“Process Doppelgänging” Attack Works on All Windows Versions

New code injection technique called “Process Doppelg..nging”” bypasses most modern AVs. Researchers say malicious code that utilizes this technique is never saved to disk (fileless attack)

Source: ESET

