2.3.0 Release ๐
RELEASE NOTES:
- added Hypervisor-Phantom brand
- added:
VM::TPM
VM::QEMU_FW_CFG
VM::IVSHMEM
- added better macro handling for Windows
- added clang compatibility fixes
- fixed memory leak in the CLI
- improved execution speed of Windows techniques
- improved debugs for:
VM::AMD_THREAD_MISMATCH
VM::INTEL_THREAD_MISMATCH
VM::XEON_THREAD_MISMATCH
VM::VIRTUAL_PROCESSORS
- improved cpuid handling
- improved process utilities
- improved:
VM::REGISTRY
VM::VBOX_NETWORK
VM::VM_PROCESSES
VM::SIDT
VM::SGDT
VM::SLDT
VM::GPU_VM_STRINGS
VM::GPU_CAPABILITIES
VM::TIMER
VM::FIRMWARE
VM::AUDIO
VM::OSXSAVE
VM::SYS_QEMU_DIR
- merged:
VM::OFFSEC_SIDT
andVM::VPC_SIDT
intoVM::SIDT
VM::OFFSEC_SGDT
intoVM::SGDT
VM::OFFSEC_SLDT
intoVM::SLDT
VM::QEMU_GA
intoVM::VM_PROCESSES
- renamed
VM::HDD_SERIAL
toVM::DISK_SERIAL
- disabled by default:
VM::PORT_CONNECTORS
VM::ACPI_TEMPERATURE
VM::LSHW_QEMU
VM::PCI_VM
- removed:
VM::SIDT5
IDT_GDT_SCAN
PROCESSOR_ID
VirusTotal results
The Windows binaries were generated in the CI/CD purely from the source code here.
The Linux binaries on the other hand, were generated through the cmake file present in the root directory of the repository.
Credits
@NotRequiem
@pemessier
@dmfrpro
Extra
For any inquiries, contact me on discord at kr.nl
or email me at jeanruyv@gmail.com