Skip to content
View N3mes1s's full-sized avatar

Highlights

  • Pro

Organizations

@ReaQta

Block or report N3mes1s

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

335 stars written in C
Clear filter

A binary-compatible unikernel

C 398 29 Updated Aug 13, 2024

ddi - Dynamic Dalvik Instrumentation Toolkit

C 396 156 Updated Oct 22, 2014

CVE-2022-0185

C 372 57 Updated Apr 25, 2022

zer0m0n driver for cuckoo sandbox

C 367 145 Updated May 19, 2015

Lua in kernel-mode because why not.

C 361 69 Updated Dec 3, 2021

rVMI - A New Paradigm For Full System Analysis

C 359 70 Updated Oct 4, 2017

Cisco Talos MBR Filter Driver

C 344 74 Updated Aug 10, 2017

linux elf injector for x86 x86_64 arm arm64

C 338 76 Updated May 31, 2018

OffensivePH - use old Process Hacker driver to bypass several user-mode access controls

C 336 42 Updated Oct 9, 2021

A guide for emulating macOS arm64e on an x86-based host.

C 333 32 Updated May 21, 2021

These are highly unstable, buggy, incomplete plugins that are not included with Process Hacker by default.

C 332 112 Updated Dec 21, 2021

Driver Module Framework

C 331 84 Updated Aug 19, 2025

Set of Dynamic Binary Instrumentation and visualization tools for execution traces.

C 328 72 Updated Jul 26, 2024

BSD socket API on steroids

C 316 16 Updated Sep 27, 2024

a virtual black hole file system that behaves like /dev/null

C 307 12 Updated Oct 16, 2025

OpenSGX

C 304 82 Updated Jun 25, 2020

Manticore is a research operating system, written in Rust.

C 294 16 Updated Dec 1, 2023

Simple easy to use C and python debugging framework for OSX

C 293 32 Updated May 4, 2016

A simple auditing utility for macOS

C 292 39 Updated Mar 20, 2021

A secure application sandbox built with modern Linux sandboxing features - no longer actively developed, but still works fine, use bubblewrap if you need more functionality

C 292 22 Updated Dec 19, 2015

PoC memory injection detection agent based on ETW, for offensive and defensive research purposes

C 291 45 Updated Apr 10, 2021

libsinsp, libscap, the kernel module driver, and the eBPF driver sources

C 290 174 Updated Nov 11, 2025

The Linux port of the Sysinternals Sysmon tool.

C 278 37 Updated Sep 22, 2025

minimal freestanding C library for bare-metal i386 development

C 277 6 Updated Mar 17, 2016

The ultimate hooking library

C 274 66 Updated Mar 19, 2021

Go packages built on go-tpm providing a high-level API for using TPMs

C 270 83 Updated Nov 6, 2025

Document ETW providers

C 262 56 Updated Mar 28, 2020

Recon 2015 Presentation from Alex Ionescu

C 248 60 Updated Jan 27, 2016

Falcon LLM ggml framework with CPU and GPU support

C 247 20 Updated Jan 22, 2024

monitor macOS for malicious activity

C 236 30 Updated Feb 5, 2025