@rad9800 This is nothing new; the advantages and disadvantages of Native Applications were thoroughly described in detail two years ago in this article().protexity.com/post/going-nat…
@rad9800 It mentioned, "Finally, there’s some unique potential to interact with Windows at earlier stages of the Windows boot process that normal Windows applications, including user mode debuggers, cannot interact with.
@rad9800 This presents a unique opportunity to initiate malicious actions before security solutions are properly initiated on a target system.
@rad9800 Additionally, it stated, "Another interesting thing we can do with our early boot access, is read and write from/to files and directories that we normally wouldn’t be able to access. These permissions are not absolute, but greatly extend the capabilities of our executable."
• • •
Missing some Tweet in this thread? You can try to
force a refresh