mirror of
https://github.com/LOLBAS-Project/LOLBAS
synced 2025-02-26 12:02:53 +01:00
Used by redteams for defense evasion to disable drivers used by agents like sysmon https://www.darkoperator.com/blog/2018/10/5/operating-offensively-against-sysmon https://github.com/oddcod3/Phantom-Evasion/blob/master/Modules/post-exploitation/Postex_CMD_UnloadSysmonDriver_windows.py |
||
---|---|---|
.. | ||
LOLUtilz | ||
OSBinaries | ||
OSLibraries | ||
OSScripts | ||
OtherMSBinaries |