Threat actors are exploiting a privilege escalation flaw in Paragon Partition Manager for “bring your own vulnerable driver” (BYOVD) attacks.
First seen on cybersecuritydive.com
Jump to article: www.cybersecuritydive.com/news/microsoft-signed-driver-used-in-ransomware-attacks/741372/