Skip to content
View Grouzy's full-sized avatar

Block or report Grouzy

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Coefficient-Based Reconstruction of Arithmetic — a Mixed Boolean-Arithmetic (MBA) expression simplifier for deobfuscation

C++ 323 16 Updated Aug 11, 2026
C++ 182 26 Updated Jul 30, 2026

Using the peculiar behaviour of the VPGATHER instructions to determine if an address will fault before it is truly accessed. All done in user-mode.

C++ 61 6 Updated Dec 30, 2025

Efficient general mixed boolean-arithmetic (MBA) simplifier

C# 136 9 Updated Jul 25, 2026

Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.

Python 380 33 Updated Jul 29, 2024

A library to develop kernel level Windows payloads for post HVCI era

C++ 525 89 Updated May 18, 2021

Deobfuscation via optimization with usage of LLVM IR and parsing assembly.

C++ 878 94 Updated May 8, 2026

Core emulator components for Icicle

Rust 307 33 Updated Aug 8, 2026

Nyxstone: assembly / disassembly library based on LLVM, implemented in C++ with Rust and Python bindings, maintained by emproof.com

Rust 413 20 Updated Jun 5, 2026

MBA deobfuscator via Program Synthesis and Term Rewriting

C 71 8 Updated Jul 6, 2026

Moved to Codeberg

Zig 43,329 3,230 Updated Nov 27, 2025

uefi diskless persistence technique + OVMF secureboot bypass

C 103 10 Updated Apr 22, 2024

The first analysis framework for CPU microcode

C 411 27 Updated Mar 13, 2023

BlackLotus UEFI Windows Bootkit

C 2,238 479 Updated Mar 28, 2024

View ETW Provider manifest

C# 618 81 Updated Nov 1, 2024

C++ STL in the Windows Kernel with C++ Exception Support

C++ 441 81 Updated Aug 16, 2023

Turn off PatchGuard in real time for win7 (7600) ~ later

C 1,041 310 Updated Apr 21, 2022

A cheatsheet of modern C++ language and library features.

21,840 2,263 Updated Jun 9, 2026

Port of MBA Solver SiMBA to C/C++ (MBA deobfuscation in real world applications)

LLVM 111 20 Updated Aug 1, 2026

Automatic verification of LLVM optimizations

C++ 1,146 156 Updated Aug 10, 2026

Symbolic Execution Engine based on Ghidra's PCode

C++ 85 4 Updated Mar 16, 2023

Hardening code obfuscation against automated attacks

Python 221 21 Updated Jan 23, 2024

Xyntia, the black-box deobfuscator

OCaml 96 3 Updated Dec 11, 2025

TTexplore is a library that performs path exploration on binary code using symbolic execution

C++ 85 7 Updated Nov 14, 2022

Open-source symbolic execution framework: https://maat.re

C++ 650 45 Updated May 22, 2026

This is the first software system, which can detect a stealthy hypervisor and calculate several nested ones even under countermeasures.

C++ 91 26 Updated Jun 16, 2015
Python 442 72 Updated Jan 1, 2025

09/2021 reversal of EasyAntiCheat driver

C++ 244 47 Updated Dec 21, 2021

Disks for DMA

C 161 26 Updated Apr 28, 2021

Static unpacker for FinSpy VM

Python 103 25 Updated Jul 11, 2021
Next