Enumerate active EDR's on the system
☆153Sep 23, 2025Updated 9 months ago
Alternatives and similar repositories for EnumEDRs
Users that are interested in EnumEDRs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A Windows tool that converts LDIF files to BloodHound CE☆32Dec 20, 2025Updated 6 months ago
- Shellcode injection using the Windows Debugging API☆182Jan 4, 2026Updated 6 months ago
- ☆36Jul 1, 2025Updated last year
- Python alternative to Mimikatz lsadump::dcshadow☆162Jun 24, 2025Updated last year
- Reports on Driver, LSASS and other security services mitigations☆35Aug 18, 2025Updated 10 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- PowerShell SharePoint extraction + auditing tool for red/blue/purple teams. Enumerates all SharePoint sites/drives a user can access via …☆167Jan 25, 2026Updated 5 months ago
- ☆52Jun 12, 2026Updated 3 weeks ago
- .NET tool used to enrich RPC telemetry☆102Jan 24, 2026Updated 5 months ago
- Group Policy Objects manipulation and exploitation framework☆314Dec 7, 2025Updated 6 months ago
- ☆50Dec 5, 2025Updated 6 months ago
- ☆85Feb 12, 2026Updated 4 months ago
- Help red teams find opsec processes during engagements☆44Dec 7, 2024Updated last year
- Listener that spawns a new tmux window for each incoming reverse shell + Supports listening on many ports☆61Jul 13, 2025Updated 11 months ago
- modified mssqlclient from impacket to extract policies from the SCCM database☆48Feb 24, 2026Updated 4 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.☆382Aug 29, 2025Updated 10 months ago
- Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By…☆165Nov 23, 2025Updated 7 months ago
- Burp plugin for jxscout☆22May 12, 2025Updated last year
- Swiss Army Knife for payload encryption, obfuscation, and conversion to byte arrays – all in a single command (14 output formats supporte…☆228Mar 7, 2026Updated 3 months ago
- Eve is a JAMF exploitation toolkit used to interact with locally hosted JAMF servers and those hosted on jamfcloud.com.☆50May 1, 2026Updated 2 months ago
- Dump protected process memory by using BYOVD to tamper with handle objects in the kernel.☆42Aug 5, 2025Updated 10 months ago
- Exploitation of CVE-2025-29969☆66Feb 20, 2026Updated 4 months ago
- BOF with Synthetic Stackframe☆251Oct 30, 2025Updated 8 months ago
- Convert your shellcode into an ASCII string☆128Jun 27, 2025Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- NSecSoftBYOVD POC☆61Feb 12, 2026Updated 4 months ago
- Arsenal of modules to beacon postex☆105Mar 13, 2026Updated 3 months ago
- StoneKeeper C2, an experimental EDR evasion framework for research purposes☆208Dec 25, 2024Updated last year
- Permanently disable EDRs as local admin☆129Dec 19, 2025Updated 6 months ago
- Cobalt Strike BOF for evasive .NET assembly execution☆321Mar 31, 2025Updated last year
- A user-mode code and its rootkit that will Kill EDR Processes permanently by leveraging the power of Process Creation Blocking Kernel Cal…☆264Jun 10, 2025Updated last year
- .NET Post-Exploitation Utility for Abusing Strong Explicit Certificate Mappings in ADCS☆152Feb 10, 2025Updated last year
- A proof of concept AMSI & ETW bypass using trampolines for hooking and modifying execution flow☆19Jun 26, 2025Updated last year
- A stealthier approach to WMI-based command execution using Impacket without touching the disk.☆85Mar 15, 2026Updated 3 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Rust implementation, creating a scheduled task programmatically with user logon trigger.☆47Jun 10, 2025Updated last year
- Enhance Your Active Directory Password Spraying with User Intelligence.☆323Dec 29, 2025Updated 6 months ago
- Remap ntdll.dll using only NTAPI functions with a suspended process☆28Apr 13, 2025Updated last year
- Impersonate Windows tokens in Nim☆23Aug 4, 2025Updated 11 months ago
- b3acon - a mail-based C2 that communicates via an in-memory C# IMAP client dynamically compiled in memory using PowerShell.☆44Apr 21, 2025Updated last year
- Proof of Concepts code for Bring Your Own Vulnerable Driver techniques☆112Aug 21, 2025Updated 10 months ago
- Slides for COM Hijacking AV/EDR Talk on 38c3☆75Jan 3, 2025Updated last year