BOBO's repositories
BetterGetProcAddress
POC of a better implementation of GetProcAddress for ntdll using binary search
bluffy
Convert shellcode into :sparkles: different :sparkles: formats!
COFFLoader2
Load and execute COFF files and Cobalt Strike BOFs in-memory
defender-control
An open-source windows defender manager. Now you can disable windows defender permanently.
encrypt
Pseudorandom AES-256 encryption designed to protect shellcode and arbitrary strings. C# and C/C++ compatible.
Enum-LSASS
LSASS enumeration like pypykatz written in C-Lang
ForkDumpSharp
ForkDump CSharp Version
fuzzing
Tutorials, examples, discussions, research proposals, and other resources related to fuzzing
GH-Injector-Library
A feature rich DLL injection library.
Harmony
A library for patching, replacing and decorating .NET and Mono methods during runtime
HellgateLoader_CSharp
Load shellcode via HELLGATE, Rewrite hellgate with .net framework for learning purpose.
hide_execute_memory
隐藏可执行内存
inboxkitten
Disposable email inbox powered by serverless mailgun kittens
ipsw
iOS/macOS Research Swiss Army Knife
KaynLdr
KaynLdr is a Reflective Loader written in C/ASM
KernelBypassSharp
C# Kernel Mode Driver to read and write memory in protected processes
NativeFunctionStaticMap
A *very* imperfect attempt to correlate Kernel32 function calls to native API (Nt/Zw) counterparts/execution flow.
NtTools
Some random system tools for Windows
obfCoder
A simple program to obfuscate code written in cpp.
poolfengshui
笔者的在原作者池风水利用工具(以下简称工具)基础上进行二次开发,新增了全自动获取内核调试模块符号的偏移量及配置参数和不同漏洞利用方式优化等功能, 解决了不同Windows版本适配问题,工具包括适配驱动和利用程序两部分组成,实现了在Windows 10 19H1之后任意版本包括满补丁系统上的稳定利用.
PyQt
PyQt Examples(PyQt各种测试和例子) PyQt4 PyQt5
reactos
A free Windows-compatible Operating System
ShiroAttack2
shiro反序列化漏洞综合利用,包含(回显执行命令/注入内存马)修复原版中NoCC的问题 https://github.com/j1anFen/shiro_attack
WARFOX-C2
An HTTPS beaconing Windows implant and multi-layered proxy C2 network designed for covert APT emulation focused offensive operations
win32
Public mirror for win32-pr
WinObjEx64
Windows Object Explorer 64-bit