-
Updated
Mar 23, 2026 - C++
evasion-techniques
Here are 36 public repositories matching this topic...
A comprehensive modern architecture model is proposed to integrate platform solutions and tooling to support a professional Red Team.
-
Updated
Mar 25, 2026
Shellcode packer for CTFs and pentest / red team exams aiming for AV evasion!
-
Updated
Apr 4, 2026 - C
AutoPwnKey is a red teaming framework and testing tool using AutoHotKey (AHK), which at the time of creation proves to be quite evasive. It is our hope that this tool will be useful to red teams over the short term, while over the long term help AV/EDR vendors improve how they handle AHK scripts.
-
Updated
Jul 21, 2025 - AutoHotkey
Tool for working with Indirect System Calls in Cobalt Strike's Beacon Object Files (BOF) using SysWhispers3 for EDR evasion
-
Updated
Jul 9, 2025 - C
PandaCrypter is a C#-based tool designed to convert PowerShell scripts into obfuscated batch files (.bat) with encryption and additional features for execution control.
-
Updated
Aug 16, 2025 - C#
vulnerable drivers for windows machines.
-
Updated
Apr 17, 2026
Advanced shellcode loader with AES-256, EDR/AMSI/ETW bypass, indirect syscalls, evasion, early-bird APC injection and PPID spoofing.
-
Updated
Apr 16, 2026 - C
A proof-of-concept to demonstrate randomized execution paths and their impact on call stack signatures — ideal for EDR testing, behavior-based detection research, and evasion analysis.
-
Updated
Jan 17, 2026 - C++
Another FAFO project: Weaponizing MSI installers for fileless code execution
-
Updated
Apr 14, 2026 - Python
An advanced Windows shell code loader and generator toolset featuring XOR encryption, debug protection, and GUI capabilities for penetration testing.
-
Updated
Apr 19, 2026 - C++
🧾 | Cybersecurity and CTF Resource that i gathered over the years
-
Updated
Feb 12, 2025
An advanced tool for bypassing EDR (Endpoint Detection and Response) systems and antivirus software by dynamically generating and injecting shellcode
-
Updated
Oct 7, 2024 - C#
Advanced Red Team Payload Obfuscator. A multi-layer evasion tool for PowerShell, Python, Bash, C#, and Go. Features Shannon Entropy analysis and real-time detection scoring.
-
Updated
Mar 28, 2026 - JavaScript
Generator of techniques to evade AMSI in Windows. It uses random methods to generate code without signatures detectable by Windows Defender. Ideal for security research and AMSI bypass.
-
Updated
Feb 16, 2025 - JavaScript
New Amsi Patching Update
-
Updated
Jun 9, 2025 - C#
Advanced Windows shellcode development framework with position-independent code generation, dynamic API resolution, and cross-architecture support for security research and penetration testing.
-
Updated
Apr 19, 2026 - C++
🔐 Load and execute XOR-encrypted shellcode on Windows with this efficient C++ and Python utility for enhanced security and customization.
-
Updated
Apr 20, 2026 - C++
ZigStrike is a robust shellcode loader developed in Zig, offering a variety of injection techniques and anti-sandbox features. It leverages compile-time capabilities for efficient shellcode allocation, demonstrating proven success in bypassing advanced security solutions
-
Updated
Jul 6, 2025
Tool for obfuscating payloads in hexadecimal format for evasion in security testing and Red Team engagements.
-
Updated
Nov 11, 2024 - C++
Improve this page
Add a description, image, and links to the evasion-techniques topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the evasion-techniques topic, visit your repo's landing page and select "manage topics."