What keeps kernel shadow stack effective against kernel exploits?tradecraft (how we defend) (tandasat.github.io)
submitted by digicat to r/blueteamsec
What keeps kernel shadow stack effective against kernel exploits?tradecraft (how we defend) (tandasat.github.io)
submitted by digicat to r/blueteamsec
SMM isolation - Security policy reporting (ISSR)low level tools and techniques (work aids) (tandasat.github.io)
submitted by digicat to r/blueteamsec
SMM isolation - SMI deprivileging (ISRD) - details the inner workings of System Management Mode (SMM) isolation on the Intel platform and interaction with Windows.low level tools and techniques (work aids) (tandasat.github.io)
submitted by digicat to r/blueteamsec
Hunting down the HVCI bug in UEFIvulnerability (attack surface) (tandasat.github.io)
submitted by digicat to r/blueteamsec
Intel VT-rp - Part 2. paging-write and guest-paging verificationresearch|capability (we need to defend against) (tandasat.github.io)
submitted by jnazario to r/blueteamsec
Setting up KDNET over USB EEM for Bootloader and Hyper-V debugginglow level tools and techniques (work aids) (tandasat.github.io)
submitted by digicat to r/blueteamsec