CrimsonTools
CrimsonTools is an advanced offensive security toolkit designed to help Ethical Hackers, Red Teams, and Purple Teams bypass modern antivirus and EDR solutions seamlessly. By automating and simplifying evasion techniques, it allows professionals to focus on actual exploitation and high‑value objectives rather than wasting time on complex security bypassing. Additionally, CrimsonTools includes a locker module that enables safe, controlled simulations of ransomware attacks to validate detection, response and recovery procedures.
Features
Key Features & Capabilities
Malleable Builders (Loader, Packer, Locker)
Generate customizable loaders, packers, and controlled ransomware samples to adapt to various operational contexts and simulation needs.
Multiple Injection Techniques
Implement various process injection methods to adapt to different defensive configurations.
Flexible API Call Systems
Switch between classic kernel32/ntdll calls and indirect syscalls to bypass advanced hooks.
AMSI & ETW Bypass
Leverage multiple built-in methods to bypass Windows AMSI and ETW protections seamlessly.
Guardrails Implementation
Integrate different guardrail mechanisms to limit payload execution to specific environments.
Metadata Customization
Fully customize binary metadata to reduce static detection and improve operational flexibility.
Multiple Output Formats
Export payloads in various formats to fit different delivery scenarios and execution vectors.
Targeted AV/EDR Bypass Profiles
Utilize profiles with pre-defined options to optimize bypass for specific AV/EDR products.
GUI Themes & Customization
Switch between several GUI themes or create your own fully customized style for the interface.
GUI Themes & Customization
Discover CrimsonTools modern and sleek GUI, designed to be fully customizable. Switch between multiple built-in themes or create your own to match your style and workflow. Enhance your offensive operations experience with a refined, intuitive interface.
Explore FeaturesMalleable Loader Showcase
Discover the powerful loader builder included in CrimsonTools. Easily customize your loader behavior to adapt to different environments, increase stealth, and ensure smooth payload delivery.
Explore FeaturesMalleable Packer Showcase
Explore how the malleable packer feature helps you obfuscate and pack your payloads to avoid detection, control execution flow, and maximize operational success.
Explore FeaturesMalleable Locker Showcase
See how the customizable locker module can generate controlled ransomware-like simulations to test your defensive controls and incident response procedures in a safe environment.
Explore FeaturesReady to elevate your offensive operations?
Empower your team with advanced, stealthy, and fully customizable tools. Take your simulations and engagements to the next level with CrimsonTools.
Contact Us

