Skip to content
View JohnRyk's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report JohnRyk

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Yet another llvm based obfuscator based on goron.

LLVM 9 1 Updated Dec 13, 2025

PWN初学者好题精炼

Python 30 4 Updated Aug 24, 2017

protector & obfuscator & code virtualizer

C++ 712 48 Updated Apr 12, 2026

Identifying and Disrupting Crypto-Ransomware (and Destructive Malware) using handle heurustics

C++ 57 14 Updated Apr 3, 2015

PE to shellcode

Python 272 53 Updated Jan 1, 2025

基于Go编写的windows日志分析工具

528 32 Updated Jan 13, 2025

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

Rust 3,108 263 Updated Apr 14, 2026

WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)

PowerShell 780 79 Updated Feb 3, 2023

Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.

C++ 243 27 Updated Sep 26, 2023

shellcode-loaders and beacon-loaders

71 18 Updated Nov 7, 2023

Simulate the behavior of AV/EDR for malware development training.

C 564 48 Updated Feb 15, 2024

TeamServer and Client of Exploration Command and Control Framework

Python 181 34 Updated Jan 6, 2026

Dumping DPAPI credz remotely

Python 1,353 157 Updated Mar 24, 2025

A tool to extract a KeePass master password from memory

C# 87 14 Updated Dec 11, 2020

DPAPI offline decryption utility

Python 73 17 Updated Dec 20, 2022

《云原生安全:攻防实践与体系构建》资料仓库

Go 776 135 Updated Feb 19, 2023

Powershell function to pull the local admin passwords from LDAP, stored there by LAPS.

PowerShell 122 30 Updated Dec 11, 2019

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by performing on-the-fly decryption of individual encry…

C++ 591 84 Updated Jun 12, 2024

Some scripts to abuse kerberos using Powershell

PowerShell 356 46 Updated Apr 10, 2026

EXP for CVE-2023-28434 MinIO unauthorized to RCE

Go 320 40 Updated Apr 4, 2023

Print Spooler Named Pipe Impersonation for Cobalt Strike

C 272 40 Updated Jun 13, 2020

Grab unsaved Notepad contents with a Beacon Object File

C 55 8 Updated Jun 19, 2022

EndpointSearch 是一个探测云服务端点的扫描器。Endpoint Search is a sophisticated reconnaissance utility designed to discreetly identify and enumerate endpoints within cloud services.

Go 78 2 Updated Nov 8, 2024

free rpc gateway, 1rpc integrate them all.

Go 2 Updated Feb 18, 2024

Utilizing hardware breakpoints to evade monitoring by Endpoint Detection and Response platforms

C++ 139 21 Updated Dec 20, 2022

Write-Ups for HackTheBox

Python 118 28 Updated May 21, 2023
Python 307 33 Updated Mar 15, 2025

永久免杀加载器移步另一个项目https://github.com/snnxyss/new_in_swor 一个简单内网渗透工具免杀 目前免杀fscan,mimikatz,frp,elevationstation,bypassuac, 一键killAV 。请使用In-Swor(x64版本)360报毒qvm20请更换exe图标资源。

C++ 389 36 Updated Dec 21, 2023

bypassAll静态引擎,如绕过QVM,绕过VT所有静态引擎

Python 152 13 Updated Jan 3, 2024

pickle相关CTF题目源码整理

Python 5 4 Updated Mar 20, 2020
Next