Process Explorer is a tool tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed June 30, 2026; most recent activity June 30, 2026.
Attackers are increasingly using the Bring Your Own Vulnerable Driver (BYOVD) technique to disable antivirus (AV) and endpoint detection and response (EDR) tools. This method exploits flaws in trusted Windows drivers,…