warning: WD MyBook drives being wiped clean worldwide

Page 1 of 2 12 LastLast

  1. Posts : 103
    Windows 10 21H2
       #1
      My Computer

  2.   My Computers


  3. Posts : 494
    Win 10 Pro x64 versions
       #3

    I believe this is an exploit that finds its way onto the MyBook Live and triggers a Wipe on the disk.
      My Computer


  4. Posts : 7,254
    Windows 10 Pro 64-bit
       #4

    I have a WD My Cloud Mirror, I hope those are ok.
      My Computers


  5. Posts : 14,019
    Win10 Pro and Home, Win11 Pro and Home, Win7, Linux Mint
       #5

    I have 2 x 4TB My Book USB-connected and 2 x 2TB My Cloud NAS Ethernet-connected, no issues. The My Book Live drives are a different model that, from what I read on WD, can be USB or Ethernet connected, the problem seems to be with the IP.
      My Computers


  6. Posts : 278
    Windows 10 Home 22H2
       #6

    I'll never trust cloud-based storage, or storage devices that have become part of a network of devices. The more standalone they remain, the more secure they are.
      My Computer


  7. Posts : 23,243
    Win 10 Home ♦♦♦19045.4355 (x64) [22H2]
       #7

    i486 said:
    I'll never trust cloud-based storage, or storage devices that have become part of a network of devices. The more standalone they remain, the more secure they are.


    Yep, yep. ^^
      My Computer


  8. Posts : 16,948
    Windows 10 Home x64 Version 22H2 Build 19045.4170
       #8

    i486 said:
    I'll never trust cloud-based storage, or storage devices that have become part of a network of devices. The more standalone they remain, the more secure they are.
    It's scarier than that. It was nothing to do with cloud storage even though the devices concerned are 'associated' with cloud services.
    - These are local hard drives - things that sit on people's desks and that just happen to be plugged in to computers that are connected to the internet.
    - Hackers managed to promulgate a malicious firmware update [just as other hackers might try to install ransomware].

    WD's response seems very good to me. They are going to provide data recovery services for the device owners even though the devices are well over six years old.
    Recommended Security Measures for WD My Book Live and WD My Book Live Duo - WDC

    I never connect any backup drive while I'm online.


    Those people affected must be distraught.

    Denis
      My Computer


  9. Posts : 278
    Windows 10 Home 22H2
       #9

    Try3 said:
    It's scarier than that. It was nothing to do with cloud storage even though the devices concerned are 'associated' with cloud services.
    - These are local hard drives - things that sit on people's desks and that just happen to be plugged in to computers that are connected to the internet.
    - Hackers managed to promulgate a malicious firmware update [just as other hackers might try to install ransomware].

    WD's response seems very good to me. They are going to provide data recovery services for the device owners even though the devices are well over six years old.
    Recommended Security Measures for WD My Book Live and WD My Book Live Duo - WDC

    I never connect any backup drive while I'm online.


    Those people affected must be distraught.

    Denis
    Our investigation of this incident has not uncovered any evidence that Western Digital cloud services, firmware update servers, or customer credentials were compromised. As the My Book Live devices can be directly exposed to the internet through port forwarding, the attackers may be able to discover vulnerable devices through port scanning. The vulnerabilities being exploited in this attack are limited to the My Book Live series, which was introduced to the market in 2010 and received a final firmware update in 2015. These vulnerabilities do not affect our current My Cloud product family.
    So if the drives were detected through port scanning, it would seem that this kind of vulnerability doesn't affect "offline" drives at all unless they are compromized by a software layer like an OS that gets hacked or infected. I've never had a drive that had internet capable software already installed on it, mostly just encryption related. That paragraph sure makes it sound like these affected Live drives were all directly connected to the internet via WD cloud software.

    It's related to what IT experts have been saying for years, that all insecure ports that are rarely used should be closed.
      My Computer


  10. Posts : 42,984
    Win 10 Pro (22H2) (2nd PC is 22H2)
       #10
      My Computers


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 06:26.
Find Us




Windows 10 Forums