Skip to content
View CaptWake's full-sized avatar
🤗
🤗

Block or report CaptWake

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A Windows Kernel Driver Emulator base on Unicorn, Kernel Memory Dump and some of native environment

C++ 154 24 Updated Dec 1, 2025

Emulate Drivers in RING3 with self context mapping or unicorn

C 363 104 Updated Aug 18, 2022

Awesome EDR Bypass Resources For Ethical Hacking

1,427 140 Updated Oct 16, 2025

A collection of malware families and malware samples which use the Rust programming language.

201 10 Updated Dec 21, 2025

A guide to modern exploit development, shellcode, EDR and WAF bypass, and initial Red Team access.

22 6 Updated Dec 23, 2025

AV/EDR Lab environment setup references to help in Malware development

418 31 Updated Feb 19, 2025

Multilayered AV/EDR Evasion Framework

C++ 864 138 Updated Sep 6, 2025

Core emulator components for Icicle

Rust 267 27 Updated Dec 10, 2025

Reducing the prices of DMA Firmware

Python 602 125 Updated Jun 21, 2025

Small DMA Cheat For Rust

C++ 279 64 Updated Jul 4, 2024

Stealthy Linux Kernel Rootkit for modern kernels (6x)

C 617 87 Updated Dec 19, 2025

awesome llvm security [Welcome to PR]

767 95 Updated Dec 28, 2025

Anti Virtulization, Anti Debugging, AntiVM, Anti Virtual Machine, Anti Debug, Anti Sandboxie, Anti Sandbox, VM Detect package. Windows ONLY.

Go 824 86 Updated Dec 10, 2025

Shellcode loader using direct syscalls via Hell's Gate and payload encryption.

C 100 19 Updated Jun 16, 2024

load shellcode without P/D Invoke and VirtualProtect call.

C# 165 19 Updated Sep 2, 2025
Python 1,092 169 Updated Mar 14, 2024

A tiny CTF challenge instancer (with docker backend)

Python 26 2 Updated Dec 10, 2025

Template-Driven AV/EDR Evasion Framework

Assembly 1,760 278 Updated Nov 3, 2023

Chameleon is a polymorphic engine for x86_64 position independent shellcode that has been created out of the need to evade signature-based detections in red team environments.

Python 47 3 Updated Oct 3, 2025

A tool to generate a custom code signing certificate chain and generate instructions to sign a binary. Useful for establishing persistence on a penetration test.

Python 114 32 Updated Apr 16, 2016

Evasive shellcode loader for bypassing event-based injection detection (PoC)

C++ 818 127 Updated Aug 23, 2021

Hyper-V Research is trendy now

C 177 27 Updated Dec 15, 2025

PowerShell Obfuscator

PowerShell 4,161 807 Updated Aug 10, 2023

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

PowerShell 9,645 2,544 Updated Apr 25, 2024

Windows inside a Docker container.

Shell 49,265 3,842 Updated Nov 22, 2025

Updog is a replacement for Python's SimpleHTTPServer. It allows uploading and downloading via HTTP/S, can set ad hoc SSL certificates and use http basic auth.

Python 3,245 330 Updated Nov 16, 2025

Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.

C++ 634 77 Updated Jan 28, 2025

Slides & Code snippets for a workshop held @ x33fcon 2024

C 275 47 Updated Jun 15, 2024

Windows protocol library, including SMB and RPC implementations, among others.

C# 596 68 Updated Nov 3, 2025

A library for loading and executing PE (Portable Executable) from memory without ever touching the disk

Rust 161 20 Updated Nov 26, 2020
Next