04.08.2016 Views

Captain Hook

2aQumCA

2aQumCA

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

#1 – UNSAFE INJECTION<br />

Severity: Very High<br />

Affected Systems: All Windows Versions<br />

Occurs due to bad DLL injection implementation<br />

• We found 2 types of unsafe injections:<br />

• LoadLibrary from a relative path – vulnerable<br />

to DLL Hijacking<br />

• Unprotected injected DLL file – placed in<br />

%appdata%\Local\Vendor<br />

Can easily be replaced by the attacker

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!