01-08-2022 15:52 via securityweek.com

LockBit Ransomware Abuses Windows Defender for Payload Loading

A LockBit ransomware operator or affiliate has been abusing Windows Defender to decrypt and load Cobalt Strike payloads during attacks, according to endpoint security firm SentinelOne.
read more
Read more »