-
harextract Public
Forked from JC3/harextractBrowser-based HAR extraction tool, portable, self-contained in HTML.
HTML GNU General Public License v3.0 UpdatedOct 18, 2025 -
ProcessInjectionTechniques Public
Forked from Offensive-Panda/ProcessInjectionTechniquesThis comprehensive process injection series is crafted for cybersecurity enthusiasts, researchers, and professionals who aim to stay at the forefront of the field. It serves as a central repository…
C++ MIT License UpdatedOct 2, 2025 -
akamai-security-research Public
Forked from akamai/akamai-security-researchThis repository includes code and IoCs that are the product of research done in Akamai's various security research teams.
C Apache License 2.0 UpdatedOct 2, 2025 -
-
ntfstool Public
Forked from thewhiteninja/ntfstoolForensics tool for NTFS (parser, mft, bitlocker, deleted files)
C++ MIT License UpdatedSep 16, 2025 -
WindowsAPIAbuseAtlas Public
Forked from danafaye/WindowsAPIAbuseAtlasA living guide to lesser-known and evasive Windows API abuses used in malware, with practical reverse engineering notes, YARA detections, and behavioral indicators.
YARA GNU General Public License v3.0 UpdatedSep 15, 2025 -
CreateProcessAsPPL Public
Forked from TwoSevenOneT/CreateProcessAsPPLThis is the loader that supports running a program with Protected Process Light (PPL) protection functionality.
C++ UpdatedSep 15, 2025 -
WSASS Public
Forked from TwoSevenOneT/WSASSThis is the tool to dump the LSASS process on modern Windows 11
C++ UpdatedSep 15, 2025 -
Ransomware-Tool-Matrix Public
Forked from BushidoUK/Ransomware-Tool-MatrixA resource containing all the tools each ransomware gangs uses
UpdatedSep 12, 2025 -
frp Public
Forked from fatedier/frpA fast reverse proxy to help you expose a local server behind a NAT or firewall to the internet.
Go Apache License 2.0 UpdatedSep 2, 2025 -
SimplePELoader Public
Forked from nettitude/SimplePELoaderIn-Memory PE Loader
C++ BSD 3-Clause "New" or "Revised" License UpdatedSep 2, 2025 -
inceptor Public
Forked from klezVirus/inceptorTemplate-Driven AV/EDR Evasion Framework
Assembly Other UpdatedAug 11, 2025 -
LdrShuffle Public
Forked from RWXstoned/LdrShuffleCode execution/injection technique using DLL PEB module structure manipulation
C++ GNU General Public License v2.0 UpdatedAug 11, 2025 -
RECmd Public
Forked from EricZimmerman/RECmdCommand line access to the Registry
Rebol MIT License UpdatedAug 8, 2025 -
-
BoosterDriver Public
Forked from whokilleddb/BoosterDriverA step-by-step walkthrough of how to write a Client and a Driver to communicate with each other and boost the priority of a thread.
C UpdatedAug 3, 2025 -
ProcReveal Public
Forked from whokilleddb/ProcRevealA kernel driver to get a Handle to virtually *every* process
C UpdatedAug 3, 2025 -
Text-Grab Public
Forked from TheJoeFin/Text-GrabUse OCR in Windows quickly and easily with Text Grab. With optional background process and notifications.
C# MIT License UpdatedJul 30, 2025 -
copyparty Public
Forked from 9001/copypartyPortable file server with accelerated resumable uploads, dedup, WebDAV, FTP, TFTP, zeroconf, media indexer, thumbnails++ all in one file, no deps
Python MIT License UpdatedJul 29, 2025 -
AV-EDR-Lab-Environment-Setup Public
Forked from An0nUD4Y/AV-EDR-Lab-Environment-SetupAV/EDR Lab environment setup references to help in Malware development
UpdatedJul 16, 2025 -
-
Windows-API-Code-Pack-1.1 Public
Forked from dahall/Windows-API-Code-Pack-1.1Windows API Code Pack 1.1
C# Other UpdatedJul 15, 2025 -
TaskScheduler Public
Forked from dahall/TaskSchedulerProvides a .NET wrapper for the Windows Task Scheduler. It aggregates the multiple versions, provides an editor and allows for localization.
C# MIT License UpdatedJul 15, 2025 -
VMDetector Public
Forked from robsonfelix/VMDetectorDetect virtual machine environments using C#
C# Other UpdatedJul 15, 2025 -
Koppeling Public
Forked from monoxgas/KoppelingAdaptive DLL hijacking / dynamic export forwarding
C++ GNU General Public License v3.0 UpdatedJul 10, 2025 -
Hard_Configurator Public
Forked from AndyFul/Hard_ConfiguratorGUI to Manage Software Restriction Policies and harden Windows Home OS
HTML Other UpdatedJul 1, 2025 -
ConfigureDefender Public
Forked from AndyFul/ConfigureDefenderUtility for configuring Windows 10 built-in Defender antivirus settings.
Other UpdatedJul 1, 2025 -
KernelSymbolsHelper Public
Forked from SouhailHammou/KernelSymbolsHelperRetrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using the symbol server.
C UpdatedJun 30, 2025 -
BestEdrOfTheMarket Public
Forked from Xacone/BestEdrOfTheMarketEDR Lab for Experimentation Purposes
C++ MIT License UpdatedJun 30, 2025 -