Security & Compliancezhaoxuya520/reverse-skill
edr-bypass-re
Reverse-engineer defense implementations → Targeted bypass for red teams. First reverse-engineer the hook tables, ETW providers, and AMSI implementations of EDR / Defender / AV, then develop targeted unhook / indirect syscall / ETW patch / call stack spoof solutions. Align with MITRE ATT&CK T1562 Defense Evasion. Trigger keywords: EDR bypass, AV bypass, evasion, unhook, direct syscall, indirect syscall, Hell's Gate, Halo's Gate, Tartarus Gate, ETW patch, AMSI patch, call stack spoofing, hardware breakpoint Blindside, MITRE T1562, ntdll unhook, kernel callback, CrowdStrike bypass, Defender bypass, Sentinel One bypass, Elastic Defend, Sysmon evasion, PPID spoof, Sleep mask, Process Hollowing, Reflective DLL.