

Unofficial revival of the well known .NET debugger and assembly editor, dnSpy

ShadowNet is an anonymous routing protocol that forces all connections (system-wide) to go through Tor while implementing Mixnet-like…

Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…

Software sandbox for storage of sensitive information in memory.

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

Security sensor for realtime threat detection and protection

Hybrid kernel combining Mach, FreeBSD, and IOKit for macOS and iOS. Provides core OS services, driver framework, and security policy enforcement on…

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

This is a tool for exploiting Ticketbleed (CVE-2016-9244) vulnerability.

Golang bindings for PE-sieve

GoTEE - example application


Stealthy In-Memory Local Password Harvester (SILPH) tool: dump LSA, SAM and DCC2 with indirect syscall

CVE-2020-25578 and CVE-2020-25579: Some FreeBSD info leak bugs I found in 2020.

convert ELF/DWARF symbol and type information into vol3's intermediate JSON