EDR/AV Evasion Notes & References :


Detecting the Hooks

Bypassing the EDR Hooks / Syscalls


Process Mitigation Policy (BlockDLLs, ACG)

Using ACG(Arbitrary Code Guard)/BlockDll (CIG) mitigation policy