Operator On The Wire
Join
← Back to Knowledge Base
BLUE TEAM / MALWARE REVERSE / ANALYSIS / STATIC / DANGEROUS FUNCS / LIBC

Evasion

  • prctl

  • setproctitle (where available)

  • unshare

  • mount

  • umount

  • kill (esp. killing security tools)

  • signal

  • sigaction