Update README.md

This commit is contained in:
S3N4T0R
2024-12-08 22:59:44 -05:00
committed by GitHub
parent 137eb2e6c2
commit c8e96e134a
+1 -1
View File
@@ -16,4 +16,4 @@ This attack included several stages including DodgeBox, a reflective DLL loader
2. The malicious DLL, DodgeBox, serves as a loader and is responsible for decrypting a second stage payload from an encrypted DAT file (sbiedll.dat), The decrypted payload, MoonWalk functions as a backdoor.
3.
3. Data exfiltration: over GoogleDrive API C2 Channe, This integrates GoogleDrive API functionality to facilitate communication between the compromised system and the attacker-controlled server thereby potentially hiding the traffic within legitimate GoogleDrive communication.