PL. XXI.Hide From Sandboxes And EmulatorsA guide on evading detection by Endpoint Protection Platforms (EPP) using the Offline Registry Library in Windows.
PL. XIX.Hooking via InstrumentationCallbackAn exploration of the epilogue hooking method using InstrumentationCallback, including practical examples and pitfalls.
PL. IX.Abusing WSL for EvasionAn exploration of how the Windows Subsystem for Linux (WSL can be exploited for evasion techniques.
PL. X.Bypass User-Mode HooksA deep dive into bypassing user-mode hooks by reimplementing ntdll functions, with practical examples and demonstrations.