- All languages
- Assembly
- Batchfile
- BlitzBasic
- C
- C#
- C++
- CSS
- Classic ASP
- CodeQL
- Dockerfile
- FreeBASIC
- FreeMarker
- Go
- Go Template
- HTML
- Java
- JavaScript
- Jupyter Notebook
- Kotlin
- Lua
- Makefile
- Markdown
- Nim
- Objective-C
- PHP
- POV-Ray SDL
- Perl
- PowerShell
- Python
- QML
- REXX
- Raku
- Rich Text Format
- Ruby
- Rust
- Shell
- Smarty
- Solidity
- Swift
- TeX
- TypeScript
- Vim Script
- Vue
- XSLT
- YAML
- YARA
- Zeek
- Zig
Starred repositories
ClickHouse® is a real-time analytics database management system
C++ based gRPC (C++, Python, Ruby, Objective-C, PHP, C#)
WinGet is the Windows Package Manager. This project includes a CLI (Command Line Interface), PowerShell modules, and a COM (Component Object Model) API (Application Programming Interface).
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. It has a robust event-based programming language which provides protection from a rang…
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
High-performance regular expression matching library
A simple keylogger for Windows, Linux and Mac
Disable PatchGuard and Driver Signature Enforcement at boot time
Windows rootkit for Intel x64 with 25+ features, demonstrating rootkit techniques compatible with all Windows 10 and Windows 11 versions.
Alternative Shellcode Execution Via Callbacks
Pentesting cheatsheet with all the commands I learned during my learning journey. Will try to to keep it up-to-date.
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
RpcView is a free tool to explore and decompile Microsoft RPC interfaces
Tool to bypass LSA Protection (aka Protected Process Light)
Windows Local Privilege Escalation from Service Account to System
Support ALL Windows Version
A small POC to make defender useless by removing its token privileges and lowering the token integrity
Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers, Unlinking .NET related modules, bypassing ETW+AMSI, avo…