SecurityOnline: CobaltStrike BOF: spawn Beacons using DLL Application Directory Hijacking https://securityonline.info/cobaltstrike-bof-spawn-beacons-using-dll-application-directory-hijacking/ #CobaltStrikeBOF #Exploitation #DLLhijacking #spawnBeacons
#cobaltstrikebof #exploitation #dllhijacking #spawnbeacons
Great reference for #DLLHijacking that I keep forgetting about: https://hijacklibs.net/
It is a similar concept to https://lolbas-project.github.io and https://gtfobins.github.io/
📬 StrelaStealer klaut E-Mail-Konten aus Outlook und Thunderbird
#Malware #DLLHijacking #EMailKonten #Infostealer #Outlook #polyglotteDatei #StrelaStealer #Thunderbird https://tarnkappe.info/artikel/malware/strelastealer-klaut-e-mail-konten-aus-outlook-und-thunderbird-259060.html
#thunderbird #StrelaStealer #polyglotteDatei #outlook #infostealer #EMailKonten #dllhijacking #malware
I wrote a little script to parse and extend the Sigma rules from hijacklibs dll side loading archive.
Feel free to modify this to include your PySigma tail content so it can work in your SIEM
https://github.com/joshnck/Sigma_Rules/blob/main/scripts/get-hijacklibs-sigma-rules.ps1
#sigma #dllhijacking #blueteam #threathunting #thrunting
📬 AnyConnect: Ciscos “sicheres Arbeiten” braucht ein Update
#Hacking #Softwareentwicklung #AnyConnect #CISA #Cisco #DLLHijacking #IPsec #SSL #VPNClient https://tarnkappe.info/artikel/hacking/anyconnect-ciscos-sicheres-arbeiten-braucht-ein-update-258317.html
#vpnclient #ssl #ipsec #dllhijacking #cisco #cisa #anyconnect #softwareentwicklung #hacking
Overlay Malware Targets Windows Users with a DLL Hijack Twist - Brazilians are warned of a new Vizom malware masquerading as video conferencing and browser softwa... https://threatpost.com/overlay-malware-dll-hijack/160288/ #remoteaccesstrojan #brazilbankmalware #dllhijacking #malware #vivaldi #windows #brazil #hacks #vizom
#vizom #hacks #brazil #windows #vivaldi #malware #dllhijacking #brazilbankmalware #remoteaccesstrojan