Skip to content
View sunnyc7's full-sized avatar

Highlights

  • Pro

Organizations

@NYNJ-Winternals

Block or report sunnyc7

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

58 stars written in C
Clear filter

GoodbyeDPI — Deep Packet Inspection circumvention utility (for Windows)

C 27,351 2,066 Updated Sep 30, 2025

Small and highly portable detection tests based on MITRE's ATT&CK.

C 11,175 2,991 Updated Nov 5, 2025

Windows File System Proxy - FUSE for Windows

C 7,963 561 Updated Aug 21, 2025

Simple tool to configure Windows Filtering Platform (WFP) which can configure network activity on your computer.

C 7,592 575 Updated Nov 4, 2025

clumsy makes your network condition on Windows significantly worse, but in a controlled and interactive manner.

C 5,788 575 Updated Jun 23, 2024

Simple (relatively) things allowing you to dig a bit deeper than usual.

C 3,414 549 Updated Oct 20, 2025

eBPF implementation that runs on top of Windows

C 3,335 268 Updated Nov 5, 2025

EasyHook - The reinvention of Windows API Hooking

C 3,229 675 Updated Jan 25, 2024

Common libraries and data structures for C.

C 2,514 290 Updated Feb 15, 2025

Kernel Driver Utility

C 2,284 478 Updated Oct 18, 2025

SimpleVisor is a simple, portable, Intel VT-x hypervisor with two specific goals: using the least amount of assembly code (10 lines), and having the smallest amount of VMX-related code to support d…

C 1,881 273 Updated May 8, 2024

Windows Object Explorer 64-bit

C 1,836 305 Updated Oct 27, 2025

LSASS memory dumper using direct system calls and API unhooking.

C 1,562 249 Updated Jan 5, 2021

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

C 1,347 333 Updated Apr 1, 2024

Native API header files for the System Informer project.

C 1,283 201 Updated May 25, 2025

A tiny hand crafted CPU emulator, C compiler, and Operating System

C 1,109 122 Updated Dec 16, 2020

Disassembler Library for x86 and x86-64

C 1,061 308 Updated May 10, 2023

The multi-platform memory acquisition tool.

C 867 129 Updated Oct 14, 2025

Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detections and correlation rules by Blue teams.

C 858 110 Updated Jan 20, 2022

Libtpms-based TPM emulator with socket, character device, and Linux CUSE interface.

C 715 162 Updated Oct 1, 2025

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

C 695 124 Updated Jun 5, 2025

This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be compiled and used for learning purposes, without having to …

C 672 80 Updated Jul 6, 2024

Red Team C code repo

C 563 111 Updated Dec 16, 2024

Verneuil is a VFS extension for SQLite that asynchronously replicates databases to S3-compatible blob stores.

C 511 19 Updated Oct 6, 2024

Executes PowerShell from an unmanaged process

C 505 113 Updated Mar 17, 2016

Hellsgate + Halosgate/Tartarosgate. Ensures that all systemcalls go through ntdll.dll

C 482 56 Updated Feb 3, 2022

Transparent SSL/TLS proxy for decrypting and diverting network traffic to other programs, such as UTM services, for deep SSL inspection

C 454 109 Updated Oct 28, 2025

High performance hybrid classical-quantum computing learning framework written in C

C 443 47 Updated Feb 6, 2025

The first analysis framework for CPU microcode

C 402 26 Updated Mar 13, 2023
Next