zenseahi's starred repositories

yt-dlp

A feature-rich command-line audio/video downloader

Language:PythonLicense:UnlicenseStargazers:78392Issues:481Issues:7449

QtScrcpy

Android real-time display control software

Language:C++License:Apache-2.0Stargazers:18199Issues:195Issues:817

Emergency-Response-Notes

应急响应实战笔记,一个安全工程师的自我修养。

pcileech

Direct Memory Access (DMA) Attack Software

Language:CLicense:AGPL-3.0Stargazers:4604Issues:146Issues:279

raddebugger

A native, user-mode, multi-process, graphical debugger.

MemProcFS

MemProcFS

Language:CLicense:AGPL-3.0Stargazers:2872Issues:81Issues:277

dynamorio

Dynamic Instrumentation Tool Platform

Language:CLicense:NOASSERTIONStargazers:2594Issues:109Issues:3997

doublecmd

Double Commander is a free cross platform open source file manager with two panels side by side.

Language:PascalLicense:GPL-2.0Stargazers:2510Issues:51Issues:1119

awesome-virtualization

Collection of resources about Virtualization

fridaUiTools

frida工具的缝合怪

r77-rootkit

Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.

Language:CLicense:BSD-2-ClauseStargazers:1562Issues:42Issues:85

TinyInst

A lightweight dynamic instrumentation library

Language:C++License:Apache-2.0Stargazers:1150Issues:50Issues:40

gbhv

Simple x86-64 VT-x Hypervisor with EPT Hooking

Language:CLicense:CC-BY-4.0Stargazers:817Issues:28Issues:30

VivienneVMM

VivienneVMM is a stealthy debugging framework implemented via an Intel VT-x hypervisor.

Language:C++License:MITStargazers:757Issues:44Issues:16

HWSyscalls

HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.

rwProcMem33

Linux ARM64内核硬件进程内存读写驱动、硬件断点调试驱动。硬件级读写Linux进程内存、硬件级下断点。

design-pattern

Design Patterns In Modern C++ 中文版翻译

Language:C++License:CC-BY-4.0Stargazers:351Issues:6Issues:1

ETWProcessMon2

ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detection by VirtualMemAlloc Events (in-memory) etc.

Language:C#Stargazers:289Issues:10Issues:0

VmpHelper

an ida plugin used to decompile vmp

binderceptor

A binder interceptor framework for Android

MemoryRanger

MemoryRanger protects kernel data and code by running drivers and hosting data in isolated kernel enclaves using VT-x and EPT features. MemoryRanger has been presented at the BlackHat, HITB, CDFSL.

Hakutaku

Android Memory Editor/Scanner (MemoryTools)

Language:C++License:GPL-3.0Stargazers:189Issues:11Issues:14

PTView

Browse Page Tables on Windows (Page Table Viewer)

Language:C#License:MITStargazers:177Issues:7Issues:0

ReadPhys

r/w virtual memory without attach

Language:C++License:GPL-3.0Stargazers:136Issues:3Issues:1

reverse_pyinstaller

pyinstaller打包的exe逆向还原项目

Etw-SyscallMonitor

Monitors ETW for security relevant syscalls maintaining the set called by each unique process

Language:C#Stargazers:42Issues:1Issues:0
Language:C++License:MITStargazers:14Issues:0Issues:0