If you thought WannaCry was bad, you ain’t seen nothin’ yet. Post coming in InfoWorld.
[See the full post at: The Shadow Brokers, in new taunt, threaten to release even more NSA sourced malware]
![]() |
Patch reliability is unclear. Unless you have an immediate, pressing need to install a specific patch, don't do it. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
The Shadow Brokers, in new taunt, threaten to release even more NSA sourced malware
Home » Forums » Newsletter and Homepage topics » The Shadow Brokers, in new taunt, threaten to release even more NSA sourced malware
- This topic has 33 replies, 18 voices, and was last updated 8 years ago by
anonymous.
Tags: Microsoft Shadow Brokers
AuthorTopicViewing 11 reply threadsAuthorReplies-
AlexN
AskWoody LoungerMay 16, 2017 at 7:41 am #115659Which of these is the worst part?
- That the NSA had such stuff going on.
- That the NSA, of all groups, got hacked.
- That a group of sociopathic individuals like the Shadow Brokers (never mind hackers and virus programmers in general) exists in the first place
Fortran, C++, R, Python, Java, Matlab, HTML, CSS, etc.... coding is fun!
A weatherman that can code2 users thanked author for this post.
-
MrJimPhelps
AskWoody MVPMay 17, 2017 at 3:52 pm #115956Which of these is the worst part?
I think 1 is the worst. Our government shouldn’t be spying on us. We supposedly don’t live in a police state.
Group "L" (Linux Mint)
with Windows 10 running in a remote session on my file server
-
anonymous
GuestMay 16, 2017 at 7:42 am #115656I’m glad that it’s a source of fake news reporting this tripe, looks like they got bored with blaming Russia
http://www.dailymail.co.uk/news/article-4508736/North-Korea-global-cyber-hac.html
radosuaf
AskWoody LoungerMay 16, 2017 at 7:44 am #115661Linux year coming finally? 😉
Fractal Design Pop Air * Thermaltake Toughpower GF3 750W * ASUS TUF GAMING B560M-PLUS * Intel Core i9-11900K * 4 x 8 GB G.Skill Aegis DDR4 3600 MHz CL16 * ASRock RX 6800 XT Phantom Gaming 16GB OC * XPG GAMMIX S70 BLADE 1TB * SanDisk Ultra 3D 1TB * Samsung EVO 840 250GB * DVD RW Lite-ON iHAS 124 * Windows 10 Pro 22H2 64-bit Insider * Windows 11 Pro Beta Insider-
anonymous
GuestMay 16, 2017 at 12:51 pm #115737Linux has landed! Old but quite serviceable x86 and x64 systems that came with Vista have now been updated to dual boot with Linux. I had already updated the x86 system when the breaking news of Nvidia driver kernel mode vulnerabilities (for which updates do not exist) became known. And now the specter of more malware exploits courtesy of Shadow Brokers is looming. Enough is enough. I finished my backups this morning, and now all my systems run Linux.
1 user thanked author for this post.
Jan K.
AskWoody Lounger-
anonymous
GuestMay 16, 2017 at 9:01 am #115680@ Jan K
When the NHS in the UK got hit by the WannaCry ransomware on Friday, 12 May 2017, hundreds of sick patients could not get proper care, eg their Dr appointments, surgeries, etc had to be postponed.
As reported by Europol, “only” 200,000 computers worldwide, many in Europe, got hit because a very concerned Englishman/security-Pro accidentally chanced upon a kill-switch that immediately neutralized the WannaCry ransomware, thus sparing most of USA and the Americas, which are about 8 hours behind UK time, from being hit or becoming the next victims.
. . Imagine the scenario if there was no kill-switch.4 users thanked author for this post.
-
anonymous
Guest -
Noel Carboni
AskWoody_MVPMay 17, 2017 at 11:22 am #115897sparing most of USA and the Americas, which are about 8 hours behind UK time, from being hit or becoming the next victims.
Three words: Wake up call!
But don’t you just know that there will be some new malware that hits hundreds of thousands of people in the future?
People somehow never really seem to learn anything, especially from other people’s trauma.
