Skip to content

d5fa4lt/ThunderStrikeEDR

Folders and files

NameName
Last commit message
Last commit date

Latest commit

ย 

History

14 Commits
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 

Repository files navigation

ThunderStrike EDR

ThunderStrikeEDR Logo

Introduction

I create this project to Learn Edr Internals and Windows kernel Programming.

๐Ÿš€ Features

It only has one feature right now which is inject a Hook DLL into each process using KAPC. I will add More Features in the future.

โš ๏ธ Caution

This project is under development, so please use it with caution. It is recommended to run it inside a virtual machine to avoid any risks to your main system.

๐Ÿ“ To-Do

  • Implement a memory scanner.
  • Integrate basic logging and alerting system.
  • Integrate ETW / ETW-TI

๐Ÿ“š Resources

About

Simple EDR

Resources

Stars

Watchers

Forks

Contributors

Languages