Lists (1)
Sort Name ascending (A-Z)
Stars
A little tool to play with Windows security
Fast and lightweight x86/x86-64 disassembler and code generation library
Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware families do
Memory Debugger for Windows, Linux, Mac, and Android
🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc
proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC
The functions interception library written on pure C and NativeAPI with UserMode and KernelMode support
Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted file
Executes PowerShell from an unmanaged process
The Definitive Guide To Process Cloning on Windows
Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executable pages. (VAD hide / NX bit swapping)
A simple program to hook the current process to identify the manual syscall executions on windows
Lightweight type-1 hypervisor offering a foundation for building advanced security-focused functionality.