Hackers Exploiting Checkpoint’s Driver in BYOVD Attack to Bypass Windows Security

A sophisticated attack where threat actors exploited vulnerabilities in vsdatant.sys, a kernel-level driver used by Checkpoint’s ZoneAlarm antivirus software.  Originally released in 2016, this driver became the target of a Bring Your Own Vulnerable Driver (BYOVD) attack, allowing attackers to elevate privileges and bypass critical Windows security features such as Memory Integrity and extract sensitive […]

The post Hackers Exploiting Checkpoint’s Driver in BYOVD Attack to Bypass Windows Security appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: