Cargando…

Evading EDR : sensors, telemetry, and how to bypass them /

"Introduces readers to the most common components of EDR systems, including function hooking, callback notifications, Event Tracing for Windows, and filesystem minifilters, by explaining how they are implemented and how they collect various data points. Covers documented evasion strategies for...

Descripción completa

Detalles Bibliográficos
Clasificación:Libro Electrónico
Autor principal: Hand, Matt (Autor)
Formato: Electrónico eBook
Idioma:Inglés
Publicado: San Francisco, CA : No Starch Press, [2024]
Temas:
Acceso en línea:Texto completo (Requiere registro previo con correo institucional)
Descripción
Sumario:"Introduces readers to the most common components of EDR systems, including function hooking, callback notifications, Event Tracing for Windows, and filesystem minifilters, by explaining how they are implemented and how they collect various data points. Covers documented evasion strategies for bypassing detections and describes how defenders might protect themselves"--
Descripción Física:1 online resource
Bibliografía:Includes bibliographical references and index.
ISBN:9781718503359
1718503350