Simple (relatively) things allowing you to dig a bit deeper than usual.

View on GitHub

My GitHub Pages

As sometimes ideas may require couple of words too.

2023-12-03 File History database forensics

2023-06-16 NTFS USN Journal Range Tracking

2022-03-24 Manipulating LastWriteTime without leaving traces in the NTFS USN Journal

2022-03-10 AppLocker bypass by hash caching misuse

2022-02-17 Magic behind wlrmdr.exe

2019-12-09 Persistence with Windows Services