Post #38
878
PENTEST_AD.pdf35.6 MB
#pentest #AD #windows
SE Showing posts older than #39 · Back to latest
Debugging AV

Check out the "Process of Step-by-Step" by Yarden Shafir — a great resource that breaks it down clearly.
Forwarded from Order of Six Angles
fluxsec.red Windows 11 Alternate Syscalls Deep Dive A comprehensive technical walkthrough of Windows 11 Alternate Syscalls: allocating executable thunks, building the dispatch table, patching PspServiceDescriptorGroupTable, handling PspSyscallProviderServiceDispatchGeneric, and caching syscall arguments. Includes…Proof-of-concept for the AMSI bypass and an implementation of a CLR memory manager is on GitHub. We can implement custom memory routines and track all allocations made by the CLR.
A while back I published a post looking at how to craft a .NET assembly which exposes managed code via DLL exports, RunDLL32 your .NET.
Methodology
The more predictable you are, the less you get detected - hiding malicious shellcodes via Shannon encoding
Methodology
By the lovely Sina Karvandi
Methodology
Sec Note How_I_ruined_my_vacation_by_reverse_engineering_WSC_es3n1n's_Blog.pdf