
That driver.sys file is CVE-2024-51324
Post summary
The text only identifies a driver.sys file as CVE-2024-51324 without providing additional details or context.
Exploitation ongoing with high activity in latest observed window (1 mentions)
Recommended action window: Immediate (within 24h)
NVD description
An issue in the BdApiUtil driver of Baidu Antivirus v5.2.3.116083 allows attackers to terminate arbitrary process via executing a BYOVD (Bring Your Own Vulnerable Driver) attack.
Priority
LOW
Exploitation
ACTIVE
PoC
NONE
Patch
NONE
Momentum
STABLE
| Date | Total | Labels |
|---|
| 2026-08-18 | 1 | Active Exploitation1 |
| 2026-08-29 | 1 | General1 |

That driver.sys file is CVE-2024-51324
Post summary
The text only identifies a driver.sys file as CVE-2024-51324 without providing additional details or context.

DeadLock ransomware exploits CVE-2024-51324 to kill EDR from kernel mode, encrypting after a 5-day dwell. No public decryptor exists. https://www.provendata.com/blog/deadlock-ransomware #CyberSecurity #InfoSec #Ransomware #DFIR #IncidentResponse
Post summary
DeadLock ransomware actively exploits CVE‑2024‑51324 to disable EDR from kernel mode, holding victim data in encryption for up to five days; no public decryptor exists.