Offensive hardware hacking & firmware dev, OS internals, C/C++, assembler, reversing, forensics, x86_64, AVR, ARM, PIC. Ex malware researcher
DbgChild. Debug Child Process Tool (auto attach)
326anticuckoo. A tool to detect and crash Cuckoo Sandbox
297asprogrammer-dregmod. AsProgrammer dregmod allow you to program flash memory on the protocols spi, I2C, MicroWire. Supports Buzzpirat, Bus Pirate, CH341a, CH347, UsbAsp, AVRISP(LUFA), Arduino & FT232H
200hardware_hacking_es. Hardware Hacking ES Comunidad
134masm32-kernel-programming. masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)
130shellex. C-shellcode to hex converter, handy tool for paste & execute shellcodes in IDA PRO, gdb, windbg, radare2, ollydbg, x64dbg, immunity debugger & 010 editor
112okhi. Open Keylogger Hardware Implant - USB & PS2 Keyboards
104x64dbg-exploiting. Do you want to use x64dbg instead of immunity debugger? oscp eCPPTv2 buffer overflow exploits pocs
92x86osdev. x86 OS development using Bochs emulator. MIT xv6, JamesM's kernel development tutorials (with some changes) & more
90enyelkm. LKM rootkit for Linux x86 with the 2.6 kernel. It inserts salts inside system_call and sysenter_entry.
86cgaty. Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)
73ida_vmware_windows_gdb. Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)
68ida_bochs_windows. Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)
62lsrootkit. Rootkit Detector for UNIX
61flashrom_build_windows_x64. Dreg's fork flashrom special edition for Buzzpirat & bus pirate. Windows x64 & x32 raiden_debug_spi, ft2232_spi, serprog, buspirate_spi, dediprog, developerbox, pony_spi, usbblaster_spi, pickit2_spi, ch341a_spi, ch347_spi, digilent_spi, stlinkv3_spi, dirtyjtag_spi. x32 build is included.
56phook. Full DLL Hooking, phrack 65
53pico-usb-sniffer-lite. A simple USB sniffer based on Raspberry PI PICO RP2040 (pico-sdk)
51xshellex. With xshellex you can paste any kind of c-shellcode strings in x64dbg, ollydbg & immunity debugger
42grupos_telegram_discord_hacking. Grupos de Telegram y Discord sobre hacking y seguridad informática en español
42linux_kernel_debug_disassemble_ida_vmware. Helper script for Linux kernel disassemble or debugging with IDA Pro on VMware + GDB stub (including some symbols helpers)
37bochs_linux_kernel_debugging. Tools for Linux kernel debugging on Bochs (including symbols, native Bochs debugger and IDA PRO)
33nasm_linux_x86_64_pure_sharedlib. NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection
32dregate. call gates as stable comunication channel for NT x86 and Linux x86_64
32evilmass_at90usbkey2. evil mass storage *AT90USBKEY2 (poc-malware-tool for offline system)
30PatchPae2_PatchPae3. PatchPae2 by wj32 and PatchPae3 by evgeny
28windbgtocstruct. Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if needed
27auxlib. Full reversing of the Microsoft Auxiliary Windows API Library and ported to C
24cagrackme. short crackme for Windows XP SP3 (32 bit version). ring0 stuff. IMO very fun x-)
23symseghelper. Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode
19ftdibrick. FTDI bricker just for fun - malware POC+hardware hacking CTF
19Win.Cerdalux. WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs
18buzzpirat. All-In-One Ruggedized Hardware Hacking tool for learning, practice and play. Using the same hardware as Bus Pirate v3 but with some enhancements. Special firmware Bus Pirate v3.
18The-GTK-Keylogger. The GTK Keylogger
18emuhookdetector. hook detector using emulation and comparing static with dynamic outputs
17lldb_reversing. Dreg's setup for lldb reversing. The simplest and easiest possible, without scripting. lldb debugging setup.
15pdbdump_bochs. Dump PDB Symbols including support for Bochs Debugging Format (with wine support)
14WinXPSP2.Cermalus. Malware WinXPSP2.Cermalus Windows Kernel Virus
14pico-esp-flasher. Raspberry Pi Pico UART-USB flasher for ESP
14ptrace_misconfiguration_local_privilege_escalation. ptrace misconfiguration Local Privilege Escalation
13drx_ptrace_shellcode_injector. drx ptrace shellcode injector
10nasm_vscode. nasm visual studio code
10pico-ps2-diagnostic-tool. Captures and replays signals on a PS/2 interface (DATA and CLOCK lines). A "capture" is a sequence of GPIO readings taken at short intervals, effectively logging the entire timeline of PS/2 pin states during recording. Each capture can be replayed - emulating the original signal.
9dregshells. dregshells
9dregs-flex-bison-example. (Dreg's fork) A compiler and interpreter of a toy language. Using C++, Flex and Bison. "While language"
8python_reverse_shell_detached_background. python reverse shell detached background
7AT90USBKEY2. Original sources and programs for AT90USBKEY2 + own code & patches
5bochs-bed. Bochs Enhaced Debugger (bochs-bed). A modern console debug experience.
5rpk2. rpk2
5BZub.CX-Malware-Reversing. BZub.CX Malware Reversing
4rewolf-wow64ext. Helper library for x86 programs that runs under WOW64 layer on x64 versions of Microsoft Windows operating systems.
3oldrootkitweb. rootkit.es site
2Shelter. ROP-based sleep obfuscation to evade memory scanners
2rootkitweb. HTML
2POCs-arduino_uno_and_leonardo_jitter_capacitance_ringing_crosstalk. POCs arduino_uno_and_leonardo_jitter_capacitance_ringing_crosstalk
1