New Release Brings BlueKeep to Metasploit

All organizations with Windows infrastructures should make sure their systems are patched to current versions, Rapid7 suggests.

Dark Reading Staff, Dark Reading

September 10, 2019

1 Min Read
Dark Reading logo in a gray background | Dark Reading

An exploit for BlueKeep, a vulnerability in Microsoft's Remote Desktop Protocol (RDP) that can allow remote code execution, is the subject of the latest pull request of Metasploit, the open source exploit framework widely used by security researchers.

BlueKeep, designated CVE-2019-0708, affects Windows versions from 2000 through Server 2008 R2 and Windows 7. A related vulnerability, DejaBlue, is present in these versions as well as newer Windows versions through Windows 10.

A blog post at Rapid7, the security company that maintains Metasploit in conjunction with the open source community, notes that RDP attacks went up dramatically following the initial BlueKeep release, though the overall level of such activity is below what it initially expected. The company suggests that all organizations with Windows infrastructures make sure their systems are patched to current versions.

The BlueKeep exploit module for Metasploit is available on GitHub.

For more, read here.

Edgepromohorizontal.jpgCheck out The Edge, Dark Reading's new section for features, threat data, and in-depth perspectives. Today's top story: "Phishers' Latest Tricks for Reeling in New Victims."

About the Author

Dark Reading Staff

Dark Reading

Dark Reading is a leading cybersecurity media site.

Keep up with the latest cybersecurity threats, newly discovered vulnerabilities, data breach information, and emerging trends. Delivered daily or weekly right to your email inbox.

You May Also Like


More Insights