Silent Sabotage: EDRSilencer Disables Detection and Enables Stealth Attacks

Amber | Attack Report
Download PDF

EDRSilencer, a red team tool originally designed to test security defenses, has now been weaponized by hackers in live attacks. Rather than helping organizations improve their security posture, it’s being used to silence endpoint detection and response (EDR) solutions by blocking alerts to management consoles. This allows attackers to operate stealthily, evading detection and making it harder for security teams to uncover malicious activities. The abuse of tools like EDRSilencer serves as a stark reminder that security solutions can be turned against us, highlighting the need for continuous vigilance and adaptive defenses.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox