• Home
  • News
  • Software
  • Knowledge
  • MMO
  • Tips
  • Security
  • Network
  • Office
AnonyViet - English Version
  • Home
  • News
  • Software
  • Knowledge
  • MMO
  • Tips
  • Security
  • Network
  • Office
No Result
View All Result
  • Home
  • News
  • Software
  • Knowledge
  • MMO
  • Tips
  • Security
  • Network
  • Office
No Result
View All Result
AnonyViet - English Version
No Result
View All Result

North Korean hackers take advantage of Windows vulnerabilities to attack with Rootkits

AnonyViet by AnonyViet
March 2, 2024
in News
0

The notorious hacker group Lazarus from North Korea exploited a “zero-day” security vulnerability in the Windows operating system to escalate privileges to mistakenly attack users. This is part of their attack campaign using a rootkit called FudModule.

hacker Lazarus Lazarus

This vulnerability, codenamed CVE-2024-21338, discovered by Avast during Lazarus attacks last year. The company created a test exploit (PoC) and submitted a report to Microsoft in August 2023.

Microsoft patched the vulnerability during its “Patch Tuesday” security update in February 2024. However, the initial announcement of CVE-2024-21338 did not mention that it had been exploited In reality. On Wednesday, the tech giant updated its notification to warn customers that the exploit was still ongoing.

Avast's blog post on Wednesday provided a detailed technical description of the vulnerability and how Lazarus exploited this CVE to distribute the rootkit. The location of the attack is located in the 'appid.sys' driver related to Microsoft's AppLocker security feature. Instead of installing malicious drivers themselves (BYOVD), Hackers will target a driver available in many systems to avoid detection.

Rootkits is a type of malware (malware. malware) is designed to hide its or other malware's existence in the computer system. Rootkits penetrate deeply into the system with high-level access (root or administrator), allowing hackers to control the entire system without being detected. Rootkits can cause many security problems, including stealing personal information, monitoring user activity, and installing additional malware. Due to their high level of concealment, rootkits are difficult to detect and remove.

Avast explains: “By exploiting such vulnerabilities, Hackers minimize saving or downloading other malicious drivers.” This helps Hackers attack the system kernel (kernel) so they can bypass most detection mechanisms and even work on systems that apply driver control.

Through CVE-2024-21338, hacker Lazarus has elevated User rights on the compromised system and created a direct read/write mechanism at the operating system kernel level. This trick allows them to directly manipulate kernel objects in the updated version of the FudModule rootkit (appearing in 2022).

The new rootkit version has improvements that increase stealth and disable security software AhnLab V3 Endpoint Security, Windows Defender, CrowdStrike Falcon and HitmanPro.

The Lazarus campaign tracked by Avast also used a remote access trojan (RAT) new, detailed information will be announced by the company later.

Tags: advantageAttackhackersKoreanNorthRootkitsVulnerabilitiesWindows
Previous Post

How to get free Microsoft AI certificate – ASIA AI ODYSSEY

Next Post

OKVIP – Điểm hẹn giải trí trực tuyến hàng đầu châu Á

AnonyViet

AnonyViet

Related Posts

Study free Course to universal AI and receive certificates from the Central Youth Union
News

Study free Course to universal AI and receive certificates from the Central Youth Union

June 15, 2025
Instructions for creating free Gemini Pro to experience 3
News

Instructions for creating free Gemini Pro to experience 3

May 28, 2025
Instructions on how to receive 6GB data 5g Viettel for free
News

Instructions on how to receive 6GB data 5g Viettel for free

May 26, 2025
Open who launches super product Codex – Who supports “extreme” programming programming
News

Open who launches super product Codex – Who supports “extreme” programming programming

May 23, 2025
Little Language Lessons: Learn foreign languages ​​with Google
News

Little Language Lessons: Learn foreign languages ​​with Google

May 9, 2025
Get PicsArt Pro and Super Duolingo for free 1 month
News

Get PicsArt Pro and Super Duolingo for free 1 month

May 6, 2025
Next Post

OKVIP - Điểm hẹn giải trí trực tuyến hàng đầu châu Á

0 0 votes
Article Rating
Subscribe
Login
Notify of
guest

guest

0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Recent News

From Ho Chi Minh City to London: How Global Investors Use Bow Miner to Efficiently Minine Cryptocurrencies

From Ho Chi Minh City to London: How Global Investors Use Bow Miner to Efficiently Minine Cryptocurrencies

June 17, 2025
How to activate Adaptive Power on iOS 26 to save battery

How to activate Adaptive Power on iOS 26 to save battery

June 17, 2025
How to adjust the time to postpone the alarm iOS 26

How to adjust the time to postpone the alarm iOS 26

June 16, 2025
10 languages ​​for web programming should learn in the isolation season

10 languages ​​for web programming should learn in the isolation season

June 16, 2025
From Ho Chi Minh City to London: How Global Investors Use Bow Miner to Efficiently Minine Cryptocurrencies

From Ho Chi Minh City to London: How Global Investors Use Bow Miner to Efficiently Minine Cryptocurrencies

June 17, 2025
How to activate Adaptive Power on iOS 26 to save battery

How to activate Adaptive Power on iOS 26 to save battery

June 17, 2025
How to adjust the time to postpone the alarm iOS 26

How to adjust the time to postpone the alarm iOS 26

June 16, 2025
AnonyViet - English Version

AnonyViet

AnonyViet is a website share knowledge that you have never learned in school!

We are ready to welcome your comments, as well as your articles sent to AnonyViet.

Follow Us

Contact:

Email: anonyviet.com[@]gmail.com

Main Website: https://anonyviet.com

Recent News

From Ho Chi Minh City to London: How Global Investors Use Bow Miner to Efficiently Minine Cryptocurrencies

From Ho Chi Minh City to London: How Global Investors Use Bow Miner to Efficiently Minine Cryptocurrencies

June 17, 2025
How to activate Adaptive Power on iOS 26 to save battery

How to activate Adaptive Power on iOS 26 to save battery

June 17, 2025
  • Home
  • Home 2
  • Home 3
  • Home 4
  • Home 5
  • Home 6
  • Next Dest Page
  • Sample Page

©2024 AnonyVietFor Knowledge kqxs hôm nay xem phim miễn phí SHBET 23win https://kubet88.yoga/ KUBET BK8 Bj88

No Result
View All Result
  • Home
  • News
  • Software
  • Knowledge
  • MMO
  • Tips
  • Security
  • Network
  • Office

©2024 AnonyVietFor Knowledge kqxs hôm nay xem phim miễn phí SHBET 23win https://kubet88.yoga/ KUBET BK8 Bj88

wpDiscuz
0
0
Would love your thoughts, please comment.x
()
x
| Reply