optiv / ScareCrow

ScareCrow - Payload creation framework designed around EDR bypass.
2.71k stars 503 forks source link

EDR Bypass #34

Closed laurentdelosieresmano closed 2 years ago

laurentdelosieresmano commented 2 years ago

Hello :)

Which EDR were you able to bypass ?

Best, L

Tylous commented 2 years ago

Hello, I won't be answering this but any user-mode EDRs are suspectable to this.