Skip to content
View Rainism's full-sized avatar
  • Sichuan

Block or report Rainism

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
125 stars written in C
Clear filter

Open-Source Shellcode & PE Packer

C 2,039 334 Updated Feb 3, 2024

🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc

C 1,989 508 Updated Jul 13, 2022

Windows tool for dumping malware PE files from memory back to disk for analysis.

C 1,808 275 Updated Sep 3, 2024

Windows Event Log Killer

C 1,803 306 Updated Sep 21, 2023

A tracing and troubleshooting tool for PHP scripts.

C 1,680 388 Updated Nov 28, 2018

Interactive CTF Exploration Tool

C 1,666 270 Updated Sep 17, 2021

Situational Awareness commands implemented using Beacon Object Files

C 1,645 272 Updated Nov 24, 2025

Simple reverse ICMP shell

C 1,612 419 Updated Apr 6, 2018

LSASS memory dumper using direct system calls and API unhooking.

C 1,571 252 Updated Jan 5, 2021

My proof-of-concept exploits for the Linux kernel

C 1,540 369 Updated Sep 11, 2025

A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!

C 1,390 268 Updated Nov 22, 2023

Dump cookies and credentials directly from Chrome/Edge process memory

C 1,378 131 Updated Sep 19, 2025

Windows NT Syscall tables

C 1,359 262 Updated Nov 1, 2025

🚨 rdesktop is in need of a new maintainter. Please see the home page for more details. 🚨

C 1,354 381 Updated Sep 19, 2023

CVE-2020-0796 - Windows SMBv3 LPE exploit #SMBGhost

C 1,342 343 Updated Dec 7, 2020

Qemu KVM(Kernel Virtual Machine)学习笔记

C 1,296 299 Updated Dec 13, 2022

LoadLibrary for offensive operations

C 1,169 209 Updated Oct 22, 2021

bypass disable_functions via LD_PRELOA (no need /usr/sbin/sendmail)

C 1,168 282 Updated Aug 7, 2021

AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and restore various kernel modifications and hooks.With …

C 1,112 431 Updated Apr 22, 2021

Linux LD_PRELOAD rootkit (x86 and x86_64 architectures)

C 968 196 Updated Dec 11, 2020

VMware Escape Exploit before VMware WorkStation 12.5.5

C 913 348 Updated Nov 7, 2023

Minimalistic VT-x hypervisor with hooks

C 912 276 Updated Oct 18, 2019

Dirty Pipe root exploit for Android (Pixel 6)

C 838 136 Updated Jun 16, 2022

some vul

C 787 219 Updated Apr 25, 2025

Tool for extracting information from newly spawned processes

C 774 112 Updated May 11, 2025

A Pwn2Own exploit chain

C 755 115 Updated Nov 8, 2018

TCP Port Redirection Utility

C 751 119 Updated Jan 31, 2023

InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assembly execution as an alternative to Cobalt Strikes traditiona…

C 721 137 Updated Jul 22, 2023

Various Cobalt Strike BOFs

C 713 64 Updated Oct 16, 2022

在Windows环境下的进程注入方法:远程线程注入、创建进程挂起注入、反射注入、APCInject、SetWindowHookEX注入

C 670 143 Updated Sep 22, 2018