Just noticed some big campaigns using @facebook's CDN...
Smart from actors, as AV companies won't block their CDN.
cc @GossiTheDog @x0rz
-
Show this thread
Replying to @malwrhunterteam @Facebook and
Likely adopted from a Metasploit template to inject (x86) shellcode into any running process. Typical files and compiled with CSC (+ cvtres)
5:31 AM - 2 Sep 2017
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.