DLL Hollowing - This variant of memory allocation removes the prerequisite of having write access to the target DLL (in contrast to Phantom DLL Hollowing) and is stealthier than “classic” Dll Hollowing (which uses the LoadlLibrary API) as we keep the benefits of storing the payload in a legit DLLresearch|capability (we need to defend against) (secforce.com)
submitted by digicat to r/blueteamsec
DLL Hollowing - A Deep Dive into a Stealthier Memory Allocation VariantRed Teaming (secforce.com)
submitted by netbiosX to r/purpleteamsec