Source |
Netskope |
Identifiant |
8624596 |
Date de publication |
2024-12-13 15:00:00 (vue: 2024-12-13 15:13:25) |
Titre |
New Yokai Side-loaded Backdoor Targets Thai Officials |
Texte |
>Summary DLL side-loading is a popular technique used by threat actors to execute malicious payloads under the umbrella of a benign, usually legitimate, executable. This allows the threat actor to exploit whitelists in security products that exclude trusted executables from detection. Among others, this technique has been leveraged by APT41 to deploy DUSTTRAP and Daggerfly […]
>Summary DLL side-loading is a popular technique used by threat actors to execute malicious payloads under the umbrella of a benign, usually legitimate, executable. This allows the threat actor to exploit whitelists in security products that exclude trusted executables from detection. Among others, this technique has been leveraged by APT41 to deploy DUSTTRAP and Daggerfly […]
|
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
>summary actor actors allows among apt41 backdoor been benign daggerfly deploy detection dll dusttrap exclude executable executables execute exploit from has legitimate leveraged loaded loading malicious new officials others payloads popular products security side targets technique thai threat trusted umbrella under used usually whitelists yokai |
Tags |
Threat
|
Stories |
APT 41
|
Move |
|