8 Replies Latest reply on Jun 1, 2017 5:37 PM by catdaddy

    WannaCry - If a Windows host is unpatched and accesses other Windows hosts which are patched what are the risks?

    johnkay12

      Hi All,

       

      Here is a quick overview of scenarios which need to be addressed in relation to WannaCry malware - if someone has knowledge of how the malware spreads, could they please help address the concerns I have.

       

      Scenario 1: One Windows host unpatched and infected with WannaCry connects (via authentication) to a Windows server which is patched - can the infection propagate and result in encrypted files on the Windows server?

       

      Scenario 2: One Windows host unpatched and infected with WannaCry connects (via authentication) to SAN storage to access files. Can the infection attack the files on the SAN and encrypt them?

       

      Scenario 3: On a public Wi-Fi network where BYOD Windows laptops share internet access such as in a public library or university campus - if there is one device infected with WannaCry can the infection propagate to other Windows devices if they are unpatched. I will make the assumption the infected host does not have authenticated access to the other Windows hosts.

       

      If anyone can provide some insight it would be greatly appreciated.

       

      Thanks,

      JK