Guidance for investigating attacks using CVE-2022-21894: The BlackLotus campaign

Credit to Author: Microsoft Security Threat Intelligence – Editor| Date: Tue, 11 Apr 2023 17:00:00 +0000

This guide provides steps that organizations can take to assess whether users have been targeted or compromised by threat actors exploiting CVE-2022-21894 via a Unified Extensible Firmware Interface (UEFI) bootkit called BlackLotus.

The post Guidance for investigating attacks using CVE-2022-21894: The BlackLotus campaign appeared first on Microsoft Security Blog.

Read more

Update now! Microsoft patches three zero-day vulnerabilities on Patch Tuesday

Credit to Author: Pieter Arntz| Date: Wed, 09 Mar 2022 19:51:59 +0000

Microsoft has released its Patch Tuesday updates which includes three zero-days and three critical vulnerabilities.

The post Update now! Microsoft patches three zero-day vulnerabilities on Patch Tuesday appeared first on Malwarebytes Labs.

Read more