myzxcg / RealBlindingEDRLinks
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
☆1,288Updated last year
Alternatives and similar repositories for RealBlindingEDR
Users that are interested in RealBlindingEDR are comparing it to the libraries listed below
Sorting:
- darkPulse是一个用go编写的shellcode Packer,用于生成各种各样的shellcode loader,免杀火绒,360核晶等国内常见杀软。☆878Updated last year
- RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.☆1,562Updated last year
- Alternative Shellcode Execution Via Callbacks☆1,682Updated 3 years ago
- New generation of wmiexec.py☆1,250Updated 3 weeks ago
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,573Updated last year
- 一个手动或自动patch shellcode到二进制文件的免杀工具/A tool for manual or automatic patch shellcode into binary file oder to bypass AV.☆554Updated 8 months ago
- 牛屎花 一款基于WEB界面的远程主机管理工具☆887Updated 2 weeks ago
- CPP AV/EDR Killer☆470Updated 2 years ago
- Windows Elevation(持续更新)☆662Updated 3 years ago
- HVNC for Cobalt Strike☆1,294Updated 2 years ago
- CobaltStrike Beacon written in .Net 4 用.net重写了stager及Beacon,其中包括正常上线、文件管理、进程管理、令牌管理、结合SysCall进行注入、原生端口转发、关ETW等一系列功能☆731Updated 4 years ago
- Use ICMLuaUtil to Bypass UAC!☆605Updated 5 years ago
- 免杀,bypassav,免杀框架,nim,shellcode,使用nim编写的shellcode加载器☆673Updated 11 months ago
- C2-下一代RAT☆490Updated last year
- CobaltStrike beacon written in golang☆458Updated 2 years ago
- Open repository for learning dynamic shellcode loading (sample in many programming languages)☆273Updated 6 months ago
- Syscall Shellcode Loader (Work in Progress)☆1,255Updated last year
- BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055,).☆521Updated 3 months ago
- Hunts out CobaltStrike beacons and logs operator command output☆950Updated last year
- 🤖 Kill The Protected Process 🤖☆441Updated last year
- A set of fully-undetectable process injection techniques abusing Windows Thread Pools☆1,240Updated 2 years ago
- Shikata ga nai (仕方がない) encoder ported into go with several improvements☆1,911Updated last year
- windows-rs shellcode loaders☆391Updated last year
- A Bypass Anti-virus Software Lateral Movement Command Execution Tool☆1,464Updated last year
- Some demos to bypass EDRs or AVs by 78itsT3@m☆360Updated 3 years ago
- Loading Remote AES Encrypted PE in memory , Decrypted it and run it☆1,019Updated 2 years ago
- C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can…☆548Updated 4 years ago
- POCs for Shellcode Injection via Callbacks☆411Updated 4 years ago
- Cobalt Strike Malleable C2 Design and Reference Guide☆1,748Updated 2 years ago
- Cobalt Strike - Malleable C2 Profiles. A collection of profiles used in different projects using Cobalt Strike https://www.cobaltstrike.…☆862Updated 3 years ago