How To Bypass Windows Defender with Nim Reverse Shell

Sdílet
Vložit
  • čas přidán 21. 08. 2024
  • Is it possible to bypass windows defender and elastic security at the same time with a nim written reverse shell?
    The best purple teaming series on youtube with real hands on learning for everyone!
    For educational purposes only!
    Subscribe and like for more!
    Connect with me on linkedin: / howard-mukanda-24503144
    Follow me on twitter: / lahilabs
    A simple reverse shell written in Nim that bypasses Windows Defender detection, find it here: github.com/Sn1... Connect and Direct Message me on Linkedin: / howard-mukanda-24503144

Komentáře • 24

  • @tonyfernandes216
    @tonyfernandes216 Před rokem +5

    brilliant work mate, love to see more video about windows defender bypass and threat hunting in Elastic search, Wazu.

  • @Ydt-cd8xw
    @Ydt-cd8xw Před 4 měsíci

    mate this was exactly what i was looking for. thank you!!!

  • @timecop1983Two
    @timecop1983Two Před 27 dny

    amazing buddy never give up

  • @neon_Nomad
    @neon_Nomad Před rokem +1

    Exactly why i use simple wall

  • @anonymousperson45152
    @anonymousperson45152 Před rokem +1

    nice vid bro

  • @aviwemusa6109
    @aviwemusa6109 Před 5 měsíci

    How to implement this if my target is my remote (EC2 instance), do I put my Internet public IP on V1 since my Kali is within VMware on my Ubuntu?

  • @RaGhav363
    @RaGhav363 Před 10 měsíci

    Don't close any function of Microsoft defender. And add some AVs IDS firewall on top of it and then bypass it

  • @fokyewtoob8835
    @fokyewtoob8835 Před rokem

    Dope content man. Actually makes me open to trying out blue even though I’m red for life

  • @station0x
    @station0x Před 10 měsíci

    how to setup elastic with defender? can u plz tell me

  • @gabrielconsec
    @gabrielconsec Před 10 měsíci

    I've seen some malware written in D. Languages ​​such as Carbon, Zig, Haxe can be used. Could an AI help in these cases of detecting unconventional codes?

  • @hiddengo3232
    @hiddengo3232 Před rokem

    how to bypass edr

  • @umarmukthar1965
    @umarmukthar1965 Před rokem

    powershell not working ?

    • @ITSecurityLabs
      @ITSecurityLabs  Před rokem

      No, powershell still works!

    • @umarmukthar1965
      @umarmukthar1965 Před rokem

      @@ITSecurityLabs bro stable powershell connection any tools bypass in windows defender

    • @umarmukthar1965
      @umarmukthar1965 Před rokem

      @@ITSecurityLabs but this tool working 💯

  • @abdullahabushaqra8256
    @abdullahabushaqra8256 Před 3 měsíci

    sorry ,but windows definder detect it!!!

  • @RaGhav363
    @RaGhav363 Před 10 měsíci

    This is of no use I tell you that. Because he disabled half of the windows difender functions

    • @ITSecurityLabs
      @ITSecurityLabs  Před 10 měsíci +1

      Please tell me more. You mean disabling automatic sample submission? Because that’s all I disabled. Maybe you mean since it’s not domain joined and I have no app locker rules and powershell is not constrained? I genuinely want to know what you mean. I am learning as well and if there is a better way, I want that