Malware Development 15
- Evading detection in memory - Pt 2: Improving Module Stomping (Advanced Module Stomping) + Sleep Obfuscation with heap/stack encryption
- Evading detection in memory - Pt 1: Sleep Obfuscation - Foliage
- Sideloading + Proxying in Custom Software
- shellcode Reflective DLL Injection
- Reflective DLL Injection
- Shellcode - Pt 4: Stager + Local Injection using Fibers
- Shellcode - Pt 3: Reverse Shell
- Shellcode - Pt 2: Finding Exported Function
- Shellcode - Pt 1: Finding Module(DLL) Address
- Evading Static Analysis
- EDR Evasion 101 - Pt 3: Direct Syscall
- EDR Evasion 101 - Pt 2: Ntdll Unhooking via Overwritte
- EDR Evasion 101 - Pt 1: EDR Architecture
- APC Queue Injection
- Classic Injection