CyberSecurityBoardThreat Intel · CVEs · Products
Cyber Products

NSecKrnl.sys: Vulnerable Driver Used to Tamper with Endpoint Security

July 2, 2026

A vulnerable driver (NSecKrnl.sys) was used by Storm-2603 as a conduit to tamper with endpoint security protections and reduce visibility.