G00N.BBS
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Kid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 9 days ago

New EDR-Freeze tool uses Windows WER to suspend security software

www.bleepingcomputer.com

external-link
message-square
1
link
fedilink
11
external-link

New EDR-Freeze tool uses Windows WER to suspend security software

www.bleepingcomputer.com

Kid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 9 days ago
message-square
1
link
fedilink
Just a moment...
www.bleepingcomputer.com
external-link
  • bcovertigo@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    8 days ago

    The author’s writeup: https://www.zerosalarium.com/2025/08/countering-edrs-with-backing-of-ppl-protection.html

    Detection logic: To prevent or monitor whether EDR-Freeze is being used on the network, we should rely on the running parameters of WerFaultSecure. If it points to the PID of sensitive processes such as LSASS, Antivirus, or EDR agents, there is a high likelihood that further investigation is necessary.

Cybersecurity@sh.itjust.works

cybersecurity@sh.itjust.works

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

  • Be respectful. Everyone should feel welcome here.
  • No bigotry - including racism, sexism, ableism, homophobia, transphobia, or xenophobia.
  • No Ads / Spamming.
  • No pornography.

Community Rules

  • Idk, keep it semi-professional?
  • Nothing illegal. We’re all ethical here.
  • Rules will be added/redefined as necessary.

If you ask someone to hack your “friends” socials you’re just going to get banned so don’t do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected]

Notable mention to [email protected]

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 122 users / day
  • 287 users / week
  • 965 users / month
  • 4.05K users / 6 months
  • 1 local subscriber
  • 8.4K subscribers
  • 1.75K Posts
  • 2.49K Comments
  • Modlog
  • mods:
  • Kid@sh.itjust.works
  • Lanky_Pomegranate530@midwest.social
  • BE: 0.19.12
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org