all InfoSec news
When the Absence of Noise Becomes Signal: Defensive Considerations for Lazarus FudModule
Security Intelligence securityintelligence.com
In February 2023, X-Force posted a blog entitled “Direct Kernel Object Manipulation (DKOM) Attacks on ETW Providers” that details the capabilities of a sample attributed to the Lazarus group leveraged to impair visibility of the malware’s operations. This blog will not rehash analysis of the Lazarus malware sample or Event Tracing for Windows (ETW) as […]
The post When the Absence of Noise Becomes Signal: Defensive Considerations for Lazarus FudModule appeared first on Security Intelligence.
analysis attacks blog capabilities defensive endpoint event february ibm x-force research incident response kernel lazarus lazarus group malware malware analysis manipulation noise object offensive security operations signal threat hunting threat research tracing visibility windows x-force