From 5a0c9b6cf4fa5a269b761ab5d0458877a8e0e2e0 Mon Sep 17 00:00:00 2001 From: pe3zx Date: Mon, 19 Jul 2021 08:18:09 +0700 Subject: [PATCH] Add: klezVirus/chameleon to Defense Evasions section --- Offensive.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/Offensive.md b/Offensive.md index eab1eb5..aef165e 100644 --- a/Offensive.md +++ b/Offensive.md @@ -952,6 +952,10 @@ Some tools can be categorized in more than one category. But because the current karttoon/trigen Trigen is a Python script which uses different combinations of Win32 function calls in generated VBA to execute shellcode. + + klezVirus/chameleon + Chameleon is yet another PowerShell obfuscation tool designed to bypass AMSI and commercial antivirus solutions. + lawiet47/STFUEDR Silence EDRs by removing kernel callbacks