zig 10 min
pool-proxy-ng: Clean Call Stacks Through the Thread Pool
Multi-gadget pool proxy system in Zig — route arbitrary Win32 API calls through the thread pool with gadget-based return address masking. No implant code on the stack, ever.
zig edr-evasion research windows-internals red-team
dossier
read →