← 목록으로

Ransomware Used Microsoft-Signed Malicious Driver to Kill EDR: 10 Hosts Hit Before Encryption - Tech Times

Ransomware Used Microsoft-Signed Malicious Driver to Kill EDR: 10 Hosts Hit Before Encryption - Tech Times

요약

Ransomware EDR killers just leveled up: GodDamn ransomware used PoisonX — a kernel driver bearing a legitimate Microsoft Hardware Compatibility Publisher signature — to terminate security software on...

본문

A ransomware operation that has quietly evolved for four years just achieved something security researchers say they had not seen before: it obtained a legitimately signed Microsoft kernel driver des…

← 목록으로