cognitive cybersecurity intelligence

News and Analysis

Search

Hackers abuse Avast anti-rootkit driver to disable defenses

Trellix security researchers have discovered malware that evades detection by using an old and vulnerable Avast Anti-Rootkit driver. The malware can disable security processes and take control of critical parts of the operating system. Several solutions exist to protect against such attacks, such as using rules to identify and block components based on their signatures or hashes and the vulnerable driver blocklist policy file from Microsoft.

Source: www.bleepingcomputer.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts