Filter
Exclude
Time range
-
Near
I built a working DLL injector in C from scratch. Same technique used by Emotet, Cobalt Strike, and custom C2 implants to hijack trusted processes like explorer.exe and svchost.exe. Here's the full injection chain explained 👇 OpenProcess → VirtualAllocEx → WriteProcessMemory → GetProcAddress → CreateRemoteThread Understanding how to build the tool is how you learn to detect it. #DLLInjection #MalwareDev #WindowsInternals #RedTeam #ProcessInjection #OffensiveSecurity youtu.be/OlMkj1jMyDI
8
73
3,285
Cyble Research & Intelligence Labs detected Maranhão Stealer, a Node.js–based credential stealer leveraging reflective DLL injection. #Infostealer #DLLSideloading #Reflective #DLLInjection #SocialEngineering #CredentialStealer cyble.com/blog/inside-maranh…
20
48
14,428
New Cyber Threat: Fake VPNs on GitHub Spreading Lumma Stealer Malware cysecurity.news/2025/07/new-… #antivirusprotection #cyberthreat #DLLinjection
5
4
3
865
🚨 Mavinject.exe, a legitimate Windows tool, is exploited by threat actors to inject malicious DLLs, enabling stealthy control over system behavior. Earth Preta & Lazarus groups are on the rise. ⚠️ #Windows #DLLInjection #NorthKorea link: ift.tt/OiPrAjz
1
2
142
13 Mar 2025
🚨 New Research Alert: Chrome DLL Manipulation Attack Exposed 🚨 Our latest report uncovers a sophisticated malware campaign that exploits Chrome’s DLL mechanism by manipulating chrome_elf.dll, leveraging Chrome’s GetInstallDetailsPayload function as an entry point. This malware, written in Nim, uses VM/sandbox detection, anti-debugging techniques, and process injection via multiple Windows APIs to evade detection. Key findings: 🔹 Dark web activity indicates active trade of this exploit. 🔹 High CVSS Score (8.7): Significant risk level. 🔹 Persistent Access: Even after Chrome appears closed, attackers maintain control. 📥 Download the full report to understand how this attack operates and how to defend against it. threatmon.io/google-chrome-d… #CyberThreatIntelligence #ThreatResearch #ChromeExploits #DLLInjection #CyberSecurity #DarkWebThreats #APT #ThreatDetection
4
2,875
Thread Hijacking without allocating executable memory using ROP chains. Learn how to inject a DLL into a remote thread while evading common IOCs. #CyberSecurity #Hacking #ROP #DLLInjection
How to use ROP to inject a DLL into a remote thread infosecwriteups.com/t-rop-h-…
1
88
21 Aug 2024
🎬 This eye-opening #video reveals how cybercriminals are executing #credentialtheft operations through #maliciousinjection malware installation. Only @SentryBay defends against this threat! #wednesdaywisdom #cybersecurity #malware #DLLinjection #dllhijacking
1
2
46
5 Jun 2024
How to execute malware from DLL File. Best explanation of how they works and how to perform the injection in different ways. youtu.be/Bre72UTLpKo?si=v1PQ… By: @lsecqt #maldev #dllinjection #windows
1
15
46
2,932
21 Sep 2023
#Infostealer #DLLinjection Legitimate Canon: http[://]videox-hamster[.]top/backup/Canon.exe DLL to be injected: http[://]videox-hamster[.]top/backup/CNQMUTIL.dll 1863a9d5bae044521f3f22c1fe26dfd9786bd28d0ec2f1605aa3328ee6ad0754
1
4
218
2 Jul 2023
Big update for elevationstation: I added in remote DLLinjection to elevate into another juicy SYSTEM shell, this time going incognito. writeup soon to follow! 😀 #redteam #elevationstation #infosec github.com/g3tsyst3m/elevati…
1
9
414
Replying to @Deathlord1973
Saved this Tweet to your Notion database. Tags: [Dllinjection]
25