From f61f31c4c048769af2388aa1d516a61e9ab5b495 Mon Sep 17 00:00:00 2001 From: pe3zx Date: Wed, 27 Oct 2021 16:40:19 +0700 Subject: [PATCH] Add: aus/gopherheaven to Defense Evasion section --- Offensive.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/Offensive.md b/Offensive.md index deef247..fb202ab 100644 --- a/Offensive.md +++ b/Offensive.md @@ -1184,6 +1184,10 @@ Some tools can be categorized in more than one category. But because the current audibleblink/dummyDLL Utility for hunting UAC bypasses or COM/DLL hijacks that alerts on the exported function that was consumed. + + aus/gopherheaven + Go implementation of the Heaven's Gate technique + AzAgarampur/byeintegrity4-uac Bypass UAC by abusing the Windows Defender Firewall Control Panel, environment variables, and shell protocol handlers