Skip to content

Releases: dobin/RedEdr

Version 0.3

06 Jan 20:04
Compare
Choose a tag to compare
Version 0.3 Pre-release
Pre-release

I made it work. After this, i make it nice.

  • More robust ETW events by switching to KrabsETW
  • More robust ntdll.dll hooking by patching all the bugs
  • Way less crashes
  • The JSON format has somewhat stabilized
  • Reliable callstack addresses memory info
  • Basic ETW detections
  • Tested with some C2

Version 0.2

26 Nov 20:56
Compare
Choose a tag to compare
Version 0.2 Pre-release
Pre-release
  • Better detections
  • example malware
  • DLL callstack more reliable
  • better event log JSON
  • improved HTML UI
  • fix PPL autostart
  • ability to change process name to trace
  • fix various bugs

Initial Version 0.1

11 Nov 19:50
Compare
Choose a tag to compare
Initial Version 0.1 Pre-release
Pre-release

Initial release for testing purposes
All should work. Should.