top of page

Search


Stealth Syscall Execution: Bypassing ETW, Sysmon, and EDR Detection
Stealth Syscalls: Because Life's Too Short to Argue with an Angry EDR! Introduction to Stealth Syscalls System calls (syscalls) serve as the bridge between user-mode processes and the Windows kernel. They facilitate crucial tasks such as memory management, file operations, and process creation. Security tools like Event Tracing for Windows (ETW), Sysmon, and debuggers such as x64dbg and WinDbg actively monitor these interactions to detect malicious or anomalous syscall execut
Apr 10, 20256 min read
Â
Â


Exploring Heap Exploitation Mechanisms: Understanding the House of Force Technique
Heap exploitation techniques like House of Force demonstrate the complexities and risks associated with memory management systems.
Jan 15, 202515 min read
Â
Â
Blog Categories
bottom of page