Home

Bypassing Windows Defender - Metasploit

%3CLINGO-SUB%20id%3D%22lingo-sub-193674%22%20slang%3D%22en-US%22%3EBypassing%20Windows%20Defender%20-%20Metasploit%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-193674%22%20slang%3D%22en-US%22%3E%3CP%3EI%20have%20just%20noticed%20this%20from%20Rapid7%20regarding%20using%20Metasploit%20shellcode%20to%20bypass%20Windows%20Defender.%3C%2FP%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fblog.rapid7.com%2F2018%2F05%2F03%2Fhiding-metasploit-shellcode-to-evade-windows-defender%2F%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fblog.rapid7.com%2F2018%2F05%2F03%2Fhiding-metasploit-shellcode-to-evade-windows-defender%2F%3C%2FA%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EJust%20curious%20if%20Defender%20ATP%20would%20make%20this%20more%20difficult%3F%3C%2FP%3E%3C%2FLINGO-BODY%3E
David Caddick
Contributor

I have just noticed this from Rapid7 regarding using Metasploit shellcode to bypass Windows Defender.

https://blog.rapid7.com/2018/05/03/hiding-metasploit-shellcode-to-evade-windows-defender/

 

Just curious if Defender ATP would make this more difficult?