Repository navigation

#

edr

matro7sh/BypassAV

This map lists the essential techniques to bypass anti-virus and EDR

2892
5 个月前

Elkeid is an open source solution that can meet the security requirements of various workloads such as hosts, containers and K8s, and serverless. It is derived from ByteDance's internal best practices.

Go
2486
21 天前

Adversary tradecraft detection, protection, and hunting

Go
2371
8 天前
Xacone/BestEdrOfTheMarket

EDR Lab for Experimentation Purposes

C++
1332
1 个月前
ION28/BLUESPAWN

An Active Defense and EDR software to empower Blue Teams

C++
1291
2 年前

Open Source EDR for Windows

Go
1269
2 年前

Awesome EDR Bypass Resources For Ethical Hacking

1267
2 个月前

Enumerate and disable common sources of telemetry used by AV/EDR.

C++
808
4 年前

Evasive shellcode loader for bypassing event-based injection detection (PoC)

C++
803
4 年前

iMonitor(冰镜 - 终端行为分析系统)

C++
759
9 个月前

a tool to help operate in EDRs' blind spots

Python
752
9 个月前

戎码之眼是一个window上的基于att&ck模型的威胁监控工具.有效检测常见的未知威胁与已知威胁.防守方的利剑

Python
523
2 年前

Threat Hunting query in Microsoft 365 Defender, XDR. Provide out-of-the-box KQL hunting queries - App, Email, Identity and Endpoint.

482
9 个月前

Cobalt Strike script for ScareCrow payloads intergration (EDR/AV evasion)

Python
465
3 年前

Owlyshield is an EDR framework designed to safeguard vulnerable applications from potential exploitation (C&C, exfiltration and impact).

Rust
414
1 年前

Unlock the full brightness of the XDR display of your MacBook Pro

Swift
403
4 天前

The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能, 而不用关心底层驱动的开发、维护和兼容性问题,让其可以专注于业务开发

C++
360
6 个月前

Sanctum is an experimental proof-of-concept EDR, designed to detect modern malware techniques, above and beyond the capabilities of antivirus. Built in Rust.

Rust
332
3 天前

CSS trick/bug to display a brighter white by exploiting browsers' HDR capability and Apple's EDR system

HTML
322
4 个月前

Security product hook detection

C++
319
4 年前