{"id":37243,"date":"2020-09-21T14:46:51","date_gmt":"2020-09-21T14:46:51","guid":{"rendered":"https:\/\/packetstormsecurity.com\/news\/view\/31592\/Code-Execution-Defense-Evasion-Are-Top-Tactics-Used-In-Critical-Attacks-Against-Corporate-Endpoints.html"},"modified":"2020-09-21T14:46:51","modified_gmt":"2020-09-21T14:46:51","slug":"code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/","title":{"rendered":"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints"},"content":{"rendered":"<p>The threat landscape is under a constant state of evolution, with enterprise players hard-pressed to keep up with a frequent barrage of vulnerability disclosures, security updates, and the occasional zero-day.&nbsp;<\/p>\n<p>Analysts estimate that by 2021, <a href=\"https:\/\/www.varonis.com\/blog\/cybersecurity-skills-shortage\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">3.5 million<\/a> cybersecurity roles will be unfulfilled, and so not only do existing security professionals need to deal with a seemingly endless fight against cyberattackers, they may also have to do so while short-staffed &#8212; not to mention the disruption caused by COVID-19.&nbsp;<\/p>\n<p><strong>See also:&nbsp;<\/strong><a href=\"https:\/\/www.zdnet.com\/article\/cloud-security-suspicious-superhumans-behind-rise-in-attacks-on-online-services\/\" target=\"_blank\" rel=\"noopener noreferrer\">Cloud security: &#8216;Suspicious superhumans&#8217; behind rise in attacks on online services<\/a> <\/p>\n<p>There are tools out there to help with the strain. Automatic scanners, artificial intelligence (AI) and machine learning (ML)-based algorithms and software that can manage endpoint security and risk assessments, feeds providing real-time threat data, and more.&nbsp; <\/p>\n<p>Frameworks also exist, such as <a href=\"https:\/\/attack.mitre.org\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">MITRE ATT&amp;CK<\/a>, which provides a free knowledge base compiling tactics and techniques observed in current, real-world attacks. <\/p>\n<p>It is this data repository that Cisco has examined <a href=\"https:\/\/blogs.cisco.com\/security\/threat-landscape-trends-endpoint-security\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">in a new report<\/a> describing current attack trends against enterprise endpoints and networks.&nbsp; <\/p>\n<p>On Monday, Cisco published a data set based on MITRE ATT&amp;CK classifications combined with Indicators of Compromise (IoCs) experienced by organizations that receive alerts through the company&#8217;s security solutions within specific time frames.&nbsp; <\/p>\n<section class=\"sharethrough-top\" data-component=\"medusaContentRecommendation\" data-medusa-content-recommendation-options=\"{&quot;promo&quot;:&quot;promo_zd_recommendation_sharethrough_top_in_article_desktop&quot;,&quot;spot&quot;:&quot;dfp-in-article&quot;}\"> <\/section>\n<p>According to the company, over the first half of 2020, fileless threats were the most common attack vector used against the enterprise. Fileless attacks include process injections, registry tampering, and threats such as <a href=\"https:\/\/www.trendmicro.com\/vinfo\/us\/security\/news\/cybercrime-and-digital-threats\/kovter-an-evolving-malware-gone-fileless\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">Kovter<\/a>, a fileless Trojan; <a href=\"https:\/\/blog.malwarebytes.com\/cybercrime\/2014\/11\/no-more-poweliks\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">Poweliks<\/a>, a code injector that operates on the back of legitimate processes; and <a href=\"https:\/\/blog.talosintelligence.com\/2019\/09\/divergent-analysis.html\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">Divergent<\/a>, fileless Node.js malware.&nbsp; <\/p>\n<p>In second are dual-use tools including Metasploit, PowerShell, CobaltStrike, and Powersploit. Legitimate penetration testing tools such as Metasploit are of benefit to cybersecurity as a whole, but unfortunately, cyberattackers may also abuse these solutions for criminal gain.&nbsp; <\/p>\n<p>Tools such as Mimikatz, a legitimate authentication and credentials management system, come in third place &#8212; as weaponized software turned toward credential stuffing attacks.&nbsp; <\/p>\n<p>Over the first half of 2020, Cisco says these attack vectors make up roughly 75% of critical severity IoCs observed.&nbsp; <\/p>\n<p>If you apply these threats to MITRE ATT&amp;CK classifications, this means defense evasion appears in 57% of all IoC alerts, and execution comes in at 41%.&nbsp; <\/p>\n<p><strong>CNET:&nbsp;<\/strong><a href=\"https:\/\/www.cnet.com\/news\/lawsuit-accuses-instagram-of-peeping-with-iphone-camera\/?ftag=CMG-01-10aaa1b\" target=\"_blank\" rel=\"noopener noreferrer\" data-component=\"externalLink\">Lawsuit accuses Instagram of peeping with iPhone camera<\/a> <\/p>\n<p>As modern malware will often include obfuscation, movement, and concealment techniques &#8212; as well as the ability to launch payloads and tamper with existing processes &#8212; this is hardly a surprise, and IoCs may relate to more than one overall classification.&nbsp; <\/p>\n<p>&#8220;For example, an attacker that has established persistence using a dual-use tool may follow up by downloading and executing a credential dumping tool or ransomware on the compromised computer,&#8221; Cisco notes.