From a Reddit comment [1]: “the repo contains two novel and different ways to run any process as the SYSTEM user. It also disables every antivirus through a novel process privilege deescalation exploit”
[1] https://old.reddit.com/r/ReverseEngineering/comments/1icgfua...