I may be slow to respond.
Stars
Evasion
免杀混淆相关的东西
7 repositories
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.
ScareCrow - Payload creation framework designed around EDR bypass.
Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs