GrimResource - Microsoft Management Console for initial access and evasion

Krematorij

Administrator
Staff member
ADMIN
BFD MEMBER
LEGEND
ULTIMATE
SUPREME
MEMBER
BFD Legacy
Joined
Oct 22, 2024
Messages
1,121
Reaction score
16,250
Website
bfdcrew.pro
Deposit
1,002$

GrimResource - Microsoft Management Console for initial access and evasion


Elastic Security Labs has discovered a new method for initial access and evasion in the wild, termed GrimResource. It allows attackers to gain full code execution in the context of mmc.exe after a user clicks on a specially crafted MSC file.​

GrimResource - Microsoft Management Console for initial access and evasion

Pop Calc POC:

p/s: I think this is an interesting topic, I would discuss the possibilities and ideas in the telegram chat (your suggestions) :)
Video demo Attach
 
Top Bottom