Now the Thread Stack Spoofer simply overwrites MySleep
's return address with 0
making the call stack cut in half. This should be enough to fend off AVs and EDRs while not being that anomalous at the same time.
Now the Thread Stack Spoofer simply overwrites MySleep
's return address with 0
making the call stack cut in half. This should be enough to fend off AVs and EDRs while not being that anomalous at the same time.