Simple (relatively) things allowing you to dig a bit deeper than usual.
View on GitHub
My GitHub Pages
As sometimes ideas may require couple of words too.
File History database forensics
NTFS USN Journal Range Tracking
Manipulating LastWriteTime without leaving traces in the NTFS USN Journal
AppLocker bypass by hash caching misuse
Magic behind wlrmdr.exe
Persistence with Windows Services