Anti-Debugging Reference Paper

Security Focus is running an article about anti-debugging techniques that is very complete and thorough. Nicolas Falliere has done an excellent job outlining the various techniques that programs can use to detect whether a program is being debugged. The kernel version of Saffron was made to circumvent these methods and provide good dumps for malware.