πNew WriteupβοΈ
βββββββββββββββ
πDate: Thu, 05 Oct 2023 21:15:38 GMT
βββββββββββββββ
βοΈTitle: APC Queue Code Injection
βββββββββββββββ
πLink: https://medium.com/p/f632f23ec85b
βββββββββββββββ
Tags: #malware #cybersecurity #red_team #red_team_methodology #process_injection
βββββββββββββββ
πDate: Thu, 05 Oct 2023 21:15:38 GMT
βββββββββββββββ
βοΈTitle: APC Queue Code Injection
βββββββββββββββ
πLink: https://medium.com/p/f632f23ec85b
βββββββββββββββ
Tags: #malware #cybersecurity #red_team #red_team_methodology #process_injection
Medium
APC Queue Code Injection
In this blog, we are going to see how the APC Queue Injection works and write our code to execute the payload. I recommend you to read myβ¦
β€· Title: Cracked Software: A Gateway to Malware and Data Theft
ββββββββββββββββββββββββ
πͺ Author: do son
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 11 Jan 2025 01:50:33 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Cracked Software #DLL Sideloading #LummaStealer #MARSStealer #Mediafire #OpenSea #Process injection #RustDesk #SoundCloud #Vidar #youtube
ββββββββββββββββββββββββ
πͺ Author: do son
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 11 Jan 2025 01:50:33 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Cracked Software #DLL Sideloading #LummaStealer #MARSStealer #Mediafire #OpenSea #Process injection #RustDesk #SoundCloud #Vidar #youtube
Cybersecurity News
Cracked Software: A Gateway to Malware and Data Theft
Beware of cracked software and fake installers. Discover how cybercriminals exploit user trust and spread malicious payloads.
β€· Title: Process HollowingβββMalware Reverse Engineering
ββββββββββββββββββββββββ
πͺ Author: Sarviya
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 21 Feb 2025 10:16:17 GMT
ββββββββββββββββββββββββ
β Tags: #process_injection #process_hollowing #malware #cybersecurity #malware_analysis
ββββββββββββββββββββββββ
πͺ Author: Sarviya
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 21 Feb 2025 10:16:17 GMT
ββββββββββββββββββββββββ
β Tags: #process_injection #process_hollowing #malware #cybersecurity #malware_analysis
Medium
Process HollowingβββMalware Reverse Engineering
What is Process Hollowing?
β€· Title: Malware DevelopmentβββProcess Injection
ββββββββββββββββββββββββ
πͺ Author: Reze-
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 13 Mar 2025 17:35:14 GMT
ββββββββββββββββββββββββ
β Tags: #process_injection #low_level_programming #hacking #malware #malware_development
ββββββββββββββββββββββββ
πͺ Author: Reze-
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 13 Mar 2025 17:35:14 GMT
ββββββββββββββββββββββββ
β Tags: #process_injection #low_level_programming #hacking #malware #malware_development
Medium
Malware DevelopmentβββProcess Injection
Introduction to Malware Developmentβββ0x01 Process Injection (Local & Remote)
β€· Title: Waiting Thread Hijacking: A Stealthier Code Injection Technique
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 16 Apr 2025 00:43:48 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Open Source Tool #cybersecurity #EDR evasion #malware #Process injection #Thread Hijacking
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 16 Apr 2025 00:43:48 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #Open Source Tool #cybersecurity #EDR evasion #malware #Process injection #Thread Hijacking
Daily CyberSecurity
Waiting Thread Hijacking: A Stealthier Code Injection Technique
Discover Waiting Thread Hijacking, a novel process injection technique that bypasses EDR systems. Learn how it stealthily executes code in remote processes.
