Windows 11 USB Auto-Install Flaw Enables SYSTEM Takeover via PnP Abuse
Security researchers have demonstrated a new attack technique that abuses Windows Plug and Play (PnP) auto-install to achieve full SYSTEM privileges on…
Security researchers have demonstrated a new attack technique that abuses Windows Plug and Play (PnP) auto-install to achieve full SYSTEM privileges on…
GlassWorm is a malware that uses USB device detection to trigger phishing windows on Windows systems, similar to SeedHunter but with a…
Stuxnet is a notorious malware that crossed air-gaps using USB drives to target Iranian nuclear facilities, demonstrating real-world air-gap compromise.
Agent.BTZ is a malware that infected US military networks via USB drives, highlighting the risk of physical media in air-gap breaches.
PteroLNK is a weaponizer used by Gamaredon to infect USB and network drives with malicious LNK files for lateral movement.
PteroPaste is used by Gamaredon to weaponize USB drives and download additional PowerShell payloads via an encrypted channel.