Exposed: Medusa Ransomware’s Stealth Attack Using Stolen Certificates to Cripple Security Defenses
Medusa ransomware operators are deploying a malicious driver called ABYSSWORKER in sophisticated attacks to disable security protections. The driver, signed with stolen certificates, works alongside a HeartCrypt-packed loader to bypass security systems. ABYSSWORKER can terminate processes,...
