☆38Dec 10, 2024Updated last year
Alternatives and similar repositories for flareon2024
Users that are interested in flareon2024 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A remote process injection using process snapshotting based on https://gitlab.com/ORCA000/snaploader , in rust. It creates a sacrificial …☆50Jan 25, 2025Updated last year
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆63Aug 21, 2024Updated last year
- CTF Writeups Backup☆13Nov 4, 2024Updated last year
- function identification signatures☆12Apr 26, 2021Updated 5 years ago
- Ida Pro plugin to aid in reverse engineering Rust binaries.☆19Dec 9, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Automatically exported from code.google.com/p/narly☆23Jul 11, 2021Updated 4 years ago
- Exploitation of CVE-2025-29969☆67Feb 20, 2026Updated 3 months ago
- Notes some analysis related to VidarStealer sample☆16May 5, 2024Updated 2 years ago
- Scripts to help and speed up reversing activities☆13Jan 12, 2026Updated 4 months ago
- Yara rules☆21Mar 27, 2023Updated 3 years ago
- example using NtCreateUserProcess in rust☆19Jan 20, 2025Updated last year
- Windows File Explorer Spoofing Vulnerability (CVE-2025-24071)☆32Mar 27, 2025Updated last year
- early cascade injection PoC based on Outflanks blog post, in rust☆63Nov 8, 2024Updated last year
- Scripts, Yara rules and other files developed during malware investigations☆27Aug 19, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) Phan…☆286Sep 18, 2024Updated last year
- GPOAnalyzer is a tool designed to assist in parsing domain Group Policy Object (GPO) files located in the SYSVOL directory.☆28Jun 14, 2024Updated last year
- ☆22Dec 1, 2025Updated 5 months ago
- An example of how a driver can register a handle creation callback.☆16Jun 12, 2023Updated 2 years ago
- ☆108Mar 18, 2026Updated 2 months ago
- ☆24Feb 1, 2025Updated last year
- Convert Microsoft Defender Antivirus Signatures (VDM) into a SQL DB☆24Jun 27, 2025Updated 11 months ago
- API Hammering with C++20☆52Jul 21, 2022Updated 3 years ago
- "Service-less" driver loading☆187Nov 28, 2024Updated last year
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Help deobfuscate VBScript☆18Jul 1, 2022Updated 3 years ago
- Parser for a custom executable formats from Hidden Bee and Rhadamanthys malware☆59Aug 6, 2025Updated 9 months ago
- A complete security assessment tool that supports common web security issues scanning and custom POC | Be sure to read the document befor…☆20Sep 27, 2024Updated last year
- ☆21Sep 12, 2025Updated 8 months ago
- ☆17May 7, 2025Updated last year
- Use CMSTP.exe to bypass UAC.☆52Jun 24, 2022Updated 3 years ago
- ☆23Dec 15, 2022Updated 3 years ago
- CLI tool to compute the TypeRefHash for .NET binaries.☆19Nov 10, 2021Updated 4 years ago
- A Rust port of LayeredSyscall — performs indirect syscalls while generating legitimate API call stack frames by abusing VEH.☆165Oct 31, 2024Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Check if your AV/EDR does inline hooking, displays the hooked functions and allows you to compare them with the original ones.☆37Apr 2, 2026Updated last month
- A small tool to unmap PE memory dumps.☆11Nov 9, 2023Updated 2 years ago
- Kernel Information Disclosure☆36Jan 13, 2026Updated 4 months ago
- ☆23May 24, 2024Updated 2 years ago
- This IDA plugin extends the functionality of the assembly and hex view. With this plugin, you can conveniently decode/decrypt/alter data …☆87May 31, 2025Updated 11 months ago
- Using LNK files and user input simulation to start processes under explorer.exe☆34Sep 21, 2024Updated last year
- Golang bindings for PE-sieve☆42Nov 11, 2023Updated 2 years ago