Skip to content
>_Knowledge Base
Home
Research
  • Classified: Access Restricted
Documentation
  • BYOVD Explained: How Attackers Use Signed Drivers to Kill EDRs
  • DLL Hijacking: Three Variants with Procmon Methodology
  • Introduction to the Windows Internals Series
  • Why Attackers Love LSASS.exe: A Deep Dive into the Windows Credential Store
  • Process Hollowing from First Principles — No Tools, Just Windows API
  • Windows Processes vs Programs — An Attacker’s Mental Model
  • Win32 API vs Native API: What’s the Difference and Why Attackers Care
Projects
  • Classified: Access Restricted
Writeups
  • Classified: Access Restricted
About
HomeResearchDocumentationProjectsWriteupsAbout

Tags

Browse all 2 tags across the knowledge base.

placeholder3restricted3
>_Knowledge Base

Security research, technical articles, and educational content on offensive security.

Navigation

  • Home
  • Research
  • Documentation
  • Projects
  • Writeups
  • About

Series

  • Windows Internals
  • Active Directory
  • Windows Security
  • Web Security
  • Malware Development

Connect

  • RSS Feed

© 2026 Nimesh Nakum. All rights reserved.