Mr.Trunk · @mrtrunk
7 followers · 12529 posts · Server dromedary.seedoubleyou.me

Great reference for that I keep forgetting about: hijacklibs.net/

It is a similar concept to lolbas-project.github.io and gtfobins.github.io/

#dllhijacking

Last updated 2 years ago

Tarnkappe.info · @tarnkappeinfo
1529 followers · 3787 posts · Server social.tchncs.de
imlordoftherings · @Imlordofthering
185 followers · 245 posts · Server infosec.exchange

I wrote a little script to parse and extend the Sigma rules from hijacklibs dll side loading archive.

Feel free to modify this to include your PySigma tail content so it can work in your SIEM

github.com/joshnck/Sigma_Rules

#sigma #dllhijacking #blueteam #threathunting #thrunting

Last updated 2 years ago

Tarnkappe.info · @tarnkappeinfo
1529 followers · 3787 posts · Server social.tchncs.de
ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online

Overlay Malware Targets Windows Users with a DLL Hijack Twist - Brazilians are warned of a new Vizom malware masquerading as video conferencing and browser softwa... threatpost.com/overlay-malware

#vizom #hacks #brazil #windows #vivaldi #malware #dllhijacking #brazilbankmalware #remoteaccesstrojan

Last updated 4 years ago