Quick Info about EternalBlue

Metasploit

Created: 2022-07-27
Tags: #fleeting


The EternalBlue is an exploit developed by the U.S. National Security Agency (N.S.A.) for a vulnerability affecting the SMBv1 server on Windows systems.
The SMB (Server Message Block) is widely used in Windows networks for file sharing EternalBlue was leaked by the cybercriminal group "Shadow Brokers" in April 2017.
In May 2017, this vulnerability was exploited worldwide in the WannaCry ransomware attack.

References