Skip to content
View zerdnem's full-sized avatar

Block or report zerdnem

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
289 stars written in C++
Clear filter

Legit DLC Unlocker for Steam, Epic, Origin, EA Desktop & Uplay (R1)

C++ 1,385 124 Updated Jan 24, 2023

EDR Lab for Experimentation Purposes

C++ 1,377 149 Updated Nov 9, 2025

Process Hollowing (Malware Technique)

C++ 1,365 229 Updated Oct 1, 2025

An Active Defense and EDR software to empower Blue Teams

C++ 1,306 175 Updated Aug 10, 2023

Hide your Powershell script in plain sight. Bypass all Powershell security features

C++ 1,257 172 Updated Aug 19, 2019

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

C++ 1,207 163 Updated Dec 11, 2023

ImRAD is a GUI builder for the ImGui library

C++ 1,200 47 Updated Nov 4, 2025

RFHunter is a device to find hidden Cameras at AirBNBs

C++ 1,187 44 Updated Oct 31, 2024

Real-time audio streaming over the network.

C++ 1,182 227 Updated Jun 15, 2025

Thread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's memory allocation from scanners and analysts.

C++ 1,170 191 Updated Jun 17, 2022

Crinkler is an executable file compressor (or rather, a compressing linker) for compressing small 32-bit Windows demoscene executables. As of 2020, it is the most widely used tool for compressing 1…

C++ 1,170 57 Updated Aug 4, 2022

Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.

C++ 1,166 221 Updated Jul 5, 2023

Shellcode Compiler

C++ 1,137 280 Updated Sep 1, 2024

A Stealthy Trojan Spyware

C++ 1,116 272 Updated Oct 20, 2025

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

C++ 1,063 161 Updated Jun 17, 2022

Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes

C++ 1,031 169 Updated Jun 20, 2023

Extracts passwords from a KeePass 2.x database, directly from memory.

C++ 1,019 134 Updated Nov 17, 2015

👻 RAT (Remote Access Trojan) - Silent Botnet - Full Remote Command-Line Access - Download & Execute Programs - Spread Virus' & Malware

C++ 999 226 Updated Jun 3, 2021

InjectProc - Process Injection Techniques [This project is not maintained anymore]

C++ 998 211 Updated Feb 10, 2019

Loading Remote AES Encrypted PE in memory , Decrypted it and run it

C++ 996 200 Updated Aug 29, 2023

Now You See Me, Now You Don't

C++ 991 152 Updated Nov 11, 2025

Stop Windows Defender programmatically

C++ 985 152 Updated Nov 4, 2022

Tool to bypass LSA Protection (aka Protected Process Light)

C++ 973 145 Updated Dec 4, 2022

A Simple Ransomware Vaccine

C++ 971 125 Updated Nov 8, 2023

kill anti-malware protected processes ( BYOVD ) ( Microsoft Won )

C++ 968 145 Updated Jul 21, 2023

New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.

C++ 964 187 Updated Dec 29, 2017

Remove duplicates from MASSIVE wordlist, without sorting it (for dictionary-based password cracking)

C++ 960 98 Updated Nov 4, 2025

Run a Exe File (PE Module) in memory (like an Application Loader)

C++ 930 174 Updated Mar 28, 2021

Botnet

C++ 926 444 Updated Feb 8, 2023

Cooolis-ms是一个包含了Metasploit Payload Loader、Cobalt Strike External C2 Loader、Reflective DLL injection的代码执行工具,它的定位在于能够在静态查杀上规避一些我们将要执行且含有特征的代码,帮助红队人员更方便快捷的从Web容器环境切换到C2环境进一步进行工作。

C++ 924 137 Updated Jun 18, 2025