Bad Actors Manipulate Red-Team Tools to Evade Detection
ID: 8f7c21dc-b5fb-572a-a172-b3f78b751045
STIX ID: report--8f7c21dc-b5fb-572a-a172-b3f78b751045
Feed Name: Dark Reading
Threat Score
Researchers warn that EDRSilencer — an open-source red-team tool that detects and interferes with EDR solutions via the Windows Filtering Platform — is being repurposed by threat actors to mute security alerts and disrupt telemetry for multiple major EDR products, increasing the risk of stealthy malware and ransomware operations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
