
draytek-arsenal
Reverse Engineering and Observability toolkit for Draytek firewalls

Reverse Engineering and Observability toolkit for Draytek firewalls

A tool that is used to hunt vulnerabilities in x64 WDM drivers

Linux Kernel Runtime Integrity with eBPF

Tools and PoCs for Windows syscall investigation.


Rust Demangler & Normalizer plugin for IDA

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

This repo contains instructions to reproduce CVE-2025-13425: Null Pointer dereference / Array over-indexing vulnerability that I found in Google's…

A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck

InfectPE - Inject custom code into PE file [This project is not maintained anymore]

This is an experimental project for [resmack](https://gitlab.com/d0c-s4vage/resmack) to figure out the best methods for instrumenting target…

Simulate the behavior of AV/EDR for malware development training.

Security research project on fuzzing libpng with OSS-Fuzz. Includes seed corpus analysis, custom read/write fuzzers, and a proof-of-concept exploit…

Polymorphic encryptor that transforms shellcode, PE, and COFF files into obfuscated, position-independent payloads with RC4 and random block cipher…

Callstack scanner that identifies IOCs of unpacked or injected C2 agents by analyzing thread idle behavior, unbacked memory, module stomping, APCs,…

Template-driven binary format fuzzer that generates and parses valid test inputs at high speed, with AFL++ integration for coverage-guided fuzzing.

A PoC project for embedding shellcode to Hint/Name Table

A tool to manipulate Schneider Electric PLC archive files