Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

BYOVD to the next level (part 2) — rootkit like it's 2025

Summary

Part two of Quarkslab's BYOVD series: using read/write primitives from a vulnerable driver to reflectively load an unsigned driver from memory and bypass Windows Driver Signature Enforcement.
Published
Collected

original ↗

Related coverage

back