SoylentNews
SoylentNews is people
https://soylentnews.org/

Title    Fearing Shadow Brokers Leak, NSA Reported Critical Flaw to Microsoft
Date    Sunday May 21 2017, @08:07PM
Author   
Topic   
from the better-late-than-never dept.
https://soylentnews.org/article.pl?sid=17/05/21/0920225

Fnord666 writes:

After learning that one of its most prized hacking tools was stolen by a mysterious group calling itself the Shadow Brokers, National Security Agency officials warned Microsoft of the critical Windows vulnerability the tool exploited, according to a report published Tuesday by The Washington Post. The private disclosure led to a patch that was issued in March.

Those same NSA officials, according to Tuesday's report, failed to communicate the severity of the vulnerability to the outside world. A month after Microsoft released the patch, the Shadow Brokers published the attack code, code-named EternalBlue, that exploited the critical Windows vulnerability. A month after that, attackers used a modified version of EternalBlue to infect computers around the world with malware that blocked access to data. Within hours of the outbreak of the ransomware worm dubbed WCry, infected hospitals turned away patients; banks, telecommunications companies, and government agencies shut down computers.

"NSA identified a risk and communicated it to Microsoft, who put out an immediate patch," Mike McNerney, a former Pentagon cybersecurity official and a fellow at the Truman National Security Project, told The Washington Post. The problem, he said, is that no senior official took the step of shouting to the world: "This one is very serious, and we need to protect ourselves."

Source: ArsTechnica


Original Submission

Links

  1. "Fnord666" - https://soylentnews.org/~Fnord666/
  2. "report published Tuesday" - https://www.washingtonpost.com/business/technology/nsa-officials-worried-about-the-day-its-potent-hacking-tool-would-get-loose-then-it-did/2017/05/16/50670b16-3978-11e7-a058-ddbb23c75d82_story.html
  3. "published the attack code, code-named EternalBlue, that exploited the critical Windows vulnerability" - https://arstechnica.com/security/2017/04/nsa-leaking-shadow-brokers-just-dumped-its-most-damaging-release-yet/
  4. "infect computers around the world with malware" - https://arstechnica.com/security/2017/05/an-nsa-derived-ransomware-worm-is-shutting-down-computers-worldwide/
  5. "ArsTechnica" - https://arstechnica.com/security/2017/05/fearing-shadow-brokers-leak-nsa-reported-critical-flaw-to-microsoft/
  6. "Original Submission" - https://soylentnews.org/submit.pl?op=viewsub&subid=20332

© Copyright 2025 - SoylentNews, All Rights Reserved

printed from SoylentNews, Fearing Shadow Brokers Leak, NSA Reported Critical Flaw to Microsoft on 2025-12-10 23:37:37