Open EDR public repository
翻译 - 打开EDR公共存储库
A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.
This project aims to compare and evaluate the telemetry of various EDR products.
Template-Driven AV/EDR Evasion Framework
翻译 - 模板驱动的 AV / EDR 规避框架
AV/EDR evasion via direct system calls.
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
绕过AV/EDR的代码例子(Code example to bypass AV/EDR)
AV/EDR evasion via direct system calls.
翻译 - 通过直接系统调用进行AV / EDR规避。
Example code for EDR bypassing
Kill AV/EDR leveraging BYOVD attack
Awesome AV/EDR/XDR Bypass Tips
Simple EDR implementation to demonstrate bypass
Terminate AV/EDR Processes using kernel driver
List of Bluetooth BR/EDR/LE security resources
Automated DLL Sideloading Tool With EDR Evasion Capabilities
Little user-mode AV/EDR evasion lab for training & learning purposes