FAIL › dossier
SMBv1
PRODUCT· dossier confidence 90%
SMBv1 is a legacy Microsoft protocol containing critical RCE vulnerabilities (CVE-2017-0144/0145) actively exploited in ransomware attacks targeting DIB organizations.
PROFILE
CategoryproductWhat they doSMBv1 is a legacy file-sharing protocol developed by Microsoft, not a vendor or company.
SECURITY POSTURE
Legacy protocol with critical vulnerabilities actively exploited in ransomware attacks.
Notable failures
- CVE-2017-0144 RCE vulnerability
- CVE-2017-0145 RCE vulnerability
- Active exploitation by ransomware actors
Patterns: Critical RCE vulnerabilities in legacy protocols; Exploitation in DIB environments
FAILURE HISTORY · 2
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2022-02-10 | CVE-2017-0144 | critical | Microsoft's SMBv1 vulnerability (CVE-2017-0144) allowed remote code execution and was actively exploited, often linked to ransomware attacks, impacting DIB organizations reliant on legacy Windows systems and SMB file sharing. |
| 2022-02-10 | CVE-2017-0145 | critical | Microsoft's SMBv1 vulnerability (CVE-2017-0145) allowed remote code execution and was actively exploited, often linked to ransomware attacks, impacting DIB organizations reliant on legacy Windows systems and SMB file sharing. |
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-01 03:43:54.259075+00:00