- Planet Earth
Highlights
- Pro
Lists (1)
Sort Name ascending (A-Z)
Stars
Offensive PoC tool for BTR.sys - Microsoft Defender's Boot Time Removal Tool. Supporting material for the BTR Reforged research (Black Hat USA 2026 / DEF CON 34, Las Vegas).
x86-64 Symbolic Execution & LLVM IR Lifting Framework for Deobfuscation
Use NtProtectVirtualMemory in Ekko timers without needing to use stack pivoting or other RSP shifting tricks
Generic devirtualizer for Agile.NET (SecureTeam/CodeVeil) VM-based method protection — reconstructs CIL by reverse-engineering the runtime DLL structurally, no hardcoded per-build opcode tables.
Find domains and subdomains related to a given domain
Fast passive subdomain enumeration tool.
The agent that grows with you
How to implement Stripe without going mad
The Fully Customizable Desktop Environment for Windows 10/11.
A cross-platform music app using YouTube Music for backend
Reimplementation of Microsoft's Warbird obuscator
Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows | Provides tools and Guides for Pers…
The unofficial Official FirmWare, a complete latest PSP firmware reverse engineering project
Google Workspace CLI — one command-line tool for Drive, Gmail, Calendar, Sheets, Docs, Chat, Admin, and more. Dynamically built from Google Discovery Service. Includes AI agent skills.
Sophisticated In-Memory PE loader for Cobalt Strike
OpenAI's privacy filter NER model architecture implemented in a minimal C++/GGML runtime
LukeFZ / Il2CppInspectorRedux
Forked from djkaty/Il2CppInspectorContinuation of Il2CppInspector - A powerful automated tool for reverse engineering Unity IL2CPP binaries.
VMDetect is a Python based Windows VM detection and environment forensics tool that reads ACPI/SMBIOS firmware tables and system artifacts to expose virtual machines, even if people try to hide them!
Windows 11 kernel research framework demonstrating DSE bypass on Windows 11 25H2 through boot-time execution. Loads unsigned drivers by surgically patching SeCiCallbacks via native subsystem. Inclu…
Advanced native-mode utility for bypassing DSE and HVCI. Implements smart SeCiCallbacks patching and independent management of Memory Integrity settings. Operating as a subsystem:native app, it ens…
Morok is a modular C++23 LLVM New-PM IR obfuscator. It loads as a pass plugin inside clang or opt, rewrites LLVM IR, and emits a behaviorally equivalent program with fewer stable static landmarks, …