Skip to content
View Swifto0's full-sized avatar
🌻
🌻

Block or report Swifto0

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
83 results for source starred repositories written in C++
Clear filter

The official GitHub mirror of the Chromium source

C++ 22,157 8,219 Updated Nov 7, 2025

Cloud Native Runtime Security

C++ 8,371 953 Updated Nov 6, 2025

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

C++ 7,227 1,298 Updated Nov 6, 2025

LIEF - Library to Instrument Executable Formats (C++, Python, Rust)

C++ 5,113 680 Updated Nov 1, 2025

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

C++ 3,471 464 Updated Oct 31, 2025

Converts PE into a shellcode

C++ 2,681 463 Updated Aug 30, 2025

KDMapper is a simple tool that exploits iqvw64e.sys Intel driver to manually map non-signed drivers in memory

C++ 2,584 593 Updated Oct 24, 2025

Nidhogg is an all-in-one simple to use windows kernel rootkit.

C++ 2,131 302 Updated Oct 30, 2025

An open-source windows defender manager. Now you can disable windows defender permanently.

C++ 1,736 130 Updated Sep 9, 2023

Intel VT-x based hypervisor aiming to provide a thin VM-exit filtering platform on Windows.

C++ 1,689 428 Updated Nov 24, 2023

Alternative Shellcode Execution Via Callbacks

C++ 1,649 320 Updated Nov 11, 2022

Library for lifting machine code to LLVM bitcode

C++ 1,481 156 Updated Nov 6, 2025

Pentesting cheatsheet with all the commands I learned during my learning journey. Will try to to keep it up-to-date.

C++ 1,480 247 Updated Oct 9, 2025

Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...

C++ 1,246 216 Updated Jun 21, 2024

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

C++ 1,203 163 Updated Dec 11, 2023

DRAKVUF Black-box Binary Analysis

C++ 1,179 267 Updated Nov 1, 2025

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

C++ 1,062 161 Updated Jun 17, 2022

Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes

C++ 1,029 168 Updated Jun 20, 2023

Loading Remote AES Encrypted PE in memory , Decrypted it and run it

C++ 995 200 Updated Aug 29, 2023

Now You See Me, Now You Don't

C++ 990 152 Updated Oct 26, 2025

Tool to bypass LSA Protection (aka Protected Process Light)

C++ 973 145 Updated Dec 4, 2022

Win32 and Kernel abusing techniques for pentesters

C++ 967 141 Updated Sep 3, 2023

A memory scanning evasion technique

C++ 891 117 Updated May 24, 2017

Advanced VM detection library and tool

C++ 870 100 Updated Nov 6, 2025

PoC Implementation of a fully dynamic call stack spoofer

C++ 845 104 Updated Jul 20, 2024

Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques.

C++ 831 135 Updated Jul 2, 2024

Pinjectra is a C/C++ OOP-like library that implements Process Injection techniques (with focus on Windows 10 64-bit)

C++ 824 157 Updated Mar 10, 2022

Enumerate and disable common sources of telemetry used by AV/EDR.

C++ 812 129 Updated Mar 11, 2021

Evasive shellcode loader for bypassing event-based injection detection (PoC)

C++ 810 127 Updated Aug 23, 2021

iMonitor(冰镜 - 终端行为分析系统)

C++ 772 167 Updated Nov 20, 2024
Next