Rendering Shellcode: Abusing TTF and DrawTextW for Memory Execution
Leveraging Windows GDI and TrueType fonts to covertly stage and execute shellcode.
Introduction
Fonts are a strange and mostly trusted part of the Windows ecosystem.