June 16, 2024

Cyber Steve's Tech News and Reviews

Your Online Hub for Cyber News and Product Reviews

GHOSTENGINE Exploits Vulnerable Drivers to Disable EDRs in Cryptojacking Attack

1 min read

Cybersecurity researchers have discovered a new cryptojacking campaign that employs vulnerable drivers to disable known security solutions (EDRs) and thwart detection in what’s called a Bring Your Own Vulnerable Driver (BYOVD) attack.
Elastic Security Labs is tracking the campaign under the name REF4578 and the primary payload as GHOSTENGINE. Previous research from Chinese

Copyright © All rights reserved. | Newsphere by AF themes.