EDR Detector that can find what kind of endpoint solution is being used according to drivers in the system.
☆94Nov 5, 2021Updated 4 years ago
Alternatives and similar repositories for EDR_Detector
Users that are interested in EDR_Detector are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- UDP implant☆66Aug 19, 2021Updated 5 years ago
- Linux Enumeration / Privilege escalation tool☆27Sep 3, 2020Updated 6 years ago
- A rust library that allows you to delete your executable while it's running.☆90Mar 24, 2023Updated 3 years ago
- Inject a shellcode in a remote process using Process Hollowing.☆53Sep 18, 2021Updated 5 years ago
- A Rust version of Mirage, a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆40Mar 6, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Windows shellcode development in Rust☆311Feb 6, 2021Updated 5 years ago
- RedLizard Rust TCP Reverse Shell Server/Client☆135Dec 9, 2023Updated 2 years ago
- Attempts to suspend all known AV/EDRs processes on Windows using syscalls and the undocumented NtSuspendProcess API. Made with <3 for pen…☆12May 11, 2023Updated 3 years ago
- Detect EDR's exceptions by inspecting processes' loaded modules☆133Mar 15, 2024Updated 2 years ago
- abusing Process Hacker driver to terminate other processes (BYOVD)☆83May 23, 2023Updated 3 years ago
- A rust library that allows you to host the CLR and execute dotnet binaries.☆235Mar 12, 2025Updated last year
- Implant drop-in for EDR testing☆144Nov 15, 2023Updated 2 years ago
- 64-bit, position-independent implant template for Windows in Rust.☆186Nov 28, 2025Updated 9 months ago
- An insecurely implemented and installed Windows service for emulating elevation of privileges vulnerabilities☆68Aug 25, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Single stub direct and indirect syscalling with runtime SSN resolving for windows.☆238Mar 23, 2023Updated 3 years ago
- Dynamically invoke arbitrary unmanaged code☆366Jul 1, 2026Updated 2 months ago
- SharpElevator is a C# implementation of Elevator for UAC bypass. This UAC bypass was originally discovered by James Forshaw and publishe…☆62Aug 31, 2022Updated 4 years ago
- Beacon Object File (BOF) Template☆96Mar 9, 2026Updated 6 months ago
- Apply a divide and conquer approach to bypass EDRs☆288Oct 19, 2023Updated 2 years ago
- BloodyAv is Custom Shell Code loader to Bypass Av and Edr.☆15Mar 21, 2022Updated 4 years ago
- ROP-based sleep obfuscation to evade memory scanners☆391Jun 22, 2025Updated last year
- yet another sleep encryption thing. also used the default github repo name for this one.☆67May 11, 2023Updated 3 years ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Jul 12, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A thin Rust wrapper around Windows' hardware breakpoints.☆22Jul 14, 2022Updated 4 years ago
- Rust For Windows Cheatsheet☆123Nov 26, 2025Updated 9 months ago
- A COFF Loader written in Rust☆144Dec 1, 2025Updated 9 months ago
- POC tool to convert CobaltStrike BOF files to raw shellcode☆218Nov 5, 2021Updated 4 years ago
- Load a dynamic library from memory by modifying the native Windows loader☆308May 5, 2026Updated 4 months ago
- Command & Control server and agent written in Rust☆35Sep 27, 2022Updated 3 years ago
- Automatically parse Malleable C2 profiled into CrossC2 rebinding library source code☆18Feb 13, 2023Updated 3 years ago
- Terminate AV/EDR Processes using kernel driver☆353Jun 12, 2023Updated 3 years ago
- A Rust template for writing Beacon Object Files (BOFs)☆132Feb 11, 2026Updated 7 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- .NET CLR-Stomping☆146May 20, 2026Updated 4 months ago
- Bloodhound 数据解析工具☆22Jun 10, 2025Updated last year
- ☆211Nov 28, 2023Updated 2 years ago
- Cobalt Strike BOF that uses a custom ASM HalosGate & HellsGate syscaller to return a list of processes☆107Mar 8, 2023Updated 3 years ago
- This is my own implementation of the Perun's Fart technique by Sektor7☆72May 14, 2022Updated 4 years ago
- The code is a pingback to the Dark Vortex blog: https://0xdarkvortex.dev/hiding-memory-allocations-from-mdatp-etwti-stack-tracing/☆218Jan 29, 2023Updated 3 years ago
- A Dropper POC with a focus on aiding in EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (…☆177Feb 10, 2023Updated 3 years ago