As cited
Copy frozen at (site build).
ransomware
Shedding light on the ABYSSWORKER driver
Elastic Security Labs documents ABYSSWORKER, a malicious driver deployed as part of the MEDUSA ransomware attack chain to disable anti-malware tools. The driver serves as a component in a broader exploitation framework targeting Windows systems.
Why it matters: Organizations running vulnerable systems need to detect and block ABYSSWORKER driver loads to prevent ransomware deployment and anti-malware evasion in active MEDUSA campaigns.
- Source published
- First seen by Cybersecurity Tracker