From b724440d4a5c8a26ff7163ea0d4f733c96aab944 Mon Sep 17 00:00:00 2001 From: pe3zx Date: Sun, 22 Aug 2021 17:45:37 +0700 Subject: [PATCH] Add: tomcarver16/AmsiHook to Defense Evasion section --- Offensive.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/Offensive.md b/Offensive.md index d52f4b7..8d0bd28 100644 --- a/Offensive.md +++ b/Offensive.md @@ -1218,6 +1218,10 @@ Some tools can be categorized in more than one category. But because the current TheWover/CertStealer A .NET tool for exporting and importing certificates without touching disk. + + tomcarver16/AmsiHook + AmsiHook is a project I created to figure out a bypass to AMSI via function hooking. + tokyoneon/chimera Chimera is a (shiny and very hack-ish) PowerShell obfuscation script designed to bypass AMSI and commercial