Malware Development
Ask or search...
Ctrl
K
Evasion
EDR Bypass
2. Userland Hooks
1. What are userland hooks?
2. Load a fresh copy of the dll from disk
3. Programmatically detect ntdll hooks
4. Direct and Indirect Syscalls (shellcode runner)
Was this helpful?