mastodon.world is one of the many independent Mastodon servers you can use to participate in the fediverse.
Generic Mastodon server for anyone to use.

Server stats:

11K
active users

#crowdstrike

2 posts2 participants0 posts today
linuxCrowdStrike took down Debian and Rocky Linux a few months ago and no one noticed CrowdStrike’s ...<br><br><a href="https://stackdiary.com/crowdstrike-took-down-debian-and-rocky-linux-a-few-months-ago-and-no-one-noticed/" rel="nofollow noopener noreferrer" target="_blank">https://stackdiary.com/crowdstrike-took-down-debian-and-rocky-linux-a-few-months-ago-and-no-one-noticed/</a><br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Tech" target="_blank">#Tech</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/CrowdStrike" target="_blank">#CrowdStrike</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Linux" target="_blank">#Linux</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/News" target="_blank">#News</a><br><br><a href="https://awakari.com/pub-msg.html?id=NGvlZRVsS8V7SXeUtzuAiRNFztY" rel="nofollow noopener noreferrer" target="_blank">Event Attributes</a>
2rZiKKbOU3nTafniR2qMMSE0gwZCrowdStrike trying to use legal threats to suppress criticism and parody of global IT outage In J...<br><br><a href="https://doublepulsar.com/crowdstrike-trying-to-use-legal-threats-to-suppress-criticism-and-parody-of-global-it-outage-49320e922120?source=rss----8343faddf0ec---4" rel="nofollow noopener noreferrer" target="_blank">https://doublepulsar.com/crowdstrike-trying-to-use-legal-threats-to-suppress-criticism-and-parody-of-global-it-outage-49320e922120?source=rss----8343faddf0ec---4</a><br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/crowdstrike" target="_blank">#crowdstrike</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/cybersecurity-news" target="_blank">#cybersecurity-news</a><br><br><a href="https://awakari.com/pub-msg.html?id=InB0FAuqSLKL7uBFvxPAFnZB85o" rel="nofollow noopener noreferrer" target="_blank">Event Attributes</a>
Ian Brown 👨🏻‍💻<p><span class="h-card" translate="no"><a href="https://eupolicy.social/@1br0wn" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>1br0wn</span></a></span> For reliability let alone autonomy reasons, you likely also want staged deployments of updates that can be automatically rolled back if the updated version shows any problems (see also <a href="https://eupolicy.social/tags/CrowdStrike" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CrowdStrike</span></a>). </p><p>And no ability for third-party code to communicate outside the government’s own domain, except via tightly controlled government proxies which monitor and control all data in/out</p>
Soldier of FORTRAN :ReBoot:​<p>So, what happened with that whole crowdstrike debacle? Did companies like Delta get a huge payout or discount?</p><p><a href="https://infosec.exchange/tags/crowdstrike" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>crowdstrike</span></a></p>
Habr<p>[Перевод] CrowdStrike — 2025 — Global Threat Report (Отчет о глобальных угрозах)</p><p>Киберугрозы эволюционируют с невероятной скоростью, и каждый год приносит новые вызовы для специалистов по информационной безопасности. В отчете CrowdStrike Global Threat Report 2025 представлен детальный анализ современных атак, тенденций и тактик злоумышленников. Краткий обзор, он же Введение из отчета CrowdStrike можно прочитать в CrowdStrike — 2025 — Global Threat Report (Отчет о глобальных угрозах) — Введение</p><p><a href="https://habr.com/ru/articles/896972/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">habr.com/ru/articles/896972/</span><span class="invisible"></span></a></p><p><a href="https://zhub.link/tags/%D0%B8%D0%BD%D1%84%D0%BE%D1%80%D0%BC%D0%B0%D1%86%D0%B8%D0%BE%D0%BD%D0%BD%D0%B0%D1%8F_%D0%B1%D0%B5%D0%B7%D0%BE%D0%BF%D0%B0%D1%81%D0%BD%D0%BE%D1%81%D1%82%D1%8C" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>информационная_безопасность</span></a> <a href="https://zhub.link/tags/crowdstrike" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>crowdstrike</span></a> <a href="https://zhub.link/tags/treat_intelligence" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>treat_intelligence</span></a> <a href="https://zhub.link/tags/genai" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>genai</span></a> <a href="https://zhub.link/tags/saas" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>saas</span></a> <a href="https://zhub.link/tags/volatility" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>volatility</span></a> <a href="https://zhub.link/tags/social_engineering" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>social_engineering</span></a></p>
