
TitanHide
Windows kernel driver that hooks Nt* SSDT functions to hide debuggers and processes from anti-debug checks, with an x64dbg plugin for stealth…

Windows kernel driver that hooks Nt* SSDT functions to hide debuggers and processes from anti-debug checks, with an x64dbg plugin for stealth…

Research project reverse-engineering Windows Security Center COM interfaces to trace AV registration through ATL, vtable, WSCAPI, and RPC, with…

A PoC on how to use a Compute Shader as Payload

Fix-Like Artifacts With Embedded Defects

Proof-of-concept tool for detecting AMSI (Antimalware Scan Interface) bypasses and malicious in-memory script activity on Windows endpoints.

POC about how to detect windows kernel debug by pool tag.

Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).

Mitigate CVE-2018-6389 WordPress load-scripts / load-styles attacks

Detection of Linux Malware C2 RedXOR - demonstration

Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool