Windows Security

Fuatilia

Qilin ransomware uses WSL to run Linux encryptors on Windows

Lisa Kern

The Qilin ransomware group has been observed exploiting the Windows Subsystem for Linux (WSL) to execute Linux-based encryptors directly on Windows systems, bypassing traditional security tools. This technique allows the malware to evade detection by endpoint detection and response (EDR) products focused on Windows behaviors. Cybersecurity firms Trend Micro and Cisco Talos detailed the method in recent research.

Tovuti hii hutumia kuki

Tunatumia kuki kwa uchambuzi ili kuboresha tovuti yetu. Soma sera yetu ya faragha sera ya faragha kwa maelezo zaidi.
Kataa