logo

NSEC2023 - Roll for Stealth: Evading AV/EDR Entropy Checks

NorthSec

NorthSec

1 followers

time7 mo agoview0 views

Evading detection by modern AV & EDR can seem daunting and near impossible to the uninitiated. If the idea of trying to get a payload past these defenses seems unattainable and too “l337,” then this talk is for you! I’ll discuss what entropy is and how AV & EDR use entropy to detect payloads. I’ll cover some basic concepts and tools you can use to start evading detection and get your payloads running. Stick around to the end learn about a new tool for hiding shellcode and defeating entropy checks!

Loading comments...