You are here |
theevilbit.github.io | ||
| | | |
modexp.wordpress.com
|
|
| | | | Introduction Quick post about Windows System calls that I forgot about working on after the release of Dumpert by Cn33liz last year, which is described in this post. Typically, EDR and AV set hooks on Win32 API or NT wrapper functions to detect and mitigate against malicious activity. Dumpert attempts to bypass any user-level hooks... | |
| | | |
keyj.emphy.de
|
|
| | | | ||
| | | |
malwaretech.com
|
|
| | | | Understanding the basics of user mode EDR hooking, common bypass techniques, and their limitations. | |
| | | |
zignar.net
|
|
| | Personal weblog about programming, linux, life, the universe and everything |