diff --git a/description/0xbigshaq/apatchy/description_en.txt b/description/0xbigshaq/apatchy/description_en.txt new file mode 100644 index 00000000..cb5366c6 --- /dev/null +++ b/description/0xbigshaq/apatchy/description_en.txt @@ -0,0 +1 @@ +This project is a fuzzing framework for the Apache HTTPD server that replaces Apache's socket layer with custom I/O filters, feeding raw bytes directly into the same code paths that handle real HTTP traffic. The Python-based framework includes reproducers for known CVEs and detailed documentation on Apache internals such as memory pools, hooks, filters, buckets, and the request pipeline. It is mainly useful for vulnerability researchers and security engineers studying server-side fuzzing techniques and HTTP parsing attack surfaces. diff --git a/description/34306/vphone-aio/description_en.txt b/description/34306/vphone-aio/description_en.txt new file mode 100644 index 00000000..be903efc --- /dev/null +++ b/description/34306/vphone-aio/description_en.txt @@ -0,0 +1 @@ +This project is an all-in-one shell script and compressed archive bundle that sets up a pre-jailbroken vphone iOS emulator instance with full bootstrap installed. It automates downloading, merging, and extracting the vphone-cli environment on macOS, requiring SIP disabled and AMFI bypassed. It is mainly useful for iOS security researchers and emulator users who need a ready-to-use jailbroken iOS environment for app analysis and testing. diff --git a/description/Besty0728/Unity-Skills/description_en.txt b/description/Besty0728/Unity-Skills/description_en.txt new file mode 100644 index 00000000..24f4d03b --- /dev/null +++ b/description/Besty0728/Unity-Skills/description_en.txt @@ -0,0 +1 @@ +This project is a Unity editor plugin that provides AI-driven automation skills covering a wide range of engine subsystems. The C# codebase includes editor scripts for animator, audio, camera, Cinemachine, materials, NavMesh, optimization, physics, rendering, shaders, terrain, UI, and many other Unity components, along with a batch executor and localization support. It is mainly useful for Unity developers and technical artists seeking automated editor workflows and AI-assisted scene manipulation. diff --git a/description/Bratah123/ElectronMS/description_en.txt b/description/Bratah123/ElectronMS/description_en.txt new file mode 100644 index 00000000..ae0eef98 --- /dev/null +++ b/description/Bratah123/ElectronMS/description_en.txt @@ -0,0 +1 @@ +This project is a MapleStory private server emulator targeting KMS version 316. The Java-based server includes SQL database schemas, JavaScript event and NPC scripts covering boss encounters, party quests, and game progression systems, along with packet handling configurations and server property files. It is mainly useful for game server emulation researchers and MapleStory modding communities studying MMORPG server architecture and game logic reimplementation. diff --git a/description/CSIT-SG/AETHER/description_en.txt b/description/CSIT-SG/AETHER/description_en.txt new file mode 100644 index 00000000..1e80e4a0 --- /dev/null +++ b/description/CSIT-SG/AETHER/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin that integrates large language models into the reverse engineering workflow as an AI-powered copilot. It provides AI-assisted decompilation, an interactive chatbot interface with tool-calling support, function annotation, vulnerability analysis, and RAG-based context retrieval from binary databases. The Python plugin supports multiple LLM providers and includes prompt templates, syntax highlighting, and a custom viewer UI. It is mainly useful for malware analysts and reverse engineers seeking LLM-augmented binary analysis within IDA Pro. diff --git a/description/ChefKissInc/qemu-apple-silicon/description_en.txt b/description/ChefKissInc/qemu-apple-silicon/description_en.txt new file mode 100644 index 00000000..57f52f17 --- /dev/null +++ b/description/ChefKissInc/qemu-apple-silicon/description_en.txt @@ -0,0 +1 @@ +This project is a QEMU fork modified to support Apple Silicon virtualization and iOS device emulation. It includes the full QEMU emulator codebase with platform-specific modifications for running ARM-based virtual machines on Apple Silicon Macs. It is mainly useful for iOS security researchers and emulator developers who need hardware-accelerated ARM virtualization on macOS for app testing and analysis. diff --git