SecDevOps.comSecDevOps.com

Ransomware IAB abuses EDR for stealthy malware execution

BleepingComputer(6 days ago)Updated 6 days ago

An initial access broker tracked as Storm-0249 is abusing endpoint detection and response solutions and trusted Microsoft Windows utilities to load malware, establish communication, and persistence...

An initial access broker tracked as Storm-0249 is abusing endpoint detection and response solutions and trusted Microsoft Windows utilities to load malware, establish communication, and persistence in preparation for ransomware attacks. [...]

Source: This article was originally published on BleepingComputer

Read full article on source →

Related Articles