myzxcg / RealBlindingEDR
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
☆1,062Updated 10 months ago
Alternatives and similar repositories for RealBlindingEDR:
Users that are interested in RealBlindingEDR are comparing it to the libraries listed below
- darkPulse是一个用go编写的shellcode Packer,用于生成各种各样的shellcode loader,免杀火绒,360核晶等国内常见杀软。☆849Updated 6 months ago
- 一个手动或自动patch shellcode到二进制文件的免杀工具/A tool for manual or automatic patch shellcode into binary file oder to bypass AV.☆479Updated last week
- CobaltStrike Beacon written in .Net 4 用.net重写了stager及Beacon,其中包括正常上线、文件管理、进程管理、令牌管理、结合SysCall进行注入、原生端口转发、关ETW等一系列功能☆713Updated 3 years ago
- Loading BOF & ShellCode without executable permission memory.☆430Updated 6 months ago
- Windows Elevation(持续更新)☆653Updated 3 years ago
- Red Team C2 Framework with AV/EDR bypass capabilities.☆402Updated 3 weeks ago
- 免杀,bypassav,免杀框架,nim,shellcode,使用nim编写的shellcode加载器☆657Updated 2 months ago
- Alternative Shellcode Execution Via Callbacks☆1,558Updated 2 years ago
- RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.☆1,470Updated 8 months ago
- 牛屎花 一款基于WEB界面的远程主机管理工具☆820Updated 2 years ago
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,421Updated 9 months ago
- POCs for Shellcode Injection via Callbacks☆405Updated 4 years ago
- Open repository for learning dynamic shellcode loading (sample in many programming languages)☆247Updated 3 months ago
- CPP AV/EDR Killer☆407Updated last year
- C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can…☆518Updated 3 years ago
- New generation of wmiexec.py☆1,081Updated 5 months ago
- Use ICMLuaUtil to Bypass UAC!☆548Updated 5 years ago
- Some demos to bypass EDRs or AVs by 78itsT3@m☆352Updated 2 years ago
- not a reverse-engineered version of the Cobalt Strike Beacon☆360Updated last year
- Windows 权限提升 BadPotato☆838Updated 4 years ago
- CobaltStrike beacon written in golang☆422Updated last year
- C2-下一代RAT☆389Updated 8 months ago
- ☆730Updated this week
- 绕3环的shellcode免杀框架☆568Updated 4 years ago
- RDL的堆溢出导致的RCE☆214Updated 8 months ago
- 支持x86/x64的DLL和Shellcode 的Windows注 入的免杀工具,支持图形化界面☆324Updated last month
- Pillager是一个适用于后渗透期间的信息收集工具☆1,113Updated 8 months ago
- 免杀远控木马源码整理开源(银狐 winos 大灰狼 gh0st) Rat☆376Updated 4 months ago
- windows-rs shellcode loaders☆353Updated 9 months ago
- shellcode免杀加载器,使用go实现,免杀bypass火绒、360、核晶、def等主流杀软☆853Updated 3 weeks ago