Skip to content
View wisdark's full-sized avatar

Block or report wisdark

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Beta Lists are currently in beta. Share feedback and report bugs.
54 stars written in C
Clear filter

Defeating Windows User Account Control

C 6,358 1,321 Updated Jul 22, 2024

Simple tool to configure Windows Filtering Platform (WFP) which can configure network activity on your computer.

C 6,279 487 Updated Oct 3, 2024

WiFi security auditing tools suite

C 5,421 943 Updated Aug 29, 2024

🐛 Access your terminal from anywhere via the web.

C 3,693 502 Updated Jul 24, 2024

eBPF implementation that runs on top of Windows

C 2,925 234 Updated Nov 5, 2024

ENet reliable UDP networking library

C 2,756 671 Updated Aug 18, 2024

Targeted evil twin attacks against WPA2-Enterprise networks. Indirect wireless pivots using hostile portal attacks.

C 2,190 312 Updated Sep 22, 2024

Python interface to the WebRTC Voice Activity Detector

C 2,054 409 Updated Jul 4, 2024

Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.

C 1,567 171 Updated Oct 19, 2023

tiny, portable SOCKS5 server with very moderate resource usage

C 1,552 275 Updated May 24, 2024

Connect like there is no firewall. Securely.

C 1,528 128 Updated Oct 23, 2024

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

C 1,455 185 Updated Nov 3, 2024

HVNC for Cobalt Strike

C 1,156 177 Updated Dec 7, 2023

Collection of PoC and offensive techniques used by the BlackArrow Red Team

C 1,077 188 Updated Jul 19, 2024

Turn off PatchGuard in real time for win7 (7600) ~ later

C 984 302 Updated Apr 21, 2022

Cobalt Strike UDRL for memory scanner evasion.

C 876 160 Updated Jun 4, 2024

Exploit for 6.4 - 6.5 kernels and another exploit for 5.15 - 6.5

C 838 130 Updated Apr 19, 2024

ebpfkit is a rootkit powered by eBPF

C 758 90 Updated Feb 28, 2023

An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in general (sandboxing).

C 746 45 Updated Feb 2, 2024

Tool for extracting information from newly spawned processes

C 734 107 Updated Feb 14, 2022

Macro-header for compile-time C obfuscation (tcc, win x86/x64)

C 706 61 Updated Nov 4, 2024

The multi-platform memory acquisition tool.

C 686 102 Updated Jul 11, 2024

A basic Direct Kernel Object Manipulation rootkit that removes a process from the EPROCESS list, hiding it from the Task Manager

C 645 115 Updated Mar 26, 2019

Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".

C 632 93 Updated Jan 19, 2024

Cobalt Strike HTTPS beaconing over Microsoft Graph API

C 549 85 Updated Jun 25, 2024

Simulate the behavior of AV/EDR for malware development training.

C 452 37 Updated Feb 15, 2024

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

C 426 58 Updated Jul 6, 2024

Collection of UAC Bypass Techniques Weaponized as BOFs

C 405 56 Updated Feb 21, 2024

PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.

C 364 39 Updated Jun 15, 2024
Next