Wietze Beukema: Environment Variables as a Way to Hijack Legitimate Applications
A DEF CON 30 talk on a stealthier alternative to classic DLL hijacking — abusing process-level environment variables to take control of legitimate applications.
The speaker demonstrates that more than 80 built-in Windows executables are vulnerable to this technique, creating new opportunities for UAC bypass and privilege escalation while maintaining a minimal forensic footprint.
The speaker demonstrates that more than 80 built-in Windows executables are vulnerable to this technique, creating new opportunities for UAC bypass and privilege escalation while maintaining a minimal forensic footprint.