Source Byte
7.8K subscribers
852 photos
73 videos
678 files
1.68K links
هشیار کسی باید کز عشق بپرهیزد
وین طبع که من دارم با عقل نیامیزد
Saadi Shirazi 187
Download Telegram
Process Injection - Avoiding Kernel Triggered Memory Scans.

r-tec.net/r-tec-blog-process…


#windows , #process_injection , #memory_scan
Source Byte
https://www.safebreach.com/blog/process-injection-using-windows-thread-pools/
A set of fully-undetectable process injection techniques abusing Windows Thread Pools

https://github.com/SafeBreach-Labs/PoolParty

#process_injection , #tools
❤‍🔥2🎃1
New PoolParty Process Injection Techniques Outsmart Top EDR Solutions
thehackernews.com/2023/12/ne…

#EDR , #process_injection
Linux process injection: sshd injection for credential harvesting
credits : @_xpn_ , @jm33_m0

blog.xpnsec.com/linux-proces…

jm33.me/sshd-injection-and-p…


#process_injection ,
———
@islemolecule_source
Process injection techniques $
(꩜)ListPlanting ->( Mitre )
(꩜)Process Doppelganging ->( Mitre)
(꩜)Process Hollowing ->( GitHub)
(꩜)Extra Window Memory Injection -> ( Mitre )
(꩜)TLS callback ->( GitHub)
(꩜)APC injection -> ( earlybird )
(꩜) Thread Hijacking ->( GitHub )

(꩜) Transacted Hollowing (hasherezade)
(꩜) Process Ghosting (hasherezade)
(꩜) DLL hollowing (hasherezade)
(꩜) ChimeraPE (hasherezade)
(꩜) Process Overwriting (hasherezade)
(꩜) Process Chameleon (YouTube)

+Demo by hasherezade

------------------_---------------
Others:
Mockingjay


+ thread namecalling:
https://github.com/hasherezade/thread_namecalling.git



https://t.iss.one/Source_byte

#malware_dev #process_injection
6👍2🔥1