← home

about maldev.lol

The posts weren't enough for you?

Okay, if you insist...

This is just a place to land my research and general offsec shenanigans. Maybe someday I'll sell you something, but that day ain't today, buster. I mean, if you want to hire me to do some shenanigans for you, I won't say no. But this is just a technical blog about malware and EDR and Windows internals and Zig and AI and...

who this is for

You, I guess?

The writing assumes you care about implementation details: how Windows behaves, where telemetry appears, why a technique works, and where it breaks.

It is meant for red teamers, malware analysts, detection engineers, and advanced students who want technical depth without insurmountable technical jargon (if I can help it).


ethics

Authorized research only.

I'm not your dad. But I would recommend staying out of jail if you can help it. It doesn't look fun...
Proper disclaimer for the lawyers: all research and techniques discussed on this site are intended for use in authorized security research, red teaming, and defensive engineering contexts.