Introduction: Living Off the Land (LOTL) attacks have become the cornerstone of modern adversarial tradecraft. By weaponizing legitimate, signed…
Introduction: Living Off the Land (LOTL) attacks have become the cornerstone of modern adversarial tradecraft. By weaponizing legitimate, signed…
LOLDrivers
MS Blocklist
KDU
https://t.co/BVmUQG4JZL
— from @ipurple (https://x.com/ipurple/status/2071242151388749950)
LOLDrivers
MS Blocklist
KDU
https://t.co/BVmUQG4JZL
— from @ipurple (https://x.com/ipurple/status/2071242151388749950)
It certainly feels like it when I open LinkedIn in the morning.
— from @cyb3rops (https://x.com/cyb3rops/status/2070394339532898688)
It certainly feels like it when I open LinkedIn in the morning.
— from @cyb3rops (https://x.com/cyb3rops/status/2070394339532898688)
🔁 RT @magicswordio | reposted by @_subTee
https://x.com/magicswordio/status/2067711666889130340
🔁 RT @magicswordio | reposted by @_subTee
https://x.com/magicswordio/status/2067711666889130340
Introduction: Endpoint Detection and Response (EDR) systems are the frontline defenders in modern cybersecurity, but attackers have shifted tactics—using legitimate administrative tools and…
Introduction: Endpoint Detection and Response (EDR) systems are the frontline defenders in modern cybersecurity, but attackers have shifted tactics—using legitimate administrative tools and…
Open source, clean implementation, did it the right way. This is exactly what the project w…
🔁 RT @magicswordio | reposted by @_subTee
https://x.com/magicswordio/status/2059697305662398525
Open source, clean implementation, did it the right way. This is exactly what the project w…
🔁 RT @magicswordio | reposted by @_subTee
https://x.com/magicswordio/status/2059697305662398525
Introduction: The Bring Your Own Vulnerable Driver (BYOVD) technique is a sophisticated post‑exploitation method where attackers load a legitimate but flawed kernel driver onto a system to gain…
Introduction: The Bring Your Own Vulnerable Driver (BYOVD) technique is a sophisticated post‑exploitation method where attackers load a legitimate but flawed kernel driver onto a system to gain…
📝 ## 🔍 Contexte
Le 13 mars 2026,…
https://cyberveille.ch/posts/2026-04-05-loldrivers-ajout-de-nouveaux-drivers-vulnerables-iobitunlocker-zemana-et-tfsysmon-utilises-en-byovd/ #BYOVD #Cyberveille
📝 ## 🔍 Contexte
Le 13 mars 2026,…
https://cyberveille.ch/posts/2026-04-05-loldrivers-ajout-de-nouveaux-drivers-vulnerables-iobitunlocker-zemana-et-tfsysmon-utilises-en-byovd/ #BYOVD #Cyberveille
This builds on earlier work and hel…
🔁 RT @magicswordio | reposted by @HackingLZ
https://x.com/magicswordio/status/2050250259054387347
This builds on earlier work and hel…
🔁 RT @magicswordio | reposted by @HackingLZ
https://x.com/magicswordio/status/2050250259054387347
Introduction: Living‑Off‑the‑Land Drivers (LOLDrivers) are signed, legitimate third‑party kernel drivers that attackers repurpose to bypass security controls, disable EDRs, and gain ring‑0…
Introduction: Living‑Off‑the‑Land Drivers (LOLDrivers) are signed, legitimate third‑party kernel drivers that attackers repurpose to bypass security controls, disable EDRs, and gain ring‑0…
Introduction: Bring Your Own Vulnerable Driver (BYOVD) attacks have become a preferred privilege escalation technique for ransomware gangs and advanced persistent threats (APTs).…
Introduction: Bring Your Own Vulnerable Driver (BYOVD) attacks have become a preferred privilege escalation technique for ransomware gangs and advanced persistent threats (APTs).…
Introduction: Bring Your Own Vulnerable Driver (BYOVD) attacks have become a preferred weapon for ransomware gangs like Qilin, allowing them to load malicious, signed-but-flawed…
Introduction: Bring Your Own Vulnerable Driver (BYOVD) attacks have become a preferred weapon for ransomware gangs like Qilin, allowing them to load malicious, signed-but-flawed…
Introduction: Microsoft’s cross-signed driver policy was designed to balance compatibility with security, but attackers have weaponized legacy trust relationships. Recent LOLDrivers data…
Introduction: Microsoft’s cross-signed driver policy was designed to balance compatibility with security, but attackers have weaponized legacy trust relationships. Recent LOLDrivers data…
Introduction: The Bring Your Own Vulnerable Driver (BYOVD) attack technique continues to be a favored method for adversaries seeking to disable security controls and gain kernel-level privileges.…
Introduction: The Bring Your Own Vulnerable Driver (BYOVD) attack technique continues to be a favored method for adversaries seeking to disable security controls and gain kernel-level privileges.…
Introduction: LOLDrivers, or "Living Off the Land Drivers," refer to legitimate but vulnerable Windows drivers that attackers exploit in Bring Your Own Vulnerable Driver (BYOVD) attacks to bypass…
Introduction: LOLDrivers, or "Living Off the Land Drivers," refer to legitimate but vulnerable Windows drivers that attackers exploit in Bring Your Own Vulnerable Driver (BYOVD) attacks to bypass…
Introduction: The cybersecurity landscape is witnessing a sophisticated shift in attacker tradecraft, moving beyond traditional malware to the weaponization of signed, legitimate software components. The recent…
Introduction: The cybersecurity landscape is witnessing a sophisticated shift in attacker tradecraft, moving beyond traditional malware to the weaponization of signed, legitimate software components. The recent…
Introduction: The battle for control over operating systems has moved into the kernel, the most privileged part of the OS. LOLDrivers (Living-Off-the-Land Drivers) represent a critical threat, where attackers weaponize signed,…
Introduction: The battle for control over operating systems has moved into the kernel, the most privileged part of the OS. LOLDrivers (Living-Off-the-Land Drivers) represent a critical threat, where attackers weaponize signed,…
Introduction: The cybersecurity landscape is witnessing a paradigm shift in attacker techniques, with Living-Off-the-Land (LOL) binaries evolving to include kernel-level drivers. The LOLDrivers project, a vital community…
Introduction: The cybersecurity landscape is witnessing a paradigm shift in attacker techniques, with Living-Off-the-Land (LOL) binaries evolving to include kernel-level drivers. The LOLDrivers project, a vital community…
Introduction: BYOVD (Bring Your Own Vulnerable Driver) attacks exploit unpatched or unsigned drivers to escalate privileges or bypass security mechanisms. Nikhil John Thomas’s BYOVD Watchdog tool addresses this by monitoring LOLDrivers…
Introduction: BYOVD (Bring Your Own Vulnerable Driver) attacks exploit unpatched or unsigned drivers to escalate privileges or bypass security mechanisms. Nikhil John Thomas’s BYOVD Watchdog tool addresses this by monitoring LOLDrivers…