2rZiKKbOU3nTafniR2qMMSE0gwZRobot in DC (Credit Photo: Minna Blumenthal) Continue reading on Medium » <br><br><a href="https://andyblumenthal.medium.com/robot-in-dc-693f141daccd?source=rss------technology-5" rel="nofollow noopener noreferrer" target="_blank">https://andyblumenthal.medium.com/robot-in-dc-693f141daccd?source=rss------technology-5</a><br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/crowdstrike" target="_blank">#crowdstrike</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/cybersecurity" target="_blank">#cybersecurity</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/washington-dc" target="_blank">#washington-dc</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/technology" target="_blank">#technology</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/robots" target="_blank">#robots</a><br><br><a href="https://awakari.com/pub-msg.html?id=8f9bHjaXXgt1f5Ca44wxRjOtyqG" rel="nofollow noopener noreferrer" target="_blank">Event Attributes</a>
Steele Fortress<p>CrowdStrike (CRWD) maintains a competitive edge in cybersecurity with robust catalysts that challenge rivals. As threats evolve, staying informed is crucial. Are your defenses up to date? <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/Privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Privacy</span></a> <a href="https://infosec.exchange/tags/CrowdStrike" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CrowdStrike</span></a></p><p>Read more: <a href="https://short.steelefortress.com/a5fyze" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">short.steelefortress.com/a5fyze</span><span class="invisible"></span></a></p>
TuxTux<p><span class="h-card" translate="no"><a href="https://ruhr.social/@Gunwi" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Gunwi</span></a></span> <span class="h-card" translate="no"><a href="https://social.heise.de/@heiseonline" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>heiseonline</span></a></span> <br>Du sprichst jetzt von Windows, oder? 😜</p><p><a href="https://mastodon.tuxtux.eu/tags/CrowdStrike" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CrowdStrike</span></a></p>
Habr<p>[Перевод] CrowdStrike — 2025 — Global Threat Report (Отчет о глобальных угрозах) — Введение</p><p>Введение из отчета по глобальным угрозам от CrowdStrike Отчет о глобальных угрозах CrowdStrike 2025 анализирует ключевые тенденции в киберугрозах за 2024 год, подчеркивая растущую сложность и организованность атак. Основное внимание уделяется концепции «предприимчивого противника», который использует передовые технологии, включая генеративный ИИ, для усиления атак.</p><p><a href="https://habr.com/ru/articles/896276/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">habr.com/ru/articles/896276/</span><span class="invisible"></span></a></p><p><a href="https://zhub.link/tags/%D0%BF%D0%B5%D1%80%D0%B5%D0%B2%D0%BE%D0%B4" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>перевод</span></a> <a href="https://zhub.link/tags/crowdstrike" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>crowdstrike</span></a> <a href="https://zhub.link/tags/treat_intelligence" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>treat_intelligence</span></a></p>
KubernetesKubernetes IngressNightmare Vulnerabilities | CrowdStrike We would like to recognize Amit Serper,...<br><br><a href="http://www.ihash.eu/2025/03/kubernetes-ingressnightmare-vulnerabilities-crowdstrike/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=kubernetes-ingressnightmare-vulnerabilities-crowdstrike" rel="nofollow noopener noreferrer" target="_blank">http://www.ihash.eu/2025/03/kubernetes-ingressnightmare-vulnerabilities-crowdstrike/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=kubernetes-ingressnightmare-vulnerabilities-crowdstrike</a><br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Security" target="_blank">#Security</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/CrowdStrike" target="_blank">#CrowdStrike</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/IngressNightmare" target="_blank">#IngressNightmare</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Kubernetes" target="_blank">#Kubernetes</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Vulnerabilities" target="_blank">#Vulnerabilities</a><br><br><a href="https://awakari.com/pub-msg.html?id=M7dT3MfLkL3OiH4nONt3dNPdEw4" rel="nofollow noopener noreferrer" target="_blank">Event Attributes</a>
KubernetesKubernetes IngressNightmare Vulnerabilities | CrowdStrike We would like to recognize Amit Serper,...<br><br><a href="http://www.ihash.eu/2025/03/kubernetes-ingressnightmare-vulnerabilities-crowdstrike/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=kubernetes-ingressnightmare-vulnerabilities-crowdstrike" rel="nofollow noopener noreferrer" target="_blank">http://www.ihash.eu/2025/03/kubernetes-ingressnightmare-vulnerabilities-crowdstrike/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=kubernetes-ingressnightmare-vulnerabilities-crowdstrike</a><br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Security" target="_blank">#Security</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/CrowdStrike" target="_blank">#CrowdStrike</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/IngressNightmare" target="_blank">#IngressNightmare</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Kubernetes" target="_blank">#Kubernetes</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Vulnerabilities" target="_blank">#Vulnerabilities</a><br><br><a href="https://awakari.com/pub-msg.html?id=7MywKrVYdfvAxrXDsvtiflgvKYy" rel="nofollow noopener noreferrer" target="_blank">Event Attributes</a>
