What are some of your favorite methods or articles for detecting process injection techniques??
Also, I will never stop promoting the excellent work of BlueSpawn which leverages pe-sieve for triaging process memory: https://github.com/ION28/BLUESPAWN 
Tons of amazing process injection details on this blog, an epic technical reference for shellcode techniques: https://modexp.wordpress.com 
I would be remiss not to mention Donut, an epic shellcode gen tool that implements a number of injection techniques, including CLR injection for .NET assemblies, vbscript/jscript injection, and even its own PE / DLL loader https://github.com/TheWover/donut/ 
You can follow @1njection.
Tip: mention @twtextapp on a Twitter thread with the keyword “unroll” to get a link to it.

Latest Threads Unrolled:

By continuing to use the site, you are consenting to the use of cookies as explained in our Cookie Policy to improve your experience.