Welcome to our

Cyber Security News Aggregator

.

Cyber Tzar

provide a

cyber security risk management

platform; including automated penetration tests and risk assesments culminating in a "cyber risk score" out of 1,000, just like a credit score.

BYOVD: Leveraging Raw Disk Reads to Bypass EDR

published on 2025-09-04 16:18:24 UTC by /u/Dr_Mantis_Tobbogon
Content:

Interesting write up on using vulnerable drivers to read the raw disk of a Windows system and extract files without ever touching those files directly. This subsequently allows the reading of sensitive files, such as the SAM.hive, SYSTEM.hive, and NTDS.dit, while also completely avoiding detection from EDR.

submitted by /u/Dr_Mantis_Tobbogon
[link] [comments]
Article: BYOVD: Leveraging Raw Disk Reads to Bypass EDR - published about 2 months ago.

https://www.reddit.com/r/netsec/comments/1n8enqa/byovd_leveraging_raw_disk_reads_to_bypass_edr/   
Published: 2025 09 04 16:18:24
Received: 2025 09 04 16:38:48
Feed: /r/netsec - Information Security News and Discussion
Source: /r/netsec - Information Security News and Discussion
Category: Cyber Security
Topic: Cyber Security
Views: 9

Custom HTML Block

Click to Open Code Editor