If you thought WannaCry was bad, you ain’t seen nothin’ yet. Post coming in InfoWorld.
[See the full post at: The Shadow Brokers, in new taunt, threaten to release even more NSA sourced malware]
![]() |
Patch reliability is unclear, but widespread attacks make patching prudent. Go ahead and patch, but watch out for potential problems. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
The Shadow Brokers, in new taunt, threaten to release even more NSA sourced malware
Home » Forums » Newsletter and Homepage topics » The Shadow Brokers, in new taunt, threaten to release even more NSA sourced malware
- This topic has 33 replies, 18 voices, and was last updated 8 years, 1 month ago by
anonymous.
Tags: Microsoft Shadow Brokers
AuthorTopicViewing 11 reply threadsAuthorReplies-
AlexN
AskWoody LoungerMay 16, 2017 at 7:41 am #115659Which of these is the worst part?
- That the NSA had such stuff going on.
- That the NSA, of all groups, got hacked.
- That a group of sociopathic individuals like the Shadow Brokers (never mind hackers and virus programmers in general) exists in the first place
Fortran, C++, R, Python, Java, Matlab, HTML, CSS, etc.... coding is fun!
A weatherman that can code2 users thanked author for this post.
-
MrJimPhelps
AskWoody MVPMay 17, 2017 at 3:52 pm #115956Which of these is the worst part?
I think 1 is the worst. Our government shouldn’t be spying on us. We supposedly don’t live in a police state.
Group "L" (Linux Mint)
with Windows 10 running in a remote session on my file server
-
anonymous
GuestMay 16, 2017 at 7:42 am #115656I’m glad that it’s a source of fake news reporting this tripe, looks like they got bored with blaming Russia
http://www.dailymail.co.uk/news/article-4508736/North-Korea-global-cyber-hac.html
radosuaf
AskWoody LoungerMay 16, 2017 at 7:44 am #115661Linux year coming finally? 😉
Fractal Design Pop Air * Thermaltake Toughpower GF3 750W * ASUS TUF GAMING B560M-PLUS * Intel Core i9-11900K * 4 x 8 GB G.Skill Aegis DDR4 3600 MHz CL16 * ASRock RX 6800 XT Phantom Gaming 16GB OC * XPG GAMMIX S70 BLADE 1TB * SanDisk Ultra 3D 1TB * Samsung EVO 840 250GB * DVD RW Lite-ON iHAS 124 * Windows 10 Pro 22H2 64-bit Insider * Windows 11 Pro Beta Insider-
anonymous
GuestMay 16, 2017 at 12:51 pm #115737Linux has landed! Old but quite serviceable x86 and x64 systems that came with Vista have now been updated to dual boot with Linux. I had already updated the x86 system when the breaking news of Nvidia driver kernel mode vulnerabilities (for which updates do not exist) became known. And now the specter of more malware exploits courtesy of Shadow Brokers is looming. Enough is enough. I finished my backups this morning, and now all my systems run Linux.
1 user thanked author for this post.
Jan K.
AskWoody Lounger-
anonymous
GuestMay 16, 2017 at 9:01 am #115680@ Jan K
When the NHS in the UK got hit by the WannaCry ransomware on Friday, 12 May 2017, hundreds of sick patients could not get proper care, eg their Dr appointments, surgeries, etc had to be postponed.
As reported by Europol, “only” 200,000 computers worldwide, many in Europe, got hit because a very concerned Englishman/security-Pro accidentally chanced upon a kill-switch that immediately neutralized the WannaCry ransomware, thus sparing most of USA and the Americas, which are about 8 hours behind UK time, from being hit or becoming the next victims.
. . Imagine the scenario if there was no kill-switch.4 users thanked author for this post.
-
anonymous
Guest -
Noel Carboni
AskWoody_MVPMay 17, 2017 at 11:22 am #115897sparing most of USA and the Americas, which are about 8 hours behind UK time, from being hit or becoming the next victims.
Three words: Wake up call!
But don’t you just know that there will be some new malware that hits hundreds of thousands of people in the future?
People somehow never really seem to learn anything, especially from other people’s trauma.
