edr-evasion topic
Payload-Download-Cradles
This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR in context of download cradle detections.
Taskschedule-Persistence-Download-Cradles
Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged
FullDLLUnhooking_CSharp
Unhook DLL via cleaning the DLL 's .text section
Codecepticon
.NET/PowerShell/VBA Offensive Security Obfuscator
hades
Go shellcode loader that combines multiple evasion techniques
acheron
indirect syscalls for AV/EDR evasion in Go assembly
PichichiH0ll0wer
Nim process hollowing loader
EPI
Threadless Process Injection through entry point hijacking