Ross ROSS = Recommend OSS · open-source software intelligence for agents

tokyoneon/Chimera

Chimera is a PowerShell obfuscation script designed to bypass AMSI and commercial antivirus solutions. observed · 2026-08-28

github.com/tokyoneon/Chimera · homepage · PowerShell observed · 2026-08-28

Health v2 · maintenance only

32/100

  • Activity 0
  • Release rhythm 35
  • Longevity 100

Flags: no_releases no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2192
  • days_rel: n/a
  • days_push: 1758
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1597 stars · 257 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Chimera is a PowerShell obfuscation script that transforms malicious PS1 payloads using string substitution and variable concatenation to bypass AMSI and antivirus detection signatures. It is an offensive security tool aimed at penetration testers demonstrating how trivial signature-based evasion can be.

Use cases

  • obfuscate powershell payloads to bypass antivirus
  • bypass AMSI detection on Windows
  • evade signature-based AV detection for red team engagements
  • generate obfuscated reverse shell scripts for penetration testing
  • test antivirus detection capabilities against obfuscated scripts

When to choose

  • you are a penetration tester or red teamer needing to evade signature-based AV on Windows targets
  • you want to demonstrate AMSI bypass weaknesses in security assessments
  • you need a quick, script-based PowerShell obfuscation tool on Kali Linux

When to avoid

  • you need defensive tooling or malware analysis rather than offensive evasion
  • you require a maintained, supported product - the project has had no releases since 2021 and no license
  • your target uses behavior-based or modern EDR detection rather than simple signatures
  • obfuscating PowerShell is prohibited in your environment or jurisdiction

Facets

cli-tool · maturity maintenance

security penetration-testing vulnerability-scanning security penetration-testing windows cli powershell-obfuscation amsi-bypass antivirus-evasion offensive-security payload-generator red-team linux

1 source

Member repositories

RepositoryRoleHealth v2
tokyoneon/Chimeramain32

For agents

markdown · JSON · MCP: product_card(name="tokyoneon/Chimera")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem