Technology
BlueKeep mass attacking vulnerable machines
San Francisco, Nov 4
The "BlueKeep" remote code execution vulnerability, which could have an effect similar to the WannaCry bug from 2017, is currently attacking vulnerable machines that are apparently compromised for cryptocurrency mining purposes, according to media reports.
The BlueKeep vulnerability exists in unpatched versions of Windows Server 2003, Windows XP, Windows Vista, Windows 7, Windows Server 2008 and Windows Server 2008 R2.
According to security researcher Kevin Beaumont, several honeypots in his EternalPot RDP honeypot network started to crash and reboot.
They've been active for almost half a year and this is the first time they came down. For some reason, the machines in Australia did not crash, the researcher said in a tweet, Bleeping Computer reported on Sunday.
Security researchers, including Beaumont who originally named the vulnerability and Marcus Hutchins, also known as "MalwareTech", who was responsible for hitting the kill switch that stopped the WannaCry bug, have confirmed that a widespread BlueKeep exploit attack is now currently underway.
Hutchins was quoted as saying by the Wired that "BlueKeep has been out there for a while now. But this is the first instance where I've seen it being used on a mass scale."
Interestingly, BlueeKeep has the ability to spread itself from one machine to another, while the attackers are searching for vulnerable unpatched Windows systems that have Remote Desktop Services (RDP) 3389 ports exposed to the Internet.
For now though, this looks like being an attack campaign with a cryptocurrency miner payload, according to Forbes.
The BlueKeep vulnerability exists in unpatched versions of Windows Server 2003, Windows XP, Windows Vista, Windows 7, Windows Server 2008 and Windows Server 2008 R2.
According to security researcher Kevin Beaumont, several honeypots in his EternalPot RDP honeypot network started to crash and reboot.
They've been active for almost half a year and this is the first time they came down. For some reason, the machines in Australia did not crash, the researcher said in a tweet, Bleeping Computer reported on Sunday.
Security researchers, including Beaumont who originally named the vulnerability and Marcus Hutchins, also known as "MalwareTech", who was responsible for hitting the kill switch that stopped the WannaCry bug, have confirmed that a widespread BlueKeep exploit attack is now currently underway.
Hutchins was quoted as saying by the Wired that "BlueKeep has been out there for a while now. But this is the first instance where I've seen it being used on a mass scale."
Interestingly, BlueeKeep has the ability to spread itself from one machine to another, while the attackers are searching for vulnerable unpatched Windows systems that have Remote Desktop Services (RDP) 3389 ports exposed to the Internet.
For now though, this looks like being an attack campaign with a cryptocurrency miner payload, according to Forbes.

5 minutes ago
"That was bad one": US President Donald Trump on Pahalgam terrorist attack

7 minutes ago
FBI arrests Wisconsin judge for allegedly obstructing immigration agents

10 minutes ago
US: Luigi Mangione, accused of killing UnitedHealthcare CEO, pleads not guilty to federal charges

11 minutes ago
US: Musk's DOGE slashes USD 400 million in AmeriCorps grants

19 minutes ago
Not in favour of war": Karnataka CM Siddaramaiah's stand on Pahalgam terror attack draws BJP crticism

22 minutes ago
Vatican City: President Murmu pays homage to Pope Francis

3 hours ago
Pooja Hegde on song ‘Kanimaa’: My social media is filled with people recreating the hookstep

3 hours ago
Unni Mukundan's fan club issues final warning to fan pages spreading false information about him

3 hours ago
‘Aamar Boss’ trailer starring Raakhee Gulzar tells heartwarming story of mother and son

3 hours ago
Debutante Akanksha Sharma turns into fearless warrior for ‘Kesari Veer: Legends of Somnath’

3 hours ago
Actor Priyadarshi Pulikonda thrilled with Suriya, Jyothika praise's for his performance in 'Court: State Vs A Nobody'

3 hours ago
For Manisha Koirala, going to the gym is about building discipline

3 hours ago
Mortal remains of paratrooper killed in Udhampur gunfight reach native village in Bengal's Nadia