Windows Security

Bi

Qilin ransomware uses WSL to run Linux encryptors on Windows

Lisa Kern

The Qilin ransomware group has been observed exploiting the Windows Subsystem for Linux (WSL) to execute Linux-based encryptors directly on Windows systems, bypassing traditional security tools. This technique allows the malware to evade detection by endpoint detection and response (EDR) products focused on Windows behaviors. Cybersecurity firms Trend Micro and Cisco Talos detailed the method in recent research.

Wannan gidan yanar gizon yana amfani da kukis

Muna amfani da kukis don bincike don inganta shafinmu. Karanta manufofin sirri namu manufofin sirri don ƙarin bayani.
Ki