WannaCry ransomware is a cyber attack that spreads by exploiting vulnerabilities in the Windows operating system. At its peak in May 2017, WannaCry became a global threat. Cybercriminals used the ransomware to hold an organization's data hostage and extort money in the form of cryptocurrency. WannaCry spreads using EternalBlue, an exploit leaked from the National Security Agency (NSA). EternalBlue enables attackers to use a zero-day vulnerability to gain access to a system. It targets Windows computers that use a legacy version of the Server Message Block (SMB) protocol.
33Victims
May 12, 2017First Discovered
Feb 23, 2018Last Discovered
2946Days Inactive
100%Infostealer
0/1Sites Online
Top Countries
US6
CN4
RU3
BR3
GB2
ES2
SG2
ZA1
FR1
IN1
Top Sectors
Government Facilities7
Communication5
Commercial Facilities4
Emergency Services3
Transportation Systems3
Financial3
Energy3
Critical Manufacturing2
Education Facilities1
Healthcare and Public Health1
Known Locations (1)
none.
Victims (33)
State of Connecticut (12 State Agencies, including the Department of Administrative Services)
USGovernment Facilities
Discovered: Feb 23, 2018 · Attack est.: Feb 23, 2018
Becker County
USGovernment Facilities
Discovered: Aug 16, 2017 · Attack est.: Aug 16, 2017