a/description/ChiChou/bagbak/description_en.txt b/description/ChiChou/bagbak/description_en.txt new file mode 100644 index 00000000..99761f9e --- /dev/null +++ b/description/ChiChou/bagbak/description_en.txt @@ -0,0 +1 @@ +This project is a Node.js and TypeScript CLI tool that uses Frida to decrypt and dump iOS applications into IPA files from jailbroken devices. It includes a Frida agent for runtime decryption, handles app extensions and embedded frameworks, and supports both USB and remote device connections. It is mainly useful for iOS security researchers performing app decryption, binary analysis, and reverse engineering on jailbroken devices. diff --git a/description/ComodoSecurity/openedr/description_en.txt b/description/ComodoSecurity/openedr/description_en.txt new file mode 100644 index 00000000..e06f1d56 --- /dev/null +++ b/description/ComodoSecurity/openedr/description_en.txt @@ -0,0 +1 @@ +This project is an open-source Endpoint Detection and Response platform by Comodo Security. The large C++ codebase implements system monitoring, event collection, threat detection, and cloud-based analysis integration through AWS SDK connectivity. It provides real-time endpoint telemetry and response capabilities for identifying malicious activity on Windows systems. It is mainly useful for security researchers and anti-cheat engineers studying EDR architecture, endpoint monitoring techniques, and defensive security system design. diff --git a/description/CoolestEnoch/kernel-su-huawei-nova2/description_en.txt b/description/CoolestEnoch/kernel-su-huawei-nova2/description_en.txt new file mode 100644 index 00000000..08e13e0a --- /dev/null +++ b/description/CoolestEnoch/kernel-su-huawei-nova2/description_en.txt @@ -0,0 +1 @@ +This project is a KernelSU port for the Huawei Nova 2 device, providing a full ARM64 Linux kernel source tree modified to support kernel-level root access management. It includes Android-specific kernel configurations, device tree definitions, and the KernelSU framework patches integrated into the Huawei kernel. It is mainly useful for Android kernel researchers and root-access developers studying KernelSU integration on vendor-specific kernel trees. diff --git a/description/Danda420/kernel_xiaomi_sm8250/description_en.txt b/description/Danda420/kernel_xiaomi_sm8250/description_en.txt new file mode 100644 index 00000000..16ed8052 --- /dev/null +++ b/description/Danda420/kernel_xiaomi_sm8250/description_en.txt @@ -0,0 +1 @@ +This project is a custom Android kernel source for Xiaomi SM8250-based devices including POCO F3 and POCO F4. It includes AnyKernel3 flashable packaging, device-specific defconfigs, GitLab CI integration, and GKI ABI definitions for Qualcomm platforms. It is mainly useful for Android kernel developers and mobile security researchers working with custom kernel builds on Qualcomm Snapdragon 870/888 devices. diff --git a/description/DenuvoSoftwareSolutions/GAMBA/description_en.txt b/description/DenuvoSoftwareSolutions/GAMBA/description_en.txt new file mode 100644 index 00000000..b9c88c0a --- /dev/null +++ b/description/DenuvoSoftwareSolutions/GAMBA/description_en.txt @@ -0,0 +1 @@ +This project is a research tool for simplifying Mixed Boolean-Arithmetic (MBA) expressions, released by Denuvo Software Solutions. It includes a Python-based simplifier with support for linear and nonlinear MBA expressions, a bitwise expression factory, and experiment datasets from other tools such as NeuReduce, QSynth, and Syntia. The repository also contains the associated research paper and presentation slides. It is mainly useful for obfuscation and deobfuscation researchers studying MBA-based code protection and automated expression simplification techniques. diff --git a/description/Dump-GUY/ApplyCalleeTypeEx/description_en.txt b/description/Dump-GUY/ApplyCalleeTypeEx/description_en.txt new file mode 100644 index 00000000..2b9d5183 --- /dev/null +++ b/description/Dump-GUY/ApplyCalleeTypeEx/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin that extends the built-in callee type application functionality. The Python script provides enhanced type propagation for function call sites, with test binaries and an ida-plugin.json manifest for easy integration into IDA's plugin system. It is mainly useful for reverse engineers who need improved type inference and callee type resolution when analyzing complex binaries in IDA Pro. diff --git