CyberWire Daily

Zero-day déjà vu.

Jun 3, 2025
Jon Miller, CEO and Co-founder of Halcyon, specializes in anti-ransomware solutions. He dives into the emerging threat of Bring Your Own Vulnerable Driver (BYOVD) attacks, explaining their security implications. The discussion highlights recent cybersecurity incidents such as a critical Chrome zero-day vulnerability and a pivotal Splunk flaw. Miller emphasizes the need for targeted defenses against evolving ransomware tactics and explores challenges in identifying hackers amid increasing cyber risks and compliance complexities.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Focused Anti-Ransomware Strategy

  • Halcyon's approach focuses specifically on ransomware, analyzing their tactics to build obstacles tailored to disrupt them.
  • This targeted focus aims to block ransomware growth by making attacks too costly to continue.
INSIGHT

Ransomware Evolves with AI

  • Ransomware is evolving from simple encryption to multi-layer extortion including data theft and exploitation.
  • AI can now be used by attackers to quickly extract valuable insights from stolen corporate data, increasing the threat impact.
ADVICE

Defend Against BYOVD Attacks

  • Monitor for bring your own vulnerable driver (BYOVD) attacks which load old signed vulnerable drivers to gain kernel privileges.
  • Deploy layered protections to detect and stop EDR bypass attempts leveraging these known vulnerabilities.
Get the Snipd Podcast app to discover more snips from this episode
Get the app