Skip to content
View nicelnicel's full-sized avatar

Block or report nicelnicel

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
223 stars written in C
Clear filter

LeechCore - Physical Memory Acquisition Library & The LeechAgent Remote Memory Acquisition Agent

C 746 151 Updated Oct 5, 2025

Indirect Dynamic Syscall, SSN + Syscall address sorting via Modified TartarusGate approach + Remote Process Injection via APC Early Bird + Spawns a sacrificial Process as target process + (ACG+Bloc…

C 727 99 Updated Aug 7, 2025

Internals information about Hyper-V

C 711 95 Updated Nov 9, 2025

HWID spoofer

C 700 264 Updated Jun 27, 2020

An audio Sample Rate Conversion library

C 690 193 Updated Sep 7, 2025

The research UEFI hypervisor that supports booting an operating system.

C 682 94 Updated Aug 15, 2024

Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted file

C 671 121 Updated Mar 11, 2024

My implementation of enSilo's Process Doppelganging (PE injection technique)

C 629 119 Updated Aug 30, 2022

Windows NT x64 syscall fuzzer

C 625 112 Updated Jun 29, 2025

Simple but extensive library for DMA users, made for gamehacking

C 610 123 Updated Apr 9, 2025

kernel mode anti cheat

C 595 115 Updated Aug 4, 2024

Driver that uses network sockets to communicate with client and read/ write protected process memory.

C 593 146 Updated Feb 22, 2019

The Grimoire Hypervisor solution for x86 Processors with experimental nested virtualization support. Remastering with Rust in progress.

C 579 93 Updated Nov 1, 2025

绕3环的shellcode免杀框架

C 574 155 Updated Mar 19, 2021

UEFI bootkit for driver manual mapping

C 574 108 Updated Jan 1, 2024

Reversing EasyAntiCheat.

C 570 183 Updated Apr 19, 2019

Transacted Hollowing - a PE injection technique, hybrid between ProcessHollowing and ProcessDoppelgänging

C 570 84 Updated Mar 8, 2024

A project for allowing EDK-II Development with Visual Studio

C 566 133 Updated Oct 30, 2022

KSOCKET provides a very basic example how to make a network connections in the Windows Driver by using WSK

C 534 137 Updated Sep 2, 2022

MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.

C 528 67 Updated Apr 25, 2025

The last Pcileech DMA CFW guide you will ever need. Sponsored by DMAPolice.com

C 471 115 Updated May 28, 2025

Extract Windows Defender database from vdm files and unpack it

C 468 64 Updated Aug 8, 2025

Efi Driver Access is a simply project to load a driver during system boot with the idea to give the user kernel access for read/write memory without restrictions

C 452 72 Updated Jan 8, 2023

exploits and proof-of-concept vulnerability demonstration files from the team at Hacker House

C 447 115 Updated Nov 7, 2025

Fast Conversion Windows Dynamic Link Library To ShellCode

C 413 135 Updated Mar 10, 2022

GeoSn0w's OpenJailbreak Project, an open-source iOS 11 to iOS 13 Jailbreak project & vault.

C 411 49 Updated Mar 23, 2023

C library for manipulating MachO/FAT files and their code signatures

C 400 61 Updated Sep 30, 2025

Cheat Engine Plugin for DMA users

C 380 97 Updated Aug 28, 2024