Skip to content
View W3ndige's full-sized avatar
🐱
🐱
Block or Report

Block or report W3ndige

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

GhostWriting Injection Technique.

C 162 28 Updated Mar 26, 2018

A rewrite of YARA in Rust.

Rust 591 49 Updated Aug 6, 2024

A fuzzer for full VM kernel/driver targets

Makefile 637 88 Updated Jul 30, 2024

Lightweight type-1 hypervisor offering a foundation for building advanced security-focused functionality.

C 233 42 Updated Feb 18, 2022

The original sources of MS-DOS 1.25, 2.0, and 4.0 for reference purposes

Assembly 30,520 4,348 Updated Apr 25, 2024

Mapping XProtect's obfuscated malware family names to common industry names.

YARA 82 6 Updated Apr 26, 2024

Blazing fast and correct x86/x64 disassembler, assembler, decoder, encoder for Rust, .NET, Java, Python, Lua

Rust 2,834 232 Updated Jul 23, 2024

A tool that automates regex generation for the x86 and x86-64 instruction sets

Python 59 3 Updated Apr 18, 2024

Python bindings for Win32 API generated from win32metadata.

Python 92 11 Updated Jul 28, 2024

Tooling to generate metadata for Win32 APIs in the Windows SDK.

C++ 1,311 116 Updated Aug 6, 2024

Visualization of heap operations.

Python 600 72 Updated Jul 7, 2020

Minimalistic AMD-V/SVM hypervisor with memory introspection capabilities

C++ 153 22 Updated Jun 11, 2024

Reverse-engineering the Apple Video Decoder (AVD)

C 125 4 Updated Dec 31, 2023

notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094)

Go 3,481 234 Updated Apr 3, 2024

Hypervisor with EPT hooking support.

C++ 154 23 Updated May 21, 2024

Provides automated reverse engineering assistance through the use of local large language models (LLMs) on consumer hardware.

Python 731 39 Updated Jun 21, 2024

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.

C++ 115 16 Updated Apr 8, 2023

Principled, lightweight C/C++ PE parser

C++ 785 156 Updated Jun 7, 2024

Deluder is a tool for intercepting traffic of proxy unaware applications. Currently, Deluder supports OpenSSL, GnuTLS, SChannel, WinSock and Linux Sockets out of the box. ⚡

Python 153 15 Updated Feb 12, 2024

Using NtCreateFile and NtDeviceIoControlFile to realize the function of winsock(利用NtCreateFile和NtDeviceIoControlFile 实现winsock的功能)

C++ 98 30 Updated Sep 9, 2022

Quickly find differences and similarities in disassembled code

Java 2,089 121 Updated Aug 4, 2024

A collection of ready-to-use library code and symbols for the MinHash-based Code Relationship & Investigation Toolkit (MCRIT)

Python 10 2 Updated May 17, 2024

The Grimoire Hypervisor solution for x86 Processors with experimental nested virtualization support.

C 419 77 Updated Jul 27, 2024

The program uses the Windows API functions to traverse through directories and locate DLL files with RWX section

C 94 14 Updated Jul 15, 2023

Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA

Python 112 12 Updated Nov 21, 2023

Binary Ninja plugin to identify obfuscated code and other interesting code constructs

Python 533 62 Updated Apr 29, 2024
Python 9 Updated Oct 18, 2022

Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.

C++ 5,722 1,156 Updated Mar 18, 2024

.NET deobfuscator and unpacker.

C# 4 Updated Jan 28, 2023

.NET is a cross-platform runtime for cloud, mobile, desktop, and IoT apps.

C# 14,703 4,591 Updated Aug 6, 2024
Next