[go: up one dir, main page]

Jump to content

WannaCry

From Wikipedia, the free encyclopedia

This is an old revision of this page, as edited by Abminor (talk | contribs) at 12:12, 17 May 2017 (Reverted edits by 195.35.101.1 (talk) to last version by Laurdecl). The present address (URL) is a permanent link to this revision, which may differ significantly from the current revision.

WannaCry
TypeRansomware
SubtypeCryptovirus
ClassificationComputer worm
Isolation date12 May 2017
Technical details
PlatformWindows

Wannacry (or WannaCrypt,[1] WanaCrypt0r 2.0,[2][3] Wanna Decryptor[4]) is a ransomware computer worm that targets the Microsoft Windows operating system. The virus was used to launch the WannaCry ransomware attack on Friday, 12 May 2017.

Operation

WannaCry uses the EternalBlue and DoublePulsar exploits to spread.[5] EternalBlue is based on a vulnerability in Microsoft's Server Message Block protocol, MS17-010.[6]

References

  1. ^ MSRC Team. "Customer Guidance for WannaCrypt attacks". Microsoft. Retrieved 13 May 2017.
  2. ^ Jakub Kroustek (12 May 2017). "Avast reports on WanaCrypt0r 2.0 ransomware that infected NHS and Telefonica". Avast Security News. Avast Software, Inc.
  3. ^ Fox-Brewster, Thomas. "An NSA Cyber Weapon Might Be Behind A Massive Global Ransomware Outbreak". Forbes. Retrieved 12 May 2017.
  4. ^ Woollaston, Victoria. "Wanna Decryptor: what is the 'atom bomb of ransomware' behind the NHS attack?". WIRED UK. Retrieved 13 May 2017.
  5. ^ "NHS cyber attack: Everything you need to know about 'biggest ransomware' offensive in history". The Daily Telegraph. Retrieved 13 May 2017.
  6. ^ "WannaCry Ransomware Attack Hits Victims With Microsoft SMB Exploit". eWeek. Retrieved 13 May 2017.