Theory: EDR Syscall hooking and Ghost Hunting, my approach to detection - 0xflux Red Team Manual | Systems programming

https://fluxsec.red/edr-syscall-hooking