Mashable: Hackers found a way around Microsoft Defender to install ransomware on PCs, report says. “Windows users should think about reinforcing their antivirus software. And while Microsoft Defender should provide a line of defense against ransomware, a new report claims that hackers have found a way to get around the ransomware tool to infect PCs with ransomware.”

https://rbfirehose.com/2025/08/10/mashable-hackers-found-a-way-around-microsoft-defender-to-install-ransomware-on-pcs-report-says/

Mashable: Hackers found a way around Microsoft Defender to install ransomware on PCs, report says | ResearchBuzz: Firehose

ResearchBuzz: Firehose | Individual posts from ResearchBuzz

Uninstalling the #MicrosoftStore version of #Python and disabling #WindowsDefender so the #torch dlls properly install so I can run comfyui-zluda, a fork of #comfyui which uses #zluda which is a shim for #CUDA applications to use #AMD #HIP SDK so I can download #stableDiffusion and run it on my #Radeon #GPU because #Amuse won't let me generate porn.

#ai #llm #generativeAI

Monthly reminder that #Windows11 fucking sucks ass.

Trying to troubleshoot why a software didn't start and Windows Defender false-positive a DLL that now can't restore.

Great start for a monday.

#Windows #Microsoft #Troubleshooting #WindowsDefender #Malware #AntiMalware #AntiVirus #AV

#WindowsDefender team: Please test and ensure that new Ollama installers run as expected on Windows, even with ASR rules enabled.

#Ollama team: please test and ensure your installers work on Windows with Windows Defender ASR rules enabled.

K? Thanks!

@mrgrumpymonkey depends...

Next logical step is some #PowerShell script that downloads a #Linux distro image, repartition the system drive, add some unallocated space at the end, put a #CloudInit config in it and then do an #UnattendedInstall of said system with bcd by calling up #bcdedit to #chainload said partition.

  • I jist have neither the time nor spoons to do that shit myself, but in theory a #NetInstaller image of ~ 100MB should suffice...

@GossiTheDog @signalapp it merely prevents #Screenshots by claiming it's #DRM'd content.

The correct solution for #Signal would be to alert all their users and specifically block #Windows in general or at least #Windows11 simply because it is a #Govware and empirically cannot be made private or secure.

But that would require them to actually give a shit, which thed don't, cuz otherwise they would've stopped demanding #PII like a #PhoneNumber and moved out of juristiction of #CloudAct.

  • I mean, what's gonna prevent the #Trump-Regime from threatening @Mer__edith et. al. with lifetime in jail for not kicking the #ICC (or anyone else he and his fans dislike) from #Signal's infrastructure?

Since they are highly centralized.they certainly are capable to comply with "#Sanctions" (or whatever bs he'll claim!)...

GitHub - kkarhan/windows-ca-backdoor-fix: Fixes a critical backdoor in Windows' CryptoAPI, which allows to unconsenting Update of CA Certificates in the background. See https://www.heise.de/ct/ausgabe/2013-17-Zweifelhafte-Updates-gefaehrden-SSL-Verschluesselung-2317589.html

Fixes a critical backdoor in Windows' CryptoAPI, which allows to unconsenting Update of CA Certificates in the background. See https://www.heise.de/ct/ausgabe/2013-17-Zweifelhafte-Updates-gefae...

GitHub
Ein Sicherheitsforscher enthüllt mit "Defendnot" eine kritische Schwachstelle im Windows Security Center. Das Tool täuscht ein falsches Antivirenprogramm vor und deaktiviert so den #WindowsDefender. https://winfuture.de/news,151018.html?utm_source=Mastodon&utm_medium=ManualStatus&utm_campaign=SocialMedia
Defendnot: Tool trickst Windows aus, schaltet Microsoft Defender ab

Ein neues Tool namens Defendnot ermöglicht es, Windows Defender durch die Registrierung eines gefälschten Antivirenprogramms zu deaktivieren. Genutzt wird dabei eine undokumentierte Windows-API, was Fragen zur Sicherheit des Betriebssystems aufwirft.

WinFuture.de

I'd like to change a password of a local account on Windows 10.

Can #chntpw still do the job in 2025 (with #SAM)?

I have read that Windows Defender blocks some changes like #sethc, #utilman and so on ...

#Windows #Linux #Windows10 #WindowsDefender #MicrosoftDefender #infosec #fedihelp

Bypassing Windows Defender Antivirus in 2025

This article explores methods to bypass Windows Defender in 2025, focusing on direct syscalls and XOR encryption for shellcode execution.

https://www.hackmosphere.fr/bypass-windows-defender-antivirus-2025-part-1/

#WindowsDefender #AntivirusEvasion

Windows Defender antivirus bypass in 2025 - part 1

Discover how antivirus works and how to setup a lab for (Windows Defender) antivirus bypass. Basic code is provided to start experimenting !

Hackmosphere