Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Share Post: Reddit Facebook
Ransomware attackers introduce new EDR killer to their arsenal
#1
Quote: Sophos analysts recently encountered a new EDR-killing utility being deployed by a criminal group who were trying to attack an organization with ransomware called RansomHub. While the ransomware attack ultimately was unsuccessful, the postmortem analysis of the attack revealed the existence of a new tool designed to terminate endpoint protection software. We are calling this tool EDRKillShifter. 

Full read(source)- Link
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Hackers Breach University of Manchester; School Says Attackers Likely Copied Data mrtrout 0 958 06-12-2023 , 10:39 PM
Last Post: mrtrout
  New macOS zero-day bug lets attackers run commands remotely mrtrout 0 763 09-21-2021 , 09:48 PM
Last Post: mrtrout
  SolarWinds Attackers Accessed DHS Secretary’s Emails — Report Bjyda 0 1,028 03-31-2021 , 09:38 PM
Last Post: Bjyda
  ‘Educational’ ransomware program may instead become a how-to guide for attackers Bjyda 0 1,338 03-08-2021 , 11:09 PM
Last Post: Bjyda
  Attackers scan for vulnerable VMware servers after PoC exploit release Bjyda 0 1,084 02-25-2021 , 11:54 PM
Last Post: Bjyda



Users browsing this thread: 1 Guest(s)