1 talk mention this tool across 1 BSides chapters.
OSQuery extension written in Go that executes binaries, shell commands, Cobalt Strike BOFs, and C# assemblies in-memory while patching ETW and AMSI for evasion