Files
wavestone-cdt-edrsandblast/EDRSandblast/Utils
Maxime Meignan bf749f54c7 PE parser: added a feature to parse a PE directly from kernel memory
Could be used in the future to resolve export instead of a
suspicious LoadLibrary("ntoskrnl.exe")
2023-11-03 16:13:13 +01:00
..
2023-10-06 16:12:52 +02:00
2023-10-06 16:12:52 +02:00
2023-10-06 16:12:52 +02:00
2023-11-03 16:10:40 +01:00
2023-10-06 16:12:52 +02:00
2023-10-06 16:12:52 +02:00
2023-10-06 16:12:52 +02:00