WannaCry Also Hit Windows 7 Systems

WannaCry ransomware infection caused havoc in hundreds of countries and across hundreds of thousands of machines, and in the immediate aftermath of the hit many were pointing the finger at outdated versions of Windows XP for allowing WannaCry to cause so much damage.

However, new research from Kaspersky shows that 98% of the computers hit by WannaCry were actually running Windows 7, a more modern OS that's still officially supported by Microsoft.

A patch was issued to protect Windows 7 from this kind of exploit in March, so the affected machines would appear to be ones that hadn't yet been updated. This shows that running a more recent version of Windows doesn't necessarily make you safe: it's the regular patching and updating that keeps you (and your business) protected, not just upgrading your OS as a whole. 

Microsoft no longer provides regular patches for Windows XP, which is why last week's update in response to WannaCry was so unusual. Now it turns out that attacks on Windows 7, an OS released in 2009 that's still the most popular in terms of market share, running on 48.5% of desktop computers worldwide, were far more common.

Windows 10 is the only version of Windows that's completely safe from WannaCry, according to Microsoft, though the ransomware continues to evolve out in the wild. A small number of Windows 10 hits are shown in Kaspersky's chart, but these are due to manual infections carried out for testing.

Meanwhile, security experts continue to release tools to fight WannaCry, with the latest one removing the ransomware as long as the infected system hasn't been rebooted. If you're after a complete guide to how you can stay protected, TechRadar have got you covered.

TechRadar

You Might Also Read:

North Korea's Unit 180 Managed WannaCry Attack:

What We Know About The WannaCry Cyberattack So Far:


 

« Making Sense Of Dark Data
Eight Steps For Cloud Security »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

North Infosec Testing (North IT)

North Infosec Testing (North IT)

North IT (North Infosec Testing) are an award-winning provider of web, software, and application penetration testing.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

ON-DEMAND WEBINAR: Gen AI for Security: Adoption strategies with Amazon Bedrock

ON-DEMAND WEBINAR: Gen AI for Security: Adoption strategies with Amazon Bedrock

Watch this webinar and get a comprehensive roadmap for securely adopting generative AI using Amazon Bedrock, a fully managed service that offers a choice of high-performing foundation models (FMs).

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

King & Spalding

King & Spalding

King & Spalding is an international law firm with offices in the United States, Europe and the Middle East. Practice areas include Data, Privacy & Security.

CERT.LV

CERT.LV

CERT.LV is the national Computer Emergency Response Team for Latvia.

Industrial Cyber-Physical Systems Center (iCyPhy)

Industrial Cyber-Physical Systems Center (iCyPhy)

The goal of iCyPhy is to conduct pre-competitive research on architectures and design, modeling, and analysis techniques for cyber-physical systems.

Assured Information Security (AIS)

Assured Information Security (AIS)

AIS is committed to providing our customers with critical information security products, services, and training. We support diverse needs throughout business and industry.

Hitachi Systems Security

Hitachi Systems Security

Hitachi Systems Security provides customized services for monitoring and protecting the most critical and sensitive IT assets in our clients’ infrastructures 24/7.

Invensis Learning

Invensis Learning

Invensis Learning is a professional training and certification company providing IT Service Management, IT Security & Governance, DevOps, Cloud Computing and Digital Awareness training.

Sistem Integra (SISB)

Sistem Integra (SISB)

SISB provide IT Security Infrastructure & Development, Mechanical & Electrical Services, Fire Safety & Detection Services, Facilities Management & Application Development.

OutThink

OutThink

OutThink is a web-based platform (SaaS) that has been developed specifically to identify and reduce risky workforce behaviours and build a risk aware culture.

iZOOlogic

iZOOlogic

iZOOlogic protects hundreds of the world’s leading brands, across banking, finance and government from cybercrime. We provide strong cyber defence solutions to protect client digital assets.

Stratejm

Stratejm

Stratejm, a Next Generation Managed Security Services Provider, brings innovation and thought leadership to the fight against cyber criminals.

TekSek Cyber Security

TekSek Cyber Security

Preparing you for tomorrow's security threats.

AirITSystems

AirITSystems

AirITSystems offer companies comprehensive IT security solutions that take all security considerations into account and are tailored to your business.

VikingCloud

VikingCloud

VikingCloud (formerly Sysnet Global Solutions) offers organizations an integrated cybersecurity and compliance solution to make informed, predictive, and cost-effective risk mitigation and prevention

AdEPT Technology Group

AdEPT Technology Group

AdEPT are a managed services and telecommunications provider offering award-winning, proven and uncomplicated technical solutions for over 12,000 organisations across the UK.

HORNE

HORNE

HORNE is a professional services firm supporting clients in public, private & government sectors nationwide.

vCISO Services

vCISO Services

vCISO Services is a small, specialized, veteran-owned firm focused on the needs of SMBs only.