Technology
BlueKeep mass attacking vulnerable machines
San Francisco, Nov 4
The "BlueKeep" remote code execution vulnerability, which could have an effect similar to the WannaCry bug from 2017, is currently attacking vulnerable machines that are apparently compromised for cryptocurrency mining purposes, according to media reports.
The BlueKeep vulnerability exists in unpatched versions of Windows Server 2003, Windows XP, Windows Vista, Windows 7, Windows Server 2008 and Windows Server 2008 R2.
According to security researcher Kevin Beaumont, several honeypots in his EternalPot RDP honeypot network started to crash and reboot.
They've been active for almost half a year and this is the first time they came down. For some reason, the machines in Australia did not crash, the researcher said in a tweet, Bleeping Computer reported on Sunday.
Security researchers, including Beaumont who originally named the vulnerability and Marcus Hutchins, also known as "MalwareTech", who was responsible for hitting the kill switch that stopped the WannaCry bug, have confirmed that a widespread BlueKeep exploit attack is now currently underway.
Hutchins was quoted as saying by the Wired that "BlueKeep has been out there for a while now. But this is the first instance where I've seen it being used on a mass scale."
Interestingly, BlueeKeep has the ability to spread itself from one machine to another, while the attackers are searching for vulnerable unpatched Windows systems that have Remote Desktop Services (RDP) 3389 ports exposed to the Internet.
For now though, this looks like being an attack campaign with a cryptocurrency miner payload, according to Forbes.
The BlueKeep vulnerability exists in unpatched versions of Windows Server 2003, Windows XP, Windows Vista, Windows 7, Windows Server 2008 and Windows Server 2008 R2.
According to security researcher Kevin Beaumont, several honeypots in his EternalPot RDP honeypot network started to crash and reboot.
They've been active for almost half a year and this is the first time they came down. For some reason, the machines in Australia did not crash, the researcher said in a tweet, Bleeping Computer reported on Sunday.
Security researchers, including Beaumont who originally named the vulnerability and Marcus Hutchins, also known as "MalwareTech", who was responsible for hitting the kill switch that stopped the WannaCry bug, have confirmed that a widespread BlueKeep exploit attack is now currently underway.
Hutchins was quoted as saying by the Wired that "BlueKeep has been out there for a while now. But this is the first instance where I've seen it being used on a mass scale."
Interestingly, BlueeKeep has the ability to spread itself from one machine to another, while the attackers are searching for vulnerable unpatched Windows systems that have Remote Desktop Services (RDP) 3389 ports exposed to the Internet.
For now though, this looks like being an attack campaign with a cryptocurrency miner payload, according to Forbes.
5 seconds ago
Madhuri Dixit, Anil Kapoor, Sonam and others shower love on new parents Katrina Kaif, Vicky Kaushal
1 minute ago
Tisca Chopra’s directorial ‘Saali Mohabbat’ starring Radhika Apte to release digitally
1 minute ago
Ankita Lokhande says 'what a journey it’s been' as husband Vicky Jain's 'HAQ' reaches the theatre
3 minutes ago
ED makes 3rd arrest in Reliance Power bogus bank guarantee case
3 minutes ago
S. Korea's exports of agricultural, food products rise 5 pc this year: Data
28 minutes ago
Samsung Heavy wins $200 million deal for 2 crude oil carriers from North America
31 minutes ago
Grateful to Kiwi-Indian farmers for very productive orchard visit: Piyush Goyal
32 minutes ago
France, US, Germany lead October FPI inflows in Indian stock market
37 minutes ago
Jio's cost-effective 5G solutions can help it scale in $121 billion global market: Jefferies
43 minutes ago
Bharti Airtel shares drop following Singtel-related block sale
14 hours ago
President Murmu to visit Angola and Botswana, meet her counterparts and address parliaments
14 hours ago
EAM Jaishankar congratulates Faure on becoming Seychelles Minister of Foreign Affairs and Diaspora
14 hours ago
India, Finland agree to strengthen ties in trade, digitalisation and AI
