diff --git a/Offensive.md b/Offensive.md index 4a9ea97..b2b7005 100644 --- a/Offensive.md +++ b/Offensive.md @@ -754,6 +754,10 @@ Some tools can be categorized in more than one category. But because the current drivers and each drivers metadata, all for the presence of known defensive products such as AV's, EDR's and logging tools. + + RedCursorSecurityConsulting/PPLKiller + Tool to bypass LSA Protection (aka Protected Process Light) + secretsquirrel/SigThief Stealing Signatures and Making One Invalid Signature at a Time