-Noel
-
NetDef
AskWoody_MVPMay 17, 2017 at 12:33 pm #115913Remember Melissa? ILOVEYOU? Nimda? Slammer? MyDoom? etc etc etc. In light of some of those, this current crop was amazingly constrained . . . at least so far. I am still convinced that this was a “small” (and accidentally released) test for something far bigger.
~ Group "Weekend" ~
1 user thanked author for this post.
-
-
lurks about
AskWoody LoungerMay 16, 2017 at 5:59 pm #115782What is more worrisome is there appears to be more where Wannacry came from. Also, right now Windows appears to be the only target but it is unknown what is available for MacOS, iOS, Android, and Linux. For Windows user, it looks like a rough few weeks are shaping up and just because one missed the first rounds does not mean a later one will not nail you. For users of other OSes do not assume you are invulnerable and be wary. The media may not mention if other OSes are being hit at the same time.
BobbyB
AskWoody LoungerMay 16, 2017 at 9:02 pm #115806@Jan_K yeah you have a point there its a small number of users but I wonder how many “Suffered in silence” i.e. restored from backup or even formatted and reinstalled?
I am still hazy about what would be the best recovery option. Normally periodically I will SYSPREP and save to a .wim file (yeah not ideal but shortens the recovery process) and generally using the option “compression:recovery” (same as ESD) saves space its generally an overnight affair. I have yet to see the malware that corrupts .wim or .esd files but i just know some ones going to prove me wrong lol 😉GoneToPlaid
AskWoody LoungerMay 17, 2017 at 9:56 am #115890-
Noel Carboni
AskWoody_MVPMay 17, 2017 at 11:31 am #115899Anyone serious about security needs to ask:
Why did 200,000 people per hour do something that led to their last line of defense having to block an infection?
Did they open an eMail attachment? Did they allow Windows Networking to reach the wild Internet? Did they download and indiscriminately run an executable? Did they click through a UAC prompt?
Can we presume they were doofus-level employees of a megalithic company with lousy IT practices and out-of-date systems? Home users who think they know better but really don’t? Kids? Someone tired and not thinking as clearly as they can being duped by an almost legitimate-looking eMail?
The first thing that comes to my mind as a root cause is a general lack of education / awareness about good computing practices, coupled with a false sense of security. But that’s just a guess.
What we REALLY need to know in order to learn from this experience are real answers to my bolded question above.
-Noel
-
NetDef
AskWoody_MVPMay 17, 2017 at 12:43 pm #115918Several analysts have come to the conclusion that this worm might have actually spread without any user-interaction at all, other than a lack of being current on security patches for Windows.
I am leaning that way myself – we picked up four
twonew clients this week that got infected and we cannot find any trace of an email attachment in any of their inboxes that can be blamed. Nor can we find any trace of a particular web address that someone visited during the initial infection time.What we DID find in both cases? RDP port 3389 was left open on their firewall – intentionally. We have no proof that this port was somehow used to get to SMB but I am beginning to suspect something in this direction. And this would not be the first time that this particular port has caused problems. It should never – ever – be open on a firewall to the Internet.
Edit: Make that four new clients – I just checked my voice mail. Geesh. I hate virus outbreaks, but dang – they can be good for business. Talk about a mixed up world.
~ Group "Weekend" ~
1 user thanked author for this post.
-
zero2dash
AskWoody LoungerMay 16, 2017 at 8:35 am #115673It really seems to be the ‘perfect storm’ for MS…lots of anger and frustration over forced 10 upgrades, sabotaged updates for 7/8.1, concern over updates going forward, and now this. Somewhere Linus Torvalds and Tim Cook are probably having tea, both of them smiling ear to ear at the implosion of the once mighty MS, and also at the ego, knowing that nothing will be done to Satnad & Co. as long as the profits are high because “who cares”.
-
lurks about
AskWoody LoungerMay 16, 2017 at 6:03 pm #115783It depends on whether the ‘perfect storm’ continues for awhile whether any major shifts will occur. One-and-done will not do much but several weeks of a continuous siege on Windows might make many reconsider their options. Right now, a few will ditch Windows, mostly those who probably considering it anyway. But if this last a few weeks or months then all bets are off.
