casp3r0x0 / CortexRansomBypassView external linksLinks
Cortex EDR Ransomware protection Bypass
☆25Feb 8, 2025Updated last year
Alternatives and similar repositories for CortexRansomBypass
Users that are interested in CortexRansomBypass are comparing it to the libraries listed below
Sorting:
- A Rust PoC implementation of the Early Bird process hollowing technique, inspired by https://github.com/boku7/HOLLOW.☆30Feb 7, 2025Updated last year
- ProxyWatch☆34Updated this week
- Terms of Use Conditional Access M365 Evilginx Phishlet☆44Jun 23, 2025Updated 7 months ago
- How to bypass AMSI (Antimalware Scan Interface) in PowerShell/C++ by dynamically patching the AmsiScanBuffer function.☆25Apr 21, 2025Updated 9 months ago
- ☆33Mar 19, 2025Updated 10 months ago
- AADInternals-Endpoints PowerShell module☆33Jul 2, 2025Updated 7 months ago
- Adversary Emulation Framework☆129Jul 1, 2025Updated 7 months ago
- VB Exe Parser is an IDA script written in Python. This script will help you to parse VB program internal structures. It can find: Event, …☆17Oct 8, 2016Updated 9 years ago
- A New Exploitation Technique for Visual Studio Projects☆11Nov 5, 2023Updated 2 years ago
- Rehashing APIs to prevent hash based detection☆14Jan 7, 2025Updated last year
- Payload Generation Workflow☆40Jul 18, 2025Updated 6 months ago
- A simple research-focused AES-based shellcode loader demonstrating in-memory execution and NTAPI techniques to help understand how custom…☆36Jan 13, 2026Updated last month
- A different approach to writing BOFs in rust.☆18Aug 20, 2025Updated 5 months ago
- ☆24Apr 18, 2025Updated 9 months ago
- Ludus role for deploying a Cobalt Strike Teamserver onto Linux servers☆18Mar 19, 2025Updated 10 months ago
- Proof-of-concept implementation of AI-enabled postex DLLs☆54Sep 10, 2025Updated 5 months ago
- .NET assembly loader with patchless AMSI and ETW bypass in Rust☆58Oct 9, 2024Updated last year
- A red teaming attack paradigm against AI Agents☆32Mar 9, 2025Updated 11 months ago
- ☆29Sep 4, 2024Updated last year
- A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.☆15Apr 4, 2023Updated 2 years ago
- ☆41Feb 20, 2025Updated 11 months ago
- ☆14Mar 19, 2024Updated last year
- Python script that fetches, analyzes, and reports Microsoft Patch Tuesday updates via the MSRC API — with a clean web interface for easy …☆23Jan 27, 2026Updated 2 weeks ago
- A small set of Beacon Object Files (BOFs) that I developed over the time with a Magic: The Gathering theme.☆16Jul 15, 2025Updated 6 months ago
- custom Python script to perform Yara matching in Cortex XDR☆14May 18, 2021Updated 4 years ago
- [EMNLP 2024] Holistic Automated Red Teaming for Large Language Models through Top-Down Test Case Generation and Multi-turn Interaction☆17Nov 9, 2024Updated last year
- A modern, web-based GUI for Hashcat that provides an intuitive interface for hash cracking operations, featuring real-time monitoring, pe…☆33Mar 5, 2025Updated 11 months ago
- 010 template for apfs☆26Feb 26, 2021Updated 4 years ago
- Examples of various container types for Python and Golang☆16Aug 29, 2025Updated 5 months ago
- Collection of red team techniques.☆66Apr 25, 2025Updated 9 months ago
- kernel callback removal (Bypassing EDR Detections)☆211Nov 14, 2025Updated 2 months ago
- 「⚠️」Performing a BYOVD on the truesight.sys driver☆44Dec 7, 2024Updated last year
- A powerful Windows UI monitoring and DNS exfiltration tool written in Rust, combining advanced UI event capture capabilities with secure …☆19Mar 6, 2025Updated 11 months ago
- Hooking KPRCB IdlePreselect function to gain execution inside PID 0.☆73Apr 13, 2025Updated 10 months ago
- A Rust version of Mirage, a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆38Mar 6, 2025Updated 11 months ago
- Use NT Native Registry API to create a registry that normal user can not query.☆94Dec 7, 2017Updated 8 years ago
- malleable profile generator GUI for Havoc☆55Apr 28, 2023Updated 2 years ago
- ForsHops☆152Mar 25, 2025Updated 10 months ago
- A stealthy reverse shell built with native PowerShell and Server-Sent Events (SSE). No polling. No sockets. Just pure HTTP and real-time …☆22Apr 23, 2025Updated 9 months ago