Spain

Dreg

Elite
@therealdreg

Offensive hardware hacking & firmware dev, OS internals, C/C++, assembler, reversing, forensics, x86_64, AVR, ARM, PIC. Ex malware researcher

DbgChild. Debug Child Process Tool (auto attach)

326

anticuckoo. A tool to detect and crash Cuckoo Sandbox

297

asprogrammer-dregmod. AsProgrammer dregmod allow you to program flash memory on the protocols spi, I2C, MicroWire. Supports Buzzpirat, Bus Pirate, CH341a, CH347, UsbAsp, AVRISP(LUFA), Arduino & FT232H

200

hardware_hacking_es. Hardware Hacking ES Comunidad

134

masm32-kernel-programming. masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)

130

shellex. C-shellcode to hex converter, handy tool for paste & execute shellcodes in IDA PRO, gdb, windbg, radare2, ollydbg, x64dbg, immunity debugger & 010 editor

112

okhi. Open Keylogger Hardware Implant - USB & PS2 Keyboards

104

x64dbg-exploiting. Do you want to use x64dbg instead of immunity debugger? oscp eCPPTv2 buffer overflow exploits pocs

92

x86osdev. x86 OS development using Bochs emulator. MIT xv6, JamesM's kernel development tutorials (with some changes) & more

90

enyelkm. LKM rootkit for Linux x86 with the 2.6 kernel. It inserts salts inside system_call and sysenter_entry.

86

cgaty. Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)

73

ida_vmware_windows_gdb. Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)

68

ida_bochs_windows. Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)

62

lsrootkit. Rootkit Detector for UNIX

61

flashrom_build_windows_x64. Dreg's fork flashrom special edition for Buzzpirat & bus pirate. Windows x64 & x32 raiden_debug_spi, ft2232_spi, serprog, buspirate_spi, dediprog, developerbox, pony_spi, usbblaster_spi, pickit2_spi, ch341a_spi, ch347_spi, digilent_spi, stlinkv3_spi, dirtyjtag_spi. x32 build is included.

56

phook. Full DLL Hooking, phrack 65

53

pico-usb-sniffer-lite. A simple USB sniffer based on Raspberry PI PICO RP2040 (pico-sdk)

51

xshellex. With xshellex you can paste any kind of c-shellcode strings in x64dbg, ollydbg & immunity debugger

42

grupos_telegram_discord_hacking. Grupos de Telegram y Discord sobre hacking y seguridad informática en español

42

linux_kernel_debug_disassemble_ida_vmware. Helper script for Linux kernel disassemble or debugging with IDA Pro on VMware + GDB stub (including some symbols helpers)

37

bochs_linux_kernel_debugging. Tools for Linux kernel debugging on Bochs (including symbols, native Bochs debugger and IDA PRO)

33

nasm_linux_x86_64_pure_sharedlib. NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection

32

dregate. call gates as stable comunication channel for NT x86 and Linux x86_64

32

evilmass_at90usbkey2. evil mass storage *AT90USBKEY2 (poc-malware-tool for offline system)

30

PatchPae2_PatchPae3. PatchPae2 by wj32 and PatchPae3 by evgeny

28

windbgtocstruct. Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if needed

27

auxlib. Full reversing of the Microsoft Auxiliary Windows API Library and ported to C

24

cagrackme. short crackme for Windows XP SP3 (32 bit version). ring0 stuff. IMO very fun x-)

23

symseghelper. Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode

19

ftdibrick. FTDI bricker just for fun - malware POC+hardware hacking CTF

19

Win.Cerdalux. WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs

18

buzzpirat. All-In-One Ruggedized Hardware Hacking tool for learning, practice and play. Using the same hardware as Bus Pirate v3 but with some enhancements. Special firmware Bus Pirate v3.

18

The-GTK-Keylogger. The GTK Keylogger

18

emuhookdetector. hook detector using emulation and comparing static with dynamic outputs

17

lldb_reversing. Dreg's setup for lldb reversing. The simplest and easiest possible, without scripting. lldb debugging setup.

15

pdbdump_bochs. Dump PDB Symbols including support for Bochs Debugging Format (with wine support)

14

WinXPSP2.Cermalus. Malware WinXPSP2.Cermalus Windows Kernel Virus

14

pico-esp-flasher. Raspberry Pi Pico UART-USB flasher for ESP

14

ptrace_misconfiguration_local_privilege_escalation. ptrace misconfiguration Local Privilege Escalation

13

drx_ptrace_shellcode_injector. drx ptrace shellcode injector

10

nasm_vscode. nasm visual studio code

10

pico-ps2-diagnostic-tool. Captures and replays signals on a PS/2 interface (DATA and CLOCK lines). A "capture" is a sequence of GPIO readings taken at short intervals, effectively logging the entire timeline of PS/2 pin states during recording. Each capture can be replayed - emulating the original signal.

9

dregshells. dregshells

9

dregs-flex-bison-example. (Dreg's fork) A compiler and interpreter of a toy language. Using C++, Flex and Bison. "While language"

8

python_reverse_shell_detached_background. python reverse shell detached background

7

AT90USBKEY2. Original sources and programs for AT90USBKEY2 + own code & patches

5

bochs-bed. Bochs Enhaced Debugger (bochs-bed). A modern console debug experience.

5

rpk2. rpk2

5

BZub.CX-Malware-Reversing. BZub.CX Malware Reversing

4

rewolf-wow64ext. Helper library for x86 programs that runs under WOW64 layer on x64 versions of Microsoft Windows operating systems.

3

oldrootkitweb. rootkit.es site

2

Shelter. ROP-based sleep obfuscation to evade memory scanners

2

rootkitweb. HTML

2

POCs-arduino_uno_and_leonardo_jitter_capacitance_ringing_crosstalk. POCs arduino_uno_and_leonardo_jitter_capacitance_ringing_crosstalk

1
54
Apply