TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Leaked NSA Malware Threatens Windows Users Around the World

227 点作者 Futurebot大约 8 年前

11 条评论

vmarsy大约 8 年前
I think jlgaddis&#x27; link[1] is more informative than the theintercept.com article : <a href="https:&#x2F;&#x2F;www.bleepingcomputer.com&#x2F;news&#x2F;security&#x2F;shadow-brokers-release-new-files-revealing-windows-exploits-swift-attacks&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.bleepingcomputer.com&#x2F;news&#x2F;security&#x2F;shadow-broker...</a><p>I feel the HN submission should point to that instead.<p>The Outlook Exchange, RDP, Kerberos, ... exploits are scary, even though some only seem to affect older Windows versions.<p>[1] <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=14117336" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=14117336</a>
israrkhan大约 8 年前
I find it very irresponsible that NSA did not report these vulnerabilities to Microsoft after they had fallen into hands of shadow broker (no longer zeroday). Shadowbroker announced possession of these zerodays around 3 months ago. NSA had good 3 months to work with Microsoft to patch these. They chose not to.
评论 #14120744 未加载
评论 #14120037 未加载
评论 #14119693 未加载
cm2187大约 8 年前
What I find sort of (a little) comforting is that the NSA seems to be relying on zero days. All these leaks have not really revealed any structural backdoor in any of the major operating systems.
评论 #14119053 未加载
评论 #14118602 未加载
评论 #14117992 未加载
评论 #14117207 未加载
评论 #14117233 未加载
评论 #14118208 未加载
评论 #14117040 未加载
评论 #14117682 未加载
deanclatworthy大约 8 年前
I&#x27;ve been following this closely over the last couple of hours on Twitter as the news broke. What does it mean in practice?<p>From what I have read one of the vulnerabilities seems to be a 0day targeting SMB on Windows. One commentator suggested it&#x27;s enabled by default on the majority of Windows machines (of that I am sceptical). Presumably most people are behind a router which would stop this in its tracks?<p>A lot of people (who I would probably take seriously) suggest disconnecting Windows machines from the internet for the time-being. Is it really this bad? Are there millions of Windows (home-)users who are vulnerable (by default) today?
评论 #14118620 未加载
评论 #14117676 未加载
评论 #14117936 未加载
评论 #14119677 未加载
alpb大约 8 年前
Relevant tweets from&#x2F;retweeted_by @snowden<p>- <a href="https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852950725881712640" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852950725881712640</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;campuscodi&#x2F;status&#x2F;852885596221689856" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;campuscodi&#x2F;status&#x2F;852885596221689856</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852989758364147712" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852989758364147712</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;josephfcox&#x2F;status&#x2F;852983848862461953" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;josephfcox&#x2F;status&#x2F;852983848862461953</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852987207170371587" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852987207170371587</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;alexstamos&#x2F;status&#x2F;852984589463175169" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;alexstamos&#x2F;status&#x2F;852984589463175169</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852974864461963265" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852974864461963265</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;TalBeerySec&#x2F;status&#x2F;852869388067844096" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;TalBeerySec&#x2F;status&#x2F;852869388067844096</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852967606088806401" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852967606088806401</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852966739084275712" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;Snowden&#x2F;status&#x2F;852966739084275712</a> - <a href="https:&#x2F;&#x2F;twitter.com&#x2F;josephfcox&#x2F;status&#x2F;852908421703753728" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;josephfcox&#x2F;status&#x2F;852908421703753728</a>
评论 #14120102 未加载
eps大约 8 年前
Is there a list of exact attack vectors for the lazy?<p>Both tools in the demo video are SMB-based. I wonder how exploitable is a machine if it has SMB properly disabled and blocked.
评论 #14117877 未加载
评论 #14117336 未加载
ChuckMcM大约 8 年前
Wouldn&#x27;t it be nice if the NSA turned over all of its now compromised zero days to Microsoft so that Microsoft could patch them all?
nthcolumn大约 8 年前
So MSFT to take a pasting when the exchange reopens?
symlinkk大约 8 年前
Direct link to the leak: <a href="https:&#x2F;&#x2F;steemit.com&#x2F;shadowbrokers&#x2F;@theshadowbrokers&#x2F;lost-in-translation" rel="nofollow">https:&#x2F;&#x2F;steemit.com&#x2F;shadowbrokers&#x2F;@theshadowbrokers&#x2F;lost-in-...</a><p>RIP Windows users.
fixxer大约 8 年前
Using Windows threatens Windows Users Around the World.
UnoriginalGuy大约 8 年前
This entire article is a gross mischaracterisation of the facts and risks.<p>The only major zero days released for Windows in this bundle targeted SMB (SMBv1, SMBv2, &amp; SMBv3). By default Windows firewalls SMB and has since Windows XP SP2. Many home and business users then typically have a NAT between the Windows Firewall and the internet, offering a second layer of protection.<p>Few companies intentionally expose SMB to the internet. Generally users are required to VPN in before then being able to contact an SMB endpoint.<p>The type of language in this article is designed to mislead non-technical readers into believing they&#x27;re at risk e.g.:<p>&gt; The software could give nearly anyone with sufficient technical knowledge the ability to wreak havoc on millions of Microsoft users.<p>So either the article author lacks the technical literacy to understand why this is untrue, or they know it to be untrue and are trying to implant fear into their readership. In either case, not a good look for The Intercept.
评论 #14117945 未加载
评论 #14118837 未加载
评论 #14119756 未加载
评论 #14117772 未加载