WKL-Sec / LayeredSyscall

Generating legitimate call stack frame along with indirect syscalls by abusing Vectored Exception Handling (VEH) to bypass User-Land EDR hooks in Windows.
191Updated 3 months ago

Related projects

Alternatives and complementary repositories for LayeredSyscall