mirror of
https://github.com/yehia-mamdouh/Lsassx
synced 2026-06-08 18:30:26 +00:00
main
LSASSX
Dumping LSASS evade Endpoint Secuirty using the follwoing technics.
💡Reflection-Based Obfuscation 💡Minimal Permissions on LSASS Process Handle 💡In-Memory Dump 💡Use of SafeFileHandle and DangerousGetHandle 💡Dynamic Memory Access Using Reflection 💡Encryption and Compression of Dump File 💡File Cleanup After Dump Creation 💡Character Obfuscation
The script was tested on
1- Trend Micro APEX One 2- ESET Smart Security Premium 3- Trend Micro Maximum Security 4- Windows Defender
Languages
PowerShell
100%