CQURE HACKS #66 Hiding and Modifying Windows Services with Service Control

Understanding Hidden Services  Let’s learn how to hide and uncover a service. This is a very important technique for post-incident investigation, as manipulating a service’s security descriptor can be a powerful method for persistence.  There’s no direct mechanism to hide a service in Windows, but we can manipulate the Security Descriptor Definition Language (SDDL).  We … Continue reading CQURE HACKS #66 Hiding and Modifying Windows Services with Service Control