Kasseika Ransomware Using BYOVD Trick to Disarms Security Pre-Encryption

Jan 24, 2024

The ransomware group known as Kasseika has become the latest to leverage the Bring Your Own Vulnerable Driver (BYOVD) attack to disarm security-related processes on compromised Windows hosts, joining the likes of other groups like Akira, AvosLocker, BlackByte, and RobbinHood.
The tactic allows “threat actors to terminate antivirus processes and services for the deployment of ransomware,” Trend

Get Free Report & Network Analysis

Please check your email for the free report.