Close Menu
techskyss.comtechskyss.com

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    RSS Feed Generator, Create RSS feeds from URL

    September 14, 2024

    Cyber Community Celebrates Documentary Premiere

    September 14, 2024

    Govt assures data privacy with satellite-based tolling, Auto News, ET Auto

    September 14, 2024
    Facebook X (Twitter) Instagram
    Trending
    • RSS Feed Generator, Create RSS feeds from URL
    • Cyber Community Celebrates Documentary Premiere
    • Govt assures data privacy with satellite-based tolling, Auto News, ET Auto
    • Best Antivirus Deals: Protect your PC or Mac from just $25
    • Nigeria Alternative Lending Market Business Report 2024:
    • REWIND: Top New Music Industry News Last Week
    • 2024 cohort of CU Boulder’s Embark Deep Tech Startup Creator launches new startups | Venture Partners at CU Boulder
    • Is voice control the answer to more accessible computing?
    Facebook X (Twitter) Instagram
    techskyss.comtechskyss.com
    Subscribe
    Monday, December 29
    • Home
    • AI & Robots
      • AI Trends
      • Automation & Machine Learning
      • Robotic Technology
    • Apps
      • Mobile Apps
      • Productivity Tools
      • Web Apps
    • Gadgets
      • Headphones & Speakers
      • Laptops
      • Smartphones
    • Security
      • Antivirus & Protection
      • Cybersecurity
      • Data Privacy
    • Tech News
      • Industry Updates
      • Product Launches
      • Startups & Innovations
    techskyss.comtechskyss.com
    Home » Kaspersky security tools hijacked to disable online protection systems
    Antivirus & Protection

    Kaspersky security tools hijacked to disable online protection systems

    admehmet1984@gmail.comBy admehmet1984@gmail.comSeptember 12, 2024No Comments2 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Kaspersky security tools hijacked to disable online protection systems
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    The infamous RansomHub ransomware group has been spotted abusing a legitimate Kaspersky tool to disable endpoint detection and response (EDR) tools and then deploy stage-two malware on infected systems without being seen.

    Cybersecurity researchers Malwarebytes, who recently spotted the activity in the wild, noted once RansomHub compromises an endpoint and finds a way inside, it first needs to disable any EDR tools before deploying infostealers, or encryptors. In this scenario, the tool they used is called TDSSKiller – Kspersky’s specialized tool designed to detect and remove rootkits, particularly those from the TDSS family (also known as TDL4).

    Rootkits are malicious programs that hide their presence on infected systems, making them difficult for standard antivirus software to detect. TDSSKiller can identify and eliminate these deeply embedded threats, helping to restore system security and functionality. The tool is lightweight, easy to use, and can be run alongside other antivirus solutions for added protection.

    Deploying LaZagne

    Once EDR is out of the way, the group deploys LaZagne, an infostealer capable of grabbing login credentials for various services on the network. This malware extracts all stolen credentials into a single file which, after upload, the group deletes to cover their tracks. With the gained access, they can then deploy the encryptor without fear of being flagged by antivirus programs.

    RansomHub is a relatively young ransomware player, who spun from the now defunct ALPHV/BlackCat. The group was an affiliate of ALPHV, and was responsible for the attack at Change Healthcare, which resulted in the healthcare org paying $22 million in ransom. ALPHV operators took all of the money and shut down its infrastructure, leaving RansomHub without their share of the spoils. Since then, the group has been active, compromising dozens of organizations around the world.

    Via BleepingComputer

    More from TechRadar Pro

    Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    disable hijacked Kaspersky Online protection security Systems Tools
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous Article2024 Inaugural Malaysia E-Commerce Product Selection Expo to Launch on November 29
    Next Article Google's AI model faces European Union scrutiny from privacy watchdog
    admehmet1984@gmail.com
    • Website

    Related Posts

    Antivirus & Protection

    Best Antivirus Deals: Protect your PC or Mac from just $25

    By admehmet1984@gmail.comSeptember 14, 2024
    Mobile Apps

    India Vs Pakistan Hockey Asian Champions Trophy 2024 Live Streaming Today: When, Where And How To Watch Hockey Match Live On TV, Mobile Apps, Online | Other Sports News

    By admehmet1984@gmail.comSeptember 14, 2024
    Productivity Tools

    I Use This Hidden Suite of Tools to Be More Productive in Windows 11

    By admehmet1984@gmail.comSeptember 14, 2024
    Antivirus & Protection

    Bitdefender Home Scanner

    By admehmet1984@gmail.comSeptember 14, 2024
    Data Privacy

    How to ensure security without compromising privacy

    By admehmet1984@gmail.comSeptember 13, 2024
    Antivirus & Protection

    Avast One Essential review | TechRadar

    By admehmet1984@gmail.comSeptember 13, 2024
    Add A Comment
    Leave A Reply Cancel Reply

    Don't Miss

    RSS Feed Generator, Create RSS feeds from URL

    By admehmet1984@gmail.comSeptember 14, 2024

    RSS Feed IntegrationsMake your RSS feed work better by integrating with your favorite platforms. Save…

    Cyber Community Celebrates Documentary Premiere

    September 14, 2024

    Govt assures data privacy with satellite-based tolling, Auto News, ET Auto

    September 14, 2024

    Best Antivirus Deals: Protect your PC or Mac from just $25

    September 14, 2024
    Top Posts

    RSS Feed Generator, Create RSS feeds from URL

    September 14, 202428 Views

    HONOR 200 Lite smartphone review – Root-Nation.com

    September 13, 202411 Views

    Cyber Community Celebrates Documentary Premiere

    September 14, 20247 Views

    AI-Powered Age Verification Apps : Privately ‘AgeAI’

    September 13, 20247 Views
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us

    Welcome to Techskyss, your premier source for comprehensive and up-to-date information on the ever-evolving world of technology. We are dedicated to delivering insightful content that keeps you informed and engaged with the latest trends, innovations, and developments in the tech industry.

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    categories
    • AI & Robots
    • Tech News
    • Security
    • Gadgets
    • Apps
    Useful links
    • About Us
    • Contact Us
    • Privacy & Policy
    • Terns & Conditions

    Type above and press Enter to search. Press Esc to cancel.