This repository has been archived by the owner on Aug 18, 2023. It is now read-only.
Releases: optiv/ScareCrow
Releases · optiv/ScareCrow
Patch 2.1
Patch 2.0
New Features
- Introduced ETW bypass mechanisms to prevent ETW events from being generated.
- Introduced unhooked process Injection techniques to unhook an EDR from the injected process.
- Added a flag to allow a custom set of JSON for Attribute Spoofing.
- Add a new list of DLLs for the WScript loader option.
- Added anti-attribution controls in binary mode.
Bug Fixes
- Fixed some command line bugs.
- Updated help menu & README.
Patch 1.5
Bug Fixes
- Fixed error with delivery commands 'hta
and
bits` that prevented the one-line command from displaying. - Added in additional controls to allow certain types of loaders to be used with certain delivery commands (to prevent incompatibilities)
- Updated help menu & README to indicate which delivery commands work well with what loaders