Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/JoelGMSec/Invoke-Stealth
Simple & Powerful PowerShell Script Obfuscator
https://github.com/JoelGMSec/Invoke-Stealth
chimera obfuscator powershell psobfuscation pyfuscation xencrypt
Last synced: 22 days ago
JSON representation
Simple & Powerful PowerShell Script Obfuscator
- Host: GitHub
- URL: https://github.com/JoelGMSec/Invoke-Stealth
- Owner: JoelGMSec
- License: gpl-3.0
- Created: 2021-04-13T10:22:05.000Z (over 3 years ago)
- Default Branch: main
- Last Pushed: 2023-04-21T12:49:37.000Z (over 1 year ago)
- Last Synced: 2024-11-18T01:09:50.925Z (25 days ago)
- Topics: chimera, obfuscator, powershell, psobfuscation, pyfuscation, xencrypt
- Language: PowerShell
- Homepage: https://darkbyte.net
- Size: 3.38 MB
- Stars: 454
- Watchers: 8
- Forks: 73
- Open Issues: 0
-
Metadata Files:
- Readme: README.md
- Funding: .github/FUNDING.yml
- License: LICENSE
Awesome Lists containing this project
- awesome-hacking-lists - JoelGMSec/Invoke-Stealth - Simple & Powerful PowerShell Script Obfuscator (PowerShell)
README
**Invoke-Stealth** is a Simple & Powerful PowerShell Script Obfuscator.
This tool helps you to automate the obfuscation process of any script written in PowerShell with different techniques. You can use any of them separately, together or all of them sequentially with ease, from Windows or Linux.
# Requirements
- Powershell 4.0 or higher
- Python 3**Required to use all features
# Download
It is recommended to clone the complete repository or download the zip file.
You can do this by running the following command:
```
git clone https://github.com/JoelGMSec/Invoke-Stealth.git
```You can also download the limited version as follows:
```
powershell iwr -useb https://darkbyte.net/invoke-stealth.php -outfile Invoke-Stealth.ps1
```# Usage
```
.\Invoke-Stealth.ps1 -helpInfo: This tool helps you to automate the obfuscation process of
any script written in PowerShell with different techniquesUsage: .\Invoke-Stealth.ps1 script.ps1 -technique Chimera
- You can use as single or separated by commas -Techniques:
· Chameleon: Substitute strings and concatenate variables
· BetterXencrypt: Compresses and encrypts with random iterations
· PyFuscation: Obfuscate functions, variables and parameters
· ReverseB64: Encode with base64 and reverse it to avoid detections
· PSObfuscation: Convert content to bytes and encode with Gzip
· All: Sequentially executes all techniques described aboveWarning: The output script will exponentially multiply the original size
Chameleon & PyFuscation need Python3 to work properly
```### The detailed guide of use can be found at the following link:
https://darkbyte.net/ofuscando-scripts-de-powershell-con-invoke-stealth
# License
This project is licensed under the GNU 3.0 license - see the LICENSE file for more details.# Credits and Acknowledgments
This script has been created and designed from scratch by Joel Gámez Molina // @JoelGMSecSome modules use third-party code, scripts, and tools, particularly:
• **Chameleon** by *klezVirus* --> https://github.com/klezVirus/chameleon
• **BetterXencrypt** by *GetRektBoy724* --> https://github.com/GetRektBoy724/BetterXencrypt
• **PyFuscation** by *CBHue* --> https://github.com/CBHue/PyFuscation
• **PSObfuscation** by *gh0x0st* --> https://github.com/gh0x0st/Invoke-PSObfuscation
# Contact
This software does not offer any kind of guarantee. Its use is exclusive for educational environments and / or security audits with the corresponding consent of the client. I am not responsible for its misuse or for any possible damage caused by it.For more information, you can find me on Twitter as [@JoelGMSec](https://twitter.com/JoelGMSec) and on my blog [darkbyte.net](https://darkbyte.net).
# Support
You can support my work buying me a coffee:[](https://www.buymeacoffee.com/joelgmsec)