Skip to content
View a10ncoder's full-sized avatar

Block or report a10ncoder

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

LSASS memory dumper using direct system calls and API unhooking.

C 1,596 247 Updated Jan 5, 2021

Literally, the perfect injector.

C 1,002 202 Updated Apr 13, 2023

repository for kernel exploit practice

Batchfile 420 48 Updated Nov 12, 2019

Reverse engineered source code of the autochk rootkit

C 1 Updated Nov 1, 2019

A tool to elevate privilege with Windows Tokens

C# 1,066 201 Updated Oct 6, 2023

Configurable instrumentation of LLVM bitcode

C++ 35 11 Updated Mar 31, 2025

A tool to help malware analysts tell that the sample is injecting code into other process.

C++ 79 42 Updated Aug 12, 2015

KVM-based Virtual Machine Introspection

Jinja 380 69 Updated Oct 11, 2025

Hook system calls, context switches, page faults and more.

C++ 2,679 513 Updated May 9, 2023

An intentionally vulnerable linux driver for research purposes/practice in kernel exploit dev

C 133 27 Updated Jun 25, 2017

A collection of links related to Linux kernel security and exploitation

6,654 1,079 Updated Oct 5, 2026

Windows System Call Tables (NT/2000/XP/2003/Vista/7/8/10/11)

HTML 2,653 369 Updated Dec 30, 2025

UAC bypass, Elevate, Persistence methods

Python 2,749 382 Updated Feb 13, 2023

Code for the cross platform, single source, OpenDTrace implementation

C 394 101 Updated Mar 10, 2021

Cisco Talos MBR Filter Driver

C 345 73 Updated Aug 10, 2017

Code for diskless loading of ELF Shared Library using Reflective DLL Injection

C 55 12 Updated Feb 29, 2016

Technion CS Ransomware Project: Writing Windows Mini-Filter Driver to protect PC from Ransomware

C++ 38 27 Updated Feb 11, 2021

Simple 32/64-bit PEs loader.

Assembly 1 Updated Dec 19, 2018

A C# based memory editing library targeting Windows applications, offering various functions to extract and inject data and codes into remote processes to allow interoperability.

C# 656 137 Updated Sep 28, 2022

Sandbox d'analyse de malware pour Windows 7 avec un client TCP en mode noyau

C 20 15 Updated Feb 23, 2016

List of Awesome Red Teaming Resources

8,123 1,756 Updated Dec 28, 2023

Windows Object Explorer 64-bit

C 1,983 316 Updated Oct 6, 2026

Detects code differentials between executables in disk and the corresponding processes/modules in memory

Python 1 Updated Apr 7, 2016

Hide your Powershell script in plain sight. Bypass all Powershell security features

C++ 1,343 174 Updated Aug 19, 2019

Detecting execution of kernel memory where is not backed by any image file

C++ 261 97 Updated Jul 11, 2018

HORSEPILL rootkit PoC

CSS 234 61 Updated Aug 5, 2016

Azazel is a userland rootkit based off of the original LD_PRELOAD technique from Jynx rootkit. It is more robust and has additional features, and focuses heavily around anti-debugging and anti-dete…

C 811 181 Updated Mar 7, 2024

The Horrific Omnipotent Rootkit

C 25 18 Updated Mar 17, 2017
1 1 Updated Aug 28, 2015
Next