NULLKrypt3rs retweetledi

Added a new technique in Patriot to identify suspicious CONTEXT structures used in the rop/callback chains of foliage, #nighthawk, #brc4, gargoyle, etc. github.com/joe-desimone/p…

English
NULLKrypt3rs
34 posts

@NULLKrypt3rs
CTF Team || IIIT-Allahabad





as M$ said, IE should be totally removed from Win11 & redirect to M$ Edge. Fun Fact: attackers still can launch IE on Win11 by COM interface {0002DF01-0000-0000-C000-000000000046}






















