Rwkeith's starred repositories

dnSpy

.NET debugger and assembly editor

Language:C#Stargazers:26550Issues:994Issues:0

decap-cms

A Git-based CMS for Static Site Generators

Language:JavaScriptLicense:MITStargazers:17905Issues:253Issues:2967

minimal-mistakes

:triangular_ruler: Jekyll theme for building a personal site, blog, project documentation, or portfolio.

HyperDbg

State-of-the-art native debugging tools

Language:CLicense:GPL-3.0Stargazers:2897Issues:87Issues:156

hollows_hunter

Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).

Language:CLicense:BSD-2-ClauseStargazers:2023Issues:65Issues:15

EfiGuard

Disable PatchGuard and Driver Signature Enforcement at boot time

Language:C++License:GPL-3.0Stargazers:1801Issues:52Issues:124

smap

DLL scatter manual mapper

Language:C++Stargazers:719Issues:19Issues:0

Windows-Research-Kernel-WRK-

Windows Research Kernel Source Code

Language:CLicense:MITStargazers:614Issues:12Issues:0

mutante

Kernel-mode Windows HWID spoofer

quarry

Python library that implements the Minecraft network protocol and data types

Language:PythonLicense:NOASSERTIONStargazers:531Issues:20Issues:159

umap

UEFI bootkit for driver manual mapping

efi-memory

PoC EFI runtime driver for memory r/w & kdmapper fork

dxgkrnl_hook

C++ graphics kernel subsystem hook

cmkr

Modern build system based on CMake and TOML.

Language:C++License:MITStargazers:448Issues:11Issues:77

HexraysToolbox

Hexrays Toolbox - Find code patterns within the Hexrays ctree

Language:PythonLicense:CC0-1.0Stargazers:435Issues:13Issues:5

UEFI-Bootkit

A small bootkit which does not rely on x64 assembly.

Language:CLicense:GPL-3.0Stargazers:432Issues:22Issues:0
Language:PythonLicense:BSD-3-ClauseStargazers:380Issues:14Issues:16

D3D11-Worldtoscreen-Finder

D3D11 Worldtoscreen Finder, dx11 w2s, d3d11 w2s, esp, world to screen

awesome

collection of awesome lists

Language:PythonLicense:Apache-2.0Stargazers:297Issues:10Issues:1

HIDInput

HIDInput is a device driver that emulates mouse and/or keyboard input, and has been supplemented with easy to use functions that aid in the decision making process of when or how to synthesize such input.

HookHunter

Analyze patches in a process

KernelGDIDraw

The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.

Language:C++Stargazers:240Issues:6Issues:0

formatPE

A bunch of parsers for PE and PDB formats in C++

Language:C++License:MITStargazers:225Issues:9Issues:8

be-shellcode-tester

BattlEye shellcodes tester

Language:C++Stargazers:135Issues:9Issues:0

RETracker

Reverse Engineering Framework for the Polyend Tracker

libcpp

Embedded Systems C++ Library Support (Currently wraps libcxx)

Language:C++License:MITStargazers:68Issues:11Issues:33

solving-vm-crackme-1

Tutorial on solving a VM based CrackMe.

Language:C++Stargazers:62Issues:4Issues:0

binja-import-header

Small binja plugin to import header file to types

Language:PythonLicense:MITStargazers:17Issues:2Issues:3

binja_winmd

win32json Parser for TypeLibrary creation

Language:PythonLicense:Apache-2.0Stargazers:11Issues:5Issues:0