Skip to content
View mooolight's full-sized avatar

Highlights

  • Pro

Block or report mooolight

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Unlocking _everything_ on the CPU with DRAM scrambling

C 1,663 134 Updated Aug 13, 2026

Deep insights into EDR detection approaches

C++ 68 13 Updated Aug 15, 2026

Project for generating and identifying deceptive LNK files.

Python 379 50 Updated Aug 10, 2026

Project for tracking publicly disclosed DLL Hijacking opportunities.

927 120 Updated Aug 10, 2026

AI-powered red team agent that generates attack scenarios, attack chains, and defense playbooks from system architecture descriptions

TypeScript 1 Updated Mar 11, 2026

Process Injection using Thread Name

C 312 40 Updated Apr 18, 2025

BOF collections

C 6 Updated Aug 14, 2026

Atomic test units for BOF execution

C 60 4 Updated Apr 26, 2026

Command and control framework

C# 36 3 Updated Jun 20, 2026

Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows | Provides tools and Guides for Pers…

C# 4,625 328 Updated Aug 14, 2026

A modern platform for visual, flexible, and extensible graph-based investigations. For cybersecurity analysts and investigators.

TypeScript 7,618 952 Updated Aug 11, 2026

Custom EDR for testing some malware evasion techniques.

C++ 1 Updated Aug 15, 2026

Bicep is a declarative language for describing and deploying Azure resources

Bicep 3,630 823 Updated Aug 15, 2026

Threat Model Knowledge Base - Security context source for AI-assisted development

Go 6 Updated Jul 20, 2026

This project aims to compare and evaluate the telemetry of various EDR products.

Python 1,978 199 Updated Aug 12, 2026

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.

C# 1,132 178 Updated Jul 26, 2021

Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers

Python 462 36 Updated Jul 26, 2026

Moonwalk++: Simple POC Combining StackMoonwalking and Memory Encryption

C++ 234 23 Updated Dec 17, 2025

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

PowerShell 2,546 497 Updated Nov 15, 2023

game of active directory

PowerShell 8,195 1,123 Updated Mar 12, 2026

Windows protocol library, including SMB and RPC implementations, among others.

C# 825 85 Updated Aug 5, 2026

A collection of Azure AD/Entra tools for offensive and defensive security purposes

Python 2,698 389 Updated Aug 5, 2026

Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps release pipelines.

2,958 396 Updated Jul 30, 2026

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

C++ 1,126 163 Updated Jun 17, 2022

PoC Implementation of a fully dynamic call stack spoofer

C++ 986 113 Updated Jul 20, 2024

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

C++ 3,854 494 Updated Jun 6, 2026

Portable Executable reversing tool with a friendly GUI

C++ 3,767 243 Updated Jun 10, 2026

🪅 Windows & Linux userspace emulator

C++ 3,496 232 Updated Aug 15, 2026

Gather and update all available and newest CVEs with their PoC.

HTML 8,000 979 Updated Aug 15, 2026
Next