Lightweight PoC enumerating processes and reading remote PEBs for triage and research.
-
Updated
Sep 26, 2025 - C++
Lightweight PoC enumerating processes and reading remote PEBs for triage and research.
Spectral DCM pipeline for rs-fMRI effective connectivity and dementia conversion analysis.
Energy performance of buildings
Custom implementations of WinAPI functions GetProcAddress and GetModuleHandle by traversing low level Windows data structures.
Little tool and (header-only lib) to investigate Windows Internals. Shout out to @zodiacon. No pull requests (this is actually a mirrored Mercurial repo).
🛠️ Enhance your application's stealth by resolving WinAPI calls through PEB walking, keeping your import table clean and hidden from scrutiny.
Imports Reconstructor via indirect syscalls (Scylla rebuilt with SysCaller)
PoC shellcode injector using clean syscalls to bypass user-mode hooks in ntdll.dll
Compile-time string encryption and import obfuscation for Windows PE32(+) binaries
Tiny C header that allows easy hiding of WinAPI imports via PEB
Debugger checks in 3 ways
POC of a better implementation of GetProcAddress for ntdll using binary search
Add a description, image, and links to the peb topic page so that developers can more easily learn about it.
To associate your repository with the peb topic, visit your repo's landing page and select "manage topics."