Skip to content
View adanto's full-sized avatar

Organizations

@SecurityArtWork

Block or report adanto

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

An index of Windows binaries, including download links for executables such as exe, dll and sys files

Python 840 85 Updated Jun 15, 2026

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

Python 5,713 498 Updated Jun 15, 2026

Gain insights into MS-RPC implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By following this approach, a security researcher will hopefully…

C# 342 41 Updated May 4, 2026

An MCP (Model Context Protocol) server that turns all pybag Windows debugger functions into native MCP tools. It lets MCP-compatible clients (Claude Desktop, Claude Code, Cowork, OpenAI Codex CLI, …

Python 82 7 Updated May 3, 2026

EDR Lab for Experimentation Purposes

C++ 1,453 152 Updated Jun 10, 2026

Collect Windows telemetry for Maldev

C++ 491 56 Updated Jun 14, 2026

Live ETW-TI event viewer for Windows kernel threat-intelligence telemetry. Research tool for exploring the same signals commercial EDRs rely on.

C++ 150 26 Updated Apr 15, 2026

Sanctum is an experimental proof-of-concept EDR, designed to detect modern malware techniques, above and beyond the capabilities of antivirus. Built in Rust.

Rust 548 59 Updated Mar 24, 2026

Windows Analysis and Research Toolkit

C++ 460 53 Updated Apr 28, 2026

Call Tree Overviewer

Python 401 40 Updated Aug 15, 2025

Model Context Protocol for WinDbg.

Python 1,353 127 Updated Jun 8, 2026

Incident Response & Digital Forensics Debugging Extension

C++ 398 97 Updated Dec 11, 2018

HackSys Extreme Vulnerable Driver (HEVD) - Windows & Linux

C 3,019 585 Updated Feb 24, 2025

Course materials for Modern Binary Exploitation by RPISEC

C 5,989 906 Updated Dec 9, 2021

IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformations

C++ 1,855 167 Updated Jun 8, 2026

Lightweight PoC enumerating processes and reading remote PEBs for triage and research.

C++ 3 Updated Sep 26, 2025

Concise, hands-on Windows internals, exploitation notes and detection playbooks.

4 Updated Sep 26, 2025

Windows-focused research covering malware, development, anti-detection, exploits, and CTFs.

Python 3 Updated Sep 26, 2025

Winners of the International Obfuscated C Code Contest

HTML 1,315 95 Updated Jun 14, 2026

Centralized resource for listing and organizing known injection techniques and POCs

700 77 Updated Feb 1, 2026

For educational purposes only, exhaustive samples of 500+ classic/modern trojan builders including screenshots.

4,007 947 Updated Jun 14, 2026

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.

PowerShell 8,760 1,089 Updated Apr 28, 2026

Open-source Windows and Office activator featuring HWID, Ohook, TSforge, and Online KMS activation methods, along with advanced troubleshooting.

Batchfile 178,515 17,078 Updated Jun 11, 2026

The Minimalistic x86/x64 API Hooking Library for Windows

C 5,799 1,070 Updated Jun 13, 2026

A tutorial on how to write a packer for Windows!

C 315 32 Updated Dec 15, 2023

Notes on using the Python bindings for the Unicorn Engine

87 8 Updated Feb 14, 2020

Inject DLLs into the explorer process using icons

C++ 408 50 Updated May 18, 2025

Leverage AMSI (Antimalware Scan Interface) technology to aid your analysis. This tool saves all buffers (scripts, .NET assemblies, etc) passed into AMSI during dynamic execution.

C++ 113 15 Updated Apr 20, 2021

High Octane Triage Analysis

Python 852 79 Updated Jun 15, 2026

Script to remove Windows 10 bloatware.

PowerShell 18,828 2,061 Updated Mar 10, 2023
Next