hackers-received-a-new-tool-for-the-murder-of-antiviruses-–-it-beats-even-in-kaspersky
Hackers received a new tool for the murder of antiviruses – it beats even in Kaspersky

Hackers received a new tool for the murder of antiviruses – it beats even in Kaspersky

13.08.2025

Researchers from Sophos reported a new cybercriminal tool that is able to disable the protection of even leading antivirus solutions, including Kaspersky, Sophos and Bitdefender.

The novelty is already actively used by multiple group groups to disconnect EDR (Endpoint Detection and Response) before launching the code.

The tool has become the evolution of the previously known Edrkillshifter, created by the Ransomhub group, but now it is more effective and universal. For disguise, the methods of obstacles, anti -analysis, and sometimes even signed drivers (stolen or compromised) are used.

In one case, the malicious code was introduced into the legitimate utility of the Clipboard Compare from Beyond Compare.

Most often, the modification is carried out after receiving access to the victim system, or through fake installers issued for the official ones.

SOPHOS recommends to include protection against unauthorized changes (Tamper Protection), control the administration rights and update the systems in a timely manner, because Microsoft began to withdraw signatures from outdated drivers.

loader-image
Ashgabat
,
temperature icon
Humidity
Pressure
Wind
Wind Gust Wind Gust:
Clouds Clouds:
Visibility Visibility:
Sunrise Sunrise:
Sunset Sunset:
nvidia-introduced-the-rtx-5090d-v2-with-24-gb-gddr7-–-2%-slower-than-the-first-version
Previous Story

NVIDIA introduced the RTX 5090d V2 with 24 GB GDDR7 – 2% slower than the first version

amd-rx-6500-xt-with-4-gb-in-2025-pulls-the-gta-v-and-cyberpunk-2077,-but-“suffocates”-in-doom:-the-dark-ages
Next Story

AMD RX 6500 XT with 4 GB in 2025-pulls the GTA V and Cyberpunk 2077, but “suffocates” in Doom: The Dark Ages

Latest from Technology

Go toTop

Don't Miss