I have found out sandboxing involves hooking or can at the very least in order to intercept the call but how it is possible to implement whether or not to permit or deny the call ? Any thoughts or ideas anyone ? I've included a link to another forum where the discussion of hooking is at the forefront.
https://security.stackexchange.com/ques ... or-windows
https://security.stackexchange.com/ques ... or-windows