Hackers Used Zero-Day And Wiped My Book Live Devices

June 30, 2021

After it was revealed last week that My Book Live NAS owners mysteriously made their stored files disappear, a recent finding showed that a zero-day vulnerability allowed a threat actor to reset mass devices that ultimately caused the data loss.

While Western Digital had initially told BleepingComputer that the attacks were carried out via a vulnerability called CVE-2018-18472, which has not been fixed since the device went out of service in 2015, it was discovered that another zero-day vulnerability caused the factory reset.

After carefully analyzing the device’s log, some users found that a script called factoryRestore.sh was running on their devices on June 24, deleting the device’s files.

For more information, read the original story in Bleeping Computer.

Top Stories

Related Articles

April 17, 2026 Booking.com has confirmed a data breach exposing customer booking details and contact information, prompting warnings about a more...

April 1, 2026 Anthropic has inadvertently exposed the full source code of its Claude Code tool for the second time more...

April 1, 2026 Cisco suffered a cyberattack after attackers used stolen credentials from a compromised developer tool to access its more...

March 30, 2026 Google has expanded its “Results about you” tool, allowing users to remove highly sensitive personal data, including more...

Picture of TND News Desk

TND News Desk

Staff writer for Tech Newsday.
Picture of TND News Desk

TND News Desk

Staff writer for Tech Newsday.

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn