Tool
K7RKScan
- First Reported
- Oct 1, 2026
- Latest Reported
- Oct 1, 2026
Reported Context (1)
- Longlegs abuses a vulnerable, signed driver (K7RKScan) to disable security software before deploying ransomware, and has also been observed abusing Visual Studio Code's tunneling feature for covert remote access. Warlock Ransomware Group Hits Water and Telecom Operators, Continues Exploiting SharePoint
CVE (5)
Malware (1)
Threat Actors (5)
MITRE ATT&CK (13)
Vendors (2)
Products (3)
Tools (2)
Industries (4)
Countries (6)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.