
Revoke-Obfuscation v1.0
#Security Testing#Malware Analysis
A curated list of open-source projects containing protestware sourced from various platforms.
Revoke-Obfuscation: A PowerShell v3 Compatible Framework
A framework designed for detecting obfuscation in PowerShell that is compatible with version 0+.
It was designed to highlight the limitations of signature-based detection
It was designed to emphasize the shortcomings of relying solely on a signature-based approach for detecting how attackers use PowerShell.
It offers a new, scalable approach
It offers a new, scalable approach for generically detecting both known and unknown obfuscation techniques.