Get a Pentest and security assessment of your IT network.

News

TrickBot gets new UEFI attack capability that makes recovery incredibly hard

A new module enables TrickBot malware to scan for vulnerable UEFI configurations on infected systems. This could enable attackers to brick systems or deploy low-level backdoors that are hard to remove. TrickBot is a botnet that serves as an access gateway into enterprise networks for sophisticated ransomware and other cybercriminal groups. Microsoft, together with several other companies, launched a coordinated effort to disrupt TrickBot’s command-and-control infrastructure in October, but the botnet is still alive and the hackers are fighting to regain control. The new TrickBot module uses a driver called RwDrv.sys to read and write to the firmware of any hardware component.”]

Source: https://www.csoonline.com/article/3599908/trickbot-gets-new-uefi-attack-capability-that-makes-recovery-incredibly-hard.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Thousands of Magento websites compromised to serve malware

News

Office 365 Secure Score: An Introduction