Skip to content
View ntddk's full-sized avatar
  • Tokyo, Japan

Block or report ntddk

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

TaintInduce is a project which aims to automate the creation of taint propagation rules for unknown instruction sets.

Python 62 16 Updated Jan 22, 2021

Indirect Dynamic Syscall, SSN + Syscall address sorting via Modified TartarusGate approach + Remote Process Injection via APC Early Bird + Spawns a sacrificial Process as target process + (ACG+Bloc…

C 802 104 Updated Jan 26, 2026

LLM powered fuzzing via OSS-Fuzz.

Python 1,407 221 Updated Mar 17, 2026

A cross platform C2/post-exploitation framework.

Rust 711 222 Updated Oct 8, 2022

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

XSLT 8,616 1,139 Updated Jun 15, 2026

How to exploit a double free vulnerability in 2021. Use After Free for Dummies

Python 1,385 65 Updated Jan 31, 2025
1,451 219 Updated Jan 23, 2024

Greybox Synthesizer geared for deobfuscation of assembly instructions.

Python 173 17 Updated Feb 16, 2025

wtf is a distributed, code-coverage guided, customizable, cross-platform snapshot-based fuzzer designed for attacking user and / or kernel-mode targets running on Microsoft Windows and Linux user-m…

C++ 1,765 154 Updated Jan 2, 2026

x64 Windows PatchGuard bypass, register process-creation callbacks from unsigned code

C 207 36 Updated May 27, 2021

MODeflattener deobfuscates control flow flattened functions obfuscated by OLLVM using Miasm.

Python 210 26 Updated Jul 23, 2021

PoC for CVE-2021-28476 a guest-to-host "Hyper-V Remote Code Execution Vulnerability" in vmswitch.sys.

C 226 34 Updated Jun 1, 2021

Pack up to 3MB of data into a tweetable PNG polyglot file.

Python 2,602 153 Updated Aug 11, 2021

Binary Ninja plugin to identify obfuscated code and other interesting code constructs

Python 656 72 Updated May 21, 2026

This tool set can generate SECCOMP profiles for Docker images. It mainly relies on static analysis, making its results more reliable than currently available tools.

Python 71 16 Updated May 3, 2022

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

C 2,125 364 Updated May 28, 2025

Identify and remove opaque predicates and range dividers with miasm and radare2

Python 6 Updated Aug 18, 2020

SymCC: efficient compiler-based symbolic execution

C++ 869 153 Updated Mar 16, 2026

A booklet on machine learning systems design with exercises. NOT the repo for the book "Designing Machine Learning Systems", which is `dmls-book`

HTML 10,430 1,616 Updated Apr 15, 2023

Microsoft Threat Intelligence Security Tools

Python 1,973 333 Updated Jun 8, 2026

Open source pre-operation C2 server based on python and powershell

Python 764 157 Updated Jul 6, 2021

POC for cve-2019-1458

C++ 181 53 Updated Jan 17, 2022
Python 334 66 Updated Dec 8, 2022

Code and exercises for a workshop on z3 and angr

Python 237 40 Updated Dec 29, 2020

Load self-signed drivers without TestSigning or disable DSE. Transferred from https://github.com/DoubleLabyrinth/Windows10-CustomKernelSigners

C++ 796 157 Updated Jan 22, 2020

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.

C# 1,120 177 Updated Jul 26, 2021

🍺🐙 ZetZ a zymbolic verifier and tranzpiler to bare metal C

Rust 1,599 56 Updated Jun 17, 2022

List of real-world threats against endpoint protection software

218 37 Updated Jun 10, 2026

Adversary Tactics - PowerShell Training

PowerShell 1,611 344 Updated Jan 22, 2020
Next