Title:XBAP Execution From Uncommon Locations Via PresentationHost.EXE Status:test Description:Detects the execution of ".xbap" (Browser Applications) files via PresentationHost.EXE from an uncommon location. These files can be abused to run malicious ".xbap" files any bypass AWL
References: -https://lolbas-project.github.io/lolbas/Binaries/Presentationhost/ Author: Nasreddine Bencherchali (Nextron Systems) Date: 2022-07-01 modified:2023-11-09 Tags: