With Microsoft continuously improving kernel mitigations and raising the bar for exploiting native kernel components, third-party kernel drivers are becoming a more appealing target for attackers and an important area of research for security analysts.

https://www.microsoft.com/security/blog/2019/03/25/from-alert-to-driver-vulnerability-microsoft-defender-atp-investigation-unearths-privilege-escalation-flaw/?fbclid=IwAR3M8fLPLPplNU_qvqPVsdkl7HqktqAZn44xBzRN-7hgpIrKUB1ggq8uPCI