https://github.com/technion/sunburstsim
A Powershell script to simulate SUNBURST's evasion techniques
https://github.com/technion/sunburstsim
Last synced: over 1 year ago
JSON representation
A Powershell script to simulate SUNBURST's evasion techniques
- Host: GitHub
- URL: https://github.com/technion/sunburstsim
- Owner: technion
- License: mit
- Created: 2020-12-27T07:41:00.000Z (over 5 years ago)
- Default Branch: main
- Last Pushed: 2020-12-27T07:58:56.000Z (over 5 years ago)
- Last Synced: 2025-01-24T09:29:14.243Z (over 1 year ago)
- Language: PowerShell
- Size: 3.91 KB
- Stars: 1
- Watchers: 3
- Forks: 0
- Open Issues: 0
-
Metadata Files:
- Readme: README.md
- License: LICENSE
Awesome Lists containing this project
README
# SUNBURSTsim
This Powershell script simulates the evasion techniques used by SUNBURST.
This script does not require Administrative permissions, contains no malware or simulated malware, and simply gathers information and presents a report.
References for this process:
https://www.fireeye.com/blog/threat-research/2020/12/sunburst-additional-technical-details.html
https://labs.sentinelone.com/solarwinds-sunburst-backdoor-inside-the-stealthy-apt-campaign/