π Medusa ransomware disables anti-malware tools by mimicking legitimate drivers. Researchers urge updates to combat this threat. #CyberSecurity #Ransomware
- Medusa ransomware operators are deploying a malicious driver, smuol.sys, to disable anti-malware tools.
- The driver masquerades as a legitimate CrowdStrike Falcon driver, exploiting vulnerable driver techniques.
- Medusa is focusing on critical infrastructure, emphasizing the need for vigilance and robust cybersecurity measures.
Techradar - All the latest technology news: Medusa ransomware is able to disable anti-malware tools, so be on your guard