The Shadow Brokers: Difference between revisions

imported>FF2007
No edit summary
imported>FF2007
No edit summary
Line 1: Line 1:
The Shadow Brokers (TSB) is a hacker group who first appeared in the summer of 2016.[1][2] They published several leaks containing hacking tools, including several zero-day exploits,[1] from the "Equation Group" They are responsible for the WannaCry Ransomware Attack.
The Shadow Brokers (TSB) is a hacker group who first appeared in the summer of 2016.They published several leaks containing hacking tools, including several zero-day exploits, from the "Equation Group" They are responsible for the WannaCry Ransomware Attack.




Line 26: Line 26:


== WannaCry Ransomware ==
== WannaCry Ransomware ==
Over 200,000 machines were infected with tools from this leak within the first two weeks,[31] and in May 2017, the major WannaCry ransomware attack used the ETERNALBLUE exploit on Server Message Block (SMB) to spread itself.
Over 200,000 machines were infected with tools from this leak within the first two weeks, and in May 2017, the major WannaCry ransomware attack used the ETERNALBLUE exploit on Server Message Block (SMB) to spread itself.


ETERNALBLUE contains kernel shellcode to load the non-persistent DoublePulsar backdoor.
ETERNALBLUE contains kernel shellcode to load the non-persistent DoublePulsar backdoor.