The forensic tool's driver was signed with a digital certificate that expired years ago, but major security gaps allowed ...
Attackers abused a signed but long-revoked EnCase Windows kernel driver in a BYOVD attack to terminate all security tools.