{"id":130725,"date":"2015-04-27T08:09:00","date_gmt":"2015-04-27T13:09:00","guid":{"rendered":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/"},"modified":"2024-02-06T11:42:39","modified_gmt":"2024-02-06T11:42:39","slug":"all-versions-of-windows-affected-by-new-smb-flaw","status":"publish","type":"post","link":"https:\/\/ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/","title":{"rendered":"All Versions of Windows Affected by New SMB Flaw"},"content":{"rendered":"

Taking notice of vulnerabilities is absolutely crucial – and there’s one you need to pay attention to right now.<\/h1>\n

\"Redirect<\/p>\n

There’s a serious vulnerability in all supported versions of Windows that allows attacks to steal your credentials from valuable services.<\/h2>\n

The bug is related to the way Windows and other software handles some HTTP requests. Researchers are saying it affects a huge variety of apps including iTunes and Adobe Flash.<\/p>\n

The Vulnerability<\/strong><\/p>\n

The problem is an extension of something known as Redirect to SMB. It’s a weakness that enables attackers to force victims to try to authenticate an attacker-controlled server. Basically, it’s a way for them to steal credentials by hijacking communications from legitimate web servers, then sending them into malicious SMB servers that force them to produce the victim’s username, domain, and password.<\/p>\n

Who’s at Risk?<\/strong><\/p>\n

The Redirect to SMB not only affects all current versions of Windows, but also Flash, GitHub clients, Oracle software and many other security applications. What’s especially worrying is that once a hacker gains victim’s credentials, the passwords can be cracked offline.<\/p>\n

It Works Quickly<\/strong><\/p>\n

On a Windows 8.1 laptop, more than 50 different HTTP connections were made after a restart – within just 5 minutes, most of those could be hijacked by an attacker. The sources of the connections range from OEM “update checks” to weather and news applications.<\/p>\n

Experts worry that the vulnerability could be used as part of a multi-stage phishing attack. First, hackers exploit vulnerabilities, then after getting a user to click an email link, they take the attack further. Getting the user to log-in to a fake portal or download software to their machine.<\/p>\n

Don’t fall victim to an attack or leave your network open to risk.<\/p>\n

To get in contact with an IT team that will talk to you about these issues and help ensure you’re properly protected, contact {company} at {email} or by phone at {phone}. <\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"

