Root Causes 320: Microsoft-signed Root Kit Attack

Published: July 24, 2023, midnight

A new root kit attack in the wild is code signed by a Microsoft certificate. We explain kernel-level attacks, how powerful they are, and how this attack occurred.