Daily Guardian UAEDaily Guardian UAE
  • Home
  • UAE
  • What’s On
  • Business
  • World
  • Entertainment
  • Lifestyle
  • Sports
  • Technology
  • Travel
  • Web Stories
  • More
    • Editor’s Picks
    • Press Release
What's On

Microsoft is bringing an AI helper to Xbox consoles

March 14, 2026

Instagram is getting rid of its most secure chatting feature

March 14, 2026

Your PC could soon play old Xbox and Xbox 360 games officially

March 14, 2026

Honda faces first loss in 70 years after killing three EV models

March 14, 2026

Motorola’s latest Edge model adds telephoto zoom and a faster Snapdragon chip

March 14, 2026
Facebook X (Twitter) Instagram
Finance Pro
Facebook X (Twitter) Instagram
Daily Guardian UAE
Subscribe
  • Home
  • UAE
  • What’s On
  • Business
  • World
  • Entertainment
  • Lifestyle
  • Sports
  • Technology
  • Travel
  • Web Stories
  • More
    • Editor’s Picks
    • Press Release
Daily Guardian UAEDaily Guardian UAE
Home » Security experts warn of new hacker strategy targeting Windows drivers
Technology

Security experts warn of new hacker strategy targeting Windows drivers

By dailyguardian.aeNovember 8, 20242 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

As if there weren’t enough threats to your Windows computer already, here is another one to be careful with. Kaspersky reports that tens of thousands of compromised PCs are infected as cybercriminals advertise fake activators and cracks to lure in unsuspecting users for distinct software such as AutoCAD, JetBrains, and Foxit PDF Editor.

The malicious package named SteelFox has been quietly spreading since February 2023, but its distribution has exploded recently. The malware is dispersed using torrent trackers and forums, where it is used as a tool to activate authentic versions of the previously mentioned software.

The experts at Kaspersky warn that the malware mimics cryptocurrencies and steals sensitive financial and non-financial information from your devices. When you install the fake crack, a vulnerable driver called WinRingO.sys is added that restores CVE-2021-41285 and CVE-2020-14979, four- and three-year-old vulnerabilities that give hackers full access to your PC.

When hackers access these vulnerabilities, they insert XMRig, a program that steals computer resources to mine cryptocurrency, an attack known as cryptojacking. XMRig uses your electricity, PC power, and the internet to mine Monero and other cryptocurrencies, making your PC useless. An info stealer is also inserted to retrieve data from 13 web browsers, including browsing history, credit card info, session cookies, network data, and system information. A Remote Desktop Protocol (RDP) connection is also established.

The report also mentioned a malicious post that included complete instructions on how to launch the software illegally. Further, Kaspersky says that “the execution chain looks legitimate until the moment the files are unpacked.” The damaging software is inserted in the process and adds the machine code that launches Steelfox.

Kaspersky also says it has blocked 11,000 attacks thus far, but the number can easily be much higher. Affected users are worldwide, including in countries such as Mexico, Brazil, Russia, China, UAE, Algeria, Egypt, Vietnam, Sri Lanka, and India.

You can stay safe by only downloading software from legitimate sources, and having top-tier antivirus software such as Bitdefender is a great idea.











Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

Microsoft is bringing an AI helper to Xbox consoles

Instagram is getting rid of its most secure chatting feature

Your PC could soon play old Xbox and Xbox 360 games officially

Honda faces first loss in 70 years after killing three EV models

Motorola’s latest Edge model adds telephoto zoom and a faster Snapdragon chip

Google and Samsung built a tool to boost the gaming experience on your phone

Samsung Galaxy phones now show which apps work on a satellite network when you’re off the grid

For the forgetful among us, this robot will find everything you misplace

The LG C5 OLED is a gorgeous, if increasingly niche TV.

Editors Picks

Instagram is getting rid of its most secure chatting feature

March 14, 2026

Your PC could soon play old Xbox and Xbox 360 games officially

March 14, 2026

Honda faces first loss in 70 years after killing three EV models

March 14, 2026

Motorola’s latest Edge model adds telephoto zoom and a faster Snapdragon chip

March 14, 2026

Subscribe to News

Get the latest UAE news and updates directly to your inbox.

Latest Posts

Google and Samsung built a tool to boost the gaming experience on your phone

March 14, 2026

Samsung Galaxy phones now show which apps work on a satellite network when you’re off the grid

March 14, 2026

For the forgetful among us, this robot will find everything you misplace

March 14, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian UAE. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.