mirror of
https://github.com/yehia-mamdouh/Lsassx
synced 2026-06-08 18:30:26 +00:00
Create README.md
This commit is contained in:
@@ -0,0 +1,19 @@
|
||||
LSASSX
|
||||
|
||||
Dumping LSASS evade Endpoint Secuirty using the follwoing technics.
|
||||
|
||||
💡Reflection-Based Obfuscation
|
||||
💡Minimal Permissions on LSASS Process Handle
|
||||
💡In-Memory Dump
|
||||
💡Use of SafeFileHandle and DangerousGetHandle
|
||||
💡Dynamic Memory Access Using Reflection
|
||||
💡Encryption and Compression of Dump File
|
||||
💡File Cleanup After Dump Creation
|
||||
💡Character Obfuscation
|
||||
|
||||
The script was tested on
|
||||
|
||||
1- Trend Micro APEX One
|
||||
2- ESET Smart Security Premium
|
||||
3- Trend Micro Maximum Security
|
||||
4- Windows Defender
|
||||
Reference in New Issue
Block a user