Rostelecom-Red-Team / GoodbyeEDRLinks
☆81Updated 3 years ago
Alternatives and similar repositories for GoodbyeEDR
Users that are interested in GoodbyeEDR are comparing it to the libraries listed below
Sorting:
- UAC_wenpon☆49Updated 3 years ago
- bypass UAC even when configured to always notify user☆30Updated 3 years ago
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dll☆43Updated 3 years ago
- ☆74Updated 3 years ago
- use aswArPot.sys to kill process☆68Updated 2 years ago
- Imitate CobaltStrike's Shellcode Generation☆3Updated 3 years ago
- 汇编语言编写Shellcode加载器源代码 https://payloads.online/archivers/2022-02-16/1/☆78Updated 2 years ago
- Kernel file/process/object tool☆67Updated 3 years ago
- A simple hidden vnc.☆33Updated 4 years ago
- A work in progress of constructing a minimal http(s) beacon for Cobalt Strike.☆19Updated 3 years ago
- CVE-2021-1675 (PrintNightmare)☆76Updated 4 years ago
- bypass BeaconEye☆88Updated 3 years ago
- ShellCodeLoader via DInvoke☆58Updated 4 years ago
- Golang implementation of Hellsgate + Halosgate/Tartarosgate. Ensures that all systemcalls go through ntdll.dll;☆32Updated 3 years ago
- ☆37Updated 5 years ago
- Shellcode implementation of Reflective DLL Injection by Golang. Convert DLLs to position independent shellcode☆60Updated 4 years ago
- PrintNightmare , Local Privilege Escalation of CVE-2021-1675 or CVE-2021-34527☆59Updated 4 years ago
- golang implementation of Syswhisper2/Syswhisper3☆23Updated 3 years ago
- power-kill is a project that kill protected processes (such as EDR or AV) by injecting shellcode into high privilege processes☆46Updated 3 years ago
- desktop screenshot☆30Updated 2 years ago
- ☆51Updated 5 years ago
- ☆89Updated 3 years ago
- frida based script which automates the process of discovering and exploiting DLL Hijacks in target binaries. The discovered binaries can …☆52Updated 2 years ago
- DLL Unhooking☆12Updated 4 years ago
- ReturnGate, just like HellsGate.☆67Updated 2 years ago
- inject or convert shellcode to PE☆40Updated 5 years ago
- ☆49Updated 3 years ago
- Windows Defender VDM lua collections☆47Updated 2 years ago
- ☆73Updated 3 years ago
- golang amsi bypass☆30Updated 3 years ago