Taking notice of vulnerabilities is absolutely crucial – and there’s one you need to pay attention to right now. There’s a serious vulnerability in all supported versions of Windows that allows attacks to steal your credentials from valuable services. The bug is related to the way Windows and other software handles some HTTP requests. Researchers…<\/p>\n","protected":false},"author":5,"featured_media":130727,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[8],"tags":[],"class_list":["post-130725","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blog"],"acf":[],"yoast_head":"\nAll Versions of Windows Affected by New SMB Flaw - IT Services in Virginia<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"All Versions of Windows Affected by New SMB Flaw - IT Services in Virginia\" \/>\n<meta property=\"og:description\" content=\"Taking notice of vulnerabilities is absolutely crucial – and there’s one you need to pay attention to right now. There’s a serious vulnerability in all supported versions of Windows that allows attacks to steal your credentials from valuable services. The bug is related to the way Windows and other software handles some HTTP requests. Researchers…\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/\" \/>\n<meta property=\"og:site_name\" content=\"IT Services in Virginia\" \/>\n<meta property=\"article:published_time\" content=\"2015-04-27T13:09:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-02-06T11:42:39+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.ntegrait.com\/wp-content\/uploads\/2015\/04\/Redirect-SMB-1.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"507\" \/>\n\t<meta property=\"og:image:height\" content=\"338\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Steve West\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Steve West\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/\",\"url\":\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/\",\"name\":\"All Versions of Windows Affected by New SMB Flaw - IT Services in Virginia\",\"isPartOf\":{\"@id\":\"https:\/\/www.ntegrait.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/ntegrait.com\/wp-content\/uploads\/2015\/04\/Redirect-SMB-1.jpg\",\"datePublished\":\"2015-04-27T13:09:00+00:00\",\"dateModified\":\"2024-02-06T11:42:39+00:00\",\"author\":{\"@id\":\"https:\/\/www.ntegrait.com\/#\/schema\/person\/33156c118f002b88019c3fc70441bf79\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#primaryimage\",\"url\":\"https:\/\/ntegrait.com\/wp-content\/uploads\/2015\/04\/Redirect-SMB-1.jpg\",\"contentUrl\":\"https:\/\/ntegrait.com\/wp-content\/uploads\/2015\/04\/Redirect-SMB-1.jpg\",\"width\":507,\"height\":338},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/ntegrait.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"All Versions of Windows Affected by New SMB Flaw\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.ntegrait.com\/#website\",\"url\":\"https:\/\/www.ntegrait.com\/\",\"name\":\"IT Services in Virginia\",\"description\":\"Ntegra IT\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.ntegrait.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.ntegrait.com\/#\/schema\/person\/33156c118f002b88019c3fc70441bf79\",\"name\":\"Steve West\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.ntegrait.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/3cc273f166c78aca895198956663df42?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/3cc273f166c78aca895198956663df42?s=96&d=mm&r=g\",\"caption\":\"Steve West\"},\"description\":\"Ntegra IT is devoted to providing reliable Computer Support to businesses that want to improve productivity and profitability. We deliver custom designed Network Services that better map to your business, so you can stop worrying about your technology and get back to achieving your business goals.\",\"url\":\"https:\/\/ntegrait.com\/author\/swestntegrait-com\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"All Versions of Windows Affected by New SMB Flaw - IT Services in Virginia","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/","og_locale":"en_US","og_type":"article","og_title":"All Versions of Windows Affected by New SMB Flaw - IT Services in Virginia","og_description":"Taking notice of vulnerabilities is absolutely crucial – and there’s one you need to pay attention to right now. There’s a serious vulnerability in all supported versions of Windows that allows attacks to steal your credentials from valuable services. The bug is related to the way Windows and other software handles some HTTP requests. Researchers…","og_url":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/","og_site_name":"IT Services in Virginia","article_published_time":"2015-04-27T13:09:00+00:00","article_modified_time":"2024-02-06T11:42:39+00:00","og_image":[{"width":507,"height":338,"url":"https:\/\/www.ntegrait.com\/wp-content\/uploads\/2015\/04\/Redirect-SMB-1.jpg","type":"image\/jpeg"}],"author":"Steve West","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Steve West","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/","url":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/","name":"All Versions of Windows Affected by New SMB Flaw - IT Services in Virginia","isPartOf":{"@id":"https:\/\/www.ntegrait.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#primaryimage"},"image":{"@id":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#primaryimage"},"thumbnailUrl":"https:\/\/ntegrait.com\/wp-content\/uploads\/2015\/04\/Redirect-SMB-1.jpg","datePublished":"2015-04-27T13:09:00+00:00","dateModified":"2024-02-06T11:42:39+00:00","author":{"@id":"https:\/\/www.ntegrait.com\/#\/schema\/person\/33156c118f002b88019c3fc70441bf79"},"breadcrumb":{"@id":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#primaryimage","url":"https:\/\/ntegrait.com\/wp-content\/uploads\/2015\/04\/Redirect-SMB-1.jpg","contentUrl":"https:\/\/ntegrait.com\/wp-content\/uploads\/2015\/04\/Redirect-SMB-1.jpg","width":507,"height":338},{"@type":"BreadcrumbList","@id":"https:\/\/www.ntegrait.com\/all-versions-of-windows-affected-by-new-smb-flaw\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/ntegrait.com\/"},{"@type":"ListItem","position":2,"name":"All Versions of Windows Affected by New SMB Flaw"}]},{"@type":"WebSite","@id":"https:\/\/www.ntegrait.com\/#website","url":"https:\/\/www.ntegrait.com\/","name":"IT Services in Virginia","description":"Ntegra IT","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.ntegrait.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.ntegrait.com\/#\/schema\/person\/33156c118f002b88019c3fc70441bf79","name":"Steve West","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.ntegrait.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/3cc273f166c78aca895198956663df42?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/3cc273f166c78aca895198956663df42?s=96&d=mm&r=g","caption":"Steve West"},"description":"Ntegra IT is devoted to providing reliable Computer Support to businesses that want to improve productivity and profitability. We deliver custom designed Network Services that better map to your business, so you can stop worrying about your technology and get back to achieving your business goals.","url":"https:\/\/ntegrait.com\/author\/swestntegrait-com\/"}]}},"_links":{"self":[{"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/posts\/130725","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/comments?post=130725"}],"version-history":[{"count":1,"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/posts\/130725\/revisions"}],"predecessor-version":[{"id":181408,"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/posts\/130725\/revisions\/181408"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/media\/130727"}],"wp:attachment":[{"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/media?parent=130725"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/categories?post=130725"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ntegrait.com\/wp-json\/wp\/v2\/tags?post=130725"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}