β€· Title: Teknik Reflective DLL Injection: Cara Kerja dan Implementasi Process Injection
ββββββββββββββββββββββββ
πͺ Author: r3N4l_Dy
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 08 May 2025 04:58:51 GMT
ββββββββββββββββββββββββ
β Tags: #indonesia #hacker #ethical_hacking #keamanan_siber #process_injection
ββββββββββββββββββββββββ
πͺ Author: r3N4l_Dy
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 08 May 2025 04:58:51 GMT
ββββββββββββββββββββββββ
β Tags: #indonesia #hacker #ethical_hacking #keamanan_siber #process_injection
Medium
Teknik Reflective DLL Injection: Cara Kerja dan Implementasi Process Injection
Hallo saya Ahmad Renaldy Priono saya adalah Analisis Keamanan Siber dan Bug Hunter. Kali ini saya akan membahas tentang Process Injectionβ¦
β€· Title: NullGate: A Modern Approach to Indirect Syscalls with Defender Bypass
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 31 May 2025 00:18:46 +0000
ββββββββββββββββββββββββ
β Tags: #Malware Offense #cybersecurity #FreshyCalls #malware #NTAPI #NullGate #Process injection #red teaming #security research #syscalls #Windows Defender
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 31 May 2025 00:18:46 +0000
ββββββββββββββββββββββββ
β Tags: #Malware Offense #cybersecurity #FreshyCalls #malware #NTAPI #NullGate #Process injection #red teaming #security research #syscalls #Windows Defender
Penetration Testing Tools
NullGate: A Modern Approach to Indirect Syscalls with Defender Bypass
NullGate offers a modern way to use NTAPI with indirect syscalls, FreshyCalls for dynamic retrieval, and a novel technique to bypass Windows Defender memory scanning.
β€· Title: ZigStrike: New Zig-Based Shellcode Loader Revolutionizes EDR Evasion with Advanced Injection Techniques
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 28 Jun 2025 00:14:58 +0000
ββββββββββββββββββββββββ
β Tags: #Open Source Tool #Anti_Sandbox #cybersecurity #EDR Bypass #malware #Offensive Security #Payload Delivery #Process injection #shellcode loader #Zig Language #ZigStrike
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 28 Jun 2025 00:14:58 +0000
ββββββββββββββββββββββββ
β Tags: #Open Source Tool #Anti_Sandbox #cybersecurity #EDR Bypass #malware #Offensive Security #Payload Delivery #Process injection #shellcode loader #Zig Language #ZigStrike
Penetration Testing Tools
ZigStrike: New Zig-Based Shellcode Loader Revolutionizes EDR Evasion with Advanced Injection Techniques
ZigStrike, a new shellcode loader in Zig, offers advanced injection techniques and anti-sandbox features to bypass EDR, providing stealthy execution via local/remote thread and memory mapping.
β€· Title: XWormβs Shape-Shifting Arsenal: RAT Evolves to Deliver LockBit Ransomware, Evades Detection
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 07 Jul 2025 01:33:36 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #AMSI Bypass #cybersecurity #DLL side_loading #ETW Tampering #LockBit #malware #Process injection #ransomware #rat #Remote Access Trojan #XWorm
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 07 Jul 2025 01:33:36 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #AMSI Bypass #cybersecurity #DLL side_loading #ETW Tampering #LockBit #malware #Process injection #ransomware #rat #Remote Access Trojan #XWorm
Daily CyberSecurity
XWorm's Shape-Shifting Arsenal: RAT Evolves to Deliver LockBit Ransomware, Evades Detection
Splunk uncovers XWorm's evolution: a modular RAT now delivering LockBit ransomware. It uses flexible delivery, AMSI/ETW bypasses, and process injection to evade detection.
β€· Title: Process Injection: Harnessing the Power of Shellcode
ββββββββββββββββββββββββ
πͺ Author: Redfox Security
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 17 Jul 2025 10:58:05 GMT
ββββββββββββββββββββββββ
β Tags: #reverse_engineering #process_injection #shellcode #hacking #malware_analysis
ββββββββββββββββββββββββ
πͺ Author: Redfox Security
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 17 Jul 2025 10:58:05 GMT
ββββββββββββββββββββββββ
β Tags: #reverse_engineering #process_injection #shellcode #hacking #malware_analysis
Medium
Process Injection: Harnessing the Power of Shellcode
Process injection is an advanced penetration testing technique used by skilled security professionals to stealthily insert malicious codeβ¦
β€· Title: Process Injection: Harnessing The Power of Shellcode
ββββββββββββββββββββββββ
πͺ Author: Redfox Security
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 14 Aug 2025 09:35:01 GMT
ββββββββββββββββββββββββ
β Tags: #ethical_hacking #process_injection #shellcode #shellcode_injection #cybersecurity
ββββββββββββββββββββββββ
πͺ Author: Redfox Security
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 14 Aug 2025 09:35:01 GMT
ββββββββββββββββββββββββ
β Tags: #ethical_hacking #process_injection #shellcode #shellcode_injection #cybersecurity
Medium
Process Injection: Harnessing The Power of Shellcode
Process injection is an advanced penetration testing technique used by skilled security professionals to stealthily insert malicious codeβ¦
β€· Title: Unmasking the DarkCloud: A New Stealer Is Hiding Malware in JPG Files
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 16 Sep 2025 03:20:14 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #cybersecurity #DarkCloud Stealer #Infostealer #malware #phishing #Process injection #steganography
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 16 Sep 2025 03:20:14 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #cybersecurity #DarkCloud Stealer #Infostealer #malware #phishing #Process injection #steganography
Daily CyberSecurity
Unmasking the DarkCloud: A New Stealer Is Hiding Malware in JPG Files
A new report reveals a multi-stage phishing campaign distributing DarkCloud Stealer. The malware hides its loader in a JPG file and injects code into MSBuild.exe for stealth.
