From 9afa063fcad4fb7df127b264867d9f600a15d13e Mon Sep 17 00:00:00 2001 From: pe3zx Date: Tue, 20 Jul 2021 09:50:52 +0700 Subject: [PATCH] Add: boku7/injectAmsiBypass to Defense Evasion section --- Offensive.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/Offensive.md b/Offensive.md index add0e70..5db41c6 100644 --- a/Offensive.md +++ b/Offensive.md @@ -858,6 +858,10 @@ Some tools can be categorized in more than one category. But because the current bohops/UltimateWDACBypassList A centralized resource for previously documented WDAC bypass techniques + + boku7/injectAmsiBypass + Cobalt Strike BOF - Bypass AMSI in a remote process with code injection. + br-sn/CheekyBlinder Enumerating and removing kernel callbacks using signed vulnerable drivers