Chasing the BlackLotus – A week in safety with Tony Anscombe

Microsoft released a guide on how organizations can check their systems for the presence of BlackLotus, a powerful threat that ESET researchers first analyzed

Microsoft has guide released about how organizations can detect BlackLotus, the first powerful threat ESET researchers have analyzed. BlackLotus is a UEFI bootkit capable of operating on Windows systems even with UEFI Secure Boot enabled, giving them complete control over the Windows boot process while disabling various OS security mechanisms. What exactly should organizations look for to determine if their systems have been compromised by this powerful malware? Find out on the video.

Also be sure to review our notes on BlackLotus attack mitigation and recovery.

Source link

Related Articles

Back to top button