Skip to content

Instantly share code, notes, and snippets.

View medmondson44's full-sized avatar

Marcus Edmondson medmondson44

View GitHub Profile
jaredcatkinson / Get-InjectedThread.ps1
Last active July 1, 2024 08:32
Code from "Taking Hunting to the Next Level: Hunting in Memory" presentation at SANS Threat Hunting Summit 2017 by Jared Atkinson and Joe Desimone
function Get-InjectedThread
Looks for threads that were created as a result of code injection.