-Noel
-
NetDef
AskWoody_MVPMay 17, 2017 at 12:33 pm #115913Remember Melissa? ILOVEYOU? Nimda? Slammer? MyDoom? etc etc etc. In light of some of those, this current crop was amazingly constrained . . . at least so far. I am still convinced that this was a “small” (and accidentally released) test for something far bigger.
~ Group "Weekend" ~
1 user thanked author for this post.
-
-
lurks about
AskWoody LoungerMay 16, 2017 at 5:59 pm #115782What is more worrisome is there appears to be more where Wannacry came from. Also, right now Windows appears to be the only target but it is unknown what is available for MacOS, iOS, Android, and Linux. For Windows user, it looks like a rough few weeks are shaping up and just because one missed the first rounds does not mean a later one will not nail you. For users of other OSes do not assume you are invulnerable and be wary. The media may not mention if other OSes are being hit at the same time.
BobbyB
AskWoody LoungerMay 16, 2017 at 9:02 pm #115806@Jan_K yeah you have a point there its a small number of users but I wonder how many “Suffered in silence” i.e. restored from backup or even formatted and reinstalled?
I am still hazy about what would be the best recovery option. Normally periodically I will SYSPREP and save to a .wim file (yeah not ideal but shortens the recovery process) and generally using the option “compression:recovery” (same as ESD) saves space its generally an overnight affair. I have yet to see the malware that corrupts .wim or .esd files but i just know some ones going to prove me wrong lol 😉GoneToPlaid
AskWoody LoungerMay 17, 2017 at 9:56 am #115890-
Noel Carboni
AskWoody_MVPMay 17, 2017 at 11:31 am #115899Anyone serious about security needs to ask:
Why did 200,000 people per hour do something that led to their last line of defense having to block an infection?
Did they open an eMail attachment? Did they allow Windows Networking to reach the wild Internet? Did they download and indiscriminately run an executable? Did they click through a UAC prompt?
Can we presume they were doofus-level employees of a megalithic company with lousy IT practices and out-of-date systems? Home users who think they know better but really don’t? Kids? Someone tired and not thinking as clearly as they can being duped by an almost legitimate-looking eMail?
The first thing that comes to my mind as a root cause is a general lack of education / awareness about good computing practices, coupled with a false sense of security. But that’s just a guess.
What we REALLY need to know in order to learn from this experience are real answers to my bolded question above.
-Noel
-
NetDef
AskWoody_MVPMay 17, 2017 at 12:43 pm #115918Several analysts have come to the conclusion that this worm might have actually spread without any user-interaction at all, other than a lack of being current on security patches for Windows.
I am leaning that way myself – we picked up four
twonew clients this week that got infected and we cannot find any trace of an email attachment in any of their inboxes that can be blamed. Nor can we find any trace of a particular web address that someone visited during the initial infection time.What we DID find in both cases? RDP port 3389 was left open on their firewall – intentionally. We have no proof that this port was somehow used to get to SMB but I am beginning to suspect something in this direction. And this would not be the first time that this particular port has caused problems. It should never – ever – be open on a firewall to the Internet.
Edit: Make that four new clients – I just checked my voice mail. Geesh. I hate virus outbreaks, but dang – they can be good for business. Talk about a mixed up world.
~ Group "Weekend" ~
1 user thanked author for this post.
-
zero2dash
AskWoody LoungerMay 16, 2017 at 8:35 am #115673It really seems to be the ‘perfect storm’ for MS…lots of anger and frustration over forced 10 upgrades, sabotaged updates for 7/8.1, concern over updates going forward, and now this. Somewhere Linus Torvalds and Tim Cook are probably having tea, both of them smiling ear to ear at the implosion of the once mighty MS, and also at the ego, knowing that nothing will be done to Satnad & Co. as long as the profits are high because “who cares”.
-
lurks about
AskWoody LoungerMay 16, 2017 at 6:03 pm #115783It depends on whether the ‘perfect storm’ continues for awhile whether any major shifts will occur. One-and-done will not do much but several weeks of a continuous siege on Windows might make many reconsider their options. Right now, a few will ditch Windows, mostly those who probably considering it anyway. But if this last a few weeks or months then all bets are off.
