This is your work, valued

Beijing

0xlane

Expert
@0xlane

wechat-dump-rs. 该工具用于导出正在运行中的微信进程的 key 并自动解密所有微信数据库文件以及导出 key 后数据库文件离线解密。

2.1k

BypassUAC. Use ICMLuaUtil to Bypass UAC!

646

ollvm-rust. out-of-tree llvm obfuscation pass plugin (dynamically loadable by rustc). || rust toolchain with obfuscation llvm pass.

199

pe-sign. A cross-platform rust no-std library for verifying and extracting signature information from PE files.

74

com-process-inject. Process Injection via Component Object Model (COM) IRundown::DoCallback().

66

ppspoofing. Rust编写的父进程PID欺骗技术测试工具

51

process_ghosting. ProcessGhosting 技术的 rust 实现版本

26

xz-cve-2024-3094. XZ Backdoor Extract(Test on Ubuntu 23.10)

17

WeChatHelperDll. 微信(逆向)信息获取DLL

14

windows_pe_signature_research. PE文件签名研究

10

cmd-spoofing. A process cmdline argue tool.

7

OpenWrt-CI. 自用固件编译,包含 x64、Redmi-AX6

5

pagecache-guard. Runtime integrity guard: detect and block Linux page cache tampering (Copy Fail, Dirty Pipe, Dirty Frag) via O_DIRECT + fanotify. Includes 7 host-side exploitation PoCs.

5

al-khaser. Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.

2

RedTeamer. 红方人员作战执行手册

2

reinject. 博客

2

Red-Team-Infrastructure-Wiki. Wiki to collect Red Team infrastructure hardening resources

2

windows-nps-no-rce. 一本正经是真正经假正经呢,lol

1

wool_scripts. 收集一些QuantumultX、Loon、Surge、ShadowRocket的配置与脚本,去广告合集。不止有QuantumultX脚本!

1

SharpBlogX. 一个 csharp 开发而成的博客。

1

reverse-cursor-agent. Python

1