wjcsharp's repositories
adversary_emulation_library
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.
anylink
AnyLink是一个企业级远程办公 ssl vpn 软件,可以支持多人同时在线使用。基于 openconnect 协议开发,并且借鉴了 ocserv 的开发思路,可以完全兼容 AnyConnect 客户端。
Detect-KeAttachProcess
Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.
drakvuf
DRAKVUF Black-box Binary Analysis
DuiLib_Ultimate
duilib 旗舰版-高分屏、多语言、样式表、资源管理器、异形窗口、窗口阴影、简单动画
GEANTLink
EAP Supplicant for Windows
KDU
Kernel Driver Utility
KxFramework
Support library for Kortex Mod Manager: https://github.com/Karandra/Kortex-Mod-Manager
libfshfs
Library and tools to access the Mac OS Hierarchical File System (HFS)
Mark
Windows kernel rootkit for the highschool's cyber track
MemProcFS
The Memory Process File System
NoScreen
Hiding the window from screenshots using the function win32kfull::GreProtectSpriteContent
note
记录自己写的工具和学习笔记
NtCall64
Windows NT x64 syscall fuzzer
openedr
Open EDR public repository
packetfence
PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a captive-portal for registration and remediation, centralized wired and wireless management, powerful BYOD management options, 802.1X support, layer-2 isolation of problematic devices; PacketFence can
rcmp
C++17, multi-architecture cross-platform hooking library with clean API.
RealBlindingEDR
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
sandboxie
The Sandboxie application
SandboxiePlus
Sandboxie Plus & Classic
TaskExplorer
Power full Task Manager
usbip-win
USB/IP for Windows
VectorKernel
PoCs for Kernelmode rootkit techniques research.
WinArk
Windows Anti-Rootkit Tool
WindowsCamp
Windows Kernel Knowledge && Collect Resources on the wire && Nothing innovation by myself &&