Skip to content
View Kibouo's full-sized avatar

Organizations

@uhctf
Block or Report

Block or report Kibouo

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

.NET deobfuscator and unpacker.

C# 6,845 2,670 Updated Aug 29, 2020

Provides situational awareness of Industrial Control Systems (ICS) and Supervisory Control and Data Acquisition (SCADA) networks in support of network security assessments. #nsacyber

Java 925 291 Updated Feb 24, 2020

WTF are these binaries doing?! A list of benign applications that mimic malicious behavior.

TypeScript 148 12 Updated Mar 20, 2024

BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions

C++ 193 24 Updated Aug 4, 2024

Dump lsass using only Native APIs by hand-crafting Minidump files (without MinidumpWriteDump!)

C# 375 53 Updated Aug 14, 2024

This repository contains my complete resources and coding practices for malware development using Rust 🦀.

Rust 1,006 106 Updated Aug 8, 2024

Process Injection using Thread Name

C 202 23 Updated Aug 9, 2024

Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.

Go 3,798 431 Updated May 14, 2024

Tutorial for extracting the GameBoy ROM from photographs of the die.

1,118 29 Updated Jun 23, 2024

Official git repo for iodine dns tunnel

C 6,095 499 Updated Jul 16, 2024

A tool that shows detailed information about named pipes in Windows

C# 550 44 Updated Jul 15, 2024

simple type recognition in decompiled executables

Python 90 2 Updated Jul 4, 2024

Tools for analyzing EDR agents

C++ 193 20 Updated Jun 10, 2024

⬛️ CLI tool for saving complete web pages as a single HTML file

Rust 10,773 307 Updated Aug 15, 2024

Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) PhantomThread (An evolved callstack-masking implementation)

C++ 185 23 Updated May 11, 2024

Intercept Windows Named Pipes communication using Burp or similar HTTP proxy tools

Python 166 17 Updated Oct 30, 2022
Rust 152 19 Updated May 29, 2024

Project Zero Docs and Tools

C++ 696 110 Updated Apr 18, 2024
Assembly 1 Updated Aug 12, 2024

Evasion by machine code de-optimization.

Rust 306 20 Updated Jul 22, 2024
Python 112 18 Updated Jul 31, 2024

PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges required )

PowerShell 137 20 Updated Jun 10, 2024

This tool extracts and displays data from the Recall feature in Windows 11, providing an easy way to access information about your PC's activity snapshots.

Python 1,950 152 Updated Jun 8, 2024

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by performing on-the-fly decryption of individual encry…

C++ 418 65 Updated Jun 12, 2024

Evilginx Phishing Engagement Infrastructure Setup Guide

250 43 Updated Aug 10, 2024
Rust 3 Updated Jul 21, 2024
Next