myzxcg / RealBlindingEDRLinks
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
☆1,270Updated last year
Alternatives and similar repositories for RealBlindingEDR
Users that are interested in RealBlindingEDR are comparing it to the libraries listed below
Sorting:
- darkPulse是一个用go编写的shellcode Packer,用于生成各种各样的shellcode loader,免杀火绒,360核晶等国内常见杀软。☆876Updated last year
- 一个手动或自动patch shellcode到二进制文件的免杀工具/A tool for manual or automatic patch shellcode into binary file oder to bypass AV.☆546Updated 6 months ago
- CPP AV/EDR Killer☆465Updated 2 years ago
- Alternative Shellcode Execution Via Callbacks☆1,668Updated 3 years ago
- RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.☆1,547Updated last year
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,546Updated last year
- New generation of wmiexec.py☆1,233Updated last month
- C2-下一代RAT☆480Updated last year
- Open repository for learning dynamic shellcode loading (sample in many programming languages)☆272Updated 4 months ago
- 牛屎花 一款基于WEB界面的远程主机管理工具☆868Updated this week
- HVNC for Cobalt Strike☆1,292Updated 2 years ago
- CobaltStrike Beacon written in .Net 4 用.net重写了stager及Beacon,其中包括正常上线、文件管理、进程管理、令牌管理、结合SysCall进行注入、原生端口转发、关ETW等一系列功能☆731Updated 4 years ago
- Windows Elevation(持续更新)☆660Updated 3 years ago
- CobaltStrike beacon written in golang☆453Updated 2 years ago
- Syscall Shellcode Loader (Work in Progress)☆1,245Updated last year
- 🤖 Kill The Protected Process 🤖☆439Updated last year
- BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055,).☆478Updated 2 months ago
- A set of fully-undetectable process injection techniques abusing Windows Thread Pools☆1,220Updated 2 years ago
- 免杀,bypassav,免杀框架,nim,shellcode,使用nim编写的shellcode加载器☆670Updated 10 months ago
- Hunts out CobaltStrike beacons and logs operator command output☆949Updated last year
- Use ICMLuaUtil to Bypass UAC!☆595Updated 5 years ago
- windows-rs shellcode loaders☆383Updated last year
- C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can…☆545Updated 4 years ago
- Pillager是一个适用于后渗透期间的信息收集工具☆1,245Updated last year
- Next Generation C2 Framework, IoM-server/client☆398Updated last week
- kill anti-malware protected processes ( BYOVD ) ( Microsoft Won )☆968Updated 2 years ago
- Some demos to bypass EDRs or AVs by 78itsT3@m☆359Updated 3 years ago
- Windows 权限提升 BadPotato☆873Updated 5 years ago
- Shikata ga nai (仕方がない) encoder ported into go with several improvements☆1,878Updated last year
- Loading Remote AES Encrypted PE in memory , Decrypted it and run it☆1,006Updated 2 years ago