A recent report highlights a cyberattack method where tax-related search ads are used to deliver ScreenConnect malware, exploiting a Huawei driver to disable endpoint detection and response (EDR) systems.
The article highlights a concerning tactic where threat actors are using tax search ads to deliver ScreenConnect malware, leveraging a Huawei driver to disable Endpoint Detection and Response (EDR) systems. This emphasizes the importance of regularly updating and validating your endpoint security tools against such evasive techniques, and ensuring your threat intelligence teams are monitoring for malicious ad campaigns as part of a comprehensive security strategy.