a/description/EBalloon/Super-People-sdk/description_en.txt b/description/EBalloon/Super-People-sdk/description_en.txt new file mode 100644 index 00000000..e9e06133 --- /dev/null +++ b/description/EBalloon/Super-People-sdk/description_en.txt @@ -0,0 +1 @@ +This project is a dumped Unreal Engine SDK for the game Super People, containing generated C++ header files for the game's classes, structs, enums, and blueprint objects. The SDK covers weapons, vehicles, player pawns, AI modules, animation blueprints, and game-specific systems. It is mainly useful for game security researchers and reverse engineers studying Unreal Engine SDK structures and Super People's game object hierarchy. diff --git a/description/EBalloon/VEILED-EXPERTS-SDK/description_en.txt b/description/EBalloon/VEILED-EXPERTS-SDK/description_en.txt new file mode 100644 index 00000000..41010852 --- /dev/null +++ b/description/EBalloon/VEILED-EXPERTS-SDK/description_en.txt @@ -0,0 +1 @@ +This project is a dumped Unreal Engine SDK for the game Veiled Experts, including generated C++ headers, a names dump, objects dump, and offsets file. The SDK covers agents, weapons, vehicles, UI elements, game modes, and engine subsystems specific to this tactical shooter. It is mainly useful for game security researchers and reverse engineers analyzing Unreal Engine game internals and SDK generation techniques. diff --git a/description/EpicGames/UnrealEngine/description_en.txt b/description/EpicGames/UnrealEngine/description_en.txt new file mode 100644 index 00000000..6ed56b11 --- /dev/null +++ b/description/EpicGames/UnrealEngine/description_en.txt @@ -0,0 +1 @@ +This project is the official Unreal Engine source code and API documentation by Epic Games. It covers the complete engine runtime including build systems, rendering, physics, networking, platform abstraction, plugin architecture, and the Python scripting API. It is the primary reference for game developers and engine researchers working with Unreal Engine internals, module development, and platform-specific integration. diff --git a/description/Ether2023/Ether-Uprotector/description_en.txt b/description/Ether2023/Ether-Uprotector/description_en.txt new file mode 100644 index 00000000..fdd2b276 --- /dev/null +++ b/description/Ether2023/Ether-Uprotector/description_en.txt @@ -0,0 +1 @@ +This project is a Unity game protection tool focused on IL2CPP and asset encryption. The C# codebase handles Unity asset file parsing, IL2CPP metadata encryption using XXTEA and custom crypto, key function obfuscation, and configuration-driven protection workflows. It supports both asset-level and code-level protection for Unity games built with the IL2CPP backend. It is mainly useful for game developers and security researchers studying Unity game protection and IL2CPP obfuscation techniques. diff --git a/description/EvilBytecode/CustomDpapi/description_en.txt b/description/EvilBytecode/CustomDpapi/description_en.txt new file mode 100644 index 00000000..c0e9cdfd --- /dev/null +++ b/description/EvilBytecode/CustomDpapi/description_en.txt @@ -0,0 +1 @@ +This project is a C++ proof-of-concept that calls the undocumented DPAPI RPC interface directly, bypassing the standard CryptUnprotectData API. It demonstrates how to invoke NdrClientCall3 with the correct parameters to perform data decryption through the lsass RPC endpoint, based on reverse engineering of dpapi.dll internals. It is mainly useful for security researchers studying Windows credential protection, DPAPI internals, and RPC-based attack surfaces. diff --git a/description/EvilBytecode/EDR-XDR-AV-Killer/description_en.txt b/description/EvilBytecode/EDR-XDR-AV-Killer/description_en.txt new file mode 100644 index 00000000..20ca8f4a --- /dev/null +++ b/description/EvilBytecode/EDR-XDR-AV-Killer/description_en.txt @@ -0,0 +1 @@ +This project is a Go-based reproduction of the Spyboy Terminator technique that terminates EDR, XDR, and antivirus processes by abusing the vulnerable zam64.sys (Zemana) driver. It exploits IOCTL-based process ID trust listing to bypass the driver's access controls, then uses kernel-level process termination primitives to kill security software. It is mainly useful for security researchers studying BYOVD (Bring Your Own Vulnerable Driver) attacks and EDR evasion techniques. diff --git a/description/EvilBytecode/Ebyte-Syscalls/description_en.txt b/description/EvilBytecode/Ebyte-Syscalls/description_en.txt new file mode 