Skip to content
View Rainism's full-sized avatar
  • Sichuan

Block or report Rainism

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
59 stars written in C++
Clear filter

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

C++ 47,343 2,640 Updated Dec 14, 2025

Telegram Desktop messaging app

C++ 29,312 6,105 Updated Dec 15, 2025

Convert HTML to PDF using Webkit (QtWebKit)

C++ 14,472 1,920 Updated Nov 22, 2022

微信HOOK、微信机器人 wxhook,数据库解密 微信公众号采集 微信公众号爬虫,企业微信HOOK

C++ 7,001 2,367 Updated Nov 19, 2025

🔥Open source RASP solution

C++ 2,933 620 Updated Oct 2, 2025

Converts PE into a shellcode

C++ 2,710 468 Updated Aug 30, 2025

A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts to NT AUTHORITY\SYSTEM.

C++ 2,700 485 Updated Dec 18, 2021

Hook system calls, context switches, page faults and more.

C++ 2,611 510 Updated May 9, 2023

Open EDR public repository

C++ 2,570 499 Updated Jan 13, 2024

Portspoof

C++ 2,392 183 Updated Dec 14, 2025

shellcodeloader

C++ 1,742 384 Updated Dec 11, 2020

Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive toolkits.

C++ 1,685 287 Updated Sep 25, 2025

Extracting Clear Text Passwords from mstsc.exe using API Hooking.

C++ 1,397 363 Updated Jul 20, 2024

Converts a EXE into DLL

C++ 1,351 205 Updated Sep 15, 2025

一些阅读源码和Fuzzing 的经验,涵盖黑盒与白盒测试..

C++ 1,073 220 Updated Aug 24, 2021

Cooolis-ms是一个包含了Metasploit Payload Loader、Cobalt Strike External C2 Loader、Reflective DLL injection的代码执行工具,它的定位在于能够在静态查杀上规避一些我们将要执行且含有特征的代码,帮助红队人员更方便快捷的从Web容器环境切换到C2环境进一步进行工作。

C++ 926 137 Updated Dec 5, 2025

RouterOS Security Research Tooling and Proof of Concepts

C++ 897 389 Updated Nov 29, 2022

Principled, lightweight C/C++ PE parser

C++ 877 164 Updated Nov 26, 2025

Token Privilege Research

C++ 867 175 Updated Sep 1, 2017

Enumerate and disable common sources of telemetry used by AV/EDR.

C++ 813 129 Updated Mar 11, 2021

恶意代码逃逸源代码 http://payloads.online

C++ 756 123 Updated Mar 7, 2022

Support ALL Windows Version

C++ 722 172 Updated Sep 11, 2020

A small POC to make defender useless by removing its token privileges and lowering the token integrity

C++ 689 128 Updated Jun 28, 2022

使用MFC编写的病毒技术合集

C++ 617 258 Updated Jul 27, 2019

A tool mainly to erase specified records from Windows event logs, with additional functionalities.

C++ 606 148 Updated Sep 7, 2018

mXtract - Memory Extractor & Analyzer

C++ 589 89 Updated Nov 9, 2021

A native backdoor module for Microsoft IIS (Internet Information Services)

C++ 554 127 Updated Jul 3, 2020

CVE-2018-8120 Windows LPE exploit

C++ 499 188 Updated May 30, 2018

System call hook for Windows 10 20H1

C++ 495 109 Updated Jun 26, 2021

Shellcode launcher utility

C++ 478 128 Updated Feb 16, 2014
Next