This only spreads via SMB over local network, which to me suggests the initial vector was something more effective than EthernalBlue.
-
-
W odpowiedzi do @MalwareTechBlog
Indeed. Social engineering and bad emails. Very different.
1 odpowiedź 0 podanych dalej 2 polubione -
W odpowiedzi do @peterkruse
The simultaneous volume to me suggests more than just so mails, but idk yet.
3 odpowiedzi 1 podany dalej 3 polubione -
W odpowiedzi do @MalwareTechBlog @peterkruse
Yeah. I've not seen any evidence of email yet. Maybe Malvertising, something like that. Also the lateral movement spread is big issue.
5 odpowiedzi 0 podanych dalej 3 polubione -
Agreed. Too many monitors on spam campaigns, we'd see confirmation by now from @dvk01uk etc. if it was regular spam. Maybe targeted emails?
1 odpowiedź 0 podanych dalej 0 polubionych -
W odpowiedzi do to @demonslay335@GossiTheDog i jeszcze
it is confirmed by a Dutch company APM, that the vector was a Phishing mail. APM was targeted by
#Petya http://www.telegraaf.nl/binnenland/28489263/___Cyberaanval_gevolg_van_klikken_op_phishing_e-mail___.html?utm_source=t.co&utm_medium=referral&utm_campaign=twitter&apw_campaign=9974328a28ad0fdbd055fe5cb86b1051 …2 odpowiedzi 2 podane dalej 3 polubione
That may well not be accurate. Lots of companies said they got hit by email for WannaCry - they were all wrong.
Wydaje się, że ładowanie zajmuje dużo czasu.
Twitter jest przeciążony lub wystąpił chwilowy problem. Spróbuj ponownie lub sprawdź status Twittera, aby uzyskać więcej informacji.
my tweets are severely limited by my lack of understanding of what I am doing.