set reg key, call setThreadLocale to inject
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Interesting thanks mate for share!
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Man but what name do you give it? injection techniques must have bombastic names... How should we know it's useful?
- End of conversation
New conversation -
-
-
I'm wondering what impact this could have? If you found a program that runs as system and calls setThreadLocale could you use the technique for privilege escalation?
-
unlikely- registry change needs admin. but you can also control what dll get loaded with setting the process device map
End of conversation
New conversation -
-
-
Bypass EDR monitoring dll injection?
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Writing into HKLM requires admin privileges AFAIK. Or is the same method usable in HKCU, too?
-
it do- but there is alternative method to control what gets loaded
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
