São Paulo & Shizuoka-Ken

João Vitor

Elite
@keowu

Security Researcher | i like All OS Internals, Malware & Reverse Engineering, C++, Intel/ARM Assembly and cool things | Jesus Follower

Ryujin. Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool

336

mhyprot2. Reverse engineering Genshin Impact anticheat to study how anticheats work on the Windows operating system.

109

BadRentdrv2. A vulnerable driver exploited by me (BYOVD) that is capable of terminating several EDRs and antivirus software in the market, rendering them ineffective, working for both x32 and x64(CVE-2023-44976).

107

koidbg. A debugger for Windows ARM64 (AARCH64), user-friendly for reverse engineers, malware analysts, malware developers, game hacking, operating system studies, and more.

73

birosca. A Dynamic Study Vmprotect 1.x-1.9X Unpacking Toolkit, Recovery OEP, FIX PE, IAT and bypass protection with custom Loader and interceptor vmexit(aka context exchange) from packer stub.

42

InstrumentationCallbackToolKit. A fast method to intercept syscalls from any user-mode process using InstrumentationCallback and detect any process using InstrumentationCallback.

36

swiftstringinspector. A simple plugin for working with Swift Strings, optimized Swift Strings, and Swift Arrays during the reverse engineering of iOS binaries in Hex-Rays IDA.

24

sourceengineexplorer. A CS Source Engine² for Creating Cheat/Trainers, Debug Valve Code, Exploring hidden game engine features, Exploit Develop, Assembly Analyzer, Network Emulator, Custom Scripting Interface for study and Cloud-based Decompiler for testing (and binary analysis).

23

huawei_code_calculator. Universal calculator to calculate security codes for Huawei products, to obtain privileged access.

22

wintapix. Reversed WintaPix Malware Source code | That targets countries in the Middle East and abuse KeServiceDescriptorTable(SSDT), persistence and filesystem.

21

rust_ida_analyzer. A simple plugin for IDA Pro 9+ focused on reverse engineering Rust binaries in PE and ELF. The project combines Rust artifact detection, symbol recovery, optional RIFT integration, and a Rust-style pseudocode flow to complement the native IDA/Hex-Rays view.

21

spotify-ads-cracker. A ADS/PREMIUM Spotify Cracker.

18

Treinamento-Introducao-a-Engenharia-Reversa-no-Windows. Conteúdo do treinamento/brainstorming Introdução a engenharia reversa no Windows feito com muito carinho por mim.

16

ATHERCRC32. ATHERCRC32 Provide developers with a complete framework for using CRC32 in functions/classes in memory, and protecting your software against WriteProcessMemory or changes during execution in memory, protecting your intellectual property.

15

WinHandKill. A plugin for x64dbg that allows you to hook the Local Security Authority Subsystem Service process to extract all possible TLS(On handshake, Import, Export or Generate) keys from the operating system using the SeDebugPrivilege escalation to make malware analysis faster and easier.

12

pefixerextreme. My personal PE Fixer that allows you to patch a raw PE dump to a fully patched and working PE dump that will help your analysis.

12

Minecraft-Windows-10-Trial-Bypass. A tool that allows you to bypass the trial of Minecraft for Windows 10 from the Microsoft Store.

12

malware. Notes from my malware analysis hobby, use it (don't take everything for granted and research it yourself, don't cite me as a reference for anything, constructive criticism is welcome), this is CI for my blog

11

AllWinnerTechFirmwareandKernelWorkbench. AllWinnerTech Firmware and Kernel Workbench tool to unpack and pack boot.img or boot.fex of all AllWinner Tech processors allowing reverse engineering of the firmware embedded in them.

11

unisoc_multilaser_firmware_workbench. A project that allows to reverse engineer the firmware of devices from multilaser of Brazil that are based on Unisoc Shanghai boards, allowing decryption and modification as if it were an engineer for them.

10

winsystemprogramming. Learn Winapi in this Repo with examples, to understand its abstraction in reverse engineering for Windows.

10

winrar. A simple made in Rust crack, automatic for Winrar, activated from shared virtual memory, for studies.

10

gamespy. A Completely reversed from scratch Gamespy SDK 2000-2005 Emulator for Halo CE, Battlefield 1942 and Vietnam with full docs and papper.

9

RDTSC_Calculator. A simple hook for reverse engineering on x86 processors, to be used with ollydbg, x64dbg and the like.

9

pefixerextremenet. So you want to fix a raw .net file manually ? I got it!, Let's fix RVA and Sizes, Relocations, EP, IAT, Metadata Dir, Directory, BSJB, Invalid streams, NestedClasses, resources and more!

9

KethoMemoryToolKit. KethoMemoryToolKit is a set of tools used by me to change OPCODES of the memory of any process running in the operating system of specific offsets(RVA) from an ImageBase.

8

echidna. 🔒 A decompiler for x86, x64, ARM and complete x86 documentation with an open source MSDN search API for those who like reverse engineering software, developed in electron.

7

RegunX_WindowsActivador. A software that activates your windows 10 safely via KMS Bypass.

5

Android-Internals-Repository. Android Internals study repository

4

huawei-security. Huawei security kernel reverse engineering code (halved and not fully rebuilt)

3

CSSource_AntiCheat_Researches. C++

3

Reverse-Engineer-Technics-Remover-simple. Some simple instructions reverted from some workout crackmes that can detect an anti-dump from a PE binary file, and also detect if it is being debugged.

3

THEPORTX. Uma aplicação para auxiliar na transmissão e leitura de dados via serial escrita em python.

2

javascript-vanilla. Aprenda JavaScript 2020, da maneira correta, através desse repositório.

2

ida-domain. IDA Domain API - Python interface for IDA Pro reverse engineering platform

2

crackmehappy. A simple Crack Me to learn reverse engineering :D

2

Learning-Malware-Analysis-Repository. Book study repository

2

whatisthis. What Is This, is a python application capable of recognizing patterns in binaries of any type and through its signature database defining its type, as well as obtaining hidden information and strings.

2

urna-eletronica-eleitoral. Uma Urna Eletrônica(Satirá e funcional) Que imita como pode ser feito uma fraude em uma urna.

1

arm. Anotações de ARM

1

fluxussos. Fluxuss OS, Um sistema operacional baseado em linux, para cientistas da computação, desenvolvedores independentes, hackermans e afins.

1
41
Apply