Skip to content
View bsoddreams's full-sized avatar
💭
I dream of kernel panics.
💭
I dream of kernel panics.
Block or Report

Block or report bsoddreams

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

A bare minimum hypervisor on AMD and Intel processors for learners.

Rust 106 3 Updated Jul 8, 2024

Live Variable Analysis with Haskell

Haskell 5 1 Updated Sep 7, 2023

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

C 948 127 Updated Jun 28, 2024

Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs

C++ 634 81 Updated Mar 16, 2024

Evasion by machine code de-optimization.

Rust 226 16 Updated Jul 3, 2024

Project template for single-window GUI apps using Dear ImGui

C++ 41 5 Updated Jun 29, 2024

Contains all the applications developed for the Second part of the 7th Edition of Windows Internals book

69 7 Updated Jun 30, 2024

Kernel ReClassEx

C++ 59 5 Updated Nov 21, 2023

Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.

Python 139 9 Updated Jul 9, 2024

out-of-tree llvm obfuscation pass plugin (dynamically loadable by rustc). || rust toolchain with obfuscation llvm pass.

C++ 32 10 Updated Jun 28, 2024

A command line utility to display dependency tree of the installed Python packages

Python 2,734 148 Updated Jul 12, 2024

Rusty Hypervisor - Windows Kernel Blue Pill Type-2 Hypervisor in Rust (Codename: Matrix)

Rust 244 28 Updated Jul 7, 2024

Nyxstone: assembly / disassembly library based on LLVM, implemented in C++ with Rust and Python bindings, maintained by emproof.com

C++ 263 8 Updated Jun 28, 2024

Reimplementation of Microsoft's Warbird obuscator

C++ 69 8 Updated Jun 24, 2024

BlackLotus UEFI Windows Bootkit

C 1,890 458 Updated Mar 28, 2024

RAGFlow is an open-source RAG (Retrieval-Augmented Generation) engine based on deep document understanding.

Python 11,892 1,141 Updated Jul 12, 2024

Pure Python parser for Windows Event Log files (.evtx)

Python 691 165 Updated Jun 29, 2024

Deobfuscation of Semi-Linear Mixed Boolean-Arithmetic Expressions

C# 41 5 Updated Jun 24, 2024

C and C++ compiler frontend using PASTA to parse code, and VAST to represent the code as MLIR.

C 37 4 Updated Jul 2, 2024

Experimental MLIR based points-to analysis tool

C++ 8 Updated Jun 26, 2024

Rusty Hypervisor - Windows UEFI Blue Pill Type-1 Hypervisor in Rust (Codename: Illusion)

Rust 190 22 Updated Jul 11, 2024

an ida plugin used to decompile vmp

C++ 256 63 Updated Jul 2, 2024

aiDAPal is an IDA Pro plugin that uses a locally running LLM that has been fine-tuned for Hex-Rays pseudocode to assist with code analysis.

Python 105 10 Updated Jun 26, 2024

Yet another llvm based obfuscator based on goron.

LLVM 280 41 Updated Jul 1, 2024

A tool for recognizing function symbol

Python 419 64 Updated Apr 8, 2024

Call Tree Overviewer

Python 312 37 Updated Mar 4, 2024

Extracted Yara rules from Windows Defender mpavbase and mpasbase

YARA 157 38 Updated Jul 9, 2024

Parser for the llvm bitcode format

LLVM 54 6 Updated Jun 10, 2024

An llvm pretty printer inspired by the haskell llvm binding

Haskell 27 13 Updated May 23, 2024
Next