Add: waldo-irc/YouMayPasser to Defense Evasion section

This commit is contained in:
pe3zx 2022-03-30 15:06:58 +07:00
parent 80add68e7f
commit abd7e905bc

View File

@ -1845,6 +1845,10 @@ Some tools can be categorized in more than one category. But because the current
<td><a href="https://github.com/VirtualAlllocEx/Shellcode-Downloader-CreateThread-Execution">VirtualAlllocEx/Shellcode-Downloader-CreateThread-Execution</a></td> <td><a href="https://github.com/VirtualAlllocEx/Shellcode-Downloader-CreateThread-Execution">VirtualAlllocEx/Shellcode-Downloader-CreateThread-Execution</a></td>
<td>This POC gives you the possibility to compile a .exe to completely avoid statically detection by AV/EPP/EDR of your C2-shellcode and download and execute your C2-shellcode which is hosted on your (C2)-webserver.</td> <td>This POC gives you the possibility to compile a .exe to completely avoid statically detection by AV/EPP/EDR of your C2-shellcode and download and execute your C2-shellcode which is hosted on your (C2)-webserver.</td>
</tr> </tr>
<tr>
<td><a href="https://github.com/waldo-irc/YouMayPasser">waldo-irc/YouMayPasser</a></td>
<td>YouMayPasser is an x64 implementation of Gargoyle</td>
</tr>
<tr> <tr>
<td><a href="https://github.com/Wra7h/Single-Dose">Wra7h/Single-Dose</a></td> <td><a href="https://github.com/Wra7h/Single-Dose">Wra7h/Single-Dose</a></td>
<td>Generate process injection binaries</td> <td>Generate process injection binaries</td>