An IoT botnet is trying to nuke Wcry's killswitch

It’s spread by a worm; the worm has to be introduced into networks at some point. It is definitely not hitting all vulnerable machines as I have been patching them for over a week without actually seeing an infection.
Someone introduced the worm into the NHS network and someone introduced it into the Russian internal network. I know enough about NHS systems to know that it wasn’t simply collateral damage.

2 Likes