β›ˆοΈCrowdStrike Falcon

Bypassing Crowd Strike Falcon on the latest version of Windows 10, while injecting beacon into the current process and establishing a reverse shell with a Havoc C2 server.

  • Dumping the LSASS memory and the SAM/SECURITY/SYSTEM registries as well.

Establishing a reverse shell with a Metasploit C2 server.

Last updated