Source |
Bleeping Computer |
Identifiant |
1528341 |
Date de publication |
2020-02-06 12:37:37 (vue: 2020-02-06 18:02:12) |
Titre |
Ransomware Exploits GIGABYTE Driver to Kill AV Processes |
Texte |
The attackers behind the RobbinHood Ransomware are exploiting a vulnerable GIGABYTE driver to install a malicious and unsigned driver into Windows that is used to terminate antivirus and security software. [...] |
Notes |
|
Envoyé |
Oui |
Condensat |
antivirus are attackers behind driver exploiting exploits gigabyte gigabyte driver install kill malicious processes ransomware robbinhood security software terminate unsigned used vulnerable windows |
Tags |
Ransomware
|
Stories |
|
Move |
|
Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2020-02-07 10:40:04 |
(Déjà vu) GIGABYTE Driver exploited by ransomware to kill AV Processes (lien direct) |
The attackers behind the RobbinHood Ransomware are exploiting a vulnerable GIGABYTE driver to install a malicious and unsigned driver into Windows that is used to terminate antivirus and security software. When performing a network-wide compromise, ransomware attackers need to push out a ransomware executable as quickly as possible and to as many systems as they can […]
|
Ransomware
|
|
|
 |
2020-02-08 00:17:52 |
(Déjà vu) RobbinHood ransomware exploit GIGABYTE driver flaw to kill security software (lien direct) |
The operators behind the infamous RobbinHood ransomware are exploiting a vulnerable GIGABYTE driver to kill antivirus products. Cybercriminals behind the RobbinHood Ransomware are exploiting a vulnerable GIGABYTE driver to install a malicious and unsigned driver into Windows with the intent of disabling security products. Ransomware operators leverage a custom antivirus killing package that is delivered to workstations […]
|
Ransomware
|
|
|