Shadow Brokers Exploit Kits Are A Malware ‘Game Changer’

Security experts at Kaspersky Lab have warned that the ‘unrelenting scale’ of exploits from known software vulnerabilities has been driven by the easy availability of exploit packages in-the-wild.

Indeed, Kaspersky Labs has labelled the arrival of these exploit packages as a “game changer” in the cyber threat landscape this year.

This was the main finding in Kaspersky’s Malware report for the second quarter of 2017, which revealed that exploits leaks had contributed to 5 million attacks in the second quarter.

Exploits kits or packages are malware that utilises flaws and vulnerabilities found in software to infect devices with malicious code such as banking trojans, ransomware, or espionage malware.

According to Kaspersky Labs, attacks that utilise an exploit are hugely popular with cyber criminals as they often don’t require require any user interaction, and can deliver their dangerous code without the user suspecting anything.

The researchers said that in just three months it had blocked more than five million attacks that involved exploits from archives leaked on the web.

It pointed to the Shadow Brokers’ publication of the “Lost In Translation” archive, which contained a large number of exploits for different versions of Windows, as signalling the start of this trend.

The researcher said that even though most of these vulnerabilities were not zero-day vulnerabilities and were patched by subsequent Microsoft updates, “the publication led to disastrous consequences”.

“The average number of attacks per day is constantly growing: 82 per cent of all attacks were detected in the last 30 days of the quarter,” it warned, citing the ExPetr and WannaCry pandemics as being the most notable examples.

Patch Often

“The threat landscape of Q2 provides yet another reminder that a lack of vigilance is one of the most significant cyber dangers,” said Alexander Liskin, security expert at Kaspersky Labs. “While vendors patch vulnerabilities on a regular basis, many users don’t pay attention to this, which results in massive-scale attacks once the vulnerabilities are exposed to the broad cybercriminal community.”

The report also found that attempted infections by malware that looks to steal money via online banking was found on 224,675 user computers, compared to 288,000 computers in the first quarter.

And crypto-ransomware attacks were blocked on 246,675 computers, compared to 240,799 computers in Q1.

On average, 17.26 per cent of Internet-connected computers in the world at least once faced a web attack using the malware-class malicious objects,” said Kaspersky Labs.

It said users should keep their software up-to-date and wherever possible, choose a software vendor that demonstrates a responsible approach to a vulnerability problem. Users should also use “robust security solutions” and regularly run a system scan to check for possible infections.

Kaspersky Labs in July celebrated its 20th birthday by releasing free antivirus to bolster the protection of all customers. ‘Kaspersky Free’ will not compete with its premium offering, which includes parental controls, VPN access and other features.

Quiz: What do you know about cyber security in 2017?

Tom Jowitt

Tom Jowitt is a leading British tech freelancer and long standing contributor to Silicon UK. He is also a bit of a Lord of the Rings nut...

Recent Posts

TikTok Viewed As Chinese Influence Tool By Most Americans – Poll

Most people in the United States view TikTok as a Chinese influence tool a poll…

5 hours ago

Ofcom Confirms OnlyFans Investigation Over Age Verification

UK regulator confirms it is investigating whether OnlyFans is doing enough to prevent children accessing…

5 hours ago

Ex Google Staff Fired Over Israel Protest File NLRB Complaint

Dismissed staff file complaint with a US labor board, and allege Google unlawfully terminated their…

7 hours ago

Tesla Axes Entire Supercharger Team, Plus Senior Executives

Elon Musk dismisses two senior Tesla executives, plus the entire division that runs Tesla's Supercharger…

8 hours ago

Microsoft, OpenAI Sued By More Newspaper Publishers

Eight newspaper publishers in the US allege Microsoft and OpenAI used their millions of their…

9 hours ago

Binance’s Changpeng Zhao Sentenced To Four Months In Prison

US judge sentences Binance founder, Changpeng Zhao, to four months in prison for ignoring money…

12 hours ago