Skip to content

Commit 35297ad

Browse files
authored
Update README.md
1 parent 611f122 commit 35297ad

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

README.md

+2
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,9 @@
33
https://tishina.in/execution/nowatch-prealpha-release
44
**noWatch** is an interactive console application that allows tampering with EDR userland hooks and testing EDR detection capabilities. It is meant to be used as a standalone binary or converted with `donut` and remotely injected. In general, it is designed as a drop-in replacement for testing what C2 framework features can get detected without deploying C2 in an Internet-isolated detection lab.
55
> update: integrated SW2 and SW2 with trampolines to test RX allocations
6+
67
> update: integrated rad9800's DLL load proxying
8+
79
> update: added a createthread command for CreateThread and directthread/indirectthread for thread creation
810
911
Usage demo:

0 commit comments

Comments
 (0)