-
Updated
Feb 6, 2026 - C++
evasion-techniques
Here are 33 public repositories matching this topic...
A comprehensive modern architecture model is proposed to integrate platform solutions and tooling to support a professional Red Team.
-
Updated
Feb 10, 2026
AutoPwnKey is a red teaming framework and testing tool using AutoHotKey (AHK), which at the time of creation proves to be quite evasive. It is our hope that this tool will be useful to red teams over the short term, while over the long term help AV/EDR vendors improve how they handle AHK scripts.
-
Updated
Jul 21, 2025 - AutoHotkey
Cross platform (Linux / Windows) shellcode packer for CTFs and pentest / red team exams aiming for AV evasion !
-
Updated
Feb 5, 2026 - C
Tool for working with Indirect System Calls in Cobalt Strike's Beacon Object Files (BOF) using SysWhispers3 for EDR evasion
-
Updated
Jul 9, 2025 - C
PandaCrypter is a C#-based tool designed to convert PowerShell scripts into obfuscated batch files (.bat) with encryption and additional features for execution control.
-
Updated
Aug 16, 2025 - C#
Advanced shellcode loader with AES-256, EDR/AMSI/ETW bypass, indirect syscalls.
-
Updated
Jan 11, 2026 - C
A proof-of-concept to demonstrate randomized execution paths and their impact on call stack signatures — ideal for EDR testing, behavior-based detection research, and evasion analysis.
-
Updated
Jan 17, 2026 - C++
An advanced tool for bypassing EDR (Endpoint Detection and Response) systems and antivirus software by dynamically generating and injecting shellcode
-
Updated
Oct 7, 2024 - C#
🧾 | Cybersecurity and CTF Resource that i gathered over the years
-
Updated
Feb 12, 2025
Generator of techniques to evade AMSI in Windows. It uses random methods to generate code without signatures detectable by Windows Defender. Ideal for security research and AMSI bypass.
-
Updated
Feb 16, 2025 - JavaScript
ZigStrike is a powerful shellcode loader in Zig, featuring multiple injection techniques and anti-sandbox measures. Explore its capabilities on GitHub! 🐙🌐
-
Updated
Feb 21, 2026
New Amsi Patching Update
-
Updated
Jun 9, 2025 - C#
Advanced Windows shellcode development framework with position-independent code generation, dynamic API resolution, and cross-architecture support for security research and penetration testing.
-
Updated
Feb 21, 2026 - C++
This repo is mainly me making some basic tools to learn how they work and try to gain more knowledge
-
Updated
Dec 15, 2025 - Python
Go-based HTTP C2 framework with a Team Server and polling Beacon payload, built to demonstrate Linux evasion techniques.
-
Updated
Feb 20, 2026 - Go
🔐 Load and execute XOR-encrypted shellcode on Windows with this efficient C++ and Python utility for enhanced security and customization.
-
Updated
Feb 21, 2026 - C++
ZigStrike is a robust shellcode loader developed in Zig, offering a variety of injection techniques and anti-sandbox features. It leverages compile-time capabilities for efficient shellcode allocation, demonstrating proven success in bypassing advanced security solutions
-
Updated
Jul 6, 2025
Tool for obfuscating payloads in hexadecimal format for evasion in security testing and Red Team engagements.
-
Updated
Nov 11, 2024 - C++
Cyber Operations Platform
-
Updated
Aug 20, 2025 - Python
Improve this page
Add a description, image, and links to the evasion-techniques topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the evasion-techniques topic, visit your repo's landing page and select "manage topics."