cognitive cybersecurity intelligence

News and Analysis

Search

Threat Actor Bypass SentinelOne EDR to Deploy Babuk Ransomware

Threat Actor Bypass SentinelOne EDR to Deploy Babuk Ransomware

Researchers have discovered a new attack method called “Bring Your Own Installer” that disables SentinelOne’s endpoint security during upgrades, allowing ransomware like Babuk to be deployed undetected. This technique exploits a timing vulnerability, enabling attackers to use legitimate installers to bypass defenses. SentinelOne advises enabling “Online Authorization” to mitigate risks and highlights the need for ongoing security vigilance.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts

The New Breed Of Layer 7 Attacks And How SMEs

The New Breed Of Layer 7 Attacks And How SMEs

Layer 7 DDoS attacks stealthily mimic legitimate user behavior, exhausting system resources without overwhelming traffic. Unlike traditional attacks, they evade detection and exploit vulnerabilities in