Karmaz95 / evasionLinks
AV EVASION TECHNIQUES
☆79Updated 3 years ago
Alternatives and similar repositories for evasion
Users that are interested in evasion are comparing it to the libraries listed below
Sorting:
- A collection of code snippets built to assist with breaking chains.☆119Updated last year
- A variety of AV evasion techniques written in C# for practice.☆94Updated 4 years ago
- SeRestorePrivilege to SYSTEM☆119Updated 3 years ago
- Code dump from PEN-300/OSEP updated 2022☆41Updated 2 years ago
- Payload Generation Framework☆93Updated last year
- Attempt at Obfuscated version of SharpCollection☆220Updated 2 weeks ago
- ☆34Updated 3 years ago
- PoC to coerce authentication from Windows hosts using MS-WSP☆257Updated last year
- This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR …☆257Updated 3 years ago
- PowerShell runner for executing malicious payloads in order to bypass Windows Defender.☆73Updated 3 years ago
- The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin☆176Updated 2 years ago
- A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY☆86Updated 3 years ago
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆118Updated 2 years ago
- A collection of Cobalt Strike Aggressor scripts.☆99Updated 3 years ago
- The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.☆123Updated 5 years ago
- Detect whether a service is installed (blindly) and/or running (if exposing named pipes) on a remote machine without using local admin pr…☆234Updated last year
- ☆70Updated 4 months ago
- Powershell version of SharpGPOAbuse☆84Updated 4 years ago
- Cortex XDR Config Extractor☆133Updated 2 years ago
- A Python based ingestor for BloodHound☆84Updated 2 years ago
- Patching AmsiOpenSession by forcing an error branching☆147Updated 2 years ago
- ☆92Updated 4 years ago
- PEN-300/OSEP Public resources for PEN-300 Training☆110Updated 3 years ago
- Buggy script to play with GPOs☆113Updated 7 months ago
- Identifies the bytes that Microsoft Defender flags on.☆89Updated 3 years ago
- ☆168Updated last year
- ☆119Updated 4 months ago
- An open-source process injection enumeration tool written in C#☆172Updated 2 years ago
- ☆163Updated 9 months ago
- Patch AMSI and ETW☆245Updated last year