GPU-Powered Evasion: Unpacking the Sophisticated CoffeeLoader Malware (securityonline.info)
from kid@sh.itjust.works to cybersecurity@sh.itjust.works on 31 Mar 12:10
https://sh.itjust.works/post/35327701

#cybersecurity

threaded - newest

Alphane_Moon@lemmy.world on 31 Mar 13:45 collapse

A novel approach indeed.

The article mentions something called Windows Fibers; first time I heard about this. They go to explain what it is:

Windows fibers: The malware leverages Windows fibers, an obscure mechanism for implementing user-mode multitasking, to evade detection, as some EDRs may not monitor or track them.