National Cyber Warfare Foundation (NCWF)

Silver Fox Exploits Microsoft-Signed WatchDog Driver to Deploy ValleyRAT Malware


0 user ratings
2025-09-02 09:35:09
milo
Blue Team (CND)
The threat actor known as Silver Fox has been attributed to abuse of a previously unknown vulnerable driver associated with WatchDog Anti-malware as part of a Bring Your Own Vulnerable Driver (BYOVD) attack aimed at disarming security solutions installed on compromised hosts.
The vulnerable driver in question is "amsdk.sys" (version 1.0.600), a 64-bit, validly signed Windows kernel device driver



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/09/silver-fox-exploits-microsoft-signed.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.