Starred repositories
rasta-mouse / ThreatCheck
Forked from matterpreter/DefenderCheckIdentifies the bytes that Microsoft Defender / AMSI Consumer flags on.
A simple compile-time code virtualization class in C++
Terminal based IDE & text editor: easy, powerful and fast
Repository for information about 0-days exploited in-the-wild.
An advanced singular header-only C++20 obfuscation library with encryption and polymorphism.
Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
Trojan-Malware-undetected builder-Generator, 360,Eset,Kaspersky Topics: crypter, crypter-fud, crypter-rat, crypter-defender, crypter-bypass-wd, fud, fud-rat, fud-crypter, fud-stealer, obfuscation, …
Obfuscation library based on C++20 and metaprogramming
CF-Hero is a reconnaissance tool that uses multiple data sources to discover the origin IP addresses of Cloudflare-protected web applications
Template-based shellcode packer written in Rust, with indirect syscall support. Made with <3 for pentesters.
Steal SSH host private keys and /etc/shadow via the ptrace_may_access mm-NULL bypass + pidfd_getfd. Pre-31e62c2ebbfd kernels.
A Progressive Web App for local file sharing
An open-source cross-platform alternative to AirDrop
A fully syscalled C/C++ userland anti-debugging library and CLI for Windows, designed to protect software from reverse engineering with a focus on stealth.
A terminal workspace with batteries included
Modern connection manager for Linux with GTK4/Wayland-native interface.
claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a s…
ArtifactFS is a filesystem driver designed to mount large git repos as quickly as possible, hydrating file contents on-the-fly instead of blocking on the initial clone. It's ideal for agents, sandb…
Bypass MoTW via hosting a link generator for red team. this help the implant of any c2 to land on disk without MoTW flag
A registry script to safely remove MotW from known files, which removes restrictions imposed by the MotW.
Customizable Linux Persistence Tool for Security Research and Detection Engineering.
A single CLAUDE.md file to improve Claude Code behavior, derived from Andrej Karpathy's observations on LLM coding pitfalls.
Agentic malware analysis environment with MCP-connected disassemblers, RE tooling, and structured workflows for Claude Code and Codex CLI.