Evasion

Windows Privesc

AMSI and Windows Defender Bypass: A Practical Primer

A hands-on primer on AMSI patching, reflection, obfuscation, and in-memory bypasses, with blue-team detection guidance.
Security

Living off the Land: Abusing LOLBAS Binaries on Windows

How attackers abuse certutil, bitsadmin, mshta, regsvr32 and rundll32 to download, execute and evade — plus blue-team detection.
Tools & Defense

Generating Payloads with msfvenom: Formats, Encoders, and Staged vs Stageless

A practical guide to msfvenom payload generation: formats, encoders, and the difference between staged and stageless shellcode.