National Cyber Warfare Foundation (NCWF)

Exploiting Windows MiniFilter to Bypass EDR Protection


0 user ratings
2024-09-18 14:32:05
milo
Red Team (CNA)

 - archive -- 

Windows Minifilter drivers are a type of file system filter driver that operates within the Windows operating system to manage and modify I/O operations without direct access to the file system.  They utilize the Filter Manager, which simplifies their development by providing a consistent interface for handling various file operations. Researchers at Tier Zero Security […]


The post Exploiting Windows MiniFilter to Bypass EDR Protection appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.



Tushar Subhra

Source: gbHackers
Source Link: https://gbhackers.com/windows-minifilter-abused/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Red Team (CNA)



Copyright 2012 through 2024 - National Cyber Warfare Foundation - All rights reserved worldwide.