KubernetesKubernetes IngressNightmare Vulnerabilities | CrowdStrike We would like to recognize Amit Serper,...<br><br><a href="https://www.ihash.eu/2025/03/kubernetes-ingressnightmare-vulnerabilities-crowdstrike/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=kubernetes-ingressnightmare-vulnerabilities-crowdstrike" rel="nofollow noopener noreferrer" target="_blank">https://www.ihash.eu/2025/03/kubernetes-ingressnightmare-vulnerabilities-crowdstrike/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=kubernetes-ingressnightmare-vulnerabilities-crowdstrike</a><br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Security" target="_blank">#Security</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/CrowdStrike" target="_blank">#CrowdStrike</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/IngressNightmare" target="_blank">#IngressNightmare</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Kubernetes" target="_blank">#Kubernetes</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Vulnerabilities" target="_blank">#Vulnerabilities</a><br><br><a href="https://awakari.com/pub-msg.html?id=OtULEjRy8mhijHO7Ac2vjKlZnk0" rel="nofollow noopener noreferrer" target="_blank">Event Attributes</a>
2rZiKKbOU3nTafniR2qMMSE0gwZAnnouncing the CrowdStrike 2025 Global Crowd Tour Cybersecurity leaders today face relentless thr...<br><br><a href="https://www.ihash.eu/2025/03/announcing-the-crowdstrike-2025-global-crowd-tour/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=announcing-the-crowdstrike-2025-global-crowd-tour" rel="nofollow noopener noreferrer" target="_blank">https://www.ihash.eu/2025/03/announcing-the-crowdstrike-2025-global-crowd-tour/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=announcing-the-crowdstrike-2025-global-crowd-tour</a><br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Security" target="_blank">#Security</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Announcing" target="_blank">#Announcing</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Crowd" target="_blank">#Crowd</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/CrowdStrike" target="_blank">#CrowdStrike</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Global" target="_blank">#Global</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/tour" target="_blank">#tour</a><br><br><a href="https://awakari.com/pub-msg.html?id=LDvwXR3gZcPcCpQ4FPvSakFDpA0" rel="nofollow noopener noreferrer" target="_blank">Event Attributes</a>
heise online English<p>BSI confirms workaround for CrowdStrike and Azure outages</p><p>According to the BSI, manually deleting a file fixes startup problems on Windows computers with CrowdStrike software. Microsoft Azure is also causing problems.</p><p><a href="https://www.heise.de/en/news/BSI-confirms-workaround-for-CrowdStrike-and-Azure-outages-9807466.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/en/news/BSI-confirms-</span><span class="invisible">workaround-for-CrowdStrike-and-Azure-outages-9807466.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon</span></a></p><p><a href="https://social.heise.de/tags/BSI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BSI</span></a> <a href="https://social.heise.de/tags/Crowdstrike" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Crowdstrike</span></a> <a href="https://social.heise.de/tags/IT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IT</span></a> <a href="https://social.heise.de/tags/MicrosoftAzure" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MicrosoftAzure</span></a> <a href="https://social.heise.de/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://social.heise.de/tags/Windows" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Windows</span></a> <a href="https://social.heise.de/tags/Wirtschaft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Wirtschaft</span></a> <a href="https://social.heise.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
2rZiKKbOU3nTafniR2qMMSE0gwZAnnouncing the CrowdStrike 2025 Global Crowd Tour Cybersecurity leaders today face relentless thr...<br><br><a href="http://www.ihash.eu/2025/03/announcing-the-crowdstrike-2025-global-crowd-tour/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=announcing-the-crowdstrike-2025-global-crowd-tour" rel="nofollow noopener noreferrer" target="_blank">http://www.ihash.eu/2025/03/announcing-the-crowdstrike-2025-global-crowd-tour/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=announcing-the-crowdstrike-2025-global-crowd-tour</a><br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Security" target="_blank">#Security</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Announcing" target="_blank">#Announcing</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Crowd" target="_blank">#Crowd</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/CrowdStrike" target="_blank">#CrowdStrike</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Global" target="_blank">#Global</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/tour" target="_blank">#tour</a><br><br><a href="https://awakari.com/pub-msg.html?id=U4otmyNS8oE0gHDxx8UqAk3NtrM" rel="nofollow noopener noreferrer" target="_blank">Event Attributes</a>
