RansomHub Rolls Out Brand-New, EDR-Killing BYOVD Binary

RansomHub Rolls Out Brand-New, EDR-Killing BYOVD Binary

August 16, 2024 at 01:18PM

The utility gains privilege escalation and the ability to disable endpoint protection software by using a public exploit after loading a vulnerable driver.

Based on the meeting notes, it appears that the discussion revolved around the use of a vulnerable driver to gain the ability to disable endpoint protection software through privilege escalation using a public exploit. This could be a potential security concern that needs to be addressed.

Full Article