Skip to content

[Intel]: https://magisterquis.github.io/2018/03/11/process-injection-with-gdb.html #462

Open
@timb-machine

Description

Area

Offensive techniques

Parent threat

Defense Evasion, Discovery

Finding

https://magisterquis.github.io/2018/03/11/process-injection-with-gdb.html

Industry reference

attack:T1055:Process Injection
attack:T1055.008:Ptrace System Calls
attack:T1055.012:Process Hollowing
attack:T1134.004:Parent PID Spoofing
attack:T1057:Process Discovery
attack:T1620:Reflective Code Loading

Malware reference

No response

Actor reference

No response

Component

Linux, AIX, Solaris, HP-UX

Scenario

No response

Scenario variation

Trust algorithm