TheReg gets infected by Fake News
The headline is Fake News #1 :
"Google ships WannaCrypt for Android, disguised as Samba app"
Google ships a SMB client for Android which does SMBv1. WannaCrypt should be called WannaCry, which is a Microsoft Windows only virus exploiting the EternalBlue, a zeroday exploit which only does Widows. Android is not a Windows platform OS.
Lie# 2 :
SMBv1 is known to be exploitable. (WannaCrypt and NotPetya both leveraged insecure SMBv1 shares to infect vulnerable Windows machines).
SMBv1 is not vulnerable when running a Samba Server on Linux configured for SMBv1. The whole WannaCry news thread is a Microsoft Widows only exploitation.
Lie# 3:
"Last year, Redmond's Ned Pyle put it simply: Stop using SMBv1."
Not when running a Samba Server on Linux configured for SMBv1. The problem is the SMBv1 implementation of Microsoft on its Windows platform.