diff --git a/Offensive.md b/Offensive.md index 5a5d758..7d8f931 100644 --- a/Offensive.md +++ b/Offensive.md @@ -467,6 +467,10 @@ Some tools can be categorized in more than one category. But because the current peewpw/Invoke-PSImage Embeds a PowerShell script in the pixels of a PNG file and generates a oneliner to execute + + PwnDexter/SharpEDRChecker + Checks running processes, process metadata, Dlls loaded into your current process and the each DLLs metadata, common install directories, installed services and each service binaries metadata, installed drivers and each drivers metadata, all for the presence of known defensive products such as AV's, EDR's and logging tools. + secretsquirrel/SigThief Stealing Signatures and Making One Invalid Signature at a Time