National Cyber Warfare Foundation (NCWF)

New ToneShell Variant Uses Task Scheduler COM Service to Maintain Persistence


0 user ratings
2025-09-12 06:01:25
milo
Red Team (CNA)

The latest ToneShell variant introduces a notable advancement in its persistence strategy by leveraging the Windows Task Scheduler COM service. This lightweight backdoor, traditionally delivered through DLL sideloading techniques, now incorporates enhanced persistence mechanisms and sophisticated anti-analysis capabilities that pose significant challenges to security teams. Cybersecurity researchers have identified a new variant of the ToneShell […]


The post New ToneShell Variant Uses Task Scheduler COM Service to Maintain Persistence appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.



Mayura Kathir

Source: gbHackers
Source Link: https://gbhackers.com/task-scheduler-com/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Red Team (CNA)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.