Skip to main content

Windows 10 Ransomware Protection Bypassed Using DLL Injection


Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54
9th October 2018, By Lawrence Abrams
 


 
In Windows 10, Microsoft added a new ransomware protection feature called Controlled Folder Access that can be used to prevent modifications to files in protected folders by unknown programs. 
 
At the DerbyCon security conference last week, a security researcher showed how DLL injection can be used by ransomware to bypass the Controlled Folder Access ransomware protection feature.
 
Full Article.

Reply