Video wird geladen...
Video konnte nicht geladen werden
🥷 Now we can inject a payload into a remote process without using VirtualAllocEx and WriteProcessMemory. No need to suspend the target process New technique to evade EDRs: Github: TwoSevenOneT/InjectSetConsole #redteam #pentest #antimalware
48,617 Aufrufe • vor 9 Tagen •via X (Twitter)
2 Kommentare

Two Seven One Threevor 9 Tagen
InjectSetConsole performs process code injection by leveraging a Windows named pipe. Unlike traditional techniques, it does not use the VirtualAllocEx and WriteProcessMemory APIs. #securityblog #cybersecurity

Mehmet Ergenevor 8 Tagen
Didn't work on my Win11 25H2 🤔