Seff
AskWoody PlusMay 16, 2017 at 10:14 am #115698I wonder how many of us whether in our corporate or personal lives will truly learn the only really critical lesson to come from all this? Namely, that we all need to become a whole let less dependent on computers in our everyday lives.
-
anonymous
GuestMay 16, 2017 at 10:43 am #115713Exactly what I said. There is little realization how technology dependence dumbs us down — in their wildest dreams didn’t they think that technology will make it so easy to manipulate, exploit and control the masses.
And check this statement by MS guy responsible for 10 S:
“In today’s world, Win32 has a lot of problems in terms of user confidence, privacy, battery life, etc. We don’t want to bring those problems into UWP but want to provide the functionality that the user wants – and make sure the user is in control at the same time.”
Remember the corruption of language in 1984?
Edit – please confine political comments to the Rants Forum
-
anonymous
GuestMay 16, 2017 at 3:52 pm #115765Impossible. Mainly because we, y’know, live in the 21st century. It’d be like pre-enlightenment civilisation saying the gutenberg press experiment has had it’s run but it’s giving the masses access to unprecedented knowledge so let’s go back to scribes. You can’t put the genie back in the bottle and nor do i want to really, that’d be burying your head in the sand. This might be the internet’s rubicon moment and we’ll either strengthen our security and privacy or government’s will double down on surveillance. Relying less on computers? That’s up to you but it’s not the answer and nor will it happen in my opinion.
– T
-
fp
AskWoody LoungerMay 17, 2017 at 2:13 am #115847It’s only impossible because it requires collective action. But the reality is that there is practically no defense against these types of attack and technologism is just like all other isms — it self destructs. They all peak and collapse.
1 user thanked author for this post.
-
lizzytish
AskWoody LoungerMay 16, 2017 at 10:33 pm #115829Think we need to be a bit more discerning about what we do with our computers and not be so gullible as some appear to be and accept every choice/option offered us without thinking it through. Actually that is the same in real life too. Just thinking! LT
The day has eyes; the night has ears. — Scottish
2 users thanked author for this post.
anonymous
Guestanonymous
GuestMay 16, 2017 at 4:45 pm #115772Apple was probably right when they resisted developing a proprietary tool to hack iPhones for the FBI because they felt the tool would eventually get into the wild. Tim Cook was probably correct in his concern, especially since so many obvious warning signs were ignored in the case of the San Bernadino attack. I do not have a lot of confidence in the US governments ability to protect digital data, especially after they lost all the federal personnel files in the hack of OPM.
2 users thanked author for this post.
anonymous
GuestJan K.
AskWoody LoungerMay 17, 2017 at 4:44 pm #115965With all the survailliance, snooping and what not by the world’s intelligence services I simply do not understand, why they haven’t tracked down that group a.o. criminals?
An article on this, Woody?
Or any links, that can enlighten me?
See, if I type the word “bomb”…
Oops, gotta go. Someone is knocking on my door…
Robb
AskWoody PlusMay 18, 2017 at 12:53 am #116055Thanks for the joke Anonymous! Tickled my sense of humour.
Just a thought – Could “The Shadow Brokers” be Microsoft programmers trying to force all remaining Windows XP And Windows 7 users to upgrade?
After all Microsoft “knew” about the flaw, which is why they released the patch!
RobB
-
Kirsty
Manager
AceOfAces
AskWoody LoungerMay 19, 2017 at 6:47 am #116442Linux year coming finally? ?
I don’t think so. If NSA doesn’t stop pilling up vulnerabilities, Linux may have it the worst, since they can patch their systems (the compiler for Linux is publically available, right?) and stay silent until a vulnerability is exploited (assuming that nobody notices them). I have already concerns with Linux and the recent kerfuffle is the icing on a really bad cake.
-
anonymous
GuestMay 19, 2017 at 2:23 pm #116535I agree that GNU/Linux, FOSS by nature, is accessible to change by any entity, no matter what color hat they wear. The fact is, unless you have manufactured, literally by hand, your own machine, and never let it touch an exposed network, then there is *no* protected shelter anywhere. All of the learned opinions I read here discuss managing risk in the manner appropriate to their point of view.
