Hunting For Process Injection Techniques

Use when detect process injection techniques (T1055) including CreateRemoteThread, process hollowing, and DLL injection via Sysmon Event IDs 8 and 10 and EDR process telemetry. Use when detecting process injection techniques (t1055) including createremotethread, process hollowing, and.

oyi77 7f6acc4 4.4 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/_deprecated/hunting-for-process-injection-techniques commit 7f6acc4caa

Frequently asked questions

npx skillmds add oyi77/hunting-for-process-injection-techniques