Starred repositories
🕶️ 隐蔽Shellcode嵌入与反检测免杀加载器生成框架 / Stealthy Payload Delivery Framework with Anti-EDR Capabilities
Explorer++ is a lightweight and fast file manager for Windows
🔮 ChatGPT Desktop Application (Mac, Windows and Linux)
A memory-based evasion technique which makes shellcode invisible from process start to end.
150本信息安全方面的书籍书籍(持续更新)
📱 A curated list of awesome iOS resources, including conferences, books, blogs, articles, websites and documentations
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Proof of Concept for manipulating the Kernel Callback Table in the Process Environment Block (PEB) to perform process injection and hijack execution flow with very detailed explanation.
Go shellcode loader that combines multiple evasion techniques
Abusing Windows fork API and OneDrive.exe process to inject the malicious shellcode without allocating new RWX memory region.
Randomly changes Win32/64 PE Files for 'safer' uploading to malware and sandbox sites.
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
EDR & Antivirus Bypass to Gain Shell Access
Mac Mouse Fix - Make Your $10 Mouse Better Than an Apple Trackpad!
syzkaller is an unsupervised coverage-guided kernel fuzzer
HookChain: A new perspective for Bypassing EDR Solutions
text and image to video generation: CogVideoX (2024) and CogVideo (ICLR 2023)
The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power schedules, MOpt mutators, unicorn_mode, and a lot more!
Customizable Linux Persistence Tool for Security Research and Detection Engineering.
Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers
Project Wycheproof tests crypto libraries against known attacks.
poc for CVE-2024-38063 (RCE in tcpip.sys)
Using Windows' own bootloader as a shim to bypass Secure Boot