unhooking
Here are 11 public repositories matching this topic...
Slides and POC demo for my talk at Divizion Zero on EDR evasion titled "Evasion Adventures"
-
Updated
Jan 14, 2023 - C++
Reduce Dynamic Analysis Detection Rates With Built-In Unhooker, Anti Analysis Techniques, And String Obfuscator Modules.
-
Updated
Dec 21, 2022 - C++
Pure-Go offensive-security primitives library: syscalls, evasion (AMSI/ETW/unhook/sleepmask), injection, PE packer, credentials, post-ex, C2. MITRE ATT&CK mapped. Authorized research only.
-
Updated
Jul 13, 2026 - Go
Bypassing all EDR hooks while maintaining the cleanest callstack of all time with proxy calls and an exception handler.
-
Updated
Apr 5, 2026 - C
AV (BitDefender) function un-hook in C
-
Updated
Aug 27, 2022 - C
Advanced payload creation framework for bypassing EDR solutions and Application Whitelisting using DLL side-loading, in-memory unhooking, and indirect syscalls.
-
Updated
Jul 12, 2026
This project demonstrates simply a ssdt unhooking technique via NtLoadDriver routine in Windows 11 X64.
-
Updated
Sep 8, 2025 - C
Improve this page
Add a description, image, and links to the unhooking topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the unhooking topic, visit your repo's landing page and select "manage topics."