👽
ALi3nW3rX
Search...
Ctrl
K
WINDOWS
Scripts
FilelessNTDllReflection
Previous
Scripts
Next
FilelessRemotePE
Last updated
2 years ago
✍️
GitHub - D1rkMtr/FilelessNtdllReflection: Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle to ntdll, and trigger exported API from the export table
GitHub