Sophos says WastedLocker is designed to avoid security tools within infected devices. Researchers determined the ransomware abuses the Microsoft Windows memory management feature to evade detection by security software. Researchers also found other tools within the malware designed to make it difficult to detect, according to the report. The ransomware apparently was used in an attack on navigation and smartwatch maker Garmin, which shut down operations for several days in July. Garmin apparently paid a ransom to recover from a July 23 security incident that encrypted several of its systems.”]
Source: https://www.databreachtoday.com/how-wastedlocker-evades-anti-ransomware-tools-a-14772

