Skip to content
View baiyies's full-sized avatar
  • Earth
  • 15:56 (UTC +09:00)

Block or report baiyies

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

ARM64 ELF Virtual Machine Protection System

Go 337 128 Updated Mar 26, 2026

Next Generation C2 Framework, IoM-server/client

Go 436 63 Updated Apr 8, 2026

Elfina is a multi-architecture ELF loader written in Rust, supporting x86 and x86-64 binaries.

Rust 43 1 Updated Mar 15, 2026

Hooking Windows' exception dispatcher to protect process's PML4

C 239 36 Updated Jan 24, 2025

Fumo Loader - All in one kernel-based DLL injector

C++ 377 36 Updated Jan 1, 2025

create a um process that contains all physical memory

C++ 20 3 Updated Oct 28, 2025

DarkArk, Powerful Windows Anti-Rootkit(ARK)

17 1 Updated Mar 2, 2026

Windows hypervisor for Intel x64: defensive host hypervisor for Windows designed to mitigate kernel-level attacks including BYOVD, compatible with VMware and Hyper-V.

C++ 257 25 Updated Mar 15, 2026

Stealthy Linux Kernel Rootkit for modern kernels (6x)

C 1,584 177 Updated Apr 6, 2026

Resolve offsets, gadgets and symbols from NTKernel

C++ 60 8 Updated Jan 15, 2026

A x64 Windows Rootkit using SSDT or Hypervisor hook

C++ 568 117 Updated Jan 4, 2025

Anti-Rootkit/Anti-Cheat Driver to uncover unbacked or hidden kernel code.

C++ 317 40 Updated Mar 12, 2026

PIC shellcode (C/C++) development toolkit designed for malware developers.

C 127 14 Updated Dec 23, 2025

纯真 IP 数据库同步仓库(2026 年持续更新中)

JavaScript 513 58 Updated Apr 6, 2026

A library for simulating keyboard and mouse input with drivers

C++ 492 81 Updated Sep 15, 2025

Counter-Strike: 2 Offset Dumper

Rust 1,904 284 Updated Apr 4, 2026

Reflective shellcode loaderwith advanced call stack spoofing and .NET support.

C 232 45 Updated Sep 19, 2025

Code execution/injection technique using DLL PEB module structure manipulation

C++ 225 35 Updated Jun 4, 2025

Bypass Chromium's App-Bound Encryption via Direct Syscall-based Reflective Process Hollowing. Extract cookies, passwords, payment methods & tokens from Chrome, Edge, Brave & Avast - fileless, user-…

C 1,511 253 Updated Feb 9, 2026

Chrome COOKIE v20 decryption PoC

Python 240 32 Updated Mar 19, 2026

x86-x64 Packer with Portable Executable compatibility.

C++ 103 20 Updated Dec 15, 2025

Dumps all of the Key/Value pairs from a LevelDB database

Go 110 10 Updated Dec 12, 2025

Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs

C++ 813 91 Updated Mar 16, 2024

For educational purposes only, exhaustive samples of 500+ classic/modern trojan builders including screenshots.

3,751 861 Updated Apr 7, 2026

lib-nosa is a minimalist C library designed to facilitate socket connections through AFD driver IOCTL operations on Windows.

C 122 14 Updated Sep 8, 2024

An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution

C 195 28 Updated Nov 27, 2024

A PowerShell console in C/C++ with all the security features disabled

C++ 381 41 Updated Oct 14, 2025

🪅 Windows User Space Emulator

C++ 2,815 181 Updated Apr 9, 2026
Next