måndag 22 november 2021

Store Malware In The Graphic Card

 



POC . the dropper exec the opencl code into the gpu kernel.

and then it read out the result into CPU and injects it into RAM (DLL) (remote process)

then it unloads it self and the reinject the payload evry 10sec so the payload is just inejcted few seconds 

TADA! a ghost in the GPU ...

Inga kommentarer:

Skicka en kommentar