Open highlighted repo slot
Put your repository first
Promote a GitHub repo at the top of Awesome repository list views for 7 days.
GitHub projects from awesome lists
Search names, descriptions, topics, tags, and stacks, then tune results by ecosystem, freshness, health, and cross-list signal.
Open highlighted repo slot
Promote a GitHub repo at the top of Awesome repository list views for 7 days.
A basic 2D side scroller blueprint template for Unreal Engine 5
Ghidra analyzer for UEFI firmware.
Incident Response & Digital Forensics Debugging Extension
A low-overhead dynamic binary instrumentation and modification tool for ARM (both AArch32 and AArch64 support) and RISC-V (RV64GC).
Venom is a library that meant to perform evasive communication using stolen browser socket
A somewhat wide collection of various kernelmode-usermode communication methods in one repository (mainly just for learning purposes).
Scan signatures and netvars. Dumps header files, cheat tables and ReClass files.
Fumo Loader - All in one kernel-based DLL injector
Examples for: Learning KVM - implement your own kernel
A dnSpy extension to aid reversing of obfuscated assemblies
🕹️ An external CS radar made specifically for observing
GhidRust: Rust decompiler plugin for Ghidra
Lua in kernel-mode because why not.
Updated version of System Management Mode backdoor for UEFI based platforms: old dog, new tricks
strings2: An improved strings extraction tool.
Modding il2cpp games by classes, methods, fields names on Android.
A Linux framework to enable userspace-defined "Virtual" PCIe card shims to enable in-host PCIe card driver development.
Unsigned driver loader using CVE-2018-19320
symbolic execution plugin for binary ninja
.NET Project containing plenty of advanced techniques to detect various types of malicious actions on your software, with syscall support.
The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.
pdb + Rich library
KslDump — Why bring your own knife when Defender already left one in the kitchen?
Patching "signtool.exe" to accept expired certificates for code-signing.
D3D11 Worldtoscreen Finder, dx11 w2s, d3d11 w2s, esp, world to screen
Linux anti-debugging and anti-analysis rust library
DPI bypass tool - eBPF on Linux, TUN on macOS/Windows.
CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.
il2cpp各个版本的源码整理
A game launcher for World of Warcraft that allows you to connect to custom servers.