#edr


The EDR blind spot: 3 ways browser attacks evade endpoint telemetry

Oct 2, 2026 // 23:17

Article written by Andrius Buinovskis, VP of product strategy at NordLayer Explore NordLayer Browser in 30 minutes. See how your team can deploy managed browser […]

Fake LastPass Authenticator Installer Abuses Microsoft-Signed Driver to Kill Antivirus and EDR

Sep 22, 2026 // 00:12

A fake LastPass Authenticator installer offered on GitHub installs a Windows kernel driver that shuts off antivirus and other security software before a password stealer […]

Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt

Aug 14, 2026 // 00:17

An Akira ransomware affiliate disabled the endpoint detection and response (EDR) solution on a compromised system by restarting the machine into Safe Mode with Networking. […]

Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt

Aug 14, 2026 // 00:17

An Akira ransomware affiliate disabled the endpoint detection and response (EDR) solution on a compromised system by restarting the machine into Safe Mode with Networking. […]

⚡ Weekly Recap: Browser Bugs, EDR Killers, TV Botnet, OpenBSD Flaw, Android Trojan, and More

Jun 22, 2026 // 14:04

It’s Monday again. This week’s threat list looks painfully familiar: abused integrations, fake tools, poisoned websites, ransomware crews trying to shut down security tools, and […]

The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes

Jun 19, 2026 // 21:41

The Gentlemen ransomware-as-a-service (RaaS) operation is actively developing and maintaining a suite of endpoint detection and response (EDR) killers that it hands out to affiliates […]

Gentlemen ransomware uses multiple EDR killers to disable defenses

Jun 19, 2026 // 01:36

The Gentlemen ransomware-as-a-service (RaaS) is actively developing and maintaining a suite of endpoint detection and response (EDR) killers to help affiliates evade detection in attacks. The […]

AI-built ransomware toolkit automates EDR evasion, AD discovery

Jun 3, 2026 // 00:16

A threat actor is using an AI-built ransomware attack toolkit that automates Active Directory discovery and helps evade endpoint detection and response (EDR) solutions. Tool […]

How Leading Organizations Are Turning EDR Into Operational Resilience

Jun 2, 2026 // 13:34

Most organizations now recognize that endpoint protection alone is no longer sufficient. That’s why adoption of endpoint detection and response (EDR) has accelerated rapidly in […]

Ransomware (Qilin, Warlock) exploits driver flaws to disable over 300 EDR security tools.

Apr 6, 2026 // 13:08

Cisco Talos and Trend Micro have found that threat actors using Qilin and Warlock ransomware are employing the bring your own vulnerable driver (BYOVD) method […]

1 2 Next