rad9800 / BootExecuteEDRLinks
☆409Updated last year
Alternatives and similar repositories for BootExecuteEDR
Users that are interested in BootExecuteEDR are comparing it to the libraries listed below
Sorting:
- A sophisticated, covert Windows-based credential dumper using C++ and MASM x64.☆440Updated last year
- Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry☆447Updated last year
- Stealthily inject shellcode into an executable☆421Updated 2 months ago
- Huffman Coding in Shellcode Obfuscation & Dynamic Indirect Syscalls Loader.☆279Updated 8 months ago
- A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfve…☆581Updated last year
- Use hardware breakpoint to dynamically change SSN in run-time☆275Updated last year
- Extract and execute a PE embedded within a PNG file using an LNK file.☆461Updated last year
- A new technique that can be used to bypass memory scanners. This can be useful in hiding problematic code (such as reflective loaders imp…☆334Updated last year
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆390Updated 2 months ago
- This is the tool to dump the LSASS process on modern Windows 11☆533Updated last month
- AV/EDR Lab environment setup references to help in Malware development☆418Updated 10 months ago
- Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.☆322Updated last year
- Evasive shellcode loader