Ransomware worse than WannaCry discovered, also leverages NSA tools

siteadmin October 27, 2017

A security researcher has discovered a new malware variant, EternalRocks, that is more impactful than WannaCry and has no kill-switch. The malware exploits vulnerabilities in Windows SMB file sharing protocols, using all seven leaked NSA hacking tools. EternalRocks hides its function to ensure it remains undetected after deployment, and once it gains control of a command-and-control server, it waits 24 hours to avoid sandboxing techniques. Healthcare providers should patch outdated Windows systems and consider blocking legacy protocols on their networks to prevent an EternalBlue attack.