
netzob
Netzob: Protocol Reverse Engineering, Modeling and Fuzzing

Netzob: Protocol Reverse Engineering, Modeling and Fuzzing

Swiss Army knife for raw bytes manipulation & interception

A Zeek ELF File Analyzer

Flag the cve-2020-35498 attack

This is my attempt at fuzzing the tcpip.sys driver in windows via using scapy. This is inspired by this vulnerability here:…


Proof of concept for CVE-2021-24086, a NULL dereference in tcpip.sys triggered remotely.

Detection reverse shell and kill it before trying shell.

An eBPF program to detect attacks on CVE-2022-0847

Linux Kernel Runtime Integrity with eBPF

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

A tool to detect and crash Cuckoo Sandbox

Randomly changes Win32/64 PE Files for 'safer' uploading to malware and sandbox sites.

BYOVD: Use 360 WFP driver to block EDR/XDR network connection.

In-memory Mach-O dylib loader for stock macOS Python; decrypts, maps, and runs payloads without dlopen or writing to disk, with optional encrypted…

Dynamically invoke arbitrary unmanaged code