Windows Security

关注

Qilin ransomware uses WSL to run Linux encryptors on Windows

Lisa Kern

The Qilin ransomware group has been observed exploiting the Windows Subsystem for Linux (WSL) to execute Linux-based encryptors directly on Windows systems, bypassing traditional security tools. This technique allows the malware to evade detection by endpoint detection and response (EDR) products focused on Windows behaviors. Cybersecurity firms Trend Micro and Cisco Talos detailed the method in recent research.

本网站使用 Cookie

我们使用 Cookie 进行分析以改善我们的网站。 阅读我们的 隐私政策 以获取更多信息。
拒绝