100644 index 00000000..17cee0d2 --- /dev/null +++ b/description/EvilBytecode/Ebyte-Syscalls/description_en.txt @@ -0,0 +1 @@ +This project is a header-only C++ library for performing direct and indirect Windows syscalls without relying on standard API imports. It resolves syscall numbers at runtime by walking the PEB loader data structures and parsing ntdll export tables, supporting techniques like indirect syscall trampolines for EDR evasion. It is mainly useful for offensive security researchers and anti-cheat analysts studying syscall-level API hooking bypass and detection strategies. diff --git a/description/EvilBytecode/GhostVEH/description_en.txt b/description/EvilBytecode/GhostVEH/description_en.txt new file mode 100644 index 00000000..7b7f8f48 --- /dev/null +++ b/description/EvilBytecode/GhostVEH/description_en.txt @@ -0,0 +1 @@ +This project is a C++ proof-of-concept that demonstrates stealthy manipulation of the Windows Vectored Exception Handler (VEH) chain. It locates the internal VEH linked list in ntdll, uses RtlEncodePointer and RtlDecodePointer for handler pointer obfuscation, and leverages LdrProtectMrdata to unlock the protected MRDATA section for modification. It is mainly useful for security researchers studying VEH internals, anti-debug techniques, and exception handler manipulation on Windows. diff --git a/description/ExWhyZed9/android_kernel_gki_common_5.10/description_en.txt b/description/ExWhyZed9/android_kernel_gki_common_5.10/description_en.txt new file mode 100644 index 00000000..7d6feba0 --- /dev/null +++ b/description/ExWhyZed9/android_kernel_gki_common_5.10/description_en.txt @@ -0,0 +1 @@ +This project is a custom Android GKI (Generic Kernel Image) kernel source based on the common 5.10 branch with multi-vendor ABI support. It includes ABI symbol definitions for major Android OEMs including Samsung, Qualcomm, MediaTek, ASUS, Motorola, OnePlus, and others, along with a ZenX build script. It is mainly useful for Android kernel developers and mobile security researchers working with GKI-compliant custom kernels across multiple device platforms. diff --git a/description/Genymobile/genymotion-kernel/description_en.txt b/description/Genymobile/genymotion-kernel/description_en.txt new file mode 100644 index 00000000..7a94cad8 --- /dev/null +++ b/description/Genymobile/genymotion-kernel/description_en.txt @@ -0,0 +1 @@ +This project is the Linux kernel source used by the Genymotion Android emulator. It contains a full kernel tree with Android-specific configurations and patches tailored for the Genymotion virtual device environment. It is mainly useful for Android emulator developers and mobile security researchers studying kernel-level behavior in virtualized Android environments. diff --git a/description/Gezine/BD-UN-JB/description_en.txt b/description/Gezine/BD-UN-JB/description_en.txt new file mode 100644 index 00000000..8c67c370 --- /dev/null +++ b/description/Gezine/BD-UN-JB/description_en.txt @@ -0,0 +1 @@ +This project is a Blu-ray Disc Java (BD-J) based jailbreak exploit for PlayStation consoles. It uses BD-J xlet payloads and the jdk.internal.misc.Unsafe class to achieve code execution, along with a C-based bdj_unpatch tool for BDMV manipulation and a Python log client for debugging. It is mainly useful for console security researchers studying PlayStation exploit chains and BD-J sandbox escape techniques. diff --git a/description/GlacierW/MBA/description_en.txt b/description/GlacierW/MBA/description_en.txt new file mode 100644 index 00000000..40a79f9b --- /dev/null +++ b/description/GlacierW/MBA/description_en.txt @@ -0,0 +1 @@ +This project is a QEMU-based whole-system dynamic binary analysis framework called MBA (Malware Behavior Analyzer). It extends QEMU with modules for malware analysis including memory forensics, API tracing, and behavioral monitoring across Windows and Linux guests. The codebase includes the full QEMU emulator with added instrumentation and analysis capabilities. It is mainly useful for malware analysts and security researchers performing whole-system dynamic analysis and introspection. diff --git a/description/GrapheneOS-Archive/kernel_msm-coral/description_en.txt b/description/GrapheneOS-Archive/kernel_msm-coral/description_en.txt new file mode 100644 index 00000000..cdefd9eb --- /dev/null +++ b/description/GrapheneOS-Archive/kernel_msm-coral/description_en.txt @@ -0,0 +1 @@ +This project is the GrapheneOS