July 1, 2024, 11:32 a.m. | Tom Philippe

InfoSec Write-ups - Medium infosecwriteups.com

Attackers are perpetually seeking new ways to bypass defensive mechanisms. I myself love doing a bit of research to try and find new ways to evade security products. Inspired by the concepts from the article When the Hunter Becomes the Hunted: Using Custom Callbacks to Disable EDRs by Altered Security, I present a new technique involving signed minifilters to disable EDR systems.

Introducing Minifilters

Minifilters are specialized kernel-mode drivers that can be used to filter I/O operations by registering to …

cybersecurity edr evasion hacking malware

DHS Architecture Engineering Support

@ General Dynamics Information Technology | USA VA Home Office (VAHOME)

AWS DevOps Engineer

@ Booz Allen Hamilton | USA, VA, Alexandria (6361 Walker Ln)

Senior Engineering Manager | SI&WS

@ Boeing | USA - Saint Charles, MO

SOFTWARE ENGINEER III - Java Full Stack

@ Walmart | IN TN CHENNAI Home Office RMZ Millenia Biz Park

Senior, Software Engineer - Java Lead

@ Walmart | IN TN CHENNAI Home Office RMZ Millenia Biz Park

Full Stack Software Engineer (Associate/Mid-Level))

@ Boeing | USA - Mountain View, CA