SA Samuel D A · Techiepedia Understanding Windows ETW: A Simple Explanation A beginner‑friendly guide to understanding how Windows Event Tracing (ETW) actually works under the hood.
TCH ZA Zanebilal Bypassing ETW via Session Hijacking: In the past article ( you can find it here: https://medium.com/@zanebilal6/evading-etw-techniques-written-in-c-d8875e7385b9) , we have…
TCH ZA Zanebilal Evading ETW Techniques ( written in C): before we begin : the code discussed in this blog is evaluable in my GitHub repo : https://github.com/Zanebilal/ETW-Evasion
JO Jonathan Johnson Peeling Back the Mask: How the Threat Intelligence Provider is Protected Introduction
HUM YA Yaniv From Lnk To Rat: How A Discord‑delivered Shortcut Loads A Dll Rat TL;DR: Attackers distribute malicious .lnk files via discord that launch hidden powershell to extract a zip with a dll and execute it…
CR Cristóbal Martínez Leassons learned from ETW & AMSI Bypass hunt Following the previous post in this series where we reviewed the lessons learned and key points for detecting threats that directly attack…