Eternal Darkness flaw in Windows 10 sounds scary as hell, best to patch it now

(Image credit: Microsoft)

The US Cybersecurity and Infrastructure Security Agency (CISA) issued a warning that hackers are actively exploiting a previously patched flaw in Windows 10 that goes by multiple names, among them Eternal Darkness and SMBGhost. Both sound ominous, and for good reason. If left unpatched, an attacker could gain unauthorized remote access to a target system and wreak havoc.

Microsoft actually issued an out-of-band patch for this vulnerability in March, meaning it arrived separately from any scheduled Patch Tuesday updates that are pushed out the second Tuesday of every month. Out-of-band patches are typically reserved for security issues that demand immediate attention.

In this case, the flaw has to do with the Server Message Block (SMB) protocol in Windows 10. It's basically a network file sharing protocol that offers shared access to files, printers, and other resources between PCs on a network.

Eternal Darkness/SMBGhost affects version 3.11 of the protocol, which as ThreatPost points out, is the same version that was targeted by the WannaCry ransomware a couple of years ago. And like WannaCry, it has the ability to 'worm' its way through a network to quickly infect multiple PCs.

Even though this was patched in March, a user on Twitter recently posted a proof-of-concept exploit to GitHub that allows an attacker to execute malicious code remotely, along with a video showcasing the exploit. This code has been used in the wild to attack Windows 10 PCs that have not been patched recently.

"Although Microsoft disclosed and provided updates for this vulnerability in March 2020, malicious cyber actors are targeting unpatched systems with the new PoC, according to recent open-source reports. CISA strongly recommends using a firewall to block SMB ports from the internet and to apply patches to critical- and high-severity vulnerabilities as soon as possible," CISA said.

If you have not run Windows Update in a while, you should do so right now, to ensure you have the patch installed. You could also apply the May 2020 Update for Windows 10 (version 2004) if you have been putting that off, as this does not affect the latest release. Just be sure to back up your important files first in case something goes wrong.

Paul Lilly

Paul has been playing PC games and raking his knuckles on computer hardware since the Commodore 64. He does not have any tattoos, but thinks it would be cool to get one that reads LOAD"*",8,1. In his off time, he rides motorcycles and wrestles alligators (only one of those is true).

Latest in Windows
Microsoft Windows 11
The latest Windows 11 dev build gives you the ability to snap together commonly paired apps for access in a single click, and I'm already sold
Windows 11's new emoji button in the taskbar.
You might mock Microsoft's new emoji button in Windows 11 but as someone that's explained how to quickly access emojis and special characters too many times, I get it
Windows 10 operating system logo is displayed on a laptop screen for illustration photo. Gliwice, Poland on January 23, 2022.
Valve's monthly survey reveals that almost 45% of Steam users on PC are still using Windows 10 even with the sword of Damocles hanging over them
Microsoft Windows 11
If you installed Windows 11 with certain security updates and a USB stick, you may not get any more security updates warns Microsoft
Retro 1990s style beige desktop PC computer and monitor screen and keyboard. 3D illustration.
Microsoft nixes details of its Windows 11 TPM 2.0 security bypass though there are still other ways of getting the latest OS on 'unsupported' hardware
A photo of the Windows update menu, showing that I'm all up to date
Latest Windows 11 Insider Build fixes 24H2 update's most annoying issues, including Auto HDR bugs and mouse stuttering
Latest in News
XFX Radeon RX 9070 XT Quicksilver graphics card on a blue background with angel wings on either side
XFX is letting you add customisable 3D printed wings to its Quicksilver RX 9070-series graphics cards
Marvel Rivals Human Torch
Marvel Rivals is carrying on the tradition of chaotic patches after buffing two of the most annoying heroes, but I main one of them, so I'm not complaining
 photo shows a factory tool that places lids on data center system-on-chips at an Intel fab in Chandler, Arizona, in December 2023. In February 2024, Intel Corporation launched Intel Foundry as the world’s first systems foundry for the AI era, delivering leadership in technology, resiliency and sustainability.
So, wait, now TSMC is supposedly pitching a joint venture with Nvidia, AMD and Broadcom to run Intel's ailing chip fabs?
Monster Hunter Wilds Artian weapon crafting - Gemma holding hot metal
Gemma's English VA is right with us on Monster Hunter Wild's confusing menus, which makes me feel a little better for having to Google symbols all the time
Sapphire Pulse Radeon RX 9070 XT on a red and orange background
Some Sapphire RX 9070/9070 XT graphics cards have hard-to-spot foam inside that must be removed or it 'may result in a decrease in cooling capacity or product failure'
Promotional image of the HP Envy Inspire inkjet printer
Haunted printers turning on by themselves and printing nonsense has to be one of my favorite Windows 11 bugs ever