2025-02-15 20:41:37 +04:00
2025-02-15 20:39:03 +04:00
2025-02-15 20:39:03 +04:00
2025-02-15 20:41:37 +04:00

LSASSX

Dumping LSASS evade Endpoint Secuirty using the follwoing technics.

💡Reflection-Based Obfuscation 💡Minimal Permissions on LSASS Process Handle 💡In-Memory Dump 💡Use of SafeFileHandle and DangerousGetHandle 💡Dynamic Memory Access Using Reflection 💡Encryption and Compression of Dump File 💡File Cleanup After Dump Creation 💡Character Obfuscation

The script was tested on

1- Trend Micro APEX One 2- ESET Smart Security Premium 3- Trend Micro Maximum Security 4- Windows Defender

S
Description
Automated archival mirror of github.com/yehia-mamdouh/Lsassx
Readme 30 KiB
Languages
PowerShell 100%