Obfuscating powershell beacons

This page summarizes the projects mentioned and recommended in the original post on /r/redteamsec

InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
  • DInvoke

    Dynamically invoke arbitrary unmanaged code from managed code without PInvoke.

  • https://github.com/TheWover/DInvoke is awesome circumventing EDR hooks. I've had great success with this against EDR and especially AV heuristics.

  • SysWhispers2

    AV/EDR evasion via direct system calls.

  • If you wanna stay with unmanaged code look into https://github.com/jthuraisamy/SysWhispers2 I'm a noob with native languages so can't say how effective it is. It also has a downside including ASM references to the binary that are unusual and might be detected, not sure on this tho.

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts