fengjixuchui's repositories

VMAware

VM detection library (beta)

Language:C++License:GPL-3.0Stargazers:3Issues:0Issues:0

ChromeKatz

Dump cookies directly from Chrome process memory

Language:C++License:BSD-3-ClauseStargazers:1Issues:0Issues:0

ScreenExpander

A Driver-Level Remote Screen Expander on Windows

Language:C++License:GPL-2.0Stargazers:1Issues:0Issues:0

AFNetworking

A delightful networking framework for iOS, macOS, watchOS, and tvOS.

Language:Objective-CLicense:MITStargazers:0Issues:1Issues:0

bkcrack

Crack legacy zip encryption with Biham and Kocher's known plaintext attack.

Language:C++License:ZlibStargazers:0Issues:0Issues:0

blackleak

CVE-2024-30212

License:MITStargazers:0Issues:0Issues:0

BypassAntiVirus

远控免杀系列

Language:XSLTStargazers:0Issues:0Issues:0

capstone

Capstone disassembly/disassembler framework for ARM, ARM64 (ARMv8), Alpha, BPF, Ethereum VM, HPPA, M68K, M680X, Mips, MOS65XX, PPC, RISC-V(rv32G/rv64G), SH, Sparc, SystemZ, TMS320C64X, TriCore, Webassembly, XCore and X86.

Language:CLicense:NOASSERTIONStargazers:0Issues:0Issues:0

curl

A command line tool and library for transferring data with URL syntax, supporting HTTP, HTTPS, FTP, FTPS, GOPHER, TFTP, SCP, SFTP, SMB, TELNET, DICT, LDAP, LDAPS, FILE, IMAP, SMTP, POP3, RTSP and RTMP. libcurl offers a myriad of powerful features

Language:CLicense:NOASSERTIONStargazers:0Issues:1Issues:0

Disable-TamperProtection

A POC to disable TamperProtection and other Defender / MDE components

License:NOASSERTIONStargazers:0Issues:0Issues:0

fake-linker

Modify Android linker to provide loading module and hook function

Language:C++License:Apache-2.0Stargazers:0Issues:0Issues:0

folly

An open-source C++ library developed and used at Facebook.

Language:C++License:Apache-2.0Stargazers:0Issues:1Issues:0

GhostlyHollowingViaTamperedSyscalls

Implementing the ghostly hollowing PE injection technique using tampered syscalls.

Language:CLicense:MITStargazers:0Issues:0Issues:0

IdaMeme

Crashes ida on static analyses.

Language:C++Stargazers:0Issues:0Issues:0

ILSpy

.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!

Language:C#Stargazers:0Issues:0Issues:0

iOS-1

Most usable tools for iOS penetration testing

License:Apache-2.0Stargazers:0Issues:0Issues:0

KCTF-KeyME-Cracker

看雪2020 KCTF秋季赛 第八题 惊天阴谋 题解代码

Language:CStargazers:0Issues:0Issues:0

keychain-swift

Helper functions for saving text in Keychain securely for iOS, OS X, tvOS and watchOS.

License:MITStargazers:0Issues:0Issues:0

mbr-overwrite

Overwrites MBR with own ASM file!

Language:CLicense:UnlicenseStargazers:0Issues:0Issues:0

mitmproxy

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Language:PythonLicense:MITStargazers:0Issues:0Issues:0

MS-DOS

The original sources of MS-DOS 1.25 and 2.0, for reference purposes

Language:AssemblyLicense:MITStargazers:0Issues:1Issues:0
Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

RWX_MEMEORY_HUNT_AND_INJECTION_DV

Abusing Windows fork API and OneDrive.exe process to inject the malicious shellcode without allocating new RWX memory region.

License:MITStargazers:0Issues:0Issues:0

santa

A binary whitelisting/blacklisting system for macOS

Language:Objective-C++License:Apache-2.0Stargazers:0Issues:0Issues:0

tableflipper

partially disable patchguard up to win11 21H2

Stargazers:0Issues:0Issues:0

TInjector

劫持Zygote在App启动前注入so

Language:C++License:GPL-3.0Stargazers:0Issues:0Issues:0

VasieDrv

Simple .data ptr driver Maybe someone can learn from it idk

Stargazers:0Issues:0Issues:0

Voidgate

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by performing on-the-fly decryption of individual encrypted assembly instructions, thus rendering memory scanners useless for that specific memory page.

License:BSD-3-ClauseStargazers:0Issues:0Issues:0
Language:CLicense:NOASSERTIONStargazers:0Issues:0Issues:0