kernel source for the Pixel 4 (coral) and Pixel 4 XL devices, based on Qualcomm's MSM kernel tree. It includes hardened kernel configurations, Android-specific patches, and security-focused modifications characteristic of the GrapheneOS project. It is mainly useful for Android kernel security researchers and mobile platform developers studying hardened kernel implementations on Qualcomm Snapdragon devices. diff --git a/description/Grasscutters/Grasscutter/description_en.txt b/description/Grasscutters/Grasscutter/description_en.txt new file mode 100644 index 00000000..305d0c3c --- /dev/null +++ b/description/Grasscutters/Grasscutter/description_en.txt @@ -0,0 +1 @@ +This project is an open-source game server emulator for Genshin Impact, implementing the server-side game logic, player progression, world simulation, and network protocol handling. The Java-based server supports quests, gacha systems, dungeons, multiplayer interactions, and scripted game events. It is mainly useful for game server researchers and reverse engineers studying MMORPG server architecture and Genshin Impact's client-server protocol. diff --git a/description/GuidoBartoli/sherloq/description_en.txt b/description/GuidoBartoli/sherloq/description_en.txt new file mode 100644 index 00000000..094186b2 --- /dev/null +++ b/description/GuidoBartoli/sherloq/description_en.txt @@ -0,0 +1 @@ +This project is an open-source digital image forensics toolset for detecting image manipulation and tampering. The Python-based GUI includes analysis modules for error level analysis (ELA), EXIF metadata inspection, frequency domain analysis, gradient maps, histogram analysis, cloning detection, and integration with the TruFor neural network detector. It is mainly useful for digital forensics researchers and anti-cheat analysts investigating image authenticity and screenshot manipulation. diff --git a/description/HLND2T/CS2_VibeSignatures/description_en.txt b/description/HLND2T/CS2_VibeSignatures/description_en.txt new file mode 100644 index 00000000..7da929dc --- /dev/null +++ b/description/HLND2T/CS2_VibeSignatures/description_en.txt @@ -0,0 +1 @@ +This project is an automated signature and gamedata updater for Counter-Strike 2 modding frameworks. It generates pattern signatures and offset data compatible with CS2Fixes, CounterStrikeSharp, cs2kz, and cs2surf, using Python scripts and C++ test harnesses to verify interface signatures against depot binaries. It is mainly useful for CS2 plugin developers and game modders who need up-to-date gamedata signatures after game updates. diff --git a/description/Herooyyy/Pcileech-Activator-Anti-crack/description_en.txt b/description/Herooyyy/Pcileech-Activator-Anti-crack/description_en.txt new file mode 100644 index 00000000..81c409a3 --- /dev/null +++ b/description/Herooyyy/Pcileech-Activator-Anti-crack/description_en.txt @@ -0,0 +1 @@ +This project documents DMA firmware activator protection and cracking techniques for PCILeech-based FPGA devices. It includes SystemVerilog source for PCILeech FT601 basic and advanced firmware configurations, C++ activation signal analysis code, and documentation on signal registers and detection flags used by commercial firmware panels. It is mainly useful for DMA security researchers studying firmware activation mechanisms and anti-crack protections on FPGA-based DMA hardware. diff --git a/description/IIIImmmyyy/ArmShellCode/description_en.txt b/description/IIIImmmyyy/ArmShellCode/description_en.txt new file mode 100644 index 00000000..6eea529c --- /dev/null +++ b/description/IIIImmmyyy/ArmShellCode/description_en.txt @@ -0,0 +1 @@ +This project is an ARM64 shellcode framework for Android that provides position-independent code execution with Dobby-based symbol resolution. The C codebase includes ELF parsing, proc maps parsing, syscall wrappers, and a modular shellcode loader with custom linker scripts for generating standalone shellcode payloads. It is mainly useful for Android security researchers and exploit developers studying ARM64 shellcode construction and runtime code injection techniques. diff --git a/description/JackBro/BetaShield/description_en.txt b/description/JackBro/BetaShield/description_en.txt new file mode 100644 index 00000000..069e9188 --- /dev/null +++ b/description/JackBro/BetaShield/description_en.txt @@ -0,0 +1 @@ +This project is an anti-cheat protection system built with C++ and Boost libraries. It implements client-side integrity checking, process monitoring, and tamper detection mechanisms for protecting game applications. The codebase uses Boost.Asio for network communication and various Boost utilities for cross-platform support. It is mainly useful for anti-cheat engineers and game security researchers studying client-side protection system design and implementation. diff --git a/description/JoeyDeVries/LearnOpenGL/description_en.txt b/description/JoeyDeVries/LearnOpenGL/description_en.txt new file mode 100644 index 00000000..2bac2e14 --- /dev/null +++ b/description/JoeyDeVries/LearnOpenGL/description_en.txt @@ -0,0 +1 @@ +This project is the companion source code for the LearnOpenGL tutorial series, providing progressive C++ examples covering OpenGL fundamentals through advanced rendering techniques. It includes sample code for lighting, model loading with Assimp, shadow mapping, deferred shading, PBR, and post-processing, along with GLFW, GLEW, and GLM dependencies. It is mainly useful for graphics programmers and game developers learning modern OpenGL rendering techniques from scratch. diff --git a/description/KeServiceDescriptorTable/cormem.sys-vulnerable-driver/description_en.txt b/description/KeServiceDescriptorTable/cormem.sys-vulnerable-driver/description_en.txt new file mode 100644 index 00000000..f3c7d2a5 --- /dev/null +++ b/description/KeServiceDescriptorTable/cormem.sys-vulnerable-driver/description_en.txt @@ -0,0 +1 @@ +This project provides the Cormem.sys vulnerable Windows kernel driver binary for security research purposes. The driver exposes memory read and write primitives that can be exploited for kernel-level access, making it a candidate for BYOVD (Bring Your Own Vulnerable Driver) attack research. It is mainly useful for kernel security researchers and anti-cheat analysts studying vulnerable driver exploitation and detection techniques. diff --git a/description/KeServiceDescriptorTable/roak/description_en.txt b/description/KeServiceDescriptorTable/roak/description_en.txt new file mode 100644 index 00000000..7ae7e6f3 --- /dev/null +++ b/description/KeServiceDescriptorTable/roak/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel-mode driver that provides read and write memory access through a custom communication channel. It hooks HAL timer query functions for covert user-kernel communication, handles memory operations via packet-based request dispatching, and includes kernel offset resolution and system utility modules. It is mainly useful for kernel security researchers studying covert driver communication techniques and kernel memory access patterns. diff --git a/description/KeServiceDescriptorTable/vulnerable-drivers/description_en.txt b/description/KeServiceDescriptorTable/vulnerable-drivers/description_en.txt new file mode 100644 index 00000000..5c3ab647 --- /dev/null +++ b/description/KeServiceDescriptorTable/vulnerable-drivers/description_en.txt @@ -0,0 +1 @@ +This project is a curated collection of vulnerable signed Windows kernel drivers gathered for security research. It includes dozens of .sys driver binaries from various vendors that expose exploitable IOCTL interfaces, memory access primitives, or other security weaknesses. It is mainly useful for BYOVD researchers, anti-cheat engineers, and kernel security analysts studying vulnerable driver cataloging and exploitation surface analysis. diff --git a/description/Kurok00/R3nzSkin/description_en.txt b/description/Kurok00/R3nzSkin/description_en.txt new file mode 100644 index 00000000..c00ade42 --- /dev/null +++ b/description/Kurok00/R3nzSkin/description_en.txt @@ -0,0 +1 @@ +This project is a League of Legends skin changer that modifies client-side skin rendering without altering game files. It includes a C++ DLL injector, pattern scanning tools for finding game offsets after updates, Python-based automated pattern updaters, and community pattern fetching scripts with KsDumper integration. It is mainly useful for game modding researchers and reverse engineers studying League of Legends client internals and runtime memory patching techniques. diff --git a/description/L-Spiro/L.-Spiro-Engine-2022/description_en.txt b/description/L-Spiro/L.-Spiro-Engine-2022/description_en.txt new file mode 100644 index 00000000..4bcd1265 --- /dev/null +++ b/description/L-Spiro/L.