正在加载视频...
视频加载失败
🥷 Now we can inject a payload into a remote process without using VirtualAllocEx and WriteProcessMemory. No need to suspend the target process New technique to evade EDRs: Github: TwoSevenOneT/InjectSetConsole #redteam #pentest #antimalware
2 条评论

Two Seven One Three8 天前
InjectSetConsole performs process code injection by leveraging a Windows named pipe. Unlike traditional techniques, it does not use the VirtualAllocEx and WriteProcessMemory APIs. #securityblog #cybersecurity

Mehmet Ergene8 天前
Didn't work on my Win11 25H2 🤔
