Stars
Drivers for receiving LiDAR data and controlling lidar, support Lidar HAP and Mid-360.
Full dynamic model for the Babyshark 260 VTOL UAV.
Autonomous VTOL Design
How to Set Up a Drone Using the X650, Pixhawk 6X, and Jetson Orin
Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods BYOVD
DISKSPD is a storage load generator / performance test tool from the Windows/Windows Server and Cloud Server Infrastructure Engineering teams
Adversary tradecraft detection, protection, and hunting
The FLARE team's open-source tool to identify capabilities in executable files.
Cross-platform, C implementation of the IETF QUIC protocol, exposed to C, C++, C# and Rust.
PolyEngine is an evasive PE packer designed for CTF challenges and low-level Windows security education. It focuses on bypassing EDR and AV heuristics through a layered stack of in-memory execution…
Fun with the Windows Subsystem for Linux (WSL/LXSS)
SimpleVisor is a simple, portable, Intel VT-x hypervisor with two specific goals: using the least amount of assembly code (10 lines), and having the smallest amount of VMX-related code to support d…
The Windows Library for Intel Process Trace (WinIPT) is a project that leverages the new Intel Processor Trace functionality exposed by Windows 10 Redstone 5 (1809), through a set of libraries and …
Cobalt Strike BOF used to perform privilege escalation by exploiting the SeImpersonate privilege. Based on the original GodPotato PoC by BeichenDream.
PoC Implementation of a fully dynamic call stack spoofer
BOF for Havoc that copies locked Windows files (SAM, SYSTEM, NTDS.dit) via raw MFT parsing — no VSS, no Registry APIs, no PowerShell
A C# process filter driver example which was implemented with the Process Filter Driver SDK. The Process Filter Driver SDK is a kernel-mode driver that filters process/thread creation and terminati…
Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules
Header-only TOML config file parser and serializer for C++17.
WinVisor - A hypervisor-based emulator for Windows x64 user-mode executables using Windows Hypervisor Platform API