A forum for reverse engineering, OS internals and malware analysis 

Forum for discussion about kernel-mode development.
 #33197  by tommybongers
 Sat Sep 28, 2019 8:00 am
Hello,

I'm currently working on a project where I have a need to spoof start & return address of a thread created with PsCreateSystemThread, does anybody know of any articles, information or public repositories for this?

Best regards,
tommybongers