Researcher Reverse Engineered 0-Day Used to Disable CrowdStrike EDR

A cybersecurity researcher has uncovered a new Bring Your Own Vulnerable Driver (BYOVD) attack that can turn off top-tier endpoint security solutions, including CrowdStrike Falcon. By reverse-engineering a previously unknown zero-day kernel driver, the researcher revealed how threat actors use legitimately signed drivers to bypass endpoint detection and response (EDR) systems completely. In BYOVD attacks, […]

The post Researcher Reverse Engineered 0-Day Used to Disable CrowdStrike EDR appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: