Skip to content
View JohnRyk's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report JohnRyk

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Yet another llvm based obfuscator based on goron.

LLVM 4 1 Updated Dec 13, 2025

PWN初学者好题精炼

Python 30 4 Updated Aug 24, 2017

protector & obfuscator & code virtualizer

C++ 710 48 Updated Apr 5, 2026

Identifying and Disrupting Crypto-Ransomware (and Destructive Malware) using handle heurustics

C++ 57 14 Updated Apr 3, 2015

PE to shellcode

Python 271 54 Updated Jan 1, 2025

基于Go编写的windows日志分析工具

527 32 Updated Jan 13, 2025

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

Rust 3,096 264 Updated Mar 21, 2026

WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)

PowerShell 779 80 Updated Feb 3, 2023

Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.

C++ 244 27 Updated Sep 26, 2023

shellcode-loaders and beacon-loaders

71 18 Updated Nov 7, 2023

Simulate the behavior of AV/EDR for malware development training.

C 565 48 Updated Feb 15, 2024

TeamServer and Client of Exploration Command and Control Framework

Python 181 34 Updated Jan 6, 2026

Dumping DPAPI credz remotely

Python 1,350 158 Updated Mar 24, 2025

A tool to extract a KeePass master password from memory

C# 87 14 Updated Dec 11, 2020

DPAPI offline decryption utility

Python 73 17 Updated Dec 20, 2022

《云原生安全:攻防实践与体系构建》资料仓库

Go 776 135 Updated Feb 19, 2023

Powershell function to pull the local admin passwords from LDAP, stored there by LAPS.

PowerShell 122 30 Updated Dec 11, 2019

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by performing on-the-fly decryption of individual encry…

C++ 592 84 Updated Jun 12, 2024

Some scripts to abuse kerberos using Powershell

PowerShell 356 46 Updated Jul 27, 2023

EXP for CVE-2023-28434 MinIO unauthorized to RCE

Go 320 40 Updated Apr 4, 2023

Print Spooler Named Pipe Impersonation for Cobalt Strike

C 272 40 Updated Jun 13, 2020

Grab unsaved Notepad contents with a Beacon Object File

C 55 8 Updated Jun 19, 2022

EndpointSearch 是一个探测云服务端点的扫描器。Endpoint Search is a sophisticated reconnaissance utility designed to discreetly identify and enumerate endpoints within cloud services.

Go 78 2 Updated Nov 8, 2024

free rpc gateway, 1rpc integrate them all.

Go 2 Updated Feb 18, 2024

Utilizing hardware breakpoints to evade monitoring by Endpoint Detection and Response platforms

C++ 138 21 Updated Dec 20, 2022

Write-Ups for HackTheBox

Python 118 28 Updated May 21, 2023
Python 307 33 Updated Mar 15, 2025

永久免杀加载器移步另一个项目https://github.com/snnxyss/new_in_swor 一个简单内网渗透工具免杀 目前免杀fscan,mimikatz,frp,elevationstation,bypassuac, 一键killAV 。请使用In-Swor(x64版本)360报毒qvm20请更换exe图标资源。

C++ 389 36 Updated Dec 21, 2023

bypassAll静态引擎,如绕过QVM,绕过VT所有静态引擎

Python 152 13 Updated Jan 3, 2024

pickle相关CTF题目源码整理

Python 5 4 Updated Mar 20, 2020
Next