Daniel Roethlisberger's starred repositories

build-your-own-x

Master programming by recreating your favorite technologies from scratch.

mermaid

Generation of diagrams like flowcharts or sequence diagrams from text in a similar manner as markdown

Language:JavaScriptLicense:MITStargazers:68823Issues:636Issues:2846

ghidra

Ghidra is a software reverse engineering (SRE) framework

Language:JavaLicense:Apache-2.0Stargazers:49204Issues:1023Issues:4663

github-do-not-ban-us

GitHub do not ban us from open source world :iran:

urh

Universal Radio Hacker: Investigate Wireless Protocols Like A Boss

Language:PythonLicense:GPL-3.0Stargazers:10609Issues:423Issues:632

AD-Attack-Defense

Attack and defend active directory using modern post exploitation adversary tradecraft activity

Windows-Kernel-Explorer

A free but powerful Windows kernel research tool.

apple_bleee

Apple BLE research

Language:PythonLicense:GPL-3.0Stargazers:2071Issues:67Issues:35

distorm

Powerful Disassembler Library For x86/AMD64

Language:CLicense:NOASSERTIONStargazers:1227Issues:62Issues:151

Scylla

Imports Reconstructor

Language:C++License:GPL-3.0Stargazers:1045Issues:55Issues:41

ghidra_scripts

Scripts for the Ghidra software reverse engineering suite.

Language:YARALicense:GPL-3.0Stargazers:1002Issues:45Issues:11

Crescendo

Crescendo is a swift based, real time event viewer for macOS. It utilizes Apple's Endpoint Security Framework.

Language:SwiftLicense:NOASSERTIONStargazers:998Issues:21Issues:20

python-exe-unpacker

A helper script for unpacking and decompiling EXEs compiled from python code.

Language:PythonLicense:GPL-3.0Stargazers:883Issues:26Issues:26

CVE-2018-20250

exp for https://research.checkpoint.com/extracting-code-execution-from-winrar

binee

Binee: binary emulation environment

Language:GoLicense:GPL-2.0Stargazers:492Issues:25Issues:34

MalConfScan

Volatility plugin for extracts configuration data of known malware

Language:PythonLicense:NOASSERTIONStargazers:477Issues:36Issues:17

vti-dorks

Awesome VirusTotal Intelligence Search Queries

what_is_this_c2

For all these times you're asking yourself "what is this panel again?"

stalkerware-indicators

Indicators of stalkerware apps

ssldump

ssldump - (de-facto repository gathering patches around the cyberspace)

Language:CLicense:NOASSERTIONStargazers:230Issues:25Issues:34

ecfs

extended core file snapshot format

CobaltStrikeForensic

Toolset for research malware and Cobalt Strike beacons

Language:HTMLStargazers:206Issues:11Issues:0

plyara

Parse YARA rules and operate over them more easily.

Language:PythonLicense:Apache-2.0Stargazers:172Issues:11Issues:73

yara-forensics

Set of Yara rules for finding files using magics headers

Language:YARALicense:GPL-3.0Stargazers:135Issues:15Issues:1

Named-Pipe-Sniffer

Mario & Luigi - Tools for sniffing Windows Named Pipes communication

Language:C#License:MITStargazers:131Issues:6Issues:0

Evil-WinRAR-Gen

Generator of malicious Ace files for WinRAR < 5.70 beta 1

Language:PythonLicense:GPL-3.0Stargazers:126Issues:3Issues:4

python-netflow-v9-softflowd

PyPI "netflow" package. NetFlow v9 parser, collector and analyzer implemented in Python 3. Developed and tested with softflowd

Language:PythonLicense:MITStargazers:108Issues:10Issues:33

YARA-rules

Some YARA rules i will add from time to time

Language:YARAStargazers:60Issues:11Issues:0

hopper-scripts

Scripts for Hopper Disassembler

Language:PythonLicense:NOASSERTIONStargazers:46Issues:3Issues:1