Talos Takes

Exploring vulnerable Windows drivers

Cisco Talos

Hazel sits down with Vanja Svajcer from Talos' threat research team. Vanja is a prolific malware hunter and this time he's here to talk about vulnerable Windows drivers. We've been covering these drivers quite a bit on the Talos blog over the last year, and during our research we investigated classes of vulnerabilities typically exploited by threat actors as well as the payloads they typically deploy post-exploitation. The attacks in which attackers are deliberately installing known vulnerable drivers only to later exploit them is a technique referred to as Bring Your Own Vulnerable Driver (BYOVD). 

If you're curious about this topic and the recommendations our team has to help you address vulnerable drivers in your environment, then this episode is for you. 

The full research can be found at https://blog.talosintelligence.com/exploring-vulnerable-windows-drivers/

People on this episode