Skip to content

Releases: postrequest/xeca

ETW and Script Block Logging bypass

06 Oct 10:11
Compare
Choose a tag to compare

ETW and Script Block Logging bypass added to all payloads.
The bypasses can be disabled with --disable-etw and --disable-script-logging.

SHA256: 22f2b80ea62a68306d1356b5c97f5c5bad84116f71839f2ea03a140f94afd616

ETW and Script Block Logging bypass

24 Sep 12:36
Compare
Choose a tag to compare

ETW and Script Block Logging bypass added to all payloads.
The bypasses can be disabled with --disable-etw and --disable-script-logging.

SHA256: d24831465606efcb59b55d5a025424596d62a7557807f6227f4e993f6619a97c

Donut payloads and specify process for injection

21 Aug 07:16
Compare
Choose a tag to compare

Updates:

  • Add ability to execute Donut payloads
  • Specify target process name for both Donut and Shellcode payloads (eg: explorer or svchost) to inject into

SHA256: 569d0adefd8d414eb1cbfc93b4e44ea3db3fa1b6f89faa1b85d364c5c6508ba5

First Release

21 Jul 10:08
Compare
Choose a tag to compare

First release for x86_64 linux.

SHA256: f353342a0805e1aecbf5546d077d72e658c42cde249763067d2d06740c4c8ee8