Researchers from ENSILO have devised a method, called AtomBombing, to inject malicious code in Windows OS that could not be detected by modern anti-malware tools. The method relies on tricking a user into running a malicious executable that could allow them to conduct several malicious activities including memory data snooping to grab passwords and other sensitive information. The attackers can then write malicious code into an atom table and force a legitimate application to retrieve it from the table. Once the code is retrieved by the legitimate application, it is possible to manipulate it triggering execution of the malicious code.”]
Source: https://securityaffairs.co/wordpress/52796/hacking/atombombing-code-injection.html