This devious ransomware is able to hijack your system to turn off Microsoft Defender




  • Experts warn Akira is using SonicWall VPNs to deploy two drivers
  • One is a legitimate, vulnerable driver that allows the other one to be executed
  • The other one disables antivirus and endpoint protection tools

Akira ransomware has dominated the headlines recently due to its abuse of SonicWall SSL VPNs to gain initial access and deploy an encryptor.

However, while initial access is important, it is still not enough to infect a device, especially if it’s protected by an antivirus, or an endpoint protection and response solution (EDR).



Source link

Leave a Reply

Translate »
Share via
Copy link