-Spiro-Engine-2022/description_en.txt @@ -0,0 +1 @@ +This project is a cross-platform C++ game engine with modular libraries covering graphics, physics, sound, networking, math, memory management, threading, and model handling. It supports both Windows (Visual Studio) and macOS (Xcode) builds, includes DXT texture compression tools, and provides a comprehensive standard library abstraction layer. It is mainly useful for engine programmers and game developers studying low-level cross-platform game engine architecture and design. diff --git a/description/LSPosed/MagiskOnWSALocal/description_en.txt b/description/LSPosed/MagiskOnWSALocal/description_en.txt new file mode 100644 index 00000000..834a3d6a --- /dev/null +++ b/description/LSPosed/MagiskOnWSALocal/description_en.txt @@ -0,0 +1 @@ +This project provides scripts and tools to integrate Magisk, KernelSU, and Google Apps into Windows Subsystem for Android (WSA) images locally. It includes Python and shell scripts for extracting WSA packages, patching Magisk and GApps into the system image, and generating installable WSA builds with root access and LSPosed support. It is mainly useful for Android security researchers and developers who need rooted WSA environments for testing and analysis. diff --git a/description/LagradOst/ProjectD-Win64-Shipping/description_en.txt b/description/LagradOst/ProjectD-Win64-Shipping/description_en.txt new file mode 100644 index 00000000..6aea4cb4 --- /dev/null +++ b/description/LagradOst/ProjectD-Win64-Shipping/description_en.txt @@ -0,0 +1 @@ +This project is a dumped Unreal Engine SDK for Veiled Experts (Project D), containing generated C++ class and struct headers for the game's agents, weapons, vehicles, UI systems, and engine subsystems. The dump includes full class hierarchies, member offsets, and virtual function tables. It is mainly useful for game security researchers and reverse engineers studying Unreal Engine game internals and SDK dumping methodologies. diff --git a/description/Lakr233/vphone-cli/description_en.txt b/description/Lakr233/vphone-cli/description_en.txt new file mode 100644 index 00000000..949d0837 --- /dev/null +++ b/description/Lakr233/vphone-cli/description_en.txt @@ -0,0 +1 @@ +This project is a CLI tool and firmware patching framework for building and running virtualized iPhones (vphone) on Apple Silicon Macs. It includes Swift source, Python firmware patchers for iBoot, kernel, and TXM components, jailbreak patch sets, ramdisk builders, and research documentation on kernel binary patches and keyboard event pipelines. It is mainly useful for iOS security researchers and emulator developers building custom firmware for virtualized iOS environments. diff --git a/description/LeoChen-CoreMind/VMPacker/description_en.txt b/description/LeoChen-CoreMind/VMPacker/description_en.txt new file mode 100644 index 00000000..649fef52 --- /dev/null +++ b/description/LeoChen-CoreMind/VMPacker/description_en.txt @@ -0,0 +1 @@ +This project is a virtual machine-based code protection tool for ARM64 binaries, written in Go. It translates native ARM64 instructions into custom VM bytecode with support for indirect dispatch, chained encryption, CRC integrity checks, and function splitting obfuscation. The repository includes comprehensive demo programs demonstrating individual instruction virtualization and protection strategies. It is mainly useful for binary protection researchers and reverse engineers studying VM-based obfuscation schemes on ARM64 platforms. diff --git a/description/LostOxygen/gnn_deobfuscation/description_en.txt b/description/LostOxygen/gnn_deobfuscation/description_en.txt new file mode 100644 index 00000000..5a49eb37 --- /dev/null +++ b/description/LostOxygen/gnn_deobfuscation/description_en.txt @@ -0,0 +1 @@ +This project is a Graph Neural Network-based approach to deobfuscating Mixed Boolean-Arithmetic (MBA) expressions. The Python codebase includes training and testing pipelines with datasets from multiple MBA obfuscators including Loki, MBABlast, and MBAObfuscator, organized by variable count and operation depth. It is mainly useful for deobfuscation researchers and security analysts studying machine learning approaches to simplifying obfuscated arithmetic expressions. diff --git a/description/LowTension/android_kernel_xiaomi_sm8475/description_en.txt b/description/LowTension/android_kernel_xiaomi_sm8475/description_en.txt new file mode 100644 index 00000000..0e72a11e --- /dev/null +++ b/description/LowTension/android_kernel_xiaomi_sm8475/description_en.txt @@ -0,0