#ProcessInjection
My new blog for CPR: introducing Waiting Thread Hijacking - a remote process injection technique targeting waiting threads: research.checkpoint.com/2025/waiting... #ProcessInjection
Waiting Thread Hijacking: A Stealthier Version of Thread Execution Hijacking - Check Point Research
Research by: hasherezade Key Points Introduction Process injection is one of the important techniques used by attackers. We can find its variants implemented in almost every malware. It serves purpose...
research.checkpoint.com
April 14, 2025 at 6:17 PM
A couple of blog posts for learning about Linux process injection (specifically sshd injection for credential harvesting)

blog.xpnsec.com/linux-proces...

jm33.me/sshd-injecti...

#processinjection #redteam #cybersecurity
November 18, 2023 at 10:14 AM
Just read this amazing article about #processinjection technique #doppelganger

This one here gives a detailed and understandable inside of this technique for #redteam and #blueteam equally.

vari-sh.github.io/posts/doppel...
Doppelganger: Cloning and Dumping LSASS to Evade Detection
Technique for cloning and dumping LSASS to evade detection using RTCore64.sys, NtCreateProcessEx and MiniDumpWriteDump.
vari-sh.github.io
April 14, 2025 at 1:58 PM
Αν κάποιος έχει ήδη μπει στον Windows υπολογιστή σου, μπορεί να μην χρειάζεται να κλέψει τα cookies από τον δίσκο…

https://hacks.gr/pos-oi-chakers-energopoioyn-to-devtools-ek-ton-eso-gia-na-klepsoyn-ta-logins-sas/

#Cybersecurity #ChromeDevToolsProtocol #ProcessInjection #SessionHijacking #Chromium
August 16, 2026 at 7:20 AM
Process Parameter Poisoning injects malicious code via Windows startup parameters, evading top EDRs. #CyberSecurity #EDR #ProcessInjection #WindowsSecurity #ThreatDetection #InfoSec thedailytechfeed.com/new-windows-...
July 10, 2026 at 12:52 PM
Original text by Dang Duong Minh Nhat

Hello everyone, today I’m sharing another red team technique—process injection—and how to leverage it against Protected Process Light (PPL). Let’s explore it in the blog post below. #dll #injection #PPL #ProcessInjection #redteam #windows
core-jmp.org/?p=136
Exploring Protected Process Light and Exploits
Red team technique—process injection—and how to leverage it against Protected Process Light (PPL)
core-jmp.org
February 2, 2026 at 1:45 PM
Ghost detects RWX memory, shellcode patterns, process hollowing and API hooks across Windows/Linux/macOS; integrates YARA and maps detections to MITRE ATT&CK. #tool #yara #processinjection https://bit.ly/48envh6
November 22, 2025 at 5:50 PM
My new blog for Check Point Research - check it out! // #ProcessInjection : #WaitingThreadHijacking

— from @hasherezade (https://x.com/hasherezade/status/1911837060345766377)
March 10, 2026 at 6:56 PM
My new blog for Check Point Research - check it out! // #ProcessInjection : #WaitingThreadHijacking

— from @hasherezade (https://x.com/hasherezade/status/1911837060345766377)
February 6, 2026 at 4:48 PM