Source |
The Hacker News |
Identifiant |
8648883 |
Date de publication |
2025-02-18 20:39:00 (vue: 2025-02-18 16:08:19) |
Titre |
Chinese Hackers Exploit MAVInject.exe to Evade Detection in Targeted Cyber Attacks |
Texte |
The Chinese state-sponsored threat actor known as Mustang Panda has been observed employing a novel technique to evade detection and maintain control over infected systems.
This involves the use of a legitimate Microsoft Windows utility called Microsoft Application Virtualization Injector (MAVInject.exe) to inject the threat actor\'s malicious payload into an external process, waitfor.exe,
The Chinese state-sponsored threat actor known as Mustang Panda has been observed employing a novel technique to evade detection and maintain control over infected systems.
This involves the use of a legitimate Microsoft Windows utility called Microsoft Application Virtualization Injector (MAVInject.exe) to inject the threat actor\'s malicious payload into an external process, waitfor.exe, |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
actor application attacks been called chinese control cyber detection employing evade exe exploit external hackers has infected inject injector involves known legitimate maintain malicious mavinject microsoft mustang novel observed over panda payload process sponsored state systems targeted technique threat use utility virtualization waitfor windows |
Tags |
Threat
|
Stories |
|
Move |
|