Seff
AskWoody PlusMay 16, 2017 at 10:14 am #115698I wonder how many of us whether in our corporate or personal lives will truly learn the only really critical lesson to come from all this? Namely, that we all need to become a whole let less dependent on computers in our everyday lives.
-
anonymous
GuestMay 16, 2017 at 10:43 am #115713Exactly what I said. There is little realization how technology dependence dumbs us down — in their wildest dreams didn’t they think that technology will make it so easy to manipulate, exploit and control the masses.
And check this statement by MS guy responsible for 10 S:
“In today’s world, Win32 has a lot of problems in terms of user confidence, privacy, battery life, etc. We don’t want to bring those problems into UWP but want to provide the functionality that the user wants – and make sure the user is in control at the same time.”
Remember the corruption of language in 1984?
Edit – please confine political comments to the Rants Forum
-
anonymous
GuestMay 16, 2017 at 3:52 pm #115765Impossible. Mainly because we, y’know, live in the 21st century. It’d be like pre-enlightenment civilisation saying the gutenberg press experiment has had it’s run but it’s giving the masses access to unprecedented knowledge so let’s go back to scribes. You can’t put the genie back in the bottle and nor do i want to really, that’d be burying your head in the sand. This might be the internet’s rubicon moment and we’ll either strengthen our security and privacy or government’s will double down on surveillance. Relying less on computers? That’s up to you but it’s not the answer and nor will it happen in my opinion.
– T
-
fp
AskWoody LoungerMay 17, 2017 at 2:13 am #115847It’s only impossible because it requires collective action. But the reality is that there is practically no defense against these types of attack and technologism is just like all other isms — it self destructs. They all peak and collapse.
1 user thanked author for this post.
-
lizzytish
AskWoody LoungerMay 16, 2017 at 10:33 pm #115829Think we need to be a bit more discerning about what we do with our computers and not be so gullible as some appear to be and accept every choice/option offered us without thinking it through. Actually that is the same in real life too. Just thinking! LT
The day has eyes; the night has ears. — Scottish
2 users thanked author for this post.
anonymous
Guestanonymous
GuestMay 16, 2017 at 4:45 pm #115772Apple was probably right when they resisted developing a proprietary tool to hack iPhones for the FBI because they felt the tool would eventually get into the wild. Tim Cook was probably correct in his concern, especially since so many obvious warning signs were ignored in the case of the San Bernadino attack. I do not have a lot of confidence in the US governments ability to protect digital data, especially after they lost all the federal personnel files in the hack of OPM.
2 users thanked author for this post.
anonymous
GuestJan K.
AskWoody LoungerMay 17, 2017 at 4:44 pm #115965With all the survailliance, snooping and what not by the world’s intelligence services I simply do not understand, why they haven’t tracked down that group a.o. criminals?
An article on this, Woody?
Or any links, that can enlighten me?
See, if I type the word “bomb”…
Oops, gotta go. Someone is knocking on my door…
Robb
AskWoody PlusMay 18, 2017 at 12:53 am #116055Thanks for the joke Anonymous! Tickled my sense of humour.
Just a thought – Could “The Shadow Brokers” be Microsoft programmers trying to force all remaining Windows XP And Windows 7 users to upgrade?
After all Microsoft “knew” about the flaw, which is why they released the patch!
RobB
-
Kirsty
Manager
AceOfAces
AskWoody LoungerMay 19, 2017 at 6:47 am #116442Linux year coming finally? ?
I don’t think so. If NSA doesn’t stop pilling up vulnerabilities, Linux may have it the worst, since they can patch their systems (the compiler for Linux is publically available, right?) and stay silent until a vulnerability is exploited (assuming that nobody notices them). I have already concerns with Linux and the recent kerfuffle is the icing on a really bad cake.
-
anonymous
GuestMay 19, 2017 at 2:23 pm #116535I agree that GNU/Linux, FOSS by nature, is accessible to change by any entity, no matter what color hat they wear. The fact is, unless you have manufactured, literally by hand, your own machine, and never let it touch an exposed network, then there is *no* protected shelter anywhere. All of the learned opinions I read here discuss managing risk in the manner appropriate to their point of view.
