C++ Assembler with Built-in Mutation Engine
☆31Sep 6, 2025Updated 11 months ago
Alternatives and similar repositories for zombie_asm
Users that are interested in zombie_asm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Simple, fast and lightweight Header-Only C++ Assembler Library☆146Aug 13, 2025Updated last year
- Reversed WintaPix Malware Source code | That targets countries in the Middle East and abuse KeServiceDescriptorTable(SSDT), persistence a…☆21Jul 6, 2024Updated 2 years ago
- Collection of Cheat dumps for Research and Detection.☆16Jan 4, 2026Updated 8 months ago
- stack based arithmetic only virtual machine (VM) executes bytecode instructions to perform various basic arithmetic operations and manage…☆27Mar 19, 2025Updated last year
- Windows Feature IDs for review, diffing, etc., across multiple versions of Windows. Will be continuously updated.☆26Feb 24, 2026Updated 6 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Yet another IDA Pro/Home plugin for deobfuscating stack strings☆160Mar 6, 2026Updated 5 months ago
- Windows capability development using GCC and GNU Make☆23Nov 1, 2025Updated 10 months ago
- Code proving a 25-year blind spot in all disassemblers. PoC for Intel x64/x86 “ghost instructions.”☆127Nov 2, 2025Updated 10 months ago
- Proof-of-concept kernel driver that hijacks the Windows kernel extension table mechanism to preserve process notify callbacks even when a…☆98Jul 7, 2025Updated last year
- Using the peculiar behaviour of the VPGATHER instructions to determine if an address will fault before it is truly accessed. All done in …☆62Dec 30, 2025Updated 8 months ago
- From 2011: Quickly search for files in NTFS volumes parsing the Master File Table (MFT). A decent amount of how NTFS and MFT work was pai…☆28Oct 14, 2019Updated 6 years ago
- Fast covert timing channel communication for inter-process and inter-processor communication on Windows systems.☆74Mar 24, 2026Updated 5 months ago
- Tracks cross references and allows fast viewing of pseudocode between references☆14Mar 10, 2025Updated last year
- Various novel EPT/NPT hook detection mechanisms.☆29Mar 20, 2026Updated 5 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Themida 3.x research☆111Feb 28, 2025Updated last year
- Simple anti-instrumentation with EFLAGS.AC☆17Mar 31, 2025Updated last year
- A simple C++ driver base with KD data block☆11Jun 25, 2022Updated 4 years ago
- vm_str.hpp is a header only string obfuscator.☆116Aug 24, 2025Updated last year
- An analysis and static deobfuscation of codedefender.io protected samples.☆96Apr 18, 2026Updated 4 months ago
- Hooking Windows' exception dispatcher to protect process's PML4☆270Jan 24, 2025Updated last year
- Control Flow Linearization☆26May 4, 2025Updated last year
- simple trampoline hooking PoC☆17Nov 8, 2023Updated 2 years ago
- Binary lifter and deobfuscator using remill for x86_64 Windows binaries☆98Apr 20, 2026Updated 4 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- An IDA Hex-Rays microcode filter that lifts AVX/AVX2/AVX-512/AVX10 and VMX/VT-x instructions to intrinsics.☆113Jul 15, 2026Updated last month
- llvm powered deobfuscation of a vm-based protection☆63Feb 25, 2026Updated 6 months ago
- Rewrite and obfuscate code in compiled binaries☆277Dec 13, 2025Updated 8 months ago
- ☆45Jul 3, 2026Updated 2 months ago
- KPP bypass with alternative syscall pipeline☆28Feb 6, 2026Updated 6 months ago
- ANY.RUN sandbox detection collection☆24Aug 21, 2024Updated 2 years ago
- A basic implementation of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆78Mar 29, 2025Updated last year
- x86-64 Automated test data generator☆29Jul 20, 2026Updated last month
- A kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more.☆59Sep 20, 2022Updated 3 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Static devirtualizer for VMProtect 3.0-3.5. Lifts virtualized code to LLVM using Remill and strips the VM layer through optimization.☆316Jul 30, 2026Updated last month
- A high-fidelity x86_64 polymorphic mutation engine focused on instruction-level fragmentation and context preservation.☆111Jan 18, 2026Updated 7 months ago
- bypassing intel txt's tboot integrity checks via coreboot shim☆83Mar 15, 2025Updated last year
- Port of zentool to Windows☆27Mar 7, 2025Updated last year
- ☆17Jul 19, 2025Updated last year
- Crystal Palace library for proxying Nt API calls via the Threadpool. Updated for call gadgets.☆23Nov 11, 2025Updated 9 months ago
- Analyze VMProtect binaries without actually executing any user code.☆49May 18, 2025Updated last year