secarclabs
Home Posts NT API Win SDK About Categories Search Contact

Filter Posts

© secarclabs

All Posts

Browse all articles organized by category

June 30, 2024

DFIR Series: Windows Defender Tamper Protection

Windows Defender Tamper Protection is a security feature designed to prevent malicious actors or unauthorized programs from modifying or disabling key security settings in Windows Defender Antivirus. Understanding this feature...

#dfir #windows-defender #tamper-protection
January 19, 2024

Winternals Series – Virtual Memory

Virtual Memory is a fundamental concept in modern operating systems that provides each process with an isolated, contiguous address space abstracted from physical memory. Understanding how Windows manages virtual memory...

#windows-internals #memory-management #virtual-memory
June 29, 2023

OffSec Series – AS-REP Roasting

AS-REP Roasting is a technique used to target weak user account settings in Active Directory, particularly those with the “Do not require Kerberos preauthentication” setting enabled. Attackers abuse the lack...

#active-directory #kerberos #offsec

No posts found in this category.