To my mind, under MSRedmond, a corporate entity of proven questionable character is my only hope to fix what has gone wrong in their proprietary world. But they host some of the software I *must* use. Hoops must be jumped through in just the right way, and the AskWoody team has the map.
Alternatively, in the FOSS universe there is an ever growing contingent of coders, some of them very good, whose only goal is pride in a system that maintains operability no matter what. And hopefully earn enough to eat. Like the fantasy of utopia, it will never actually happen. But I like the mission statement better. If I did not require Win7 software to earn a living, my machines would not know Redmond existed.
tl;dr\ Microsoft can be trusted to fix their stuff, their way. GNU/Linux can be repaired by anybody with the chops. Publicly available works for both sides.
Hope this is allowed,
Paul
Viewing 11 reply threads - This topic has 33 replies, 18 voices, and was last updated 8 years, 1 month ago by
-

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
MS-DEFCON 3: Businesses must tread carefully
by
Susan Bradley
1 hour, 1 minute ago -
McLaren Health Care says data breach impacts 743,000 patients
by
Nibbled To Death By Ducks
5 hours, 52 minutes ago -
WhatsApp banned on House staffers’ devices
by
Alex5723
54 minutes ago -
Is your device eligible?
by
Susan Bradley
8 hours, 52 minutes ago -
Windows 11 Insider Preview build 26200.5661 released to DEV
by
joep517
15 hours, 3 minutes ago -
Windows 11 Insider Preview build 26120.4452 (24H2) released to BETA
by
joep517
15 hours, 4 minutes ago -
Hello Windows…My Problem is Windows Hello…
by
rdleib
16 hours, 20 minutes ago -
New Canon Printer Wants Data Sent
by
Win7and10
16 hours, 38 minutes ago -
I set up passkeys for my Microsoft account
by
Lance Whitney
6 hours, 8 minutes ago -
AI is for everyone
by
Peter Deegan
16 hours, 11 minutes ago -
Terabyte update 2025
by
Will Fastie
10 hours, 14 minutes ago -
Migrating from Windows 10 to Windows 11
by
Susan Bradley
5 hours, 47 minutes ago -
Lost sound after the upgrade to 24H2?
by
Susan Bradley
1 day, 15 hours ago -
How to move 10GB of data in C:\ProgramData\Package Cache ?
by
Alex5723
5 hours, 16 minutes ago -
Plugged in 24-7
by
CWBillow
1 day, 1 hour ago -
Netflix, Apple, BofA websites hijacked with fake help-desk numbers
by
Nibbled To Death By Ducks
2 days, 4 hours ago -
Have Copilot there but not taking over the screen in Word
by
CWBillow
2 days, 1 hour ago -
Windows 11 blocks Chrome 137.0.7151.68, 137.0.7151.69
by
Alex5723
3 days, 19 hours ago -
Are Macs immune?
by
Susan Bradley
11 hours, 13 minutes ago -
HP Envy and the Function keys
by
CWBillow
3 days, 3 hours ago -
Microsoft : Removal of unwanted drivers from Windows Update
by
Alex5723
20 hours, 42 minutes ago -
MacOS 26 beta 1 dropped support for Firewire 400/800
by
Alex5723
4 days, 7 hours ago -
Unable to update to version 22h2
by
04om
1 day, 15 hours ago -
Windows 11 Insider Preview Build 26100.4482 (24H2) released to Release Preview
by
joep517
4 days, 14 hours ago -
Windows 11 Insider Preview build 27881 released to Canary
by
joep517
4 days, 14 hours ago -
Very Quarrelsome Taskbar!
by
CWBillow
4 days ago -
Move OneNote Notebook OFF OneDrive and make it local
by
CWBillow
5 days, 3 hours ago -
Microsoft 365 to block file access via legacy auth protocols by default
by
Alex5723
4 days, 16 hours ago -
Is your battery draining?
by
Susan Bradley
22 hours, 21 minutes ago -
The 16-billion-record data breach that no one’s ever heard of
by
Alex5723
1 day, 16 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.