wechat-dump-rs. 该工具用于导出正在运行中的微信进程的 key 并自动解密所有微信数据库文件以及导出 key 后数据库文件离线解密。
2.1kBypassUAC. Use ICMLuaUtil to Bypass UAC!
646ollvm-rust. out-of-tree llvm obfuscation pass plugin (dynamically loadable by rustc). || rust toolchain with obfuscation llvm pass.
199pe-sign. A cross-platform rust no-std library for verifying and extracting signature information from PE files.
74com-process-inject. Process Injection via Component Object Model (COM) IRundown::DoCallback().
66ppspoofing. Rust编写的父进程PID欺骗技术测试工具
51process_ghosting. ProcessGhosting 技术的 rust 实现版本
26xz-cve-2024-3094. XZ Backdoor Extract(Test on Ubuntu 23.10)
17WeChatHelperDll. 微信(逆向)信息获取DLL
14windows_pe_signature_research. PE文件签名研究
10cmd-spoofing. A process cmdline argue tool.
7OpenWrt-CI. 自用固件编译,包含 x64、Redmi-AX6
5pagecache-guard. Runtime integrity guard: detect and block Linux page cache tampering (Copy Fail, Dirty Pipe, Dirty Frag) via O_DIRECT + fanotify. Includes 7 host-side exploitation PoCs.
5al-khaser. Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
2RedTeamer. 红方人员作战执行手册
2reinject. 博客
2Red-Team-Infrastructure-Wiki. Wiki to collect Red Team infrastructure hardening resources
2windows-nps-no-rce. 一本正经是真正经假正经呢,lol
1wool_scripts. 收集一些QuantumultX、Loon、Surge、ShadowRocket的配置与脚本,去广告合集。不止有QuantumultX脚本!
1SharpBlogX. 一个 csharp 开发而成的博客。
1reverse-cursor-agent. Python
1