Jerry's repositories
awesome-incident-response
A curated list of tools for incident response
Banshee
Experimental Windows x64 Kernel Rootkit.
bpf-developer-tutorial
Learn eBPF by examples | eBPF 开发者教程与知识库:通过小工具和示例一步步学习 eBPF,包含性能、网络、安全等多种应用场景
CMU-15-213-CSAPP
Labs for open course CMU 15-213
cpprestsdk
The C++ REST SDK is a Microsoft project for cloud-based client-server communication in native code using a modern asynchronous C++ API design. This project aims to help C++ developers connect to and interact with services.
Detours
Detours is a software package for monitoring and instrumenting API calls on Windows. It is distributed in source code form.
dns-over-https
High performance DNS over HTTPS client & server
Hades
Hades is a Host-Based Intrusion Detection System based on eBPF(mainly)
Hades-Windows
Hades HIDS/HIPS for Windows
Huorong-ATP-Rules
一款火绒增强HIPS自定义规则
iMonitorSDK
系统监控开发套件(sysmon、procmon、edr、终端安全、主机安全、零信任、上网行为管理、沙箱)
InfinityHookPro2
InfinityHook 支持Win7 到 Win11 最新版本,虚拟机环境及物理机环境
MaxOS
A 64bit hobby operating system written in C++
ohook
An universal Office "activation" hook with main focus of enabling full functionality of subscription editions
openvpn
OpenVPN is an open source VPN daemon
openvpn-install
OpenVPN road warrior installer for Ubuntu, Debian, AlmaLinux, Rocky Linux, CentOS and Fedora
OSX-KVM
Run macOS on QEMU/KVM. With OpenCore + Monterey + Ventura + Sonoma support now! Only commercial (paid) support is available now to avoid spammy issues. No Mac system is required.
oxgenPdb
a Windows kernel Pdb parsing and downloading library that running purely in kernel mode without any R3 programs.
phnt
Native API header files for the System Informer project.
PotatoTool
这款工具是一款功能强大的网络安全综合工具,旨在为安全从业者、红蓝对抗人员和网络安全爱好者提供全面的网络安全解决方案。它集成了多种实用功能,包括解密、分析、扫描、溯源等,为用户提供了便捷的操作界面和丰富的功能选择。This tool offers robust network security solutions for professionals and enthusiasts. With features like decryption, analysis, scanning, and traceability, it provides a user-friendly interface and diverse functionality.
py
飘云ark(pyark)
qemu-patched
QEMU patched to avoid detection from various anticheats such as Battleye/EAC
RealBlindingEDR
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
web-check
🕵️♂️ All-in-one OSINT tool for analysing any website
WinArk
Windows Anti-Rootkit Tool
WinObjEx64
Windows Object Explorer 64-bit
Yara-Rules
Repository of Yara Rules