Gadgets Africa
  • News
    Firefly: Adobe's AI tech access to big clients

    Firefly: Adobe’s AI tech access to big clients

    Apple bars developers from cloning apps

    Apple bars developers from cloning apps

    Subsidy: Bolts, Uber, others begin nationwide strike

    Subsidy: Bolts, Uber, others begin nationwide strike

    Reddit to lay off 5% workforce

    Reddit to lay off 5% workforce

    Nigerian Abel Aboh joins UK AI centre board

    Nigerian Abel Aboh joins UK AI centre board

    New iPhone feature warns against unwanted nudes

    New iPhone feature warns against unwanted nudes

    Apple launches Vision Pro virtual reality headset

    Apple launches Vision Pro virtual reality headset

    El Salvador based firm to build bitcoin mining farm

    El Salvador based firm to build Bitcoin mining farm

    Nigerian healthtech Helium Health raises $30m for expansion

    Nigerian healthtech Helium Health raises $30m for expansion

  • Apps
  • Cryptocurrency
  • featured
  • Telecommunications
  • Gadgets
  • FinTech
  • Tech leaders
Gadgets Africa
No Result
View All Result

NCC alerts Nigerians on antivirus-crippling threat

by Sam Adeniyi
October 9, 2022
in News
Reading Time: 2 mins read
NCC alerts Nigerians on antivirus-crippling threat

NCC

Share on FacebookShare on TwitterShare on Telegram

The Nigerian Communications Commission’s Computer Security Incident Response Team has declared Windows operating system, the Blackbyte Ransomware a high-impact threat.

According to Daily Post, NCC-CSIRT said the Blackbyte Ransomware has the capacity to bypass protections by disabling more than 1,000 drivers used by various security solutions.

NCC-CSIRT in a notice sent to journalists on Saturday said the BlackByte ransomware gang is using a new technique that researchers called “Bring Your Own Vulnerable Driver”,

It further explained that Blackbyte is exploiting the security issue that allowed it to disable drivers that prevent multiple Endpoint Detection and Response and antivirus products like Avast, Sandboxie, Windows DbgHelp Library, and Comodo Internet Security, from operating normally.

Recent attacks attributed to this group involved a version of the MSI Afterburner RTCore64.sys driver, which is vulnerable to a privilege escalation and code execution flaw tracked as CVE-2019-16098.

The NCC notice further said the “Bring Your Own Vulnerable Driver” method is effective because the vulnerable drivers are signed with a valid certificate and run with high privileges on the system.

Two notable recent examples of BYOVD attacks include Lazarus, abusing a buggy Dell driver and unknown hackers abusing an anti-cheat driver/module for the Genshin Impact game.

The NCC-CSIRT advisory recommended that system administrators protect against BlackByte’s new security bypassing trick by adding the particular MSI driver to an active blocklist, monitoring all driver installation events, and scrutinising them frequently to find any rogue injections that do not have a hardware match.

The CSIRT is the telecom sector’s cyber security incidence centre set up by the NCC to focus on incidents in the telecom sector and as they may affect telecom consumers and citizens at large.

The CSIRT also works collaboratively with the Nigeria Computer Emergency Response Team, established by the Federal Government to reduce the volume of future computer risk incidents by preparing, protecting, and securing Nigerian cyberspace to forestall attacks, and probl

ems or related events.

Tags: NCC
ADVERTISEMENT

Related Posts

Firefly: Adobe's AI tech access to big clients
News

Firefly: Adobe’s AI tech access to big clients

by Alex Omenye
June 8, 2023
Apple bars developers from cloning apps
News

Apple bars developers from cloning apps

by Alex Omenye
June 7, 2023
Subsidy: Bolts, Uber, others begin nationwide strike
featured

Subsidy: Bolts, Uber, others begin nationwide strike

by Alex Omenye
June 7, 2023
Reddit to lay off 5% workforce
News

Reddit to lay off 5% workforce

by Alex Omenye
June 7, 2023
Next Post
Twitter, IG lock Kanye West's accounts over antisemitic posts

Twitter, IG lock Kanye West's accounts over antisemitic posts

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended.

SpaceX starship to make debut launch Monday

SpaceX starship to make debut launch Monday

April 17, 2023
Microsoft launches cloud storage for govts

Microsoft, Apple, Google move to dump passwords

May 8, 2022

Trending.

Apple to manufacture iPhone 14 in India

Apple unveils much anticipated iPhone 14 models

September 7, 2022
YouTube restores Donald Trump’s channel

YouTube restores Donald Trump’s channel

March 17, 2023
Elon Musk unveils 'content moderation council' for Twitter

Elon Musk finally buys Twitter for $44bn

October 27, 2022
Japan warns ChatGPT maker OpenAI over data collection

Canada to probe OpenAI over privacy concerns

May 25, 2023
IBM to replace 7,800 jobs with AI- Report

IBM to replace 7,800 jobs with AI- Report

May 2, 2023
Gadgets Africa

© 2023 Gadgets Africa.

Navigate Site

  • News
  • Apps
  • Cryptocurrency
  • featured
  • Telecommunications
  • Gadgets
  • FinTech
  • Tech leaders

Share

No Result
View All Result
  • News
  • Apps
  • Cryptocurrency
  • featured
  • Telecommunications
  • Gadgets
  • FinTech
  • Tech leaders

© 2023 Gadgets Africa.

Go to mobile version