This is your work, valued
RedTeamer. 红方人员作战执行手册
524FuzzingPaper. Recent Fuzzing Paper
354gdrv-loader. Kernel driver loader using vulnerable gigabyte driver (https://www.secureauth.com/labs/advisories/gigabyte-drivers-elevation-privilege-vulnerabilities) to load a unsigned driver
294SharedMemory-By-Frankoo. Kernel driver that uses Shared memory to communicate with UserMode
89khaleesi. Anti-debug library based on al-khaser with ScyllaHide/TitanHide detection.
69Tiktok. 抖音 as, cp, mas,xlog 压缩签名算法逆向-仅供学习使用
56WorldReverse. Game Source Code 再現
54pcPCHunter. x64 盗版pcPCHunter
37ProcessHacker-2. A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware—mirror of https://github.com/processhacker2/processhacker.git
35BugDetectionPaper. Recent Paper About Bug Detection
32CodaPinTracer. Lightweight WINAPI tracing with Pin
26learn-LDDD. 《Linux 设备驱动开发详解》(宋宝华) 学习笔记
25Intranet_Penetration_Tips. 2018年初整理的一些内网渗透TIPS,后面更新的慢,所以公开出来希望跟小伙伴们一起更新维护~
25kernel-injector. Kernel Injector pasted from various different Github repositories.
22FPGA-1. 帮助大家进行FPGA的入门,分享FPGA相关的优秀文章,优秀项目
22c-systems-programming. CMU Systems Programming course resources incl. course website, labs, schedule, & extra material. Books: "Computer Systems: A Programmer's Perspective" & "The C Programming Language". Repository includes resources on C programming, incl. Stanford engineering lectures, GCC's C99, & bit-hacking.
20awesome-cyber-security. (!!! Github shows less than 4000 lines, and more than 5000 lines is missing. Please download Readme.md and open it in markdown viewer to review the FULL version)[Draft]Awesome Cyber Security Resource Collection. Currently contains 8000+ open source repositories, and not very well classified. For each repository, extra info included: star count, commit count, last update time. This is the DRAFT version.
18D3D11-MinHook-Nuklear. Basic d3d11 nuklear implementation for internal game cheats.
17Information_Security_Books. 150本信息安全方面的书籍书籍(持续更新)
15InitiativeDefense. 卓然主动防御源码(可执行文件+完整源码+完整作品报告)
15snifferview-1. 体积小巧功能强大的网络封包嗅探分析工具-snifferview
15hooker-2. hooker是一个基于frida实现的逆向工具包。为逆向开发人员提供统一化的脚本包管理方式、通杀脚本、自动化生成hook脚本、内存漫游探测activity和service和其他任意对象。
15hwid-spoofer. C++
14AdvancedWindowsDebugging. Advanced Windows Debugging Book Code Samples
14ManualSEH. A lightweight utility containing manually written SEH for manually mapped images
12A-Protect. fork from A-Protect
12Hwid-Spoofer-Valorant-Eac-Be-Vanguard-Permanted-Temporary-Spoofer. Disk Spoof Gpu Spoof Ram Spoof Guid Spoof Bios Spoof System Spoof Mac Spoof
12selfmd5. 计算自身md5的最小ELF64程序.The minimum ELF64 program to calculate its own md5
11hide_str. compile time string encryption
11Lycosidae. Modern x64 anti-debug library
10msvcr14x. msvcr14x是一个可以让VC2015及以上版本编译的程序不依赖那一堆没用的api-ms-win-开头的dll的程序
8SpaceCow. Windows Rootkit written in Python
8browser_pwn. browser pwn, main work now
8IDA-pro-7-for-Catalina-OSX-15.
8rop_linux_kernel_pwn. learn rop of linux kernel pwn
8nasa-mapper. C++
8syndicate-fortnite-internal. C++
8PassTpWinDbg. 绕过TP双机调试
7win32-shellcode. Win32 Shellcode CheatSheet: Your visual guide for crafting and understanding shellcode. Ideal for malware, and exploit developers
7FuzzingPaper-1. Recent Fuzzing Paper
7study_frida. frida视频教程
7VT1. 使用 EPT HOOK 适用于win7 和部分win10
7XHOOK-WoW-1.12.1. World of warcraft vanilla 1.12.1 multi hack
6CatApexCPP-1. Apex辅助C++源码
6FolderLockDriver-1. Folder lock driver for Windows - hide and lock any files and folders.
6study_firewall. 主动防御-网络过滤器(firewall)
6smm_intel_pt. C
6UEFI-Stub-Loader. Load the Linux EFI Stub (or any EFI application) with command line boot options on 64-bit systems that don't support UEFI firmware command lines (Dells, Macs, etc.). ARM64 and x86_64 supported.
6linux_kernel_wiki. linux内核学习资料:200+经典内核文章,100+内核论文,50+内核项目,500+内核面试题,80+内核视频
5CVE-2022-26810. CVE-2022-26809 RCE Exploit Remote Code Execution
5Window-Hijacker-For-Overlays. This is a basic window hijacker which will target a process to create an invisible click though window which will allow you to draw what ever you want on it
5Dump-Lsass. Automates the manual process of using wmiexec and procdump to dump Lsass and plaintext creds or hashes across a large number of systems.
5RunPEDownloader. Run a portable Executable from a url in Memory, in the same host process
5LyMemory. 一款内核级读写工具,可强制读写任意应用层进程内存数据,用于突破游戏驱动保护强行读写对端内存。
5SimpleShellcode. 利用图片隐写术来远程动态加载shellcode
4HideProcessesDKOM. Taking advantatge of Direct Kernel Object Manipulation to hide process from the EPROCESS structure
4awesome-game-security. awesome game security [Welcome to PR]
4IOCTLDump. C++
3ScyllaHideDetector. C
3RunPE-2. x86/32-bit only RunPE
3