edr-evasion topic

List edr-evasion repositories

Payload-Download-Cradles

249
Stars
53
Forks
Watchers

This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR in context of download cradle detections.

Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged

FullDLLUnhooking_CSharp

50
Stars
10
Forks
Watchers

Unhook DLL via cleaning the DLL 's .text section

Codecepticon

468
Stars
85
Forks
Watchers

.NET/PowerShell/VBA Offensive Security Obfuscator

Unwinder

257
Stars
29
Forks
Watchers

Call stack spoofing for Rust

hades

328
Stars
46
Forks
Watchers

Go shellcode loader that combines multiple evasion techniques

acheron

290
Stars
33
Forks
Watchers

indirect syscalls for AV/EDR evasion in Go assembly

EPI

306
Stars
34
Forks
Watchers

Threadless Process Injection through entry point hijacking