Skip to content
View dev-stitch's full-sized avatar
📌
📌
  • xd

Block or report dev-stitch

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

C++ 48,018 2,701 Updated Mar 22, 2026

RetDec is a retargetable machine-code decompiler based on LLVM.

C++ 8,515 986 Updated Jul 3, 2025

Sol3 (sol2 v3.0) - a C++ <-> Lua API wrapper with advanced features and top notch performance - is here, and it's great! Documentation:

C++ 4,984 595 Updated Mar 7, 2025

C/C++ Performance Profiler

C++ 4,317 359 Updated Jan 31, 2025

An even funnier way to disable windows defender. (through WSC api)

C++ 3,330 286 Updated Nov 23, 2025

🪅 Windows User Space Emulator

C++ 2,812 180 Updated Apr 1, 2026

Converts PE into a shellcode

C++ 2,753 468 Updated Aug 30, 2025

x64 binary obfuscator

C++ 1,966 270 Updated Jul 14, 2023

library for importing functions from dlls in a hidden, reverse engineer unfriendly way

C++ 1,918 235 Updated Aug 3, 2023

Alternative Shellcode Execution Via Callbacks

C++ 1,705 331 Updated Nov 11, 2022

Library for lifting machine code to LLVM bitcode

C++ 1,658 175 Updated Mar 31, 2026

Syscall Shellcode Loader (Work in Progress)

Python 1,259 201 Updated May 8, 2024

Thread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's memory allocation from scanners and analysts.

C++ 1,207 195 Updated Jun 17, 2022

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

C++ 1,103 165 Updated Jun 17, 2022

C/C++ source obfuscator for antivirus bypass

C 1,067 191 Updated Mar 10, 2022

base64 encoding and decoding with c++

C++ 1,028 335 Updated May 22, 2024

Weaponize DLL hijacking easily. Backdoor any function in any DLL.

Go 729 85 Updated Aug 26, 2025

Obfusk8: lightweight Obfuscation library based on C++17 / Header Only for windows binaries

C++ 665 63 Updated Mar 24, 2026

This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemory.

C++ 634 148 Updated Mar 19, 2019

Reverse Engineering and Malware Analysis Roadmap

619 81 Updated Oct 2, 2025

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers, Unlinking .NET related modules, bypassing ETW+AMSI, avo…

C++ 595 113 Updated Jul 26, 2021

Native code virtualizer for x64 binaries

C++ 522 58 Updated Dec 20, 2024

Automated DLL Sideloading Tool With EDR Evasion Capabilities

Python 506 59 Updated Dec 19, 2023

C++17 Run-time Polymorphism (Type Erasure) library

C++ 494 44 Updated Apr 2, 2025

This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)

C++ 443 113 Updated Aug 2, 2023

C++ 20 Control Flow Obfuscation library for Windows Binaries

C++ 438 54 Updated Oct 8, 2025

The Best Library: a C++ STL replacement

C++ 420 8 Updated Jul 1, 2025

Evasive shellcode loader

C++ 400 67 Updated Oct 17, 2024

TinyAntivirus is an open source antivirus engine designed for detecting polymorphic virus and disinfecting it.

C++ 394 112 Updated Apr 18, 2017

Automated multi-engine framework for unpacking, analyzing, and devirtualizing binaries protected by commercial and custom Virtual Machine based protectors. Combines Dynamic Taint Tracking, Symbolic…

Python 389 62 Updated Feb 22, 2026
Next