EXPLOIT COVERAGE
Memory Exploit Protection provides protection against the below exploits or vulnerabilities:
-
Windows:
-
Reflective DLL Injection (Reported as Process Injection Incident)
-
Process Hollowing
-
PE (Portable Executable) Injection (Reported as Process Injection Incident)
-
Process Doppelgänging
-
PowerShell Exploit (Reported as Process Injection Incident)
-
Atom Bombing
-
Thread Local Storage (Reported as Process Hollowing Incident)
-
Thread Execution Hijack
-
Credential API Hooking
-
OS Credentials Dumping on Windows using LSASS
-
-
Linux:
-
DirtyCoW (Copy on Write)
-
tmp-fs exploit
-
DirtyPipe
-
ptrace Sudo Token Privilege Escalation
-
Refer to the Compatibility Matrix for more information about the Operating System compatibility