If you haven't patched Microsoft Process Explorer, prepare to get pwned
(report)
https://news.sophos.com/en-us/2023/04/19/aukill-edr-killer-malware-abuses-process-explorer-driver/
AuKill hit the scene in the wake of a rash of cases reported by a number of cybersecurity vendors – not only Sophos, but also SentinelOne, Microsoft, and Google's Mandiant – where multiple attackers created malicious drivers and then duped Microsoft into signing to give them the veneer of legitimacy
https://theregister.com/feed/www.theregister.com/2023/04/24/microsoft_driver_aukill_ransomware/