-
Updated
Jul 9, 2026 - C++
evasion-techniques
Here are 48 public repositories matching this topic...
A comprehensive modern architecture model is proposed to integrate platform solutions and tooling to support a professional Red Team.
-
Updated
May 3, 2026
Shellcode packer for CTFs and pentest / red team exams aiming for AV evasion!
-
Updated
Apr 4, 2026 - C
AutoPwnKey is a red teaming framework and testing tool using AutoHotKey (AHK), which at the time of creation proves to be quite evasive. It is our hope that this tool will be useful to red teams over the short term, while over the long term help AV/EDR vendors improve how they handle AHK scripts.
-
Updated
Jul 21, 2025 - AutoHotkey
Tool for working with Indirect System Calls in Cobalt Strike's Beacon Object Files (BOF) using SysWhispers3 for EDR evasion
-
Updated
Jul 9, 2025 - C
Adaptix C2 service plugin that drives LitterBox payload analysis from the operator UI.
-
Updated
May 4, 2026 - NetLinx
PandaCrypter is a C#-based tool designed to convert PowerShell scripts into obfuscated batch files (.bat) with encryption and additional features for execution control.
-
Updated
Aug 16, 2025 - C#
Advanced windows shellcode loader.
-
Updated
Jun 30, 2026 - C
Another FAFO project: Weaponizing MSI installers for fileless code execution
-
Updated
May 7, 2026 - Python
HydraSoft: dependency-free Windows DLL hijack scanner with centralized remote management — HydraAgent, PHP API, and a web console for endpoint security checks across your fleet.
-
Updated
Jul 30, 2026 - HTML
A proof-of-concept to demonstrate randomized execution paths and their impact on call stack signatures — ideal for EDR testing, behavior-based detection research, and evasion analysis.
-
Updated
Jan 17, 2026 - C++
Advanced Red Team Payload Obfuscator. A multi-layer evasion tool for PowerShell, Python, Bash, C#, and Go. Features Shannon Entropy analysis and real-time detection scoring.
-
Updated
Mar 28, 2026 - JavaScript
An advanced Windows shell code loader and generator toolset featuring XOR encryption, debug protection, and GUI capabilities for penetration testing.
-
Updated
Aug 4, 2026 - C++
🧾 | Cybersecurity and CTF Resource that i gathered over the years
-
Updated
Feb 12, 2025
New Amsi Patching Update
-
Updated
Jun 9, 2025 - C#
Generator of techniques to evade AMSI in Windows. It uses random methods to generate code without signatures detectable by Windows Defender. Ideal for security research and AMSI bypass.
-
Updated
Feb 16, 2025 - JavaScript
An advanced tool for bypassing EDR (Endpoint Detection and Response) systems and antivirus software by dynamically generating and injecting shellcode
-
Updated
Oct 7, 2024 - C#
Advanced Windows shellcode development framework with position-independent code generation, dynamic API resolution, and cross-architecture support for security research and penetration testing.
-
Updated
Aug 4, 2026 - C++
The World's Most Intentionally Terrible Antivirus Scanner is a deliberately simplistic antimalware engine designed for security research, education, and red team training. It implements basic heuristic detection methods that mirror real-world AV engines - but with intentional weaknesses to explore.
-
Updated
Jun 28, 2026 - PowerShell
Analysis of Secure Communication Protocols in Adversarial Environments
-
Updated
May 11, 2025
Improve this page
Add a description, image, and links to the evasion-techniques topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the evasion-techniques topic, visit your repo's landing page and select "manage topics."