Simone Aonzo·Mar 24, 2020Dear Windows Defender, please tell me where I can drop my malicious code.The Get-MpPreference cmdlet exposes the field ExclusionPath without administrator privilege.A response icon3A response icon3
Simone Aonzo·Aug 2, 2019The importance of Data Execution Prevention in malware analysisI wrote this (unpretentious) article to share an interesting spot that I have found while I was reversing an APT-linked sample (VT report)…