Evasion Tools

208 tools
DataDefender
DataDefender
Open Source Evasion

Sensitive Data Management: Data Discovery and Anonymization toolkit

DDexec
DDexec
Open Source Evasion

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

de4py
de4py
Free Evasion Reverse Engineering

The ultimate AI-powered toolkit for python reverse engineering

DEFCON-31-Syscalls-Workshop
DEFCON-31-Syscalls-Workshop
Free Evasion Forensics

Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".

DefenderCheck
DefenderCheck
Open Source Evasion

Identifies the bytes that Microsoft Defender flags on.

deoptimizer
deoptimizer
Open Source Evasion

Evasion by machine code de-optimization.

dittobytes
dittobytes
Open Source Evasion Exploitation

Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.

DojoLoader
DojoLoader
Open Source Evasion

Generic PE loader for fast prototyping evasion techniques

Donut
Donut
Open Source Evasion Exploitation

Generates position-independent shellcode from .NET assemblies, PE files, scripts (VBScript, JScript), and XSL that runs in memory. Used to e…

EagleVM
EagleVM
Open Source Evasion Reverse Engineering

Native code virtualizer for x64 binaries

EDR-GhostLocker
EDR-GhostLocker
Open Source Evasion Forensics

AppLocker-Based EDR Neutralization

email-concealer
email-concealer
Open Source Evasion

Conceal e-mail addresses in a string by replacing their domain

epic
epic
Free Evasion Exploitation

PIC shellcode (C/C++) development toolkit designed for malware developers.

FakeHTTP
FakeHTTP
Open Source Evasion

Obfuscate all your TCP connections into HTTP protocol.

freebind.js
freebind.js
Open Source Evasion

IPv6 rate limiting evasion library that allows you to bind sockets to random IP addresses from specified prefixes

garble
garble
Open Source Evasion

go install mvdan.cc/garble@latest # or @master

gmailc2
gmailc2
Open Source Evasion

A Fully Undetectable C2 Server That Communicates Via Google SMTP to evade Antivirus Protections and Network Traffic Restrictions

gnirts
gnirts
Open Source Evasion

Obfuscate string literals in JavaScript code.

GobypassAV-shellcode
GobypassAV-shellcode
Free Evasion Exploitation

shellcode免杀加载器,使用go实现,免杀bypass火绒、360、核晶、def等主流杀软

goodboy-framework
goodboy-framework
Open Source Evasion Exploitation

15-stage Windows malware development & analysis course in Rust. Red team builds it, blue team detects it. All 15 binaries achieved 0/76 on V…

Grabbers-Deobfuscator
Grabbers-Deobfuscator
Free Evasion Forensics

Decompiler and deobfuscator that offers support to track discord webhooks inside: blank stealer, luna grabber, thiefcat, Creal and all unobf…

greenmask
greenmask
Open Source Evasion

Database anonymization, synthetic data generation and logical dump

hypnus
hypnus
Open Source Evasion Exploitation

Library for execution obfuscation, designed to protect memory regions during inactivity or sleep cycles. It leverages thread pool timers, wa…

IDA_Ollvm-unflattener
IDA_Ollvm-unflattener
Open Source Evasion Reverse Engineering

Control Flow Flattening Deobfuscator for Obfuscator-LLVM as a plugin for IDA Pro.