Get the latest tech news

Windows 0-day was exploited by North Korea to install advanced rootkit


FudModule rootkit burrows deep into Windows, where it can bypass key security defenses.

A Windows zero-day vulnerability recently patched by Microsoft was exploited by hackers working on behalf of the North Korean government so they could install custom malware that’s exceptionally stealthy and advanced, researchers reported Monday. “The vulnerability allowed attackers to bypass normal security restrictions and access sensitive system areas that most users and administrators can't reach,” Gen researchers reported. Earlier this year, researchers from security firm Avast spotted a newer FudModule variant that bypassed key Windows defenses such as Endpoint Detection and Response, and Protected Process Light.

Get the Android app

Or read this on r/technology

Read more on:

Photo of North Korea

North Korea

Photo of Windows 0-day

Windows 0-day

Photo of advanced rootkit

advanced rootkit

Related news:

News photo

North Korea hackers trying to steal nuclear secrets- US, UK warn

News photo

North Korea-backed cyber espionage campaign targets UK military

News photo

Cyber Firm KnowBe4 Hired a Fake IT Worker From North Korea