Browsing tag

EternalBlue

Prometei botnet uses NSA exploit, hits unpatched MS exchange servers

According to researchers, there are separate Prometei botnet versions available for Linux and Windows-based systems. According to a report from Cybereason, unpatched MS Exchange Servers are being hunted by Prometei botnet to expand its army of Monero cryptocurrency mining bots. It doesn’t come as a surprise because the vulnerabilities CVE-2021-27065 and CVE-2021-26858 identified in MS […]

Ispy – Eternalblue / Bluekeep Scanner And Exploiter

  ispy : Eternalblue(ms17-010)/Bluekeep(CVE-2019-0708) Scanner and exploiter ( Metasploit automation ) How to install : git clone https://github.com/Cyb0r9/ispy.git cd ispy chmod +x setup.sh ./setup.sh Screenshots :       Tested On : Parrot OS Kali linux Tutorial ( How to use ispy ) info GitHub profile : https://github.com/Cyb0r9 YouTbue channel: https://youtube.com/c/Cyborg_TN Ask Fm (ask me): […]

Baltimore city ransomware attack is powered by stolen NSA hacking tool

This time the hacking tool being used is EternalBlue. The New York Times has reported that the recent ransomware attacks in major US cities specifically Baltimore are closely linked together due to the fact that the key component in all the campaigns is a stolen NSA tool EternalBlue. Interestingly, attackers are using NSA’s own designed […]

Thousands of firms hit by Beapy malware using NSA hacking tools

EternalBlue and DoublePulsar hacking tools are back in action. Symantec security researchers have identified that cybercriminals are still utilizing the classified exploits/hacking tools of the National Security Agency (NSA), which were stolen about two years back. The new malware has been dubbed Beapy by researchers. Beapy is a new malware that makes use of leaked […]

Remember Those Leaked NSA Tools? Hackers Are Still Using Them To Hijack Computers

It’s not a hidden fact that NSA is probably the most capable creator of hacking tools that can penetrate different computing platforms and sniff useful information. Last year, things took a surprising turn when NSA’s powerful hacking tools were leaked online. Since that leak, those tools and exploits are being used by notorious elements all […]

PowerGhost Malware Remotely Attack Corporate Network Servers & Workstations using EternalBlue Exploit

Newly discovered  PowerGhost Malware Spreading across corporate networks that infecting both servers and workstations to illegally mining the crypt-currency and Perform DDoS Attacks. Cybercriminals targeting large number corporate networks to mining the cryptocurrency and DDoS attack to generate huge profits. Enterprise Networks should choose the best DDoS Attack prevention services to ensure the DDoS attack protection and prevent […]

PyRoMine malware disables security & mines Monero using NSA exploits

The IT security researchers at Fortinet have discovered a dangerous new malware that not only mines Monero cryptocurrency but also disables security features on the targeted Windows system – All this while it uses NSA’s (National Security Agency) exploits. EternalBlue and EternalRomance exploits? For those not aware of these exploits, in 2016-17, a group of hackers going […]

New Cryptocurrency Mining Scheme Uses NSA Exploits EternalBlue & EternalSynergy

Due to the unprecedented and unexpected increase in the value of cryptocurrencies like Bitcoin, there has been a sudden rise in cyber-attacks on cryptocurrency marketplaces and exchanges. Hackers are unleashing all sorts of attacks from DDoS to spearphishing and frontal attacks to make use of the popularity of cryptocurrencies. Monero mining with NSA exploits Now, […]

Excalibur – An Eternalblue exploit payload based Powershell

Excalibur is an Eternalblue exploit based “Powershell” for the Bashbunny project. It’s purpose is to reflect on how a “simple” USB drive can execute the 7 cyber kill chain. Excalibur may be used only for demostrations purposes only, and the developers are not responsible to any misuse or illeagal usage. What does it do? When […]

Bad Rabbit Ransomware Uses Leaked ‘EternalRomance’ NSA Exploit

A new widespread ransomware worm, known as “Bad Rabbit,” that hit over 200 major organisations, primarily in Russia and Ukraine this week leverages a stolen NSA exploit released by the Shadow Brokers this April to spread across victims’ networks. Earlier it was reported that this week’s crypto-ransomware outbreak did not use any National Security Agency-developed […]

Fileless Cryptocurrency Miner that affects Windows Machine Through WMI and EternalBlue

Nowadays Hackers Distributing Advanced Fileless Malware with Evasion capabilities which are very Difficult to Detect. Security experts from Trend Micro Identified a new crypto miner which uses Fileless malware Techniques. It uses Windows Management Instrumentation for fileless persistence and uses scrcons.exe to execute its scripts. In order to enter into the system, it uses EternalBlue […]

Still More than 50,000 hosts are vulnerable to ETERNAL BLUE Exploit

Eternal Blues, a tool used in finding computers and Endpoints vulnerable to the NSA’s ETERNALBLUE exploit. All we need to do is just to hit a scan, and it will generate the vulnerability report. EternalBlue Malware infecting Windows based Server Message Block (SMB) protocol Developed By National Security (NSA) and believes that it has been […]

App Finds More Than 50,000 Computers Vulnerable to ETERNALBLUE Exploit

The developer of a tool named Eternal Blues that scans for computers vulnerable to the NSA’s ETERNALBLUE exploit has published statistics gathered from the app’s usage. According to Elad Erez, the tool’s developer, the Eternal Blues app found more than 50,000 vulnerable computers around the world in the past two weeks, since the tool’s official release. […]

WannaCry’s EternalBlue Exploit Ported To Windows 10

Short Bytes: WannaCry ransomware, which targetted tons of unpatched older versions of Windows, used the leaked EternalBlue and DoublePulsar exploits. Now, a team of white hat researchers has ported the EternalBlue exploit to Windows 10. This module is a smaller version that can be ported to unpatched Windows 10 and used to deliver payloads. In the research […]

NSA Malware “EternalBlue” Successfully Exploit and Port into Microsoft Windows 10

A Malware called “EternalBlue”  Vulnerability Successfully port the exploit to Microsoft Windows 10 by the Security Researchers which has been only affected earlier with Microsoft Windows XP (Server 2003) and Microsoft Windows 7 (Server 2008 R2) Along with Wanna cry Ransomware. EternalBlue Malware infecting Windows based  Server Message Block (SMB) protocol Developed By National Security […]