diff --git a/Offensive.md b/Offensive.md index e39420a..a23743f 100644 --- a/Offensive.md +++ b/Offensive.md @@ -443,6 +443,10 @@ Some tools can be categorized in more than one category. But because the current huntresslabs/evading-autoruns Slides and reference material from Evading Autoruns presentation at DerbyCon 7 (September 2017) + + jthuraisamy/TelemetrySourcerer + Enumerate and disable common sources of telemetry used by AV/EDR. + matterpreter/DefenderCheck Identifies the bytes that Microsoft Defender flags on.