logo
Red team
Dodging the trap: Escaping the sandbox
  • Green team
  • Blue team
  • Purple team
  • Indigo team
  • Broomstick Brief
  • Ty Myrddin
Initializing search
      • IN: Where the falcons and foxes roam
      • THROUGH: Where the raccoons burrow and rummage
        • The art of staying where you are not wanted
        • Where the raccoon overflows the bin—on purpose
        • Foraging for secrets in binaries
        • The payload is in the picnic photo
        • Tipping the stack—and the garbage can
        • Nature’s cheats: The raccoon’s guide to slipping through the cracks
          • Slippery paws: Practise makes untraceable
            • Threading the needle: The raccoon’s art of process injection
            • Dancing with shadows: Outsmarting the digital watchdogs
            • The masked marauder: Cloaking intent in code
            • Breaking the mould: Evading digital fingerprints
            • Slipping past the gatekeeper: Bypassing user account control
            • The invisible intruder: Evading real-time defences
            • Erasing the trail: Evading logging and monitoring
            • Urban survival: Using the environment against itself
            • Navigating the digital thicket: Evading network defences
            • Through the firebreak: Breaching digital barriers
            • Dodging the trap: Escaping the sandbox
              • An adversary walks into a sandbox
              • Common sandbox evasion techniques
              • Implementing evasion techniques
              • The Great Escape
            • Dodging the trap: Escaping the sandbox
              • An adversary walks into a sandbox
              • Common sandbox evasion techniques
              • Implementing evasion techniques
              • The Great Escape
      • OUT: Where squirrels swipe the crown jewels

    Dodging the trap: Escaping the sandbox¶

    Sandboxes are environments designed to analyse and detect malicious behaviour. Identify when you are in a sandbox and employ tactics to avoid detection, ensuring the code only executes in the wild, much like a raccoon avoiding a baited trap.

    Sandbox evasion

    • An adversary walks into a sandbox
    • Common sandbox evasion techniques
    • Implementing evasion techniques
    • The Great Escape

    THM Room: Sandbox evasion
    Last update: 2025-05-19 17:27
    Back to top
    Previous Next-Generation firewalls
    Next An adversary walks into a sandbox
    © Copyright 2025, TyMyrddin.
    Created using Sphinx 7.2.6. and Sphinx-Immaterial

    Made with love in the Unseen University, 2025, with a forest garden fostered by /ut7