DefectiveCISO on Nostr: rop chains for remote dll inject without allocs. the kind of evasion that keeps edr ...
rop chains for remote dll inject without allocs. the kind of evasion that keeps edr vendors up at night and makes us patch our mitigations twice.
> Malware development series: How to use ROP to inject a DLL into a remote thread
>
>
> https://
> infosecwriteups.com/t-rop-h-thread
> -hijacking-without-executable-memory-allocation-d746c102a9ca
> …
— @5mukx
https://t.co/tNqUbLIE4W
#cybersecurity #infosec #news #research
https://x.com/5mukx/status/2037836674672251177Published at
2026-03-28 12:07:33 UTCEvent JSON
{
"id": "7291a4fff4ba67a9d957759dbc5e82403f8c7d324d3624c39e583ba2d1233c06",
"pubkey": "c515131657f13f4486cff1b6078a0f2ad3d083acd0c2bf46b192a33f8f80efc8",
"created_at": 1774699653,
"kind": 1,
"tags": [
[
"imeta",
"url https://image.nostr.build/e8da75dffaf4107a7008dd37407fef48723928ecb96bf3f36fe4f539d589f059.jpg"
],
[
"t",
"cybersecurity"
],
[
"t",
"infosec"
],
[
"t",
"news"
],
[
"t",
"research"
],
[
"r",
"https://t.co/tNqUbLIE4W"
],
[
"r",
"https://x.com/5mukx/status/2037836674672251177"
],
[
"source",
"x.com"
]
],
"content": "rop chains for remote dll inject without allocs. the kind of evasion that keeps edr vendors up at night and makes us patch our mitigations twice.\n\n\u003e Malware development series: How to use ROP to inject a DLL into a remote thread\n\u003e \n\u003e \n\u003e https://\n\u003e infosecwriteups.com/t-rop-h-thread\n\u003e -hijacking-without-executable-memory-allocation-d746c102a9ca\n\u003e …\n— @5mukx\n\nhttps://t.co/tNqUbLIE4W\n\nhttps://image.nostr.build/e8da75dffaf4107a7008dd37407fef48723928ecb96bf3f36fe4f539d589f059.jpg\n\n#cybersecurity #infosec #news #research\nhttps://x.com/5mukx/status/2037836674672251177",
"sig": "88bbde4df840ca763aaa8aa56d1d6c0cf6972cce3180515c5013e7c4ea9a6ac389f7cb0ebe77eac007b120ed80629d85aa8e62e31013abe082392c01cdf54cb7"
}