You are here |
blog.xpnsec.com | ||
| | | |
bohops.com
|
|
| | | | Introduction In Part One, I blogged about VisualUiaVerifyNative.exe, a LOLBIN that could be used to bypass Windows Defender Application Control (WDAC)/Device Guard. The technique used for circumventing WDAC was originally discovered by Lee Christensen, however, it was not previously disclosed like a handful of others on the Microsoft Recommended Block Rules list. If you are... | |
| | | |
bohops.com
|
|
| | | | Yes, you read that correctly - "Dynamic Pinvoke" as in "Dynamic Platform Invoke" Background Recently, I was browsing through Microsoft documentation and other blogs to gain a better understanding of .NET dynamic types and objects. I've always found the topic very interesting mainly due to its relative obscurity and the offensive opportunities for defensive evasion.... | |
| | | |
blog.ropnop.com
|
|
| | | | Write up of my journey figuring out how to host the CLR and execute .NET assemblies from memory in pure Go. | |
| | | |
whatdoiknowjr.com
|
|
| | No new post from me today. Well, there is a new post, but it's a post to tell you what else is going on. But before I do that, I wanted to take some time to apologize to anyone that has tried to contact me via that blog. Some of the messages I missed were... |