DirWangK's starred repositories

imgui

Dear ImGui: Bloat-free Graphical User interface for C++ with minimal dependencies

awesome-free-chatgpt

🆓免费的 ChatGPT 镜像网站列表,持续更新。List of free ChatGPT mirror sites, continuously updated.

Language:PythonLicense:MITStargazers:17277Issues:135Issues:698

impacket

Impacket is a collection of Python classes for working with network protocols.

Language:PythonLicense:NOASSERTIONStargazers:13057Issues:375Issues:938

dnSpy

Unofficial revival of the well known .NET debugger and assembly editor, dnSpy

Language:C#License:GPL-3.0Stargazers:6311Issues:130Issues:222

Responder

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.

Language:PythonLicense:GPL-3.0Stargazers:5210Issues:145Issues:178

Harmony

A library for patching, replacing and decorating .NET and Mono methods during runtime

MemProcFS

MemProcFS

Language:CLicense:AGPL-3.0Stargazers:2855Issues:81Issues:275

BlackLotus

BlackLotus UEFI Windows Bootkit

nanodump

The swiss army knife of LSASS dumping

Nidhogg

Nidhogg is an all-in-one simple to use rootkit.

Language:C++License:GPL-3.0Stargazers:1665Issues:32Issues:15

SysWhispers3

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

Language:PythonLicense:Apache-2.0Stargazers:1212Issues:23Issues:15

CS-Situational-Awareness-BOF

Situational Awareness commands implemented using Beacon Object Files

Language:CLicense:GPL-2.0Stargazers:1190Issues:37Issues:34

raw_pdb

A C++11 library for reading Microsoft Program DataBase PDB files

Language:C++License:BSD-2-ClauseStargazers:657Issues:19Issues:29

NtRays

Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.

Language:C++License:BSD-3-ClauseStargazers:491Issues:16Issues:4

WinArk

Windows Anti-Rootkit Tool

Language:C++License:MITStargazers:414Issues:13Issues:4

xcyclopedia

Encyclopedia for Executables

Language:PowerShellLicense:MITStargazers:403Issues:25Issues:6

ExecutiveCallbackObjects

Research on Windows Kernel Executive Callback Objects

bof_helper

Beacon Object File (BOF) Creation Helper

Language:PythonStargazers:216Issues:3Issues:0

6502bench

A workbench for developing 6502 code

Language:AssemblyLicense:Apache-2.0Stargazers:165Issues:21Issues:152

VMAttack

Research on code virtualization in .NET [WIP]

Language:C#License:GPL-3.0Stargazers:155Issues:12Issues:0

AheadLibEx

hijack dll Source Code Generator .

Language:C++License:GPL-3.0Stargazers:149Issues:5Issues:3

sumap

manually map driver for a signed driver memory space

drivers-binaries

Exploitable drivers, you know what I mean

Reversing-a-signed-driver

Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6

Demystifying-PatchGuard

Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unauthorized modifications to the Windows kernel. The analysis is done through practical engineering, with a focus on understanding PatchGuard's inner workings.

blacklotus

A attempt at replicating BLACKLOTUS capabilities, whilst not acting as a direct mimic.

QtMetaParser

ida plugin to parse qt meta data

Language:C++License:MITStargazers:57Issues:7Issues:1

retroware

This repository contains some tools that I have written in the past

Language:C++Stargazers:24Issues:0Issues:0

CVE-2022-21894-Payload

Example payload for CVE-2022-21894

Language:CStargazers:12Issues:2Issues:0

minehack

Minesweeper x64 Hack

Language:C++Stargazers:12Issues:0Issues:0