Sannadkii hore, Xarunta Ammaanka Cyber ee Qaranka ee Boqortooyada Midowday (NCSC) waxay ka heshay kala duwanaanshiyaha malware-ka SparrowDoor shabakad UK ah oo aan la shaacin. Falanqaynta kala duwanaanshaha ayaa la daabacay maanta, kaas oo hadda xadi kara xogta sanduuqa, iyo waxyaabo kale. Intaa waxaa dheer, tilmaamayaasha tanaasulka iyo xeerarka Yara ayaa la diyaariyay kuwaas oo u oggolaanaya ururrada inay ogaadaan malware-ka ku jira shabakadooda.
Nuqulkii ugu horreeyay ee SparrowDoor ayaa waxaa daahfuray shirkadda ESET ee ka hortagga fayraska, waxaana la sheegay in loo adeegsan jiray hoteellada adduunka oo dhan, iyo sidoo kale dowladdaha. Weeraryahanadu waxay isticmaaleen baylahda Microsoft Exchange, Microsoft SharePoint iyo Oracle Opera si ay u jabiyaan ururada. Ururada ay saamaysay ayaa ku sugnaa Canada, Israel, France, Saudi Arabia, Taiwan, Thailand iyo United Kingdom, iyo kuwo kale. ESET ma aysan shaacin bartilmaameedka saxda ah ee weerarka.
British NCSC waxay sheegtay inay ka heshay kala duwanaanshiyaha SparrowDoor shabakad Ingiriis sanadkii hore. Noocani waxa uu xadi karaa xogta sabuuradda-ka-koobeedka oo ka hubin kara liis adag oo ku jira in qaar ka mid ah software-ka antivirus uu socdo. Kala duwanaanshiyahani waxa kale oo uu ku dayan karaa calaamada akoonka isticmaalaha marka la samaynayo isku xidhka shabakada. Waxay u badan tahay in "hoos u dhigista" tan loo sameeyay si aan muuqan, taas oo ay dhici karto haddii ay samaynayso isgaarsiinta shabakada hoos timaada koontada SYSTEM, tusaale ahaan.
Muuqaal kale oo cusub ayaa ah afduubyada kala duwan Windows Hawlaha API. Ma cadda goorta uu malware-ku isticmaalo “ku xidhidhiyaha API” iyo “tusmaynta calaamadda”, laakiin marka loo eego British NCSC, weerarradu waxay samaynayaan go'aamo amni hawleed miyir leh. Faahfaahin dheeraad ah oo ku saabsan shabakadda la weeraray ama cidda ka dambaysa malware-ka lama bixin.