Win32/Gapz: New Bootkit Technique | WeLiveSecurity
Win32/Gapz's new bootkit technique modifies just 4 bytes of the original VBR, has an enhanced dropper and complex kernel mode functionality, and evades ELAM.
Source: welivesecurity.com
Stay updated with breaking news from Volume Boot. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
Win32/Gapz's new bootkit technique modifies just 4 bytes of the original VBR, has an enhanced dropper and complex kernel mode functionality, and evades ELAM.