Russian Cybercrime group is exploiting Zerologon flaw, Microsoft warns
Security Affairs
OCTOBER 10, 2020
Security experts from cyber-security firm Prevailion reported that TA505 has compromised more than 1,000 organizations. The malicious updates employed in the Zerologon attacks are able to bypass the user account control (UAC) security feature in Windows and abuse the Windows Script Host tool (wscript.exe) to execute malicious scripts.
Let's personalize your content