mastodon.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
The original server operated by the Mastodon gGmbH non-profit

Administered by:

Server stats:

351K
active users

#crowdstrike

0 posts0 participants0 posts today

Shedding light on the ABYSSWORKER driver

The ABYSSWORKER driver is a malicious tool used in conjunction with MEDUSA ransomware to disable anti-malware systems. It employs a HEARTCRYPT-packed loader and a revoked certificate-signed driver to target and silence EDR vendors. The driver imitates a legitimate CrowdStrike Falcon driver and uses obfuscation techniques to hinder analysis. It provides various functionalities including file manipulation, process and driver termination, and EDR system disabling. The driver's capabilities include removing callbacks, replacing driver functions, killing system threads, and detaching mini-filter devices. It uses unconventional methods like creating IRPs from scratch to perform file operations. The malware's sophisticated approach demonstrates the evolving tactics of cybercriminals in evading detection and disabling security measures.

Pulse ID: 67dc31a079ea6b0ac92136ae
Pulse Link: otx.alienvault.com/pulse/67dc3
Pulse Author: AlienVault
Created: 2025-03-20 15:17:52

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

LevelBlue Open Threat ExchangeLevelBlue - Open Threat ExchangeLearn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.
Replied in thread

@ceotech Only proof that people make mistakes, especially in stressful situations.

Did you know that there is an immense threat of making followup misyakes or REALLY getting #hacked while you're going through an incident? Saw that with #crowdstrike

#cybersecurity is about #people at least as much if not more so than it is about #tech

Also a good reason to use services like simplelogin.io or buy your own domain and set up a #catchall so you can use a different mail address for each account

CrowdStrike shares plunge 10% after a disappointing earnings forecast. CEO George Kurtz reveals the impact of a severe global IT outage on projected earnings, with estimates significantly below analyst expectations. While the current financials show a net loss of $92.3 billion, there’s optimism for recovery as experts predict a return to growth. Dive into the full analysis and future outlook from the insightful reporting by Samantha Subin. [Read more here](cnbc.com/2025/03/05/crowdstrik). #CrowdStrike #EarningsReport #TechStocks #MarketNews

CNBCCrowdStrike slumps 10% on weak earnings outlook, overhang from outage costsCrowdStrike shares dropped 10% after issuing weak earnings guidance and signaled ongoing pressure from its global IT outage in July.