Hunting Sleeping Giants: Detecting Encrypted Beacon Sleep Obfuscation
How Gargoyle, FOLIAGE and Ekko implement sleep obfuscation — and the detection layers that catch them. Primary source: Kyle Avery DEF CON 30.
Technical research across DFIR, malware analysis, threat hunting, and CTF write-ups. No product pitches, no fluff.