ioc.exchange is one of the many independent Mastodon servers you can use to participate in the fediverse.
INDICATORS OF COMPROMISE (IOC) InfoSec Community within the Fediverse. Newbies, experts, gurus - Everyone is Welcome! Instance is supposed to be fast and secure.

Administered by:

Server stats:

1.3K
active users

#blackmatter

0 posts0 participants0 posts today

Happy Friday to you all!

The Trend Micro researchers observed the ransomware leveraging the BYOVD (bring your own vulnerable driver) technique. They also analyzed the code and found that there was a lot in common with the strain of ransomware as well, which would not be surprising, since these groups tend to help each other out, learn, and grow together to make the "best" malware that they can. Of course, they also witnessed some LOLBIN (living off the land binaries) abuse as well as a defense evasion technique used to kill antivirus services. There are plenty more details in the report, so I hope you enjoy! Happy Hunting!

Kasseika Ransomware Deploys BYOVD Attacks, Abuses PsExec and Exploits Martini Driver
trendmicro.com/en_us/research/

Trend Micro · Kasseika Ransomware Deploys BYOVD Attacks Abuses PsExec and Exploits Martini Driver