CarbonMonoxide
EDR evasion toolkit
A toolkit for evading endpoint detection and response (EDR) by combining techniques to spoof system properties and inject malicious code.
EDR Evasion - Combination of SwampThing - TikiTorch
24 stars
1 watching
12 forks
last commit: over 4 years ago Related projects:
Repository | Description | Stars |
---|---|---|
0xsp-srd/mortar | A toolset designed to evade detection by security products and execute malware safely | 1,421 |
b4rtik/hiddenpowershelldll | A PowerShell evasion tool that uses a DLL to bypass security measures and execute a hidden stager | 93 |
aetsu/offensivepipeline | A tool for modifying and building C# tools to evade detection in Red Team exercises | 791 |
mgeeky/redwarden | A tool to evade detection by security systems and incident responders by manipulating HTTP requests | 933 |
kyleavery/aceldr | A Cobalt Strike memory scanner evasion technique using code obfuscation and encryption to evade detection. | 887 |
wkl-sec/malleable-cs-profiles | A collection of tools to generate and modify shellcode profiles to evade detection in Cobalt Strike | 384 |
ed1s0nz/cool | A tool designed to bypass antivirus software and evade detection. | 691 |
arvanaghi/checkplease | A collection of sandbox evasion modules written in various programming languages. | 904 |
epi052/rustdsplit | Re-implements a method to bypass signature-based AV detection by splitting a file into two halves and modifying one byte in each half to evade detection. | 35 |
joshfaust/alaris | A low-level shellcode loader that defeats modern EDR systems by utilizing various evasion techniques and encryption. | 891 |
atorrescogollo/offensive-tor-toolkit | A toolkit for utilizing Tor network for various exploitation and post-exploitation tasks. | 59 |
phackt/stager.dll | A tool that embeds known payloads to evade detection by Windows Defender | 170 |
mgeeky/threadstackspoofer | An advanced in-memory evasion technique to hide injected shellcode's memory allocation from scanners and analysts. | 1,053 |
georgepatsias/scarecrow-cobaltstrike | A tool for integrating Cobalt Strike payloads with ScareCrow to evade antivirus detection and improve evasion capabilities. | 457 |
gnxbr/fully-undetectable-techniques | A collection of low-level techniques and tools to evade detection in software | 368 |