Pinned Repositories
beaengine
BeaEngine disasm project
CVE-2020-17382
CVE-2020-17382 Windows 10 x64 2004 Build 19041.264 Exploit
idapro-docker
IDA Pro (Windows) on Linux using Docker and Wine.
injectAllTheThings
Seven different DLL injection techniques in one single project.
iris
WinDbg extension to display Windows process mitigations.
symbolic-execution
Files for http://blog.deniable.org/posts/symbolic-execution/
threat-INTel
Archive of publicly available threat INTel reports (mostly APT Reports but not limited to).
WinAllocTracer
Pintool that logs and tracks calls to RtlAllocateHeap, RtlReAllocateHeap, RtlFreeHeap, VirtualAllocEx, and VirtualFreeEx.
windows-ps-callbacks-experiments
Files for http://blog.deniable.org/posts/windows-callbacks/
houseofxyz's Repositories
houseofxyz/windows-ps-callbacks-experiments
Files for http://blog.deniable.org/posts/windows-callbacks/
houseofxyz/idapro-docker
IDA Pro (Windows) on Linux using Docker and Wine.
houseofxyz/threat-INTel
Archive of publicly available threat INTel reports (mostly APT Reports but not limited to).
houseofxyz/injectAllTheThings
Seven different DLL injection techniques in one single project.
houseofxyz/CVE-2020-17382
CVE-2020-17382 Windows 10 x64 2004 Build 19041.264 Exploit
houseofxyz/WinAllocTracer
Pintool that logs and tracks calls to RtlAllocateHeap, RtlReAllocateHeap, RtlFreeHeap, VirtualAllocEx, and VirtualFreeEx.
houseofxyz/beaengine
BeaEngine disasm project
houseofxyz/iris
WinDbg extension to display Windows process mitigations.
houseofxyz/symbolic-execution
Files for http://blog.deniable.org/posts/symbolic-execution/
houseofxyz/blobexec
Quickly debug shellcode.
houseofxyz/DBI
Files for http://blog.deniable.org/posts/binary-instrumentation/
houseofxyz/Hunt-Weird-Syscalls
ETW based POC to identify direct and indirect syscalls
houseofxyz/hunter
(l)user hunter using WinAPI calls only.
houseofxyz/kcshell
Simple Python3 based interactive assembly/disassembly shell for various architectures powered by Keystone/Capstone.
houseofxyz/mirror
as the name says
houseofxyz/PowerOPS
PowerShell Runspace Portable Post Exploitation Tool aimed at making Penetration Testing with PowerShell "easier".
houseofxyz/PSShell
PSShell gets the job done when harsh group policy restrictions are in place.
houseofxyz/research-vm
houseofxyz/www-rootkit-com
www.rootkit.com users section mirror, sql database dump, and a few other files/rootkits.