Bangladesh Cyber Security

Highjacked DLL for Kaspersky Anti-Ransomware Tool (KART)

Speaking about the ‘strength of a well-trained team’ and the benefits of a collaborative approach, the Bangladesh Cyber Security Team uncovered another 0day and issued a CVE.

The installer of Kaspersky Anti-Ransomware Tool (KART) was vulnerable to a DLL hijacking attack due to an unsafe DLL search route, allowing an attacker to escalate privileges in the system (CVE-2020-28950).

Kaspersky Lab is a Russian cybersecurity and anti-virus company with headquarters in Moscow. It is the market leader in this industry.

Anti-Ransomware Tool for Businesses from Kaspersky

As a response to the WannaCry ransomware, which has affected hundreds of computers in a variety of nations around the world, Kaspersky has developed a solution to protect computers from WannaCry and other ransomware infections.

The Kaspersky Anti-Ransomware Tool for Business is a simple application that silently monitors your computer for ongoing threats while running in the system tray. According to our tests, it reacts quickly to malicious processes attempting to run and prevents them from doing so, keeping your computer safe.

Although the program’s name implies that it can only be used in commercial settings and handled by experts, this is far from the case. Kaspersky Anti-Ransomware Tool turns out to be one of the most user-friendly security products we’ve seen, even for casual users.

It begins in the systray and creates an icon after a quick and uneventful setup. When a ransomware-infected process tries to start, the utility stops it and displays a notification message to call your attention. The whole path of the process is included, as well as the date and time of each recorded event and the threat name

The Bangladesh Cyber Security Team has achieved yet another outstanding feat. Congratulations to the entire team, as well as Chief Cyber Operations, for his direction and mentorship. Thank you so much to Kaspersky for the acknowledgement and publication!


Leave a Comment

Your email address will not be published. Required fields are marked *