Potential DLL Sideloading Of DbgModel.DLL

Rule Info

Name
Potential DLL Sideloading Of DbgModel.DLL
Author
Gary Lobermier
Description
Detects potential DLL sideloading of "DbgModel.dll"
Date
2024-07-11 00:00:00
Modified
2024-07-22 00:00:00
Id
fef394cd-f44d-4040-9b18-95d92fe278c0
Tags
attack.defense-evasion attack.t1574.002 DEMO
Type
Community Rule

Rule History

Author
Title
Date
Commit
Nasreddine Bencherchali
Merge PR #4950 from @nasbench - Comply With v2 Spec Changes
2024-08-12
Josh
Merge PR #4952 from @joshnck - Fix `Potential DLL Sideloading Of DbgModel.DLL`
2024-08-07
Nasreddine Bencherchali
Merge PR #4928 from @nasbench - Fix FPs and issues found in testing
2024-07-24
fornotes
Merge PR #4906 from @fornotes - Update and add new dll sideloading rules
2024-07-11