RestrictedKernelLeaks
VBAMacroPWD
Python scripts to remove, change, and crack Office 97-2003/Office 2007/Office 2010/Office 2013 Macro PasswordsSimpleNTSyscallFuzzer
antidebug
Collection Of Anti-Debugging TricksSyscallNumberFinder
SyscallNumberExtractor
CVE-2021-1656
vbDetectVirtualBox
A VBScript for detecting VirtualBoxALPC_CLIENT_SERVER
Demo to show how write ALPC Client & Server using native Ntdll.dll syscalls.TimeDateStamp
Discover TimeDateStamps In PE FileCVE-2021-1699
POC for CVE-2021-1699CVE-2022-24483
POC For CVE-2022-24483CVE-2021-24098
POC for CVE-2021-24098KeCreateEnclave_NullPtr_Dereference_DOS
ObpCreateSymbolicLinkName_EoP
PEChecksum
ProcessExplorer_Hidden_DllName
NtInitializeEnclave_DoS_POC
Call64
Bypass Wow64 Emulation LayerProcessExplorerProcessNameDoS
PartitionCreator
ShellLink
Script for parsing and manipulating .LNK filesProcessExplorerObjectNameDoS
SWF
Some python scripts for handling SWF filesCoffParser
A small python script that parses COFF .Obj filesPassiveDNS
A simple python script that implements Passive DNSSilentAttach
An OllyDbg PluginDOC
Some python scripts for parsing Microsoft Office DocumentsNeverShowExt
C Project For Detecting All Invisible Windows File Extensions.PiControlQueryConflictList_bug
GIF
Some python scripts for handling GIF filesCVE-2021-31184
PNG
Some python scripts for handling PNG filesollytlscatch
Automatically exported from code.google.com/p/ollytlscatchWinObjCrash1
NduRegisterInterfaceByteCountLimitExceeded_Bug
MyDumper64
NtManagePartition_DPC_WATCHDOG_VIOLATION
MiddleEastMalware
Samples, Analysis, Scripts, etc of malware seen in the Middle EastRTF
Some python scripts for manipulating RTF documentsNativeDebugger
Code to demonstrate how to use native NT syscalls to create a debuggerMISC
WinObj
PrivateNamespace
LibExtractor
A simple python script to parse and extract data from static and import librariesNtPssCaptureVaSpaceBulk
How to use the new "NtPssCaptureVaSpaceBulk" syscall.ExtractRFC2397Files
A python script to extract files embedded in the form of "data:image/png;base64,.....TokenPrivilegeAssigner
parse-job-file
Python script for parsing .job filesEML
Some python scripts for manipulating EML filesNtCreateXStateChange
Code to show how to use new NtCreateProcessStateChange/NtCreateThreadStateChange syscallsLove Open Source and this site? Check out how you can help us