AndiMann<p>ICYMI: on the latest <a href="https://masto.ai/tags/TechstrongTV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TechstrongTV</span></a> I join the Gang to go deep on <a href="https://masto.ai/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> <a href="https://masto.ai/tags/acquisition" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>acquisition</span></a> of <a href="https://masto.ai/tags/CNAP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CNAP</span></a> (<a href="https://masto.ai/tags/cloud" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cloud</span></a> <a href="https://masto.ai/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a>) with <a href="https://masto.ai/tags/Wiz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Wiz</span></a>, esp. how it hits <a href="https://masto.ai/tags/AWS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AWS</span></a>, <a href="https://masto.ai/tags/Azure" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Azure</span></a>, <a href="https://masto.ai/tags/Cisco" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cisco</span></a>, <a href="https://masto.ai/tags/Splunk" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Splunk</span></a>, <a href="https://masto.ai/tags/Crowdstrike" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Crowdstrike</span></a>, <a href="https://masto.ai/tags/PANW" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PANW</span></a>, ++. Just don't call it <a href="https://masto.ai/tags/DevSecOps" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DevSecOps</span></a>!</p><p>Plus, <a href="https://masto.ai/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> is failing, even for religion!</p><p><a href="https://techstrong.tv/videos/videos/techstrong-gang-march-19-2025" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">techstrong.tv/videos/videos/te</span><span class="invisible">chstrong-gang-march-19-2025</span></a></p>
2r8BbU7k5pL6w4FAyRjXOvPGVhJAnnouncing the CrowdStrike 2025 Global Crowd Tour Cybersecurity leaders today face relentless thr...<br><br><a href="http://www.ihash.eu/2025/03/announcing-the-crowdstrike-2025-global-crowd-tour/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=announcing-the-crowdstrike-2025-global-crowd-tour" rel="nofollow noopener noreferrer" target="_blank">http://www.ihash.eu/2025/03/announcing-the-crowdstrike-2025-global-crowd-tour/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=announcing-the-crowdstrike-2025-global-crowd-tour</a><br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Security" target="_blank">#Security</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Announcing" target="_blank">#Announcing</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Crowd" target="_blank">#Crowd</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/CrowdStrike" target="_blank">#CrowdStrike</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Global" target="_blank">#Global</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/tour" target="_blank">#tour</a><br><br><a href="https://awakari.com/pub-msg.html?id=04zqi8qiEVzMiEUhWbKd8X2k6r2" rel="nofollow noopener noreferrer" target="_blank">Event Attributes</a>

Shedding light on the ABYSSWORKER driver

The ABYSSWORKER driver is a malicious tool used in conjunction with MEDUSA ransomware to disable anti-malware systems. It employs a HEARTCRYPT-packed loader and a revoked certificate-signed driver to target and silence EDR vendors. The driver imitates a legitimate CrowdStrike Falcon driver and uses obfuscation techniques to hinder analysis. It provides various functionalities including file manipulation, process and driver termination, and EDR system disabling. The driver's capabilities include removing callbacks, replacing driver functions, killing system threads, and detaching mini-filter devices. It uses unconventional methods like creating IRPs from scratch to perform file operations. The malware's sophisticated approach demonstrates the evolving tactics of cybercriminals in evading detection and disabling security measures.

Pulse ID: 67dc31a079ea6b0ac92136ae
Pulse Link: otx.alienvault.com/pulse/67dc3
Pulse Author: AlienVault
Created: 2025-03-20 15:17:52

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

LevelBlue Open Threat ExchangeLevelBlue - Open Threat ExchangeLearn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.