Results 1 to 1 of 1
  1. #1
    Gill Bates's Avatar
    Join Date
    Jun 2012
    Gender
    male
    Location
    /online
    Posts
    1,135
    Reputation
    188
    Thanks
    247

    Exclamation NEW Vulnerability (big)

    SMBv3 was supposed to be the version that got us past all the vulnerabilities v1 and v2 had. Well, seems like everything makes full circles. SMBv3 seems to have a new vulnerability that involves buffer overflow. This means that if you send a lot of data to a certain process in it, it will overload the program and allow you to execute code remotely.

    These buffer overflow attacks seem to be very common lately and are some of the most damaging ones out there.

    Basics: SMBv3 is a network protocol that is used for file sharing and printers. Most workplaces use this, meaning there are a lot of users affected by it.

    The situation is weird: Seems like this vulnerability report actually got somewhat leaked. Anyone who was publishing reports of it got their posts removed. Whoever was behind the silencing could not stop thousands of users posting about it, so word got out eventually.

    Solution: as of now, it seems that the only way to patch this is to block a certain port the protocol uses and disable SMBv3 compression. I'm sure they will release an update for it, but none as of today.

    Here is the main place that the news got leaked from: https://twitter.com/malwrhunterteam/...38376032251904

  2. The Following User Says Thank You to Gill Bates For This Useful Post:

    Damosa (03-12-2020)

Similar Threads

  1. New incoming big project
    By Lols12342 in forum Counter-Strike 2 Coding & Resources
    Replies: 1
    Last Post: 07-18-2017, 07:46 PM
  2. Replies: 4
    Last Post: 07-01-2015, 05:27 PM
  3. BlackShot New WallHack (Big Body)
    By tooth96 in forum Blackshot Discussion
    Replies: 55
    Last Post: 12-24-2012, 07:43 AM
  4. big list off acounts *new*
    By blue213321 in forum WarRock - International Hacks
    Replies: 8
    Last Post: 02-16-2009, 11:52 AM
  5. new wery big hack
    By aprill27 in forum WarRock - International Hacks
    Replies: 15
    Last Post: 05-30-2007, 01:32 PM