. But for heavens sake, if you run a Win7, Vista, XP or related server, and you haven’t installed any patches since May, you need to get patched NOW.