Get unlimited access
Open in app
Home
Notifications
Lists
Stories

Write
Michael Koczwara
Michael Koczwara

Aug 17, 2021

·
6 min read
·

Cobalt Strike Hunting — DLL Hijacking/Attack Analysis

DLL Hijacking via Cobalt Strike & Attack Analysis.

Agenda

  • Hijack Execution Flow: DLL Search Order Hijacking.
  • Payload extraction from the PCAP (VT, Triage, and CyberChef Analysis).
  • Attack Analysis.
  • DLL Hijacking via Cobalt Strike/Sysrep.

--

--

More from Michael Koczwara

Security Researcher [RED&BLUE]

Love podcasts or audiobooks? Learn on the go with our new app.

Try Knowable

Recommended from Medium

Mahad Ali

Mahad Ali

Beginner’s Guide to Cybersecurity

Casper Defi

Casper Defi

🚀@UniLend_Finance again featured @Cryptolaxy 's Top-13 #DeFi gainers by Daily Social Volume Growth

Steven Aiello

Steven Aiello

Cyber Security — Introduction to MITRE for

LABEL

LABEL

in

LABELFOUNDATION

Label Foundation IDO on RedKite to Launch on December 17th

Omer Hamerman

Omer Hamerman

in

FAUN Publication

How hackers steal your keys and secrets

Michele Marron

Michele Marron

{UPDATE} パチスロひぐらしのなく頃に 絆【777NEXT】 Hack Free Resources Generator

ECS Corporation

ECS Corporation

What is incident response & analysis Why it is important for any law & enforcement agencies?

Trending Us

Trending Us

in

TrendingUs

The Beginner’s Guide to the Big Sur VPN Issue

AboutHelpTermsPrivacy


Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Michael Koczwara

Michael Koczwara

Security Researcher [RED&BLUE]

More from Medium

Shefali Kumari

Shefali Kumari

TRY HACK ME: MISP Write-Up

Cyborg Security

Cyborg Security

Moving the Needle Forward on Threat Hunting

Tim Nary

Tim Nary

in

SnapAttack

SnapAttack Launches Community Edition to Drive Collaboration Across Cybersecurity Community

Jonathan Johnson

Jonathan Johnson

Bypassing Access Mask Auditing Strategies

Help

Status

Writers

Blog

Careers

Privacy

Terms

About

Knowable