#EDRkiller tool uses signed #kernel driver from forensic software
#EDRkiller tool uses signed #kernel driver from forensic software
π¨β―EDR Killer Tools are targeting German enterprises!
From healthcare to energy, attackers are bypassing defenses with tools like Aukill & KernelMode. Is your business prepared? π»π
#Cybersecurity #InfoSec #NetworkSecurity #DataProtection #EDR #EDRKiller
With these new developments, what was formerly just an #EDRkiller tool is now a mechanism for #EDR impairment and subversion of the operating system itself. Sophos will continue to monitor developments in this threat actor's arsenal.