How Ransomware weaponized a signed vulnerable driver

Category : Alert | Sub Category : Notification Posted on 2020-02-09 15:07:36


How Ransomware weaponized a signed vulnerable driver

Take an old hack:

https://nvd.nist.gov/vuln/detail/CVE-2018-19320

And turn it into a weapon:

https://news.sophos.com/en-us/2020/02/06/living-off-another-land-ransomware-borrows-vulnerable-driver-to-remove-security-software/

And as expected since the last alarm inspectOne detects this one, inspectOne: 29, Ransomware: 0

Leave a Comment: