Sibouzitoun
@sibouzitoun@infosec.exchange
Staring at hex dumps until I can afford a cabin in the woods
infosec.exchange
Published a 4-part series on Windows 11 kernel exploitation (HEVD). Moves from classic stack overflows to data-only LPE primitives.
Covers SMEP bypasses, thread state repair, LFH grooming (feng shui), npfs.sys weaponization, and DKOM token swapping.
#malware #cybersecurity #windows