Sh0ck 🇺🇦 on Twitter: "Ladies and gents: A DLL Hijacking is present in mpclient.dll also BINARY: "C:\Program Files\Windows Defender\NisSrv.exe" If you are a blue-teamer, do not watch only “MpCmdRun.exe” but all binaries from Defender. PoC: https://t.co/44No51XjOP https://t.co/M1R2G1ZAHK #infosec https://t.co/uwOpz7kE6j" / Twitter

https://twitter.com/Sh0ckFR/status/1554021948967079936