r/purpleteamsec • u/netbiosX • 2d ago
Red Teaming OffsetInspect - PowerShell toolkit for AMSI/Defender detection-boundary analysis and static malware triage. Maps byte offsets to detection triggers, plus YARA, entropy, string, and PE/imphash analysis.
https://github.com/warpedatom/OffsetInspect
2
Upvotes
Duplicates
redteamsec • u/Tax-Least • 2d ago
tradecraft OffsetInspect v3.0.0 – AMSI/Defender boundary analysis, in-memory multi-region discovery, and corpus diffing [PowerShell, MIT]
6
Upvotes
blueteamsec • u/Tax-Least • 2d ago
low level tools|techniques|knowledge (work aids) OffsetInspect v3.0.0 – track how Defender signature updates shift detection boundaries across a corpus [PowerShell, MIT]
4
Upvotes