Skip to content

A PoC to demo modifying cmdline of the child process dynamically. It might be useful against process log tracing, AV or EDR.

Notifications You must be signed in to change notification settings

aaaddress1/masqueradeCmdline

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

6 Commits
 
 
 
 
 
 
 
 

Repository files navigation

masqueradeCmdline

masquerade cmdline of the child process to bypass Anti-Virus or EDR (C++)

About

A PoC to demo modifying cmdline of the child process dynamically. It might be useful against process log tracing, AV or EDR.

Topics

Resources

Stars

Watchers

Forks

Packages

No packages published

Languages