Skip to content
View Ap3x's full-sized avatar

Block or report Ap3x

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.

C 124 15 Updated Dec 7, 2025

A PoC for requesting HWIDs directly from hardware, skipping any potential hooks or OS support.

C 87 20 Updated Mar 16, 2021

A kernel injector for EAC and BE

C++ 147 17 Updated May 3, 2024

A kernel-mode architectural integrity auditor for Windows x64. Validates critical hardware registers (MSR_LSTAR, IDTR, CR4) against kernel memory boundaries to detect low-level hooks and rootkit co…

C 3 1 Updated Dec 26, 2025

MCP server for Atomic Red Team

Python 98 15 Updated Dec 26, 2025

Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool

C++ 280 39 Updated Nov 20, 2025

Windows Driver designed to validate the integrity of User-Mode call stacks from Ring 0 (AMD IBS / Instruction Based Sampling)

C 9 Updated Nov 30, 2025

KeServiceDescriptorTable retrieval from KiSystemCall64Shadow

C 14 3 Updated Dec 10, 2024

Official inference framework for 1-bit LLMs

Python 25,602 2,052 Updated Jun 3, 2025

DriversHunterWindowsCatalog is an app that searches the Microsoft Update Catalog for driver packages, downloads the CABs, extracts them, and collects WDM `.sys` files.

10 2 Updated Nov 26, 2025

template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.

C 94 18 Updated Dec 7, 2025

ZMQ and Messagepack Powered Remote Automation Plugin for x64dbg

C++ 57 8 Updated Sep 24, 2025

PDB file inspection tool

Pascal 124 4 Updated Nov 21, 2025

An example kernel-mode driver exploring syscall hooking via SSDT patching using KMDF, for educational purposes.

C 2 Updated Jun 10, 2024

RootKit & Cheat Scanner - Windows

C++ 224 82 Updated Aug 9, 2019

kernel-mode DLL Injector

C++ 122 23 Updated Apr 24, 2025

Model Context Protocol for WinDBG

Python 894 87 Updated Dec 26, 2025

C++ port of the fastmcp Python library

C++ 91 6 Updated Jan 1, 2026

CPP AV/EDR Killer

C++ 468 70 Updated Nov 28, 2023

EDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.

C++ 782 146 Updated Nov 1, 2025

Semester project for Operating Systems course at UCU.

27 3 Updated Jan 15, 2022

Code for the website www.jailbreakchat.com

JavaScript 116 22 Updated Aug 26, 2023

Leaking kernel addresses from ETW consumers. Requires Administrator privileges.

C++ 87 9 Updated Nov 6, 2025

Articles and tools related to research in the Apple environment (mainly macOS).

Python 262 26 Updated Dec 25, 2025

"The missing ProcMon for macOS": Mac Monitor records Endpoint Security events and displays them for analysis.

Swift 1,240 63 Updated Nov 22, 2025

Tools for analyzing EDR agents

C++ 274 25 Updated Jun 10, 2024

POC for Phantom Attack

C 89 9 Updated Aug 10, 2022

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!

Shell 4,328 715 Updated Sep 30, 2024

A collection of companies that disclose adversary TTPs after they have been breached

288 20 Updated Nov 11, 2025

A curated list of awesome Go frameworks, libraries and software

Go 162,127 12,890 Updated Dec 9, 2025
Next