Taiwan

Lays

Expert
@L4ys

Lazy Security Researcher

LazyIDA. Make your IDA Lazy!

1.4k

CVE-2022-21882. C++

197

LazyCross. An IDA Pro plugin that display cross-references to functions or variables across the entire binary in Hex-Rays pseudocode

131

IDASignsrch. IDA_Signsrch in Python

109

CTF. Some of my CTF solutions

80

LazyKLEE. Lazy python wrapper of KLEE for solving CTF challenges

64

IDA-WPP-Remover. Remove WPP calls from hexrays decompiled code

59

Notepad2048. Play 2048 in notepad.exe

13

DisableDynamicBase. Small tool to remove IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE Flag from PE Header

13

UltraTools. C++

6

afl-cgc. C

5

NCTU-OSDI. C

4

cissrfuzzer. Automatically exported from code.google.com/p/cissrfuzzer

3

PinTools. C++

2

NtCall64. Windows NT x64 syscall fuzzer

2

VMP_ODPlugin. VMProtect OD Plugin

2

SpotLock. A MobileSubstrate tweak let you lock your device by swiping to spotlight page

2

SuperDllHijack. SuperDllHijack:A general DLL hijack technology, don't need to manually export the same function interface of the DLL, so easy! 一种通用Dll劫持技术,不再需要手工导出Dll的函数接口了

2

polarbearrepo. C++

1

Presentation.

1

SimpleVisor. SimpleVisor is a simple, portable, Intel VT-x hypervisor with two specific goals: using the least amount of assembly code (10 lines), and having the smallest amount of VMX-related code to support dynamic hyperjacking and unhyperjacking (that is, virtualizing the host state from within the host). It works on Windows and UEFI.

1

unicorn_pe. Unicorn PE is an unicorn based instrumentation project designed to emulate code execution for windows PE files.

1

openprocmon. open source process monitor

1

PoC. Proofs-of-concept

1

public. my public code

1

python-windows-driver-loader. A simple python tool and supporting classes for loading/unloading/starting/stopping windows drivers

1

Smashing_The_Browser. Smashing The Browser: From Vulnerability Discovery To Exploit

1

PassiveFuzzFrameworkOSX. This framework is for fuzzing OSX kernel vulnerability based on passive inline hook mechanism in kernel mode.

1

eBPF_processor. An IDA processor for eBPF bytecode

1

CVE-2019-0808. Win32k Exploit by Grant Willcox

1

kirlangic-ttf-fuzzer. TrueType Font Fuzzer

1

NCTU-Software-Testing. Makefile

1

Disclosures. Zero-day and N-day security vulnerability notes, analysis, and proof-of-concepts

1
33
Apply