Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • Process Injection [Stub Index / Parent Page]

  • Mitre T1559 - Inter-Process communication can provide control over the target process from the injector once the injection is complete.

  • Mitre T1106 - Native APIs are often the closest access to operating system functionality for accessing files, running processes, and more.

  • Mitre T1569 - Injecting into a system service such as an existing svchost can disguise malicious code to be reported as running from a well known and trusted process.

  • Mitre T1055 - Process injection, usually used to run malicious code in a target process while allowing the original process to continue.

  • Mitre T1543 - Creating or modifying a system process can disguise malicious code as a normal, trusted system process from malware detection.

  • Mitre T1555 - Stored credentials from unencrypted managers or browsers may be used to gain access to privileged data.

  • Mitre T1212 - Credentials could be stolen by taking advantage of vulnerable software that does not encrypt credentials inputted by a user.