No video

DLL Sideloading for stable persistence

  Рет қаралды 1,150

S3cur3Th1sSh1t

S3cur3Th1sSh1t

Ай бұрын

Part II of DLL Sideloading introductions. This time it's specifically about persistence instead of initial access payloads. In those cases, especially for pre-installed applications, it's needed to have a stable process which doesn't crash or has a LoaderLock. We are going through some typical issues plus provide two approaches for stable execution.
0:21 - Start, Introduction
6:30 - Sideloading example for Version.dll in C++
11:30 - MessageBox success but multiple C2 connections
13:25 - Shellcode execution instead with multiple connections but the process died
16:00 - Troubleshooting the potential issue
24:00 - More stable Alternative No. one: Payload execution from another function than DllMain
35:40 - Alternative to API monitor for targeted payload function execution
43:50 - Chromium/Electron based protection mechanisms as root cause for crashes
46:35 - Automating payload generation with my private Packer
54:22 - Ideas for avoiding multiple time execution
01:09:00 - Avoid execution in any protected child process
01:11:00 - Even better: Using a Mutex for single time execution
01:18:42 - Summarization
Links mentioned:
- • DLL Sideloading
- github.com/mre...
- www.netspi.com...
- elliotonsecuri...
- gist.github.co...

Пікірлер: 3
@detective5253
@detective5253 Ай бұрын
Legend! I absolutely enjoyed every minute of this hour and a half
@aqua_ninja
@aqua_ninja Ай бұрын
thumb up first, watch later
@user-wp5en1lt8r
@user-wp5en1lt8r 6 күн бұрын
hey im from india and would like to learn maldev but most of the courses which i see online are worth 100s of dollars which is a great deal of money for many here in india are there any resources to learn mal dev and get good at it
DLL Sideloading
1:15:45
S3cur3Th1sSh1t
Рет қаралды 6 М.
Joker can't swim!#joker #shorts
00:46
Untitled Joker
Рет қаралды 35 МЛН
小蚂蚁被感动了!火影忍者 #佐助 #家庭
00:54
火影忍者一家
Рет қаралды 52 МЛН
SCHOOLBOY. Последняя часть🤓
00:15
⚡️КАН АНДРЕЙ⚡️
Рет қаралды 10 МЛН
Fortunately, Ultraman protects me  #shorts #ultraman #ultramantiga #liveaction
00:10
NimSyscallPacker Usage && Feature Explanation
1:33:55
S3cur3Th1sSh1t
Рет қаралды 4,1 М.
Become a bash scripting pro - full course
36:00
CODE IS EVERYTHING
Рет қаралды 50 М.
Enter The Arena: Simplifying Memory Management (2023)
1:47:50
Ryan Fleury
Рет қаралды 32 М.
this new SSH exploit is absolutely wild
11:59
Low Level Learning
Рет қаралды 328 М.
Rust and RAII Memory Management - Computerphile
24:22
Computerphile
Рет қаралды 223 М.
Creator of git, Linus Torvalds Presents the Fundamentals of git
1:10:15
Developers Alliance
Рет қаралды 74 М.
AV Evasion 101 - VBS/VBA - Office Macros
3:01:16
S3cur3Th1sSh1t
Рет қаралды 4,2 М.
Joker can't swim!#joker #shorts
00:46
Untitled Joker
Рет қаралды 35 МЛН