Dumping LSASS evade Endpoint Secuirty using the follwoing technics.
💡Reflection-Based Obfuscation
💡Minimal Permissions on LSASS Process Handle
💡In-Memory Dump
💡Use of SafeFileHandle and DangerousGetHandle
💡Dynamic Memory Access Using Reflection
💡Encryption and Compression of Dump File
💡File Cleanup After Dump Creation
💡Character Obfuscation
The script was tested on
1- Trend Micro APEX One
2- ESET Smart Security Premium
3- Trend Micro Maximum Security
4- Windows Defender