Starred repositories
A modern 32/64-bit position independent implant template
An even funnier way to disable windows defender. (through WSC api)
A GUI client for Windows, Linux and macOS, support Xray and sing-box and others
C library for manipulating MachO/FAT files and their code signatures
converter of DMD CodeView/DWARF debug information to PDB files
🕶️ 隐蔽Shellcode嵌入与反检测免杀加载器生成框架 / Stealthy Payload Delivery Framework with Anti-EDR Capabilities
Explorer++ is a lightweight and fast file manager for Windows
🔮 ChatGPT Desktop Application (Mac, Windows and Linux)
A memory-based evasion technique which makes shellcode invisible from process start to end.
150本信息安全方面的书籍书籍(持续更新)
📱 A curated list of awesome iOS resources, including conferences, books, blogs, articles, websites and documentations
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Proof of Concept for manipulating the Kernel Callback Table in the Process Environment Block (PEB) to perform process injection and hijack execution flow with very detailed explanation.
Go shellcode loader that combines multiple evasion techniques
Abusing Windows fork API and OneDrive.exe process to inject the malicious shellcode without allocating new RWX memory region.
Randomly changes Win32/64 PE Files for 'safer' uploading to malware and sandbox sites.
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
EDR & Antivirus Bypass to Gain Shell Access
Mac Mouse Fix - Make Your $10 Mouse Better Than an Apple Trackpad!
syzkaller is an unsupervised coverage-guided kernel fuzzer
HookChain: A new perspective for Bypassing EDR Solutions
text and image to video generation: CogVideoX (2024) and CogVideo (ICLR 2023)
The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power schedules, MOpt mutators, unicorn_mode, and a lot more!