From 8256c8fc4276217c71fdae2655dd951cd9fa527e Mon Sep 17 00:00:00 2001 From: pe3zx Date: Mon, 4 Jan 2021 18:13:54 +0700 Subject: [PATCH] Add jthuraisamy/SysWhispers2 to Execution section --- Offensive.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/Offensive.md b/Offensive.md index 3c2d958..596414a 100644 --- a/Offensive.md +++ b/Offensive.md @@ -243,6 +243,10 @@ Some tools can be categorized in more than one category. But because the current SysWhispers helps with evasion by generating header/ASM files implants can use to make direct system calls. + + jthuraisamy/SysWhispers2 + AV/EDR evasion via direct system calls. + mobdk/Sigma Execute shellcode with ZwCreateSection, ZwMapViewOfSection, ZwOpenProcess, ZwMapViewOfSection and