ION28 / BLUESPAWN

An Active Defense and EDR software to empower Blue Teams
GNU General Public License v3.0
1.23k stars 167 forks source link

Obfuscate yara rules to avoid AV false positives on bluespawn #416

Closed Jack-McDowell closed 2 years ago

Jack-McDowell commented 2 years ago

This differs from the previous version in that it retains a large degree of compressibility