Starred repositories
BCC - Tools for BPF-based Linux IO analysis, networking, monitoring, and more
A little tool to play with Windows security
A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware. Brought to you by Winsider Seminars & Solutions, Inc. @ https://windows-internals.com
Small and highly portable detection tests based on MITRE's ATT&CK.
RandomX, KawPow, CryptoNight and GhostRider unified CPU/GPU miner and RandomX benchmark
Leaked Mirai Source Code for Research/IoC Development Purposes
Arkime is an open source, large scale, full packet capturing, indexing, and database system.
linux-kernel-exploits Linux平台提权漏洞集合
OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.
A Linux version of the Procmon Sysinternals tool
A tool to dump the login password from the current linux user
ckolivas / cgminer
Forked from jgarzik/cpuminerASIC and FPGA miner in c for bitcoin
Automated upstream mirror for libbpf stand-alone build.
A fork of AFL for fuzzing Windows binaries
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
LKM rootkit for Linux Kernels 2.6.x/3.x/4.x/5.x/6.x (x86/x86_64 and ARM64)
Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.
A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.
Fileless lateral movement tool that relies on ChangeServiceConfigA to run command
LSASS memory dumper using direct system calls and API unhooking.
Snoopy Command Logger is a small library that logs all program executions on your Linux/BSD system.
Tool for injecting a shared object into a Linux process