Pinned Repositories
awesome-windows-kernel-security-development
windows kernel security development
CheekyBlinder
Enumerating and removing kernel callbacks using signed vulnerable drivers
DSEDodge-Signed-Kernel-Driver
ETW-Trace
ETW Tracing C++ project
etwbreaker
An IDA plugin to deal with Event Tracing for Windows (ETW)
HookLibx86R3
ida_python_extractCode
ida提取特征码脚本
VirtICE
Publish
washingMachine
家里的全自动洗衣机_51单片机驱动程序
winx64HookLib
x64HOOK库
hackflame's Repositories
hackflame/ida_python_extractCode
ida提取特征码脚本
hackflame/winx64HookLib
x64HOOK库
hackflame/HookLibx86R3
hackflame/antispy
AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and restore various kernel modifications and hooks.With its assistance,you can easily spot and neutralize malwares hidden from normal detectors.
hackflame/awesome-virtualization
Collection of resources about Virtualization
hackflame/capstone
Capstone disassembly/disassembler framework: Core (Arm, Arm64, BPF, EVM, M68K, M680X, MOS65xx, Mips, PPC, RISCV, Sparc, SystemZ, TMS320C64x, Web Assembly, X86, X86_64, XCore) + bindings.
hackflame/EASTL
EASTL stands for Electronic Arts Standard Template Library. It is an extensive and robust implementation that has an emphasis on high performance.
hackflame/HexRaysPyTools
IDA Pro plugin which improves work with HexRays decompiler and helps in process of reconstruction structures and classes
hackflame/hidden
Windows driver with usermode interface which can hide objects of file-system and registry, protect processes and etc
hackflame/HidGuardian
Windows kernel-mode driver for controlling access to various input devices.
hackflame/HttpInterface
Windows上C++封装的HTTP库,包含三种实现模式(WinInet、WinHttp、socket)
hackflame/Kernel_Driver_Hack
hackflame/MemoryModule
Library to load a DLL from memory.
hackflame/mona
Corelan Repository for mona.py
hackflame/PeaceMaker
PeaceMaker Threat Detection is a Windows kernel-based application that detects advanced techniques used by malware.
hackflame/PoC-in-GitHub
PoC auto collect from GitHub.
hackflame/procfilter
A YARA-integrated process denial framework for Windows
hackflame/reactos
A free Windows-compatible Operating System
hackflame/Reverse-Engineering-Intel-x64-101
Material for a RE 101 class on Intel x64 binaries
hackflame/serenity
Serenity Operating System
hackflame/ShimDB
Shim database persistence (Fin7 TTP)
hackflame/skCrypter
Compile-time, Usermode + Kernelmode, safe and lightweight string crypter library for C++11+
hackflame/SyscallHook
System call hook for Windows 10 20H1
hackflame/TencentOS-kernel
腾讯针对云的场景研发的服务器操作系统
hackflame/TitanHide
Hiding kernel-driver for x86/x64.
hackflame/unicorn
Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, X86)
hackflame/VMProtectTest
VMProtectTest
hackflame/VmwareHardenedLoader
Vmware Hardened VM detection mitigation loader (anti anti-vm)
hackflame/Windows-driver-samples
This repo contains driver samples prepared for use with Microsoft Visual Studio and the Windows Driver Kit (WDK). It contains both Universal Windows Driver and desktop-only driver samples.
hackflame/X86PeRunner
Run X86 PE file on Windows 10 ARM32