Tag: process termination
-

The Forensic Backfire: How Hackers Weaponized a Legacy EnCase Driver to Decapitate Modern EDR
Adversaries are increasingly inaugurating their offensives not with conventional malware, but by subverting legitimate remote access credentials. A recent incursion, meticulously analyzed by Huntress, highlights a disconcerting trend: after infiltrating a network via SonicWall hardware, the antagonists attempted to systematically “blind” nearly every extant security measure before proceeding to their subsequent objectives. The assault, which…