Nssm-2.24 Exploit High Quality -
This will surface every execution of nssm.exe on a monitored endpoint, enabling the SOC to investigate whether the spawned service is legitimate.
Here's a step-by-step explanation of how the NSSM-2.24 exploit works: nssm-2.24 exploit
The most straightforward mitigation is to upgrade to a version of NSSM that does not contain the vulnerability. Check the official NSSM website or repository for updates. This will surface every execution of nssm