all InfoSec News
When the Hunter Becomes the Hunted: Using Minifilters to Disable EDRs
July 1, 2024, 11:32 a.m. | Tom Philippe
InfoSec Write-ups - Medium infosecwriteups.com
Attackers are perpetually seeking new ways to bypass defensive mechanisms. I myself love doing a bit of research to try and find new ways to evade security products. Inspired by the concepts from the article When the Hunter Becomes the Hunted: Using Custom Callbacks to Disable EDRs by Altered Security, I present a new technique involving signed minifilters to disable EDR systems.
Introducing Minifilters
Minifilters are specialized kernel-mode drivers that can be used to filter I/O operations by registering to …
More from infosecwriteups.com / InfoSec Write-ups - Medium
Story of a 1000$ Open Redirect
2 days, 8 hours ago |
infosecwriteups.com
How to Create a WiFi Password Cracker with Python
2 days, 8 hours ago |
infosecwriteups.com
Transformation of Privacy in the Digital Age
2 days, 8 hours ago |
infosecwriteups.com
Jobs in InfoSec / Cybersecurity
DHS Architecture Engineering Support
@ General Dynamics Information Technology | USA VA Home Office (VAHOME)
AWS DevOps Engineer
@ Booz Allen Hamilton | USA, VA, Alexandria (6361 Walker Ln)
Senior Engineering Manager | SI&WS
@ Boeing | USA - Saint Charles, MO
SOFTWARE ENGINEER III - Java Full Stack
@ Walmart | IN TN CHENNAI Home Office RMZ Millenia Biz Park
Senior, Software Engineer - Java Lead
@ Walmart | IN TN CHENNAI Home Office RMZ Millenia Biz Park
Full Stack Software Engineer (Associate/Mid-Level))
@ Boeing | USA - Mountain View, CA