edr
Here are 23 public repositories matching this topic...
Greathelm is a modular Windows security service focused on process inspection, PowerShell telemetry, and automated response enforcement. It’s built entirely in C++ and designed for minimal dependencies, direct API usage.
-
Updated
Nov 27, 2025 - C++
iMonitor Ice Mirror Endpoint Behavior Analysis System he world most powerful System Activity Monitor Engine
-
Updated
Dec 16, 2025 - C++
Repository to publish your evasion techniques and contribute to the project
-
Updated
Sep 30, 2023 - C++
🚀 Suspend EDR and antivirus processes easily with EDR-Freeze, a user-mode tool that bypasses complex driver vulnerabilities on Windows.
-
Updated
Dec 16, 2025 - C++
🔄 Redirect EDR's working folder using a mini filter to enhance your control and undermine detection capabilities effectively.
-
Updated
Dec 16, 2025 - C++
Windows Kernel Based EDR Agent in VateX Evidentia EDR
-
Updated
Nov 29, 2025 - C++
A generic detection engine (.lib) for Windows which uses downloadable custom rulesets to detect & block processes. Can be used in anti-virus, anti-cheat, anti-crypto mining, etc.
-
Updated
Oct 17, 2025 - C++
Misery Loader to bypass modern EDR solutions
-
Updated
Dec 20, 2024 - C++
This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hollowing
-
Updated
Feb 11, 2024 - C++
PoC exploit for the vulnerable WatchDog Anti-Malware driver (amsdk.sys) – weaponized to kill protected EDR/AV processes via BYOVD.
-
Updated
Sep 11, 2025 - C++
kernel callback removal (Bypassing EDR Detections)
-
Updated
Nov 14, 2025 - C++
The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能, 而不用关心底层驱动的开发、维护和兼容性问题,让其可以专注于业务开发
-
Updated
Feb 19, 2025 - C++
Hades HIDS/HIPS for Windows
-
Updated
Oct 10, 2025 - C++
Evasive shellcode loader for bypassing event-based injection detection (PoC)
-
Updated
Aug 23, 2021 - C++
Enumerate and disable common sources of telemetry used by AV/EDR.
-
Updated
Mar 11, 2021 - C++
Improve this page
Add a description, image, and links to the edr topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the edr topic, visit your repo's landing page and select "manage topics."