Stars
Kernel Anit Anit Debug Plugins 内核反反调试插件
A few basic bytecode interpreters used as example code in a series of articles
Toy scripts for playing with WinDbg JS API
An Undetected BE Kernel Driver I developed, Will probably be detected upon releasing this but can be made undetected very easily. Does not work for EAC as there is no CR3 Fixing/Patching/Restore al…
The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the contr…
A minimalistic educational hypervisor for Windows on AMD processors.
hvpp is a lightweight Intel x64/VT-x hypervisor written in C++ focused primarily on virtualization of already running operating system
Different aproaches to detecting EPT hooks
A True Instrumentable Binary Emulation Framework
Vmware Hardened VM detection mitigation loader (anti anti-vm)
Emulate Drivers in RING3 with self context mapping or unicorn
Monitoring and controlling kernel API calls with stealth hook using EPT
UNIX-like reverse engineering framework and command-line toolset
Kernel-mode Paravirtualization in Ring 2, LLVM based linker, and some other things!