⤷ Title: Malware Development — Process Injection
════════════════════════
𐀪 Author: Reze-
════════════════════════
ⴵ Time: Thu, 13 Mar 2025 17:35:14 GMT
════════════════════════
⌗ Tags: #process_injection #low_level_programming #hacking #malware #malware_development
════════════════════════
𐀪 Author: Reze-
════════════════════════
ⴵ Time: Thu, 13 Mar 2025 17:35:14 GMT
════════════════════════
⌗ Tags: #process_injection #low_level_programming #hacking #malware #malware_development
Medium
Malware Development — Process Injection
Introduction to Malware Development — 0x01 Process Injection (Local & Remote)
⤷ Title: Waiting Thread Hijacking: A Stealthier Code Injection Technique
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 16 Apr 2025 00:43:48 +0000
════════════════════════
⌗ Tags: #Malware #Open Source Tool #cybersecurity #EDR evasion #malware #Process injection #Thread Hijacking
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 16 Apr 2025 00:43:48 +0000
════════════════════════
⌗ Tags: #Malware #Open Source Tool #cybersecurity #EDR evasion #malware #Process injection #Thread Hijacking
Daily CyberSecurity
Waiting Thread Hijacking: A Stealthier Code Injection Technique
Discover Waiting Thread Hijacking, a novel process injection technique that bypasses EDR systems. Learn how it stealthily executes code in remote processes.
⤷ Title: Teknik Reflective DLL Injection: Cara Kerja dan Implementasi Process Injection
════════════════════════
𐀪 Author: r3N4l_Dy
════════════════════════
ⴵ Time: Thu, 08 May 2025 04:58:51 GMT
════════════════════════
⌗ Tags: #indonesia #hacker #ethical_hacking #keamanan_siber #process_injection
════════════════════════
𐀪 Author: r3N4l_Dy
════════════════════════
ⴵ Time: Thu, 08 May 2025 04:58:51 GMT
════════════════════════
⌗ Tags: #indonesia #hacker #ethical_hacking #keamanan_siber #process_injection
Medium
Teknik Reflective DLL Injection: Cara Kerja dan Implementasi Process Injection
Hallo saya Ahmad Renaldy Priono saya adalah Analisis Keamanan Siber dan Bug Hunter. Kali ini saya akan membahas tentang Process Injection…
⤷ Title: NullGate: A Modern Approach to Indirect Syscalls with Defender Bypass
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 31 May 2025 00:18:46 +0000
════════════════════════
⌗ Tags: #Malware Offense #cybersecurity #FreshyCalls #malware #NTAPI #NullGate #Process injection #red teaming #security research #syscalls #Windows Defender
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 31 May 2025 00:18:46 +0000
════════════════════════
⌗ Tags: #Malware Offense #cybersecurity #FreshyCalls #malware #NTAPI #NullGate #Process injection #red teaming #security research #syscalls #Windows Defender
Penetration Testing Tools
NullGate: A Modern Approach to Indirect Syscalls with Defender Bypass
NullGate offers a modern way to use NTAPI with indirect syscalls, FreshyCalls for dynamic retrieval, and a novel technique to bypass Windows Defender memory scanning.
⤷ Title: ZigStrike: New Zig-Based Shellcode Loader Revolutionizes EDR Evasion with Advanced Injection Techniques
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 28 Jun 2025 00:14:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Anti_Sandbox #cybersecurity #EDR Bypass #malware #Offensive Security #Payload Delivery #Process injection #shellcode loader #Zig Language #ZigStrike
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 28 Jun 2025 00:14:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Anti_Sandbox #cybersecurity #EDR Bypass #malware #Offensive Security #Payload Delivery #Process injection #shellcode loader #Zig Language #ZigStrike
Penetration Testing Tools
ZigStrike: New Zig-Based Shellcode Loader Revolutionizes EDR Evasion with Advanced Injection Techniques
ZigStrike, a new shellcode loader in Zig, offers advanced injection techniques and anti-sandbox features to bypass EDR, providing stealthy execution via local/remote thread and memory mapping.
