Security · 1h ago
SilverFox Deploys ValleyRAT via BYOVD Attack on Japanese Manufacturer
Chinese cybercrime group SilverFox used three vulnerable drivers in a BYOVD attack on a Japanese industrial manufacturer. The attack delivered ValleyRAT (Winos 4.0) for persistent remote access. This marks new driver abuse and techniques in the group's arsenal.
Meridian48 take
The use of multiple vulnerable drivers in a single chain shows attackers are refining BYOVD tactics, making detection harder for defenders.
Read the full reporting
SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT →
The Hacker News
byovdvalleyrat