Living-off-the-Land Attacks: Exploiting Windows Defensive Blind Spots in Memory-Based Threats -- IEEE SoutheastCon 2026 (virtual) Academic Article uri icon

Abstract

  • The rapid evolution of cybersecurity threats has led to an increased focus on advanced cyberattacks, such as fileless malware. This research aims to explore how fileless malware, which operates in memory, poses new challenges for traditional file-based detection techniques. The primary objective of this research is to simulate real-world fileless attacks and understand how threat actors can exploit system weaknesses through this approach, providing new insights to enhance cybersecurity defenses. We developed offensive proof-of-concept fileless malware orchestration scripts and executed them in simulated attacks within a controlled, virtualized environment to demonstrate fileless malware techniques, identify exploitable vulnerabilities, and assess the effectiveness of conventional defensive techniques. The results of our research suggested several gaps in existing cybersecurity defenses and highlighted vulnerabilities that could be exploited by malicious actors. As a result, our research concludes with suggestions for enhancing traditional defenses against fileless threats.

Publication Date

  • 2026-10-01

Published In

  •   Journal