Closed sec13b closed 1 month ago
This project has not yet implemented the processing of WPF filter. There are other open source projects that have implemented WPF filter to block EDR communication.
thank you
bin/sys is instant detected
It is normal to be detected. This is an open source project and is only used for testing.
If you want to exploit, you need to find an undisclosed exploitable driver and integrate it into this project.
is it possible to apply WPF filter to some specific driver ? Thanks,