All Categories → Security → evasion

Top 28 evasion open source projects

Veil
Veil 3.1.X (Check version info in Veil at runtime)
Nativepayload dns
C# code for Transferring Backdoor Payloads by DNS Traffic and Bypassing Anti-viruses
Zombieant
Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.
Shhmon
Neutering Sysmon via driver unload
Green Hat Suite
Green-hat-suite is a tool to generate meterpreter/shell which could evade antivirus.
Defendercheck
Identifies the bytes that Microsoft Defender flags on.
Ripv6
Random IPv6 - circumvents restrictive IP address-based filter and blocking rules
Bashfuscator
A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.
Hacktheworld
An Python Script For Generating Payloads that Bypasses All Antivirus so far .
Cloak
Cloak can backdoor any python script with some tricks.
Telemetrysourcerer
Enumerate and disable common sources of telemetry used by AV/EDR.
Xeexe Topantivirusevasion
Undetectable & Xor encrypting with custom KEY (FUD Metasploit Rat) bypass Top Antivirus like BitDefender,Malwarebytes,Avast,ESET-NOD32,AVG,... & Automatically Add ICON and MANIFEST to excitable
Awesome Windows Red Team
A curated list of awesome Windows frameworks, libraries, software and resources for Red Teams
Invizzzible
InviZzzible is a tool for assessment of your virtual environments in an easy and reliable way. It contains the most recent and up to date detection and evasion techniques as well as fixes for them.
Adversarial Robustness Toolbox
Adversarial Robustness Toolbox (ART) - Python Library for Machine Learning Security - Evasion, Poisoning, Extraction, Inference - Red and Blue Teams
Fragscapy
Fragscapy is a command-line tool to fuzz network protocols by automating the modification of outgoing network packets. It can run multiple successive tests to determine which options can be used to evade firewalls and IDS.
ScareCrow-CobaltStrike
Cobalt Strike script for ScareCrow payloads intergration (EDR/AV evasion)
SQLi-Query-Tampering
SQLi Query Tampering extends and adds custom Payload Generator/Processor in Burp Suite's Intruder. This extension gives you the flexibility of manual testing with many powerful evasion techniques.
Evader
Packer (actually a crypter) for antivirus evasion implemented for windows PE files (BSc-Thesis)
JustEvadeBro
JustEvadeBro, a cheat sheet which will aid you through AMSI/AV evasion & bypasses.
DNSWho
transmit cs beacon (shellcode) over self-made dns to avoid anti-kill and AV
unprotect
Unprotect is a python tool for parsing PE malware and extract evasion techniques.
angr-antievasion
Final project for the M.Sc. in Engineering in Computer Science at Università degli Studi di Roma "La Sapienza" (A.Y. 2016/2017).
NativePayload ARP
C# code for Transferring Backdoor Payloads by ARP Traffic and Bypassing Anti-viruses (Slow)
1-28 of 28 evasion projects