Marcos Oviedo's starred repositories

ImHex

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

Language:C++License:GPL-2.0Stargazers:43942Issues:474Issues:1164

claude-engineer

Claude Engineer is an interactive command-line interface (CLI) that leverages the power of Anthropic's Claude-3.5-Sonnet model to assist with software development tasks. This tool combines the capabilities of a large language model with practical file system operations and web search functionality.

llm

Access large language models from the command-line

Language:PythonLicense:Apache-2.0Stargazers:4315Issues:39Issues:410

glazier

A tool for automating the installation of the Microsoft Windows operating system on various device platforms.

Language:PythonLicense:Apache-2.0Stargazers:1223Issues:64Issues:10

PoolParty

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

Language:C++License:BSD-3-ClauseStargazers:924Issues:13Issues:3

defcon_27_windbg_workshop

DEFCON 27 workshop - Modern Debugging with WinDbg Preview

Language:PythonStargazers:700Issues:30Issues:0

No-Consolation

A BOF that runs unmanaged PEs inline

Language:CLicense:MITStargazers:532Issues:5Issues:2
Language:CLicense:NOASSERTIONStargazers:501Issues:8Issues:6

process-cloning

The Definitive Guide To Process Cloning on Windows

Language:CLicense:MITStargazers:397Issues:4Issues:0

Sekiryu

Comprehensive toolkit for Ghidra headless.

Language:PythonLicense:Apache-2.0Stargazers:345Issues:8Issues:6

Deviare-InProc

Deviare In Process Instrumentation Engine

Language:C++License:NOASSERTIONStargazers:328Issues:44Issues:24

PassTheChallenge

Recovering NTLM hashes from Credential Guard

Language:CLicense:MITStargazers:326Issues:5Issues:1

awesome-injection

Centralized resource for listing and organizing known injection techniques and POCs

Language:C++License:GPL-2.0Stargazers:209Issues:3Issues:0

ImmoralFiber

Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) PhantomThread (An evolved callstack-masking implementation)

Language:C++License:MITStargazers:199Issues:3Issues:0

CreateRemoteThreadPlus

CreateRemoteThread: how to pass multiple parameters to the remote thread function without shellcode.

Language:CLicense:GPL-3.0Stargazers:127Issues:2Issues:0

xLogger

Simple windows API logger

WindowsInternals

Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book

offensive-rpc

Offensive RPC PoC

Language:C++Stargazers:82Issues:7Issues:0

interactive-terminal

An Interactive terminal using Xterm.JS and Node.JS

Language:JavaScriptLicense:Apache-2.0Stargazers:70Issues:9Issues:3

ETWListicle

List the ETW provider(s) in the registration table of a process.

Language:CStargazers:50Issues:2Issues:0

iot-core-azure-dm-client

Device Management Client for Windows IoT Core

Language:C#License:NOASSERTIONStargazers:49Issues:29Issues:104

azure-client-tools

Azure Client Tools

Language:C++License:NOASSERTIONStargazers:43Issues:25Issues:43

InternalWinMD

haha winmd machine go brrrr

aiTrans

Multi-language transpiler (source-to-source compiler) using AI

Language:PythonLicense:BSD-2-ClauseStargazers:18Issues:3Issues:0

etw-patching-for-dummies

ETW patching for dummies

Language:CStargazers:2Issues:2Issues:0