Web Shells, Tunnels, and Ransomware: Dissecting a Warlock AttackWarlock continues to enhance its attack chain with new tactics to improve persistence, lateral movement, and defense evasion using an expanded toolset: TightVNC Yuze, and a persistent BYOVD technique leveraging the NSec driver.
Source:
Web Shells, Tunnels, and Ransomware: Dissecting a Warlock Attack