
Curated index of game security research: anti-cheat internals, DMA attacks, reverse engineering, kernel/mobile protections, and graphics API hooking for offensive and defensive analysis.
awesome-game-securityIf you find that some links are not working, you can simply replace the username with gmh5225.
Or you can send an issue for me.
Show respect to all the projects below, perfect works of art 🫡
As AI agents increasingly write, analyze, and rewrite low-level code, generic toolchains become a bottleneck. Security researchers need semantics they can trust — deterministic compilation on the way in, and faithful decompilation on the way out. In the age of AI, everyone needs their own compiler and their own decoder.
libneverd) built for CLI tools, integrators, and AI agents.Compile with NeverC, analyze and decompile with NeverD — an AI-friendly LLVM toolchain you control, built for security research.
This repository provides skills that can be used with AI agents and coding assistants such as Cursor, OpenClaw, Claude Code, Codex CLI, and other compatible tools. Install skills to get specialized knowledge about game security topics.
Installation:
npx skills add https://github.com/gmh5225/awesome-game-security --skill <skill-name>
Available Skills:
Compiled wiki: agents can also browse wiki/ (see wiki/AGENTS.md) — a maintained knowledge layer over skills, README categories, and descriptions.
Example:
# Install anti-cheat systems skill
npx skills add https://github.com/gmh5225/awesome-game-security --skill anti-cheat-systems
# Install multiple skills
npx skills add https://github.com/gmh5225/awesome-game-security --skill windows-kernel-security
npx skills add https://github.com/gmh5225/awesome-game-security --skill reverse-engineering-tools
Guide
Source
Game Engine Plugins:Unreal
Game Engine Plugins:Unity
Game Engine Plugins:Godot
Game Engine Plugins:Lumix
Game Engine Detector
Guide
Source
JWT / Auth Token
Location / Geocoding
Guide
Source
MCP server
MCP server security
AI Agents
Guide
Hook
Tools
Emulation
Compatibility
Overlay
Guide
Source
Hook
Guide
API
Hook
Guide
Debugging
Packet Sniffer&Filter
Packet Capture&Parse
SpeedHack
RE Tools
Mixed boolean-arithmetic
Fix VMP
Fix Themida
Fix OLLVM
Dynamic Binary Instrumentation
Launcher Abuser
PatchGuard-related
Driver Signature enforcement
Windows Kernel Explorer
Linux Kernel Explorer
Magisk
Xposed
Frida
Hook ART(android)
Hook syscall(android)
Android Terminal Emulator
Android File Explorer
Android Memory Explorer
Android Application CVE
Android Kernel CVE
Android Bootloader Bypass
Android Key Attestation
IoT / Smart devices
Android ROM
Android Device Trees
Android Kernel Source
Android Root
Android Kernel driver development
Android Kernel Explorer
Android Kernel Driver
Android Network Explorer
Cellular / SIM
Android memory loading
IOS jailbreak
IOS Network / Location
IOS Memory Explorer
IOS File Explorer
IOS App Packaging
Virtual Environments
Decompiler
.hexcore_job.json automation, and agent integration]IDA themes
IDA Plugins
| Skill | Description |
|---|
anti-cheat-systems | Modern anti-cheat architecture, detection tradeoffs, and system-specific research across EAC, BE, Vanguard, FACEIT, and related telemetry or driver defenses |
dma-attack-techniques | PCIe DMA threat modeling, FPGA memory access, IOMMU constraints, device impersonation, and DMA detection or mitigation |
game-engine-resources | Engine internals, source trees, plugins, explorers, and protection patterns for Unreal, Unity, Source, Godot, and custom engines |
game-hacking-techniques | Threat-model view of cheat implementation across user mode, kernel mode, hypervisors, DMA, overlays, memory access, and engine-specific attack surfaces |
graphics-api-hooking | DirectX, OpenGL, and Vulkan interception, overlay rendering, draw-call hooks, swap-chain analysis, and screenshot-sensitive graphics workflows |
mobile-security | Android and iOS reversing, Frida, Zygisk or Magisk, jailbreak or root bypass, mobile kernel modules, emulator detection, and mobile anti-cheat research |
awesome-game-security-overview | Repository taxonomy, category mapping, contribution guidance, and navigation across offensive and defensive game-security topics |
reverse-engineering-tools | Reverse engineering protected games and anti-cheat components across user mode, kernel mode, debuggers, dump analysis, and anti-analysis workflows |
windows-kernel-security | Windows kernel internals for game security including callbacks, MMVAD, IOCTL paths, DSE, PatchGuard, PiDDBCache, and hostile-driver detection |
glass mcp]symchk /om for generating PDB manifests]libdexfile.so to dump dex]