Diagnostic Library Sdiageng.DLL Loaded By Msdt.EXE — Detection Rule

Detects both of CVE-2022-30190 (Follina) and DogWalk vulnerabilities exploiting msdt.exe binary to load the "sdiageng.dll" library

Read the full analysis on IntelFusions