TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

PROPagate – a new code injection trick

1 点作者 sjreese将近 7 年前

1 comment

sjreese将近 7 年前
PROPagate Code Injection Seen in the Wild Last year, researchers wrote about a new Windows code injection technique called PROPagate. Last week, it was first seen in malware:<p>This technique abuses the SetWindowsSubclass function -- a process used to install or update subclass windows running on the system -- and can be used to modify the properties of windows running in the same session. This can be used to inject code and drop files while also hiding the fact it has happened, making it a useful, stealthy attack.<p>It&#x27;s likely that the attackers have observed publically available posts on PROPagate in order to recreate the technique for their own malicious ends.