Schrodinger's starred repositories

fallout1-ce

Fallout for modern operating systems

Language:C++License:NOASSERTIONStargazers:2117Issues:40Issues:164

mubeng

An incredibly fast proxy checker & IP rotator with ease.

Language:GoLicense:Apache-2.0Stargazers:1554Issues:37Issues:57

darkPulse

darkPulse是一个用go编写的shellcode Packer,用于生成各种各样的shellcode loader,免杀火绒,360核晶等国内常见杀软。

injector

Library for injecting a shared library into a Linux or Windows process

Language:CLicense:GPL-2.0Stargazers:472Issues:11Issues:28

DLLirant

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

Language:C#License:MITStargazers:463Issues:9Issues:0

nyxstone

Nyxstone: assembly / disassembly library based on LLVM, implemented in C++ with Rust and Python bindings, maintained by emproof.com

Language:C++License:MITStargazers:284Issues:9Issues:29

CVE-2024-26229

CWE-781: Improper Address Validation in IOCTL with METHOD_NEITHER I/O Control Code

auto-enum

IDA Plugin to automatically identify and set enums for standard functions

nsh

The Noisy Sockets CLI

Language:GoLicense:MPL-2.0Stargazers:250Issues:0Issues:0

RWX_MEMEORY_HUNT_AND_INJECTION_DV

Abusing Windows fork API and OneDrive.exe process to inject the malicious shellcode without allocating new RWX memory region.

Language:C++License:MITStargazers:213Issues:6Issues:1

CTI-Analyst-Challenge

An analytical challenge created to test junior analysts looking to try performing proactive and reactive cyber threat intelligence.

themida-unmutate

Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.

Language:PythonLicense:GPL-3.0Stargazers:155Issues:4Issues:4

Lucid

An educational Bochs-based snapshot fuzzer project

Language:RustStargazers:138Issues:8Issues:0

Kdrill

Python tool to check rootkits in Windows kernel

Language:PythonLicense:BSD-3-ClauseStargazers:126Issues:3Issues:1

aidapal

aiDAPal is an IDA Pro plugin that uses a locally running LLM that has been fine-tuned for Hex-Rays pseudocode to assist with code analysis.

Threat-Actor-Profile-Guide

The Threat Actor Profile Guide for CTI Analysts

wcreddump

Fully automated windows credentials dumper, from SAM (classic passwords) and WINHELLO (pins). Requires to be run from a linux machine with a mounted windows drive.

main

Main repository for Valhalla, a first-person shooter game project inspired by old school and modern titles.

Language:CLicense:NOASSERTIONStargazers:49Issues:8Issues:23

subcrawl

SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data with optional output modules, such as Elastic.

Language:PythonLicense:MITStargazers:46Issues:2Issues:0

msitools

Read-only mirror of https://gitlab.gnome.org/GNOME/msitools

Language:CLicense:NOASSERTIONStargazers:43Issues:7Issues:0

NoWhere2Hide

C2 Active Scanner

Language:GoStargazers:41Issues:4Issues:0

ADFSDump-PS

PowerShell Implementation of ADFSDump to assist with GoldenSAML

Language:PowerShellStargazers:30Issues:1Issues:0

tbat

Threat Box Assessment Tool

Language:JavaScriptLicense:GPL-3.0Stargazers:19Issues:6Issues:6

dnsdbflex

command line tool to use the DNSDB Flexible Search API extensions.

malicious-c2-infrastructure

Repository contains malware IP addresses of C2 infrastructure

Stargazers:7Issues:0Issues:0

dfunc-bypasser

This tool is for letting you know how strong your disable_functions is and how you can bypass that.

Language:PythonStargazers:2Issues:0Issues:0