Vulnerable Systems

Every now and then, patches and updates are being released by system developers to guard against cyber threat actors from exploiting the weakness or loophole identified in machine software.

The Cybersecurity and Infrastructure Security Agency (CISA) is aware of publicly available and functional proof-of-concept (PoC) code that exploits CVE-2020-0796 in unpatched systems. Malicious cyber actors are targeting unpatched systems with the new vulnerability code to gain access and even hijack victims systems.

It is strongly recommended that system users or rather administrators employ the use of firewall to block SMB (Server Message Block ) ports from the internet and to apply patches to critical- and high-severity vulnerabilities as soon as possible. In addition, routine system update, scanning for malicious data and use of authentic OEM software are highly recommended.