logo

Chinese and Russian Hackers Mining Shadow Brokers Release

ID: c3875634-e78b-591c-83cf-4f66b3d49063

STIX ID: report--c3875634-e78b-591c-83cf-4f66b3d49063

Feed Name: Security Ledger

Threat Score
72/100

Date Published: 2017-04-25

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

Recorded Future reports that Chinese and Russian cyber actors have quickly obtained and reverse-engineered a set of powerful hacking tools released by the Shadow Brokers (including ETERNALBLUE, ETERNALROMANCE, DOUBLEPULSAR and the FUZZBUNCH framework); forum chatter shows actors recommending and weaponizing these exploits and expressing concern that Microsoft patches for the related CVEs may not fully mitigate the underlying weaknesses, raising the risk that attacks using these tools are underway or imminent.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.