cognitive cybersecurity intelligence

News and Analysis

Search

Malware exploits Avast driver vulnerability to terminate security processes

An outdated, vulnerable driver from Avast is being exploited in a sophisticated cyberattack aimed at disabling security measures on targeted systems, according to cybersecurity firm Trellix. The attack uses a “bring-your-own-vulnerable-driver” tactic, allowing attackers to disable 142 security processes from several different vendors. By registering the driver under Avast’s service name using Windows’ Service Control tool, the malware is able to bypass detections and terminate security processes undetected.

Source: www.techmonitor.ai –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts