From af5084f9ea12a34362df7e3c337cf787bcb9f0b8 Mon Sep 17 00:00:00 2001 From: pe3zx Date: Sun, 13 Mar 2022 18:35:24 +0700 Subject: [PATCH] Add: klezVirus/SysWhispers3 to Defense Evasion section --- Offensive.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/Offensive.md b/Offensive.md index 2eeb977..7415183 100644 --- a/Offensive.md +++ b/Offensive.md @@ -1496,6 +1496,10 @@ Some tools can be categorized in more than one category. But because the current klezVirus/SharpSelfDelete C# implementation of the research by @jonaslyk and the drafted PoC from @LloydLabs + + klezVirus/SysWhispers3 + SysWhispers on Steroids - AV/EDR evasion via direct system calls. + knight0x07/ImpulsiveDLLHijack C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can later be weaponized during Red Team Operations to evade EDR's.