Skip to content

rjcassara-/ShaDOS

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

ShaDOS

PowerShell data obfuscation through ADS

ShaDOS is a PowerShell module which provides a collection of functions to hide data inside alternate data streams (ADS), list the data that's been hidden, and retrieve it.

In addition to making the data difficult to discover, it can also be encrypted making it extraordinarily difficult for unauthorized access.

Due to the nature of ADS, the data is resistant to exfiltration via typical USB drives and linux-based attackers.

See presentation at: https://www.youtube.com/watch?v=EdQfrji8lL4

About

Powershell data obfuscation through ADS

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published