北京 朝阳

Huoji's

Elite
@huoji120

Information Security Research & Development

DuckMemoryScan. 检测绝大部分所谓的内存免杀马

732

CobaltStrikeDetected. 40行代码检测到大部分CobaltStrike的shellcode

292

white_patch_detect. 通杀检测基于白文件patch黑代码的免杀技术的后门

183

APT_Step_Bear_Inject. 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》

165

MakeInfinityHookGreatAgain. 让Etwhook再次伟大! Make InfinityHook Great Again!

147

awesome_anti_virus_engine. about how to make a anti-virus engine

114

DuckSandboxDetect. 沙箱测试,测评国内常见沙箱的代码与结论

109

AV-Killer. Antivirus Killer

104

CowInjecter. 滥用cow机制进行全局注入

97

huoji_debuger. ayy debuger

89

numen. 简单安排一下 autochk.sys 这个rootkit

73

NetWatch. 威胁流量检测系统

72

Etw-Syscall. https://key08.com/index.php/2021/10/19/1375.html

70

ai-webshell-detect. 机器学习检测webshell

69

DuckSysEye. SysEye是一个window上的基于att&ck现代EDR设计思想的威胁响应工具.有效检测常见的未知威胁与已知威胁.防守方的利剑

63

cpu_duck. 关于intel和amd指令行为不一样这件事

57

goodeye. https://githacks.org/Shawick/goodeye.git

55

sleep_duck_eye. Stack integrity verification to Detect SleepMask or CallStack Spoofer

55

GpuzMaper. using gpuz to load driver

35

Heuristic_antivirus_engine_by_huoji. 基于UC的启发式杀毒引擎[还没做完]

35

mbnsc. 通过分析流量,快速检查手机是否被APT攻击

35

AI_Aimbot_Detecter. AI 检测FPS游戏中的微自瞄

33

EACReversing. Reversing EasyAntiCheat.

32

HandleMaster. Changes handle's access rights using DKOM with a vulnerable driver

28

csgo2_tiny_server_plugin_system. a server plugin system for cs2 server,power by lua

26

safe_duck. 一款linux下的安全产品目的是满足个人安全需求有SSH爆破防护和SYN攻击扫描防护功能,基于netfilter,

23

battleye. battleye shellcode

19

mash_hypervisor. mash hypervisor host pml4

16

Microsoft_Kernel_Memory_Leak. win32kbase!NtDCompositionCommitSynchronizationObject and win32kbase!NtGdiGetCertificate

16

infosec_chrome_ext. 安全人员小助手油猴插件

14

CSGO-AntiCheat-Demo-By-Huoji. CSGO AntiCheat Demo By HuoJi

13

BottlEye-1. BottlEye is a usermode emulator for the popular anti-cheat BattlEye

12

Huoji_Rust_Legacy_cheat. Fully featured Rust Legacy cheat by Huoji's

12

Win_Driver_Mouse_And_Key. 驱动模拟键鼠,支持64位,附代码

6

key08.com. web security tools source list from Hax Wiki

6

cs2_funny_trash_plugin. Lua

5

KernelHiddenExecute. Execute kernel code with page separation

4

RmEye. 戎码之眼是一个window上的基于att&ck模型的威胁监控工具.有效检测常见的未知威胁与已知威胁.防守方的利剑

4

supremacy. Supremacy Counter-Strike: Global Offensive cheat, by Interwebz. Good for learning, everything is commented. Open Source.

4

Monkeware-SelfLeak. Got scammed by a friend, that one selled my src and driver around the world, so i decided to post that source here.

4

traffic-duck. traffic duck

4

RWCTF21-VirtualBox-61-escape. 0day VirtualBox 6.1 Escape for RealWorld CTF 2020/2021

4

Kernel-Bridge. Windows kernel hacking framework, driver template, hypervisor and API written on C++

3

KDU. Kernel Driver Utility

3

csgo-webradar-client. A shitty web-based radar for Counter-Strike: Global Offensive

3

HackBrowserData. Decrypt passwords/cookies/history/bookmarks from the browser. 一款可全平台运行的浏览器数据导出解密工具。

3

APCHook. hooking KiUserApcDispatcher

3

CSGO_WeaponStickers. Weapon Stickers for CS:GO [SourceMod]

3

ExecutiveCallbackObjects. Research on Windows Kernel Executive Callback Objects

3

MiniVisorPkg. The research UEFI hypervisor that supports booting an operating system.

3

xunfeng. 巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。

3

access. Access without a real handle

2

coh2_game_map_script. coh2 map script by huoji

2

cs2_skin_preview_web_page. cs2皮肤预览网站

2

stickrpghookeditedbytomson. C++

2

RustExtended_Leaked. RustExtended Leaked By Huoji's

1

wghostk_CTF. 幽灵网安CTF

1

ByePg. Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI

1
58
Apply