&nbsp; <\/p>\n<p>When it comes to critical severity alerts, however, the top three categories &#8212; defense evasion, execution, and persistence &#8212; undergo a reshuffle.&nbsp; <\/p>\n<p>Execution stole the top spot away from defense evasion in critical severity attacks, with a bump of 14%, bringing total IoC alerts to 55%. Defense evasion dropped by 12% to 45%, whereas persistence, lateral movement, and credential access spiked by 27%, 18%, and 17%, respectively.&nbsp; <\/p>\n<figure class=\"image image-original shortcode-image\"><span class=\"img aspect-set \"><img decoding=\"async\" src=\"https:\/\/zdnet4.cbsistatic.com\/hub\/i\/2020\/09\/21\/9b18eaae-f088-40b6-befb-97aef13711e5\/screenshot-2020-09-21-at-12-02-01.png\" class alt=\"screenshot-2020-09-21-at-12-02-01.png\"><\/span><figcaption><span class=\"caption\"><\/span><\/figcaption><\/figure>\n<p><strong>TechRepublic:&nbsp;<\/strong><a href=\"https:\/\/www.techrepublic.com\/article\/cisos-top-traits-revealed-in-report-improvement-needed\/?ftag=CMG-01-10aaa1b\" target=\"_blank\" rel=\"noopener noreferrer\" data-component=\"externalLink\">CISOs top traits revealed in report: Improvement needed<\/a><\/p>\n<p>In addition, some classifications dropped off the list entirely or accounted for less than one percent of critical IoC alerts, including initial access, privilege escalation, and discovery &#8212; otherwise known as reconnaissance &#8212; revealing a shift in focus when it comes to critical attacks in comparison to overall IoCs. &nbsp;<\/p>\n<p>To protect against high-level threats, Cisco recommends that administrators use group policies or whitelists for file execution, and if dual-use tools are required by an organization, temporary access policies should be implemented. In addition, connections made between endpoints should be frequently monitored.&nbsp; <\/p>\n<h3> Previous and related coverage <\/h3>\n<hr>\n<p><strong>Have a tip?<\/strong> Get in touch securely via WhatsApp | Signal at +447713 025 499, or over at Keybase: charlie0<\/p>\n<hr>\n<p> READ MORE <a href=\"https:\/\/packetstormsecurity.com\/news\/view\/31592\/Code-Execution-Defense-Evasion-Are-Top-Tactics-Used-In-Critical-Attacks-Against-Corporate-Endpoints.html\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":37244,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[277],"tags":[140],"class_list":["post-37243","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-blogs","tag-headlinehacker"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2020-09-21T14:46:51+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1074\" \/>\n\t<meta property=\"og:image:height\" content=\"556\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints\",\"datePublished\":\"2020-09-21T14:46:51+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/\"},\"wordCount\":665,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png\",\"keywords\":[\"headline,hacker\"],\"articleSection\":[\"CyberSecurity Blogs\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/\",\"name\":\"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png\",\"datePublished\":\"2020-09-21T14:46:51+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png\",\"width\":1074,\"height\":556},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"headline,hacker\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/headlinehacker\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/","og_locale":"en_US","og_type":"article","og_title":"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2020-09-21T14:46:51+00:00","og_image":[{"width":1074,"height":556,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png","type":"image\/png"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints","datePublished":"2020-09-21T14:46:51+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/"},"wordCount":665,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png","keywords":["headline,hacker"],"articleSection":["CyberSecurity Blogs"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/","url":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/","name":"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png","datePublished":"2020-09-21T14:46:51+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints.png","width":1074,"height":556},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/code-execution-defense-evasion-are-top-tactics-used-in-critical-attacks-against-corporate-endpoints\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"headline,hacker","item":"https:\/\/www.threatshub.org\/blog\/tag\/headlinehacker\/"},{"@type":"ListItem","position":3,"name":"Code Execution, Defense Evasion Are Top Tactics Used In Critical Attacks Against Corporate Endpoints"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/37243","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=37243"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/37243\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/37244"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=37243"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=37243"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=37243"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}