ESET researchers have identified two new Windows variants of the SprySOCKS backdoor, previously exclusive to Linux, attributed to the Chinese cyberespionage group FishMonger. The variants, labeled WIN_DRV and WIN_PLUS,…
ESET researchers have discovered 11 outdated UEFI shim bootloaders, all version 0.9 or below, that can bypass UEFI Secure Boot protections on systems trusting Microsoft's 2011 certificate. These vulnerabilities allow…
A new paper by Tod Beardsley, former CISA KEV Section Chief, provides insights into the CISA Known Exploited Vulnerability (KEV) catalog. It includes a free tool designed to assist security teams in effectively…