RSS
Threat Research
content updates
drivers
featured
Intercept X
Sophos X-Ops
Content updates and product architecture: Sophos Endpoint
August 15, 2024
CryptoGuard
Intercept X Advanced
kernel
Driving lessons: The kernel drivers in Sophos Intercept X Advanced
August 1, 2024
BitLocker
CVE-2024-26234
Patch Tuesday
Secure Boot
A tumultuous, titanic Patch Tuesday as Microsoft makes some changes
April 10, 2024
AuKill
BlackByte
BYOVD
cybercrime forums
Ransomware
terminator
zam
It’ll be back: Attackers still abusing Terminator tool and variants
March 4, 2024
CVE-2023-6330
CVE-2023-6331
CVE-2023-6332
panda software
Multiple vulnerabilities discovered in widely used security driver
January 25, 2024
2023-07
anti-EDR
drivers.stl
EDR
Fivesys
FK_Undead
FU rootkit
Netfilter
patches
rootkit
UAC
WFP
Windows Filtering Platform
Windows Update
Microsoft Revokes Malicious Drivers in Patch Tuesday Culling
July 11, 2023
CVE-2022-44690
CVE-2022-44693
CVE-2022-44698
CVE-2022-44710
Driver Certificate Deprecation
Driver Signature Enforcement
Microsoft
x-ops
2022 Patch Tuesday cycle wraps with 48 CVEs, one advisory
December 13, 2022
Security Operations
2022-12
ADV220005
BURNTCIGAR
Cuba ransomware
SBOM
signed drivers
supply chain compromise
WHCP
WHQL
Windows
Signed driver malware moves up the software trust chain