
EchoDrv
Exploitation of echo_driver.sys
exploitationids-ips-evasionpost-exploitation+2
1702 years ago

Exploitation of echo_driver.sys

Proof-of-concept exploit for CVE-2026-0828, a BYOVD vulnerability in Safetica ProcessMonitorDriver.sys allowing unprivileged termination of…

Fun things against the abuse of the recent CVE-2021-44228 (Log4Shell) vulnerability using common web servers.

BYOVD: Use 360 WFP driver to block EDR/XDR network connection.

A framework and taxonomy for identifying, classifying, and reasoning about detection logic bugs in SIEM, EDR, and XDR rules, with concrete examples…