PlanqX EDR is an open-source, advanced Endpoint Detection and Response (EDR) solution for Windows, offering real-time system and network security. Features include API hooking, ELAM, ETW integration, AMSI, kernel-mode and APC callbacks, and baseline detection to provide comprehensive threat defense across boot-time and runtime.
☆24Jun 5, 2025Updated 9 months ago
Alternatives and similar repositories for PlanqX_EDR-Endpoint-Detection-and-Response
Users that are interested in PlanqX_EDR-Endpoint-Detection-and-Response are comparing it to the libraries listed below
Sorting:
- Malware - Machine Learning☆11Mar 24, 2018Updated 7 years ago
- EDR/AV Simulation for Malware Development☆13Oct 21, 2023Updated 2 years ago
- Exploits written while preparing for the OSED exam☆25Apr 30, 2024Updated last year
- File integrity monitor with malware detection using machine learning☆14May 23, 2024Updated last year
- The Code implements the following: => Storing a file => Retrieving a file. Key Technologies used are PHP,HTML 5☆12Feb 5, 2023Updated 3 years ago
- Driver Reverse & Exploitation☆82Sep 4, 2025Updated 6 months ago
- Fast API Endpoint!. This project examines, analyses the malware statically & dynamically using conventional strategies and also apply mac…☆10Apr 10, 2023Updated 2 years ago
- Mishky's AD Range & The Escalation Path from Hell, Version 1.1☆11May 7, 2025Updated 10 months ago
- ☆12May 30, 2019Updated 6 years ago
- Pine and Frida better together☆15Oct 30, 2024Updated last year
- Windows CIFS/SMB packet generation and SMB networking library☆12Aug 25, 2020Updated 5 years ago
- A starter fastapi application that is configured to be deployed to AWS vis the Docker ECS plugin☆10Sep 2, 2020Updated 5 years ago
- DLL Hijacking Detection Tool☆16Jun 21, 2025Updated 8 months ago
- Just a git repo for the sleepmask detection rule i found in https://codex-7.gitbook.io/codexs-terminal-window/blue-team/detecting-cobalt-…☆16Jun 4, 2025Updated 9 months ago
- Shellcode Loader Implementing Indirect Dynamic Syscall , API Hashing, Fileless Shellcode retrieving using Winsock2☆13Jul 15, 2023Updated 2 years ago
- Backport of SliverStager to work with DotNetToJScript for vba☆17Aug 9, 2024Updated last year
- Alpine:v3.4 + Selenium + Chrome☆13Nov 9, 2017Updated 8 years ago
- This is the AV ("protection solution") used for my windows 10 rootkit main project. this includes the installer stager program, a service…☆13May 2, 2024Updated last year
- This is a demo of how to protect and hide processes by using various techniques on Windows platform☆10Nov 1, 2020Updated 5 years ago
- File & Folders protecting tool in Windows OS using password functionalities with hiding features.☆12Jan 30, 2022Updated 4 years ago
- Windows Real Time File Monitoring☆12Dec 21, 2018Updated 7 years ago
- ☆16Jun 15, 2025Updated 8 months ago
- Examples from PythonGUI.org☆12Oct 21, 2023Updated 2 years ago
- Dynamic Identification and Recognition Technology☆10Nov 1, 2016Updated 9 years ago
- AIDA64DRIVER Elevation of Privilege Vulnerability☆16Oct 25, 2024Updated last year
- ☆11Dec 8, 2023Updated 2 years ago
- Export MISP attributes in Yara☆12Sep 15, 2017Updated 8 years ago
- NMAP NSE that enumerates VNC authentication types☆14Dec 21, 2010Updated 15 years ago
- Collection of different rootkit functionality, each driver representing a different rootkit component☆12May 27, 2025Updated 9 months ago
- An encapsulated Windows Firewall component that requires XE3 or later☆12Mar 21, 2014Updated 11 years ago
- 把教育信息化体系中的Word试题,Excel试卷、知识点等数据解析成json内容。☆13Mar 3, 2020Updated 6 years ago
- Deep learning malware detection system using the EMBER dataset☆11Nov 22, 2024Updated last year
- PTT Akıllı Esnaf PHP SDK☆10Oct 13, 2022Updated 3 years ago
- PhantomDelay is a precise delay function that uses the Windows high resolution performance counter to pause your program for a specified …☆19May 8, 2025Updated 10 months ago
- Classifying malware families by converting their binaries to images and then applying Convolutional Neural Network solutions.☆13Nov 11, 2021Updated 4 years ago
- NSRL BloomFilter, Mandiant BloomFilter, Hyperloglog Malware Data Structure☆15Mar 14, 2014Updated 11 years ago
- SSH Server☆12Nov 20, 2025Updated 3 months ago
- DLL reflective loader in golang☆16Dec 8, 2023Updated 2 years ago
- Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle…☆16Jan 7, 2023Updated 3 years ago