An IoT botnet is trying to nuke Wcry's killswitch

I think it’s safe to say they can’t engineer it out of the code on already infected machines. As far as I know it would be very difficult to design a way to push updates out in a way that doesn’t risk exposing you as the source. Worms grow geometrically with the number of infected machines out there spreading the virus, so momentum is important and releasing a new version of the worm means starting again from scratch. It makes sense then if this is the original attackers, although it could also be trollies for all I know.

Yeah but if this is the sci-fi warfare of the future then there are disappointingly few lasers involved.

4 Likes