β€· Title: MissionEvasion: The New Windows Tool That Evades Detection
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 22 Sep 2025 02:57:43 +0000
ββββββββββββββββββββββββ
β Tags: #Open Source Tool #cybersecurity #malware #MissionEvasion #Process Hollowing #Process injection #Red Team #windows
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 22 Sep 2025 02:57:43 +0000
ββββββββββββββββββββββββ
β Tags: #Open Source Tool #cybersecurity #malware #MissionEvasion #Process Hollowing #Process injection #Red Team #windows
Penetration Testing Tools
MissionEvasion: The New Windows Tool That Evades Detection
MissionEvasion is a powerful new tool for Windows that uses advanced process hollowing and overwriting techniques to bypass defenses and inject code.
β€· Title: Self Proccess Injection With CPP
ββββββββββββββββββββββββ
πͺ Author: 0xc4t
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 09 Nov 2025 13:44:31 GMT
ββββββββββββββββββββββββ
β Tags: #process_injection #malware #red_team #hacking #code_injection
ββββββββββββββββββββββββ
πͺ Author: 0xc4t
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 09 Nov 2025 13:44:31 GMT
ββββββββββββββββββββββββ
β Tags: #process_injection #malware #red_team #hacking #code_injection
Medium
Self Proccess Injection With CPP
Self process injection occurs when a program loads or executes a malicious payload in its own address space (rather than writing to orβ¦
β€· Title: Lumma Stealer Resurfaces After Doxxing with New Browser Fingerprinting to Target High-Value Victims
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 17 Nov 2025 00:10:06 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #anti_analysis #browser fingerprinting #doxxing #Infostealer #Lumma Stealer #Process injection #Trend Micro
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 17 Nov 2025 00:10:06 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #anti_analysis #browser fingerprinting #doxxing #Infostealer #Lumma Stealer #Process injection #Trend Micro
Daily CyberSecurity
Lumma Stealer Resurfaces After Doxxing with New Browser Fingerprinting to Target High-Value Victims
Despite a recent doxxing attempt, Lumma Stealer has resurfaced, integrating browser fingerprinting into its C&C to collect WebGL/Canvas signatures for sandbox evasion and victim assessment.
β€· Title: Extreme Stealth: Python Malware Hides Inside PNG-Disguised RAR, Injects Payload into cvtres.exe
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 24 Nov 2025 00:01:01 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #cvtres.exe #Multi_Layer Encoding #Obfuscation #Process injection #Python Malware #RAR Archive #steganography
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 24 Nov 2025 00:01:01 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #cvtres.exe #Multi_Layer Encoding #Obfuscation #Process injection #Python Malware #RAR Archive #steganography
Daily CyberSecurity
Extreme Stealth: Python Malware Hides Inside PNG-Disguised RAR, Injects Payload into cvtres.exe
K7 Labs exposed a Python malware using multi-layer encoding (Base64/BZ2/Zlib) and a PNG-disguised RAR archive. The payload executes in memory and achieves stealth by injecting into cvtres.exe.
β€· Title: Next-Gen Stealer Arkanix Bypasses Chrome App-Bound Encryption Using C++ Process Injection
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 02 Dec 2025 02:02:06 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #App_Bound Encryption #Arkanix Stealer #C# malware #Chrome Elevator #G DATA #Infostealer #Process injection
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 02 Dec 2025 02:02:06 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #App_Bound Encryption #Arkanix Stealer #C# malware #Chrome Elevator #G DATA #Infostealer #Process injection
Daily CyberSecurity
Next-Gen Stealer Arkanix Bypasses Chrome App-Bound Encryption Using C++ Process Injection
G DATA exposed Arkanix, a fast-evolving C++ stealer. Its premium version uses process injection and Chrome Elevator to bypass Chrome App-Bound Encryption (ABE) and steal crypto wallets and Wi-Fi passwords.