Pinned Repositories
D3D11-MinHook-Nuklear
Basic d3d11 nuklear implementation for internal game cheats.
FuzzingPaper
Recent Fuzzing Paper
gdrv-loader
Kernel driver loader using vulnerable gigabyte driver (https://www.secureauth.com/labs/advisories/gigabyte-drivers-elevation-privilege-vulnerabilities) to load a unsigned driver
Information_Security_Books
150本信息安全方面的书籍书籍(持续更新)
khaleesi
Anti-debug library based on al-khaser with ScyllaHide/TitanHide detection.
learn-LDDD
《Linux 设备驱动开发详解》(宋宝华) 学习笔记
ProcessHacker-2
A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware—mirror of https://github.com/processhacker2/processhacker.git
RedTeamer
红方人员作战执行手册
snifferview-1
体积小巧功能强大的网络封包嗅探分析工具-snifferview
WorldReverse
Game Source Code 再現
fengjixuchui's Repositories
fengjixuchui/SKLib
Standard Kernel Library
fengjixuchui/Classy
IDA Pro plugin to manage classes
fengjixuchui/cs-self-learning
计算机自学指南
fengjixuchui/Custom-GetProcAddress
A custom implementation of GetProcAddress, often used in malware to evade detection by bypassing standard API resolution methods
fengjixuchui/MalwareEvasionTechniques
Research project showcasing various malware evasion techniques used to bypass AVs and EDRs, continuously updated with new methods.
fengjixuchui/38c3_com_talk
Slides for COM Hijacking AV/EDR Talk on 38c3
fengjixuchui/AsmResolver
A library for editing PE files with full .NET metadata support
fengjixuchui/awesome-edr-bypass
Awesome EDR Bypass Resources For Ethical Hacking
fengjixuchui/awesome-protobuf-reverse-engineering
protobuf逆向相关的资料收集
fengjixuchui/EagleVM
WIP Native code virtualizer for x64 binaries
fengjixuchui/emulator
🪅 Windows User Space Emulator
fengjixuchui/fort
Fort Firewall for Windows
fengjixuchui/frinet
Frida-based tracer for easier reverse-engineering on Android, iOS, Linux, Windows and most related architectures.
fengjixuchui/Hasherama
A Windows string hashing toolkit for security research and malware analysis.Research implementation of malware-focused algorithms from VX Underground collection. For educational and research purposes only.
fengjixuchui/HVNC
My POC implementation of HVNC (Hidden VNC / Hidden Desktop)
fengjixuchui/JonMon
fengjixuchui/linux-pe
Portable executable format described for non-Windows environments using standart C++.
fengjixuchui/linux-pe-repo
fengjixuchui/Linux_LPE_eBPF_CVE-2021-3490
fengjixuchui/lpmapper
A mapper that maps shellcode into loaded large page drivers
fengjixuchui/Memory-Dump-UEFI
A UEFI application for dumping the contents of RAM.
fengjixuchui/NtRays
Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.
fengjixuchui/PE_Inspector
A powerful PE file inspector for analyzing Portable Executable binaries, providing detailed insights into their structure, headers, and properties
fengjixuchui/PEzor
Open-Source PE Packer
fengjixuchui/safetyhook
C++23 procedure hooking library.
fengjixuchui/STrace-1
A DTrace on Windows Reimplementation
fengjixuchui/UNIVERSAL-HWID-SPOOFER
NEW VERSION OF HWID SPOOFER
fengjixuchui/VX-API
Collection of various malicious functionality to aid in malware development
fengjixuchui/Windows_LPE_AFD_CVE-2023-21768
LPE exploit for CVE-2023-21768
fengjixuchui/xnu1