peta909's Stars
ossu/computer-science
🎓 Path to a free self-taught education in Computer Science!
Developer-Y/cs-video-courses
List of Computer Science courses with video lectures.
WerWolv/ImHex
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
vxunderground/MalwareSourceCode
Collection of malware source code for a variety of platforms in an array of different programming languages.
LOLBAS-Project/LOLBAS
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
dnSpyEx/dnSpy
Unofficial revival of the well known .NET debugger and assembly editor, dnSpy
webclipper/web-clipper
For Notion,OneNote,Bear,Yuque,Joplin。Clip anything to anywhere
cobbr/Covenant
Covenant is a collaborative .NET C2 framework for red teamers.
cea-sec/miasm
Reverse engineering framework in Python
mattnotmax/cyberchef-recipes
A list of cyber-chef recipes and curated links
roadwy/RIP
polymorf/findcrypt-yara
IDA pro plugin to find crypto constants (and more)
gaasedelen/tenet
A Trace Explorer for Reverse Engineers
blackberry/pe_tree
Python module for viewing Portable Executable (PE) files in a tree-view using pefile and PyQt5. Can also be used with IDA Pro and Rekall to dump in-memory PE files and reconstruct imports.
Sentinel-One/CobaltStrikeParser
hasherezade/process_ghosting
Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted file
a1ext/auto_re
IDA PRO auto-renaming plugin with tagging support
mandiant/FIDL
A sane API for IDA Pro's decompiler. Useful for malware RE and vulnerability research
aaaddress1/Windows-APT-Warfare
著作《Windows APT Warfare:惡意程式前線戰術指南》各章節技術實作之原始碼內容
APTortellini/unDefender
Killing your preferred antimalware by abusing native symbolic links and NT paths.
fareedfauzi/Flare-On-Challenges
This repo is aim to compile all Flare-On challenge's binaries. Update: 2014 -2022.
mrphrazer/msynth
Code deobfuscation framework to simplify Mixed Boolean-Arithmetic (MBA) expressions
landaire/unfuck
Python 2.7 bytecode d̶e̶o̶b̶f̶u̶s̶c̶a̶t̶o̶r unfucker
EddieIvan01/gld
Go shellcode LoaDer
mcdulltii/obfDetect
IDA plugin to pinpoint obfuscated code
jackullrich/universal-syscall-64
Resolve syscall numbers at runtime for all Windows versions.
SilverTuxedo/keval
Call arbitrary Windows kernel-mode functions from Python on another machine
renzhexigua/go_parser
Yet Another Golang binary parser for IDAPro
usualsuspect/ida_stuff
hshrzd/zbot_material
Additional material for the Zbot paper