To my mind, under MSRedmond, a corporate entity of proven questionable character is my only hope to fix what has gone wrong in their proprietary world. But they host some of the software I *must* use. Hoops must be jumped through in just the right way, and the AskWoody team has the map.
Alternatively, in the FOSS universe there is an ever growing contingent of coders, some of them very good, whose only goal is pride in a system that maintains operability no matter what. And hopefully earn enough to eat. Like the fantasy of utopia, it will never actually happen. But I like the mission statement better. If I did not require Win7 software to earn a living, my machines would not know Redmond existed.
tl;dr\ Microsoft can be trusted to fix their stuff, their way. GNU/Linux can be repaired by anybody with the chops. Publicly available works for both sides.
Hope this is allowed,
Paul
Viewing 11 reply threads - This topic has 33 replies, 18 voices, and was last updated 8 years ago by
-

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Signal vs Microsoft’s Recall ; By Default, Signal Doesn’t Recall
by
Alex5723
7 minutes ago -
Internet Archive : This is where all of The Internet is stored
by
Alex5723
19 minutes ago -
iPhone 7 Plus and the iPhone 8 on Vantage list
by
Alex5723
25 minutes ago -
Lumma malware takedown
by
EyesOnWindows
7 hours, 39 minutes ago -
“kill switches” found in Chinese made power inverters
by
Alex5723
9 hours, 12 minutes ago -
Windows 11 – InControl vs pausing Windows updates
by
Kathy Stevens
9 hours, 7 minutes ago -
Meet Gemini in Chrome
by
Alex5723
13 hours, 12 minutes ago -
DuckDuckGo’s Duck.ai added GPT-4o mini
by
Alex5723
13 hours, 21 minutes ago -
Trump signs Take It Down Act
by
Alex5723
21 hours, 19 minutes ago -
Do you have a maintenance window?
by
Susan Bradley
8 hours, 29 minutes ago -
Freshly discovered bug in OpenPGP.js undermines whole point of encrypted comms
by
Nibbled To Death By Ducks
2 minutes ago -
Cox Communications and Charter Communications to merge
by
not so anon
1 day ago -
Help with WD usb driver on Windows 11
by
Tex265
1 day, 5 hours ago -
hibernate activation
by
e_belmont
1 day, 9 hours ago -
Red Hat Enterprise Linux 10 with AI assistant
by
Alex5723
1 day, 13 hours ago -
Windows 11 Insider Preview build 26200.5603 released to DEV
by
joep517
1 day, 16 hours ago -
Windows 11 Insider Preview build 26120.4151 (24H2) released to BETA
by
joep517
1 day, 16 hours ago -
Fixing Windows 24H2 failed KB5058411 install
by
Alex5723
12 hours, 32 minutes ago -
Out of band for Windows 10
by
Susan Bradley
1 day, 21 hours ago -
Giving UniGetUi a test run.
by
RetiredGeek
2 days, 4 hours ago -
Windows 11 Insider Preview Build 26100.4188 (24H2) released to Release Preview
by
joep517
2 days, 11 hours ago -
Microsoft is now putting quantum encryption in Windows builds
by
Alex5723
7 hours, 32 minutes ago -
Auto Time Zone Adjustment
by
wadeer
2 days, 16 hours ago -
To download Win 11 Pro 23H2 ISO.
by
Eddieloh
2 days, 13 hours ago -
Manage your browsing experience with Edge
by
Mary Branscombe
13 hours, 23 minutes ago -
Fewer vulnerabilities, larger updates
by
Susan Bradley
1 day, 6 hours ago -
Hobbies — There’s free software for that!
by
Deanna McElveen
7 hours, 1 minute ago -
Apps included with macOS
by
Will Fastie
1 day, 11 hours ago -
Xfinity home internet
by
MrJimPhelps
1 day, 7 hours ago -
Convert PowerPoint presentation to Impress
by
RetiredGeek
2 days, 9 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.