Skip to content
COOEY

FAIL › dossier

SMBv1

PRODUCT

· dossier confidence 90%

SMBv1 is a legacy Microsoft protocol containing critical RCE vulnerabilities (CVE-2017-0144/0145) actively exploited in ransomware attacks targeting DIB organizations.

PROFILE
CategoryproductWhat they doSMBv1 is a legacy file-sharing protocol developed by Microsoft, not a vendor or company.
SECURITY POSTURE

Legacy protocol with critical vulnerabilities actively exploited in ransomware attacks.

Notable failures
  • CVE-2017-0144 RCE vulnerability
  • CVE-2017-0145 RCE vulnerability
  • Active exploitation by ransomware actors
Patterns: Critical RCE vulnerabilities in legacy protocols; Exploitation in DIB environments
FAILURE HISTORY · 2
DATEEVENTSEVSUMMARY
2022-02-10 CVE-2017-0144 critical Microsoft's SMBv1 vulnerability (CVE-2017-0144) allowed remote code execution and was actively exploited, often linked to ransomware attacks, impacting DIB organizations reliant on legacy Windows systems and SMB file sharing.
2022-02-10 CVE-2017-0145 critical Microsoft's SMBv1 vulnerability (CVE-2017-0145) allowed remote code execution and was actively exploited, often linked to ransomware attacks, impacting DIB organizations reliant on legacy Windows systems and SMB file sharing.
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-01 03:43:54.259075+00:00