Skip to main content
The VergeThe Verge logo. The Verge homepage
The VergeThe Verge logo.

Microsoft says governments should stop 'hoarding' security vulnerabilities after WannaCry attack

Microsoft says governments should stop 'hoarding' security vulnerabilities after WannaCry attack

Share this story

Image: SecureList / AO Kaspersky Lab

As news of the WannaCry ransomware attack broke last week, companies and governments scrambled first to keep it contained. Now, with more details about its origins and effects clear, those organizations are issuing their official responses.

Among the first is Microsoft, which rushed out an emergency patch for Windows XP on Friday, after formally ending support for the operating system three years ago. The company responded to the attacks with a strongly worded blog post, criticizing governments for "stockpiling" information about cybersecurity vulnerabilities, and likening the WannaCry attack to the US military "having some of its Tomahawk missiles stolen."

Microsoft says governments should stop hoarding vulnerabilities

Microsoft references the WannaCry ransomware's source as an vulnerability known by the NSA, noting that similar security holes were revealed on WikiLeaks in documents stolen from the CIA. It says that the governments of the world should treat the WannaCry attack as "a wake-up call," to consider the "damage to civilians that comes from hoarding these vulnerabilities and the use of these exploits," and to adopt the "Digital Geneva Convention" the company first suggested in February. That Convention would have a new stipulation, too: "A new requirement for governments to report vulnerabilities to vendors, rather than stockpile, sell, or exploit them."

The Trump administration called an emergency meeting over the weekend

But Microsoft also calls on customers to keep up their end of the bargain, too. It notes that cybersecurity is increasingly becoming a shared responsibility between tech companies and customers, the former relying on the latter to keep their critical systems updated, just as people rely on companies to put out secure systems. By keeping pace with upgrades and patches, vast networks like the UK's National Health Service will be able to avoid what Microsoft says are the "two most serious forms of cybersecurity threats in the world today — nation-state action and organized criminal action."

In the United States, the Trump administration called an emergency meeting to discuss the ongoing threat of the ransomware, which according to Europol, has already affected 200,000 computers in 150 countries. In the UK, where WannaCry impacted the work of the National Health Service, experts warned that a second wave may be incoming as still-undetected ransomware could be triggered.

But while Microsoft's advice to keep your computers updated is solid for most standard consumers, it's these government and corporate networks that remain most at risk. The NHS is a good example. The service has been the target of repeated government budget cutbacks, and the country's health minister is apparently unwilling to discuss the security of the huge, aging network it uses. Around the world, similar organizations are likely to remain juicy targets for increasingly more organized and sophisticated attackers.

哆哆女性网橱窗设计网站推荐周易必背100基础知识五行多水怎么起名字传媒网站设计网街头篮球补丁呼和浩特网站设计公司冯王起名周易五行八字起名谢氏男孩取名起名大全产品在线起名周公解梦 梦见猫鼠年宝宝起名姓刘八字缺金的起名字网上卖珠宝首饰沈阳卫生局极地守护犬免费算命周易温如玉二虎小说全文免费阅读汽车网站制作过程海鲜酒店起名字奇妙小镇全集网络推广公司北京营销在线咨询起名大师活了100万次的猫什么是seo优化关键词姓曲起名女童优秀网站设计案例网站seo知名seo主要建设h5网站淀粉肠小王子日销售额涨超10倍罗斯否认插足凯特王妃婚姻不负春光新的一天从800个哈欠开始有个姐真把千机伞做出来了国产伟哥去年销售近13亿充个话费竟沦为间接洗钱工具重庆警方辟谣“男子杀人焚尸”男子给前妻转账 现任妻子起诉要回春分繁花正当时呼北高速交通事故已致14人死亡杨洋拄拐现身医院月嫂回应掌掴婴儿是在赶虫子男孩疑遭霸凌 家长讨说法被踢出群因自嘲式简历走红的教授更新简介网友建议重庆地铁不准乘客携带菜筐清明节放假3天调休1天郑州一火锅店爆改成麻辣烫店19岁小伙救下5人后溺亡 多方发声两大学生合买彩票中奖一人不认账张家界的山上“长”满了韩国人?单亲妈妈陷入热恋 14岁儿子报警#春分立蛋大挑战#青海通报栏杆断裂小学生跌落住进ICU代拍被何赛飞拿着魔杖追着打315晚会后胖东来又人满为患了当地回应沈阳致3死车祸车主疑毒驾武汉大学樱花即将进入盛花期张立群任西安交通大学校长为江西彩礼“减负”的“试婚人”网友洛杉矶偶遇贾玲倪萍分享减重40斤方法男孩8年未见母亲被告知被遗忘小米汽车超级工厂正式揭幕周杰伦一审败诉网易特朗普谈“凯特王妃P图照”考生莫言也上北大硕士复试名单了妈妈回应孩子在校撞护栏坠楼恒大被罚41.75亿到底怎么缴男子持台球杆殴打2名女店员被抓校方回应护栏损坏小学生课间坠楼外国人感慨凌晨的中国很安全火箭最近9战8胜1负王树国3次鞠躬告别西交大师生房客欠租失踪 房东直发愁萧美琴窜访捷克 外交部回应山西省委原副书记商黎光被逮捕阿根廷将发行1万与2万面值的纸币英国王室又一合照被质疑P图男子被猫抓伤后确诊“猫抓病”

哆哆女性网 XML地图 TXT地图 虚拟主机 SEO 网站制作 网站优化