⤷ Title: XWorm’s Shape-Shifting Arsenal: RAT Evolves to Deliver LockBit Ransomware, Evades Detection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 01:33:36 +0000
════════════════════════
⌗ Tags: #Malware #AMSI Bypass #cybersecurity #DLL side_loading #ETW Tampering #LockBit #malware #Process injection #ransomware #rat #Remote Access Trojan #XWorm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 01:33:36 +0000
════════════════════════
⌗ Tags: #Malware #AMSI Bypass #cybersecurity #DLL side_loading #ETW Tampering #LockBit #malware #Process injection #ransomware #rat #Remote Access Trojan #XWorm
Daily CyberSecurity
XWorm's Shape-Shifting Arsenal: RAT Evolves to Deliver LockBit Ransomware, Evades Detection
Splunk uncovers XWorm's evolution: a modular RAT now delivering LockBit ransomware. It uses flexible delivery, AMSI/ETW bypasses, and process injection to evade detection.
⤷ Title: Process Injection: Harnessing the Power of Shellcode
════════════════════════
𐀪 Author: Redfox Security
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 10:58:05 GMT
════════════════════════
⌗ Tags: #reverse_engineering #process_injection #shellcode #hacking #malware_analysis
════════════════════════
𐀪 Author: Redfox Security
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 10:58:05 GMT
════════════════════════
⌗ Tags: #reverse_engineering #process_injection #shellcode #hacking #malware_analysis
Medium
Process Injection: Harnessing the Power of Shellcode
Process injection is an advanced penetration testing technique used by skilled security professionals to stealthily insert malicious code…
⤷ Title: Process Injection: Harnessing The Power of Shellcode
════════════════════════
𐀪 Author: Redfox Security
════════════════════════
ⴵ Time: Thu, 14 Aug 2025 09:35:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #process_injection #shellcode #shellcode_injection #cybersecurity
════════════════════════
𐀪 Author: Redfox Security
════════════════════════
ⴵ Time: Thu, 14 Aug 2025 09:35:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #process_injection #shellcode #shellcode_injection #cybersecurity
Medium
Process Injection: Harnessing The Power of Shellcode
Process injection is an advanced penetration testing technique used by skilled security professionals to stealthily insert malicious code…
⤷ Title: Unmasking the DarkCloud: A New Stealer Is Hiding Malware in JPG Files
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 16 Sep 2025 03:20:14 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #DarkCloud Stealer #Infostealer #malware #phishing #Process injection #steganography
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 16 Sep 2025 03:20:14 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #DarkCloud Stealer #Infostealer #malware #phishing #Process injection #steganography
Daily CyberSecurity
Unmasking the DarkCloud: A New Stealer Is Hiding Malware in JPG Files
A new report reveals a multi-stage phishing campaign distributing DarkCloud Stealer. The malware hides its loader in a JPG file and injects code into MSBuild.exe for stealth.
⤷ Title: MissionEvasion: The New Windows Tool That Evades Detection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 22 Sep 2025 02:57:43 +0000
════════════════════════
⌗ Tags: #Open Source Tool #cybersecurity #malware #MissionEvasion #Process Hollowing #Process injection #Red Team #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 22 Sep 2025 02:57:43 +0000
════════════════════════
⌗ Tags: #Open Source Tool #cybersecurity #malware #MissionEvasion #Process Hollowing #Process injection #Red Team #windows
Penetration Testing Tools
MissionEvasion: The New Windows Tool That Evades Detection
MissionEvasion is a powerful new tool for Windows that uses advanced process hollowing and overwriting techniques to bypass defenses and inject code.
⤷ Title: Self Proccess Injection With CPP
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Sun, 09 Nov 2025 13:44:31 GMT
════════════════════════
⌗ Tags: #process_injection #malware #red_team #hacking #code_injection
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Sun, 09 Nov 2025 13:44:31 GMT
════════════════════════
⌗ Tags: #process_injection #malware #red_team #hacking #code_injection
Medium
Self Proccess Injection With CPP
Self process injection occurs when a program loads or executes a malicious payload in its own address space (rather than writing to or…
⤷ Title: Lumma Stealer Resurfaces After Doxxing with New Browser Fingerprinting to Target High-Value Victims
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:10:06 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #browser fingerprinting #doxxing #Infostealer #Lumma Stealer #Process injection #Trend Micro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:10:06 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #browser fingerprinting #doxxing #Infostealer #Lumma Stealer #Process injection #Trend Micro
Daily CyberSecurity
Lumma Stealer Resurfaces After Doxxing with New Browser Fingerprinting to Target High-Value Victims
Despite a recent doxxing attempt, Lumma Stealer has resurfaced, integrating browser fingerprinting into its C&C to collect WebGL/Canvas signatures for sandbox evasion and victim assessment.
⤷ Title: Extreme Stealth: Python Malware Hides Inside PNG-Disguised RAR, Injects Payload into cvtres.exe
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:01:01 +0000
════════════════════════
⌗ Tags: #Malware #cvtres.exe #Multi_Layer Encoding #Obfuscation #Process injection #Python Malware #RAR Archive #steganography
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:01:01 +0000
════════════════════════
⌗ Tags: #Malware #cvtres.exe #Multi_Layer Encoding #Obfuscation #Process injection #Python Malware #RAR Archive #steganography
Daily CyberSecurity
Extreme Stealth: Python Malware Hides Inside PNG-Disguised RAR, Injects Payload into cvtres.exe
K7 Labs exposed a Python malware using multi-layer encoding (Base64/BZ2/Zlib) and a PNG-disguised RAR archive. The payload executes in memory and achieves stealth by injecting into cvtres.exe.
⤷ Title: Next-Gen Stealer Arkanix Bypasses Chrome App-Bound Encryption Using C++ Process Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 02:02:06 +0000
════════════════════════
⌗ Tags: #Malware #App_Bound Encryption #Arkanix Stealer #C# malware #Chrome Elevator #G DATA #Infostealer #Process injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 02:02:06 +0000
════════════════════════
⌗ Tags: #Malware #App_Bound Encryption #Arkanix Stealer #C# malware #Chrome Elevator #G DATA #Infostealer #Process injection
⤷ Title: Operation DUPEHIKE Hits Russian HR: Bonus Lure Delivers DUPERUNNER and Adaptix C2 via Process Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 00:35:53 +0000
════════════════════════
⌗ Tags: #Malware #Adaptix C2 #DUPERUNNER #HR Targets #LNK Exploit #Process injection #russia #spear_phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 00:35:53 +0000
════════════════════════
⌗ Tags: #Malware #Adaptix C2 #DUPERUNNER #HR Targets #LNK Exploit #Process injection #russia #spear_phishing
Daily CyberSecurity
Operation DUPEHIKE Hits Russian HR: Bonus Lure Delivers DUPERUNNER and Adaptix C2 via Process Injection
SEQRITE exposed Operation DUPEHIKE targeting Russian HR with a malicious LNK bonus lure. The DUPERUNNER implant uses PowerShell and process injection into explorer.exe to deploy the Adaptix C2 Beacon.
⤷ Title: The Ghost in the Kernel: Inside KittyLoader’s Elite Anti-Analysis Arsenal
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:30:33 +0000
════════════════════════
⌗ Tags: #Open Source Tool #anti_forensics #Assembly #C_Runtime Hijacking #ChaCha20 #EDR evasion #KittyLoader #LdrCallEnclave #malware analysis #PEB Unlinking #Process injection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:30:33 +0000
════════════════════════
⌗ Tags: #Open Source Tool #anti_forensics #Assembly #C_Runtime Hijacking #ChaCha20 #EDR evasion #KittyLoader #LdrCallEnclave #malware analysis #PEB Unlinking #Process injection
Information Security News
The Ghost in the Kernel: Inside KittyLoader’s Elite Anti-Analysis Arsenal
KittyLoader is a highly evasive loader written in C / Assembly. Features Hijacks early execution by replacing the C runtime entrypoint (__scrt_common_main_seh) with custom assembly. Hides all modu…
⤷ Title: DbgNexum: Shellcode injection using the Windows Debugging API
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 05 Jan 2026 03:32:19 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Cyber Security 2026 #DbgNexum #EDR evasion #Hardware Breakpoints #Malware Research #Process injection #red teaming #shellcode #Windows API
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 05 Jan 2026 03:32:19 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Cyber Security 2026 #DbgNexum #EDR evasion #Hardware Breakpoints #Malware Research #Process injection #red teaming #shellcode #Windows API
Penetration Testing Tools
DbgNexum: Shellcode injection using the Windows Debugging API
DbgNexum is a 2026 PoC that uses Hardware Breakpoints and File Mapping to inject shellcode without standard APIs, making it invisible to most EDRs.
⤷ Title: Stealth Injection: Silver Fox APT Upgrades “ValleyRat” with Rare PoolParty Tech
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:17:36 +0000
════════════════════════
⌗ Tags: #Malware #cyber_espionage #Cybereason #Explorer.exe #Fake Installer #Malware Analysis #PoolParty Variant 7 #Process injection #Silver Fox APT #ValleyRAT #Winos 4.0
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:17:36 +0000
════════════════════════
⌗ Tags: #Malware #cyber_espionage #Cybereason #Explorer.exe #Fake Installer #Malware Analysis #PoolParty Variant 7 #Process injection #Silver Fox APT #ValleyRAT #Winos 4.0
Daily CyberSecurity
Stealth Injection: Silver Fox APT Upgrades "ValleyRat" with Rare PoolParty Tech
Silver Fox APT targets users with fake LINE installers delivering ValleyRat. New campaign uses rare "PoolParty" injection to evade detection.
⤷ Title: Process Injection’ın Evrimi: Reflective DLL’den Mockingjay’e EDR Atlatma Sanatı
════════════════════════
𐀪 Author: Melih Yusuf Ercan
════════════════════════
ⴵ Time: Thu, 19 Feb 2026 17:49:28 GMT
════════════════════════
⌗ Tags: #dll_injection #defence_evasion #process_injection #dll_hijacking #hacking
════════════════════════
𐀪 Author: Melih Yusuf Ercan
════════════════════════
ⴵ Time: Thu, 19 Feb 2026 17:49:28 GMT
════════════════════════
⌗ Tags: #dll_injection #defence_evasion #process_injection #dll_hijacking #hacking
Medium
Process Injection’ın Evrimi: Reflective DLL’den Mockingjay’e EDR Atlatma Sanatı
Siber güvenlik dünyasında artık klasik ‘dosya tabanlı’ zararlı yazılımların geçerliliği azaldı. Bugün EDR sistemlerini atlatabilmenin yolu…
⤷ Title: Linux Process Injection via ptrace: Unmasking Memory Patching & Shared Library Hijacking
════════════════════════
𐀪 Author: Pop123
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 20:41:50 GMT
════════════════════════
⌗ Tags: #linux #hacking #technology #cybersecurity #process_injection
════════════════════════
𐀪 Author: Pop123
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 20:41:50 GMT
════════════════════════
⌗ Tags: #linux #hacking #technology #cybersecurity #process_injection
Medium
Linux Process Injection via ptrace: Unmasking Memory Patching & Shared Library Hijacking
How threat actors abuse process tracing to rewrite executable instructions in volatile RAM, and how modern EDRs detect memory modification…