Process injection detection benchmark: NtMapViewOfSection + WriteProcessMemory, Sysmon pass/fail per event ID
windows golang sysmon malware-research nuclide visor red-team process-injection edr-detection detection-benchmark nicholas-kloster
-
Updated
May 1, 2026 - Go