New Malware Technique Could Exploit Windows UI Framework to Evade EDR Tools

A recently developed method makes use of UI Automation (UIA), a Windows accessibility component, to carry out a variety of harmful tasks without alerting endpoint detection and response (EDR) systems.

In a study shared with The Hacker News, Tomer Peled, a security researcher at Akamai, stated that in order to take advantage of this technique, a user needs to be persuaded to execute a program that leverages UI Automation. Stealthy command execution may result from this, which may gather private information, divert visitors to phishing websites, and other actions.

Even worse, local attackers might use this security flaw to read and write messages to and from messaging apps like WhatsApp and Slack as well as execute commands. Furthermore, it might be used as a weapon to control user interface components across a network read more about New Malware Technique Could Exploit Windows UI Framework to Evade EDR Tools.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *