TechForBad's Stars
agalwood/Motrix
A full-featured download manager.
winsiderss/systeminformer
A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware. Brought to you by Winsider Seminars & Solutions, Inc. @ http://www.windows-internals.com
xoreaxeaxeax/movfuscator
The single instruction C compiler
nlpxucan/WizardLM
LLMs build upon Evol Insturct: WizardLM, WizardCoder, WizardMath
horsicq/Detect-It-Easy
Program for determining types of files for Windows, Linux and MacOS.
PowerHouseMan/ComfyUI-AdvancedLivePortrait
emidan19/deep-tempest
Restoration for TEMPEST images using deep-learning
snnxyss/In-Swor
永久免杀加载器移步另一个项目https://github.com/snnxyss/new_in_swor 一个简单内网渗透工具免杀 目前免杀fscan,mimikatz,frp,elevationstation,bypassuac, 一键killAV 。请使用In-Swor(x64版本)360报毒qvm20请更换exe图标资源。
daem0nc0re/VectorKernel
PoCs for Kernelmode rootkit techniques research.
lainswork/dwm-screen-shot
将shellcode注入dwm.exe以进行屏幕截取
Peithon/JustC2file
Burp插件,Malleable C2 Profiles生成器;可以通过Burp代理选中请求,生成Cobalt Strike的profile文件(CSprofile)
Sh0ckFR/Universal-ImGui-D3D11-Hook
Universal Directx11 D3D11 Hook Project for all directx11 - 10 applications with ImGui and InputHook included, fullscreen supported.
niemand-sec/DirectX11Hook
Hooking Game Graphic Engines!
snnxyss/new_in_swor
bypassAll静态引擎,如绕过QVM,绕过VT所有静态引擎
TierZeroSecurity/edr_blocker
Blocks EDR Telemetry by performing Person-in-the-Middle attack where network filtering is applied using iptables. The blocked destination IP addresses are parsed based on the server name in TLS Client Hello packet and the provided blocked server name (or blocked string) list in the file.
crtdll/bedaisy-reversal
Some psuedo snippets from BattlEye's BEDaisy.sys loaded on Rainbow Six: Siege.
i32-Sudo/BEKernelDriverUpdated
This is a repo of my previous BEKernelDriver but updated to add better protections and a more detailed setup. also with a good bit of code cleanup.
mfxiaosheng/dwmhook
兼容且隐蔽的DWM HOOK
gmh5225/ida-find-.data-ptr
A simple ida python script to find .data ptr
cbwang505/windbg-uefi
这篇文章的目的是介绍一款实验性项目基于COM命名管道或者Windows Hyper-V虚拟机Vmbus通道实现的运行在uefi上的windbg调试引擎开发心得
mcc1874/software
cbwang505/TcpServerChannelRce
一款基于James Forshaw的.NET Remoting反序列化工具升级版在TypeFilterLevel.Low模式无文件payload任意代码执行poc的开发心得
rogxo/DisableDSE
A method to Disable DSE using .data ptr hooks
Kqlu666/3d-Injector
user23333/HyperVisorInjector
Secure Hyper-Visor Injector for Easy Anti Cheat, Battleye | that supports amd + intel | Undetected + Active updates
casterbyte/Somerset
Offensive Router for Windows Pivoting
meshstyles/bash_downloaders
these are several downloaders written in bash
casterbyte/HIVE
VLAN ID Parser
bynanex/injector
smallzhong/Windows-Research-Kernel-Hacking
Operating Systems technical challenge based on the Windows Research Kernel