URL has been copied successfully!
Qilin and Warlock Ransomware Use Vulnerable Drivers to Disable 300+ EDR Tools
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

Qilin and Warlock Ransomware Use Vulnerable Drivers to Disable 300+ EDR Tools

Threat actors associated with Qilin and Warlock ransomware operations have been observed using the bring your own vulnerable driver (BYOVD) technique to silence security tools running on compromised hosts, according to findings from Cisco Talos and Trend Micro.Qilin attacks analyzed by Talos have been found to deploy a malicious DLL named “msimg32.dll,”

First seen on thehackernews.com

Jump to article: thehackernews.com/2026/04/qilin-and-warlock-ransomware-use.html

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link