'GodDamn' Ransomware Uses BYOVD to Smite US Companies
The 'GodDamn' ransomware has introduced a sophisticated attack method using a malicious kernel driver that Microsoft inadvertently co-signed, allowing it to disable security software and heighten the threat level for US businesses. This attack strategy, leveraging Bring Your Own Vulnerable Driver (BYOVD), undermines the effectiveness of existing security measures, highlighting a critical vulnerability in the software supply chain. The incident underscores the urgent need for more stringent vetting processes for digital signatures to prevent such breaches, ensuring better protection against advanced cyber threats.
Original Source
Read the full article at Darkreading →KhanList aggregates and links to publicly available news content. We do not host full articles from third-party sources. Always verify important information with original sources.