Windows Rootkit Malware Signed By Microsoft | Cyber Protection Operation Center News

Опубликовано: 29 Сентябрь 2024
на канале: Acronis
182
3

A new signed Windows rootkit called Retliften has been discovered. The rootkit passed Microsoft’s Windows Hardware Compatibility Program and got signed on March 17th.
The rootkit can intercept and redirect network connections and install new root certificates. The rootkit can also update itself from the Internet with a new version.
It is believed that this functionality is used to cheat in online games, for example by bypassing geo-location checks in the Asian market.

The Acronis Cyber Protect solution can scan backups online in the cloud, allowing it to detect even aggressive rootkits, as they are no longer active. In addition to the increased protection, it can also help to shift the performance load away from the endpoints.

#Retliften #rootkit malware #Acronis #CyberFit #CyberProtection #AcronisCyberProtectCloud #CyberSecurityNews #CPOCNews #CPOC #CyberSecurity #CyberProtect



_____
Don't get caught unaware. Stay up-to-date on what's happening in the cyber protection world. Subscribe for more news from our Cyber Protection Operation's Center.

Learn more about #CyberProtection: https://bit.ly/3hpTct4

Acronis CyberFit Summit 2022 - An MSP and IT Leaders Conference - https://bit.ly/3rJJ6JP