n4r1B's repositories

ferrisetw

Basically a KrabsETW rip-off written in Rust

Language:RustLicense:NOASSERTIONStargazers:60Issues:11Issues:35

WdFilter-Research

Data and structures regarding the research done on WdFilter

Language:CStargazers:13Issues:5Issues:0

win-drvutils-rs

Collection of Windows Driver Utils

Language:RustLicense:Apache-2.0Stargazers:8Issues:3Issues:0

Windbg_WdBootScript

Little script to display the type MpEbGlobasl and the SignaturesDatabase used by WdBoot.

Language:JavaScriptStargazers:5Issues:5Issues:1

memhunter

Live hunting of code injection techniques

Language:C++License:MITStargazers:1Issues:2Issues:0

n4r1b-hugo

Repo of my RE blog

Language:HTMLStargazers:1Issues:5Issues:0

EfiGuard

Disable PatchGuard and DSE at boot time

Language:CLicense:GPL-3.0Stargazers:0Issues:2Issues:0

frida

Clone this repo to build Frida

Language:MakefileLicense:NOASSERTIONStargazers:0Issues:3Issues:0

hugo-theme-hello-friend-ng

Pretty basic theme for Hugo that covers all of the essentials. All you have to do is start typing!

Language:HTMLLicense:NOASSERTIONStargazers:0Issues:1Issues:0

krabsetw

KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.

Language:C++License:NOASSERTIONStargazers:0Issues:2Issues:0

python-package

The old Python distribution used in Chevah Project... moving to chevah/python-distribution

Language:CStargazers:0Issues:3Issues:0

radare2

unix-like reverse engineering framework and commandline tools

Language:CLicense:LGPL-3.0Stargazers:0Issues:3Issues:0

radare2-r2pipe

Access radare2 via pipe from any programming language!

Language:JavaScriptStargazers:0Issues:3Issues:0

radare2-regressions

Regression Tests for the Radare2 Reverse Engineer's Debugger

Language:ShellLicense:GPL-3.0Stargazers:0Issues:3Issues:0

SimpleVisor

SimpleVisor is a simple, portable, Intel VT-x hypervisor with two specific goals: using the least amount of assembly code (10 lines), and having the smallest amount of VMX-related code to support dynamic hyperjacking and unhyperjacking (that is, virtualizing the host state from within the host). It works on Windows and UEFI.

Language:CStargazers:0Issues:2Issues:0

vscode

Visual Studio Code

Language:TypeScriptLicense:MITStargazers:0Issues:3Issues:0

win-lookaside

Simple Rust Allocator for Windows Kernel based on Lookaside Lists.

Language:RustLicense:MITStargazers:0Issues:2Issues:0