Get a Pentest and security assessment of your IT network.

News

TrickBot gets new UEFI attack capability that makes recovery incredibly hard

A new module enables TrickBot malware to scan for vulnerable UEFI configurations on infected systems. This could enable attackers to brick systems or deploy low-level backdoors that are hard to remove. TrickBot is a botnet that serves as an access gateway into enterprise networks for sophisticated ransomware and other cybercriminal groups. Microsoft, together with several other companies, launched a coordinated effort to disrupt TrickBot’s command-and-control infrastructure in October, but the botnet is still alive and the hackers are fighting to regain control. The new TrickBot module uses a driver called RwDrv.sys to read and write to the firmware of any hardware component.”]

Source: https://www.csoonline.com/article/3599908/trickbot-gets-new-uefi-attack-capability-that-makes-recovery-incredibly-hard.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin