New RansomHub Attack Killing Kaspersky’s TDSSKiller To Disable EDR (gbhackers.com)
from kid@sh.itjust.works to cybersecurity@sh.itjust.works on 11 Sep 2024 11:30
https://sh.itjust.works/post/25022192

#cybersecurity

threaded - newest

bl_r@lemmy.dbzer0.com on 11 Sep 2024 15:56 collapse

I work in security, and I’ve seen a lot more EDR killers lately. Every incident I’ve seen regarding ransomware or potential ransomware has used EDR killers while compromising DCs, backup servers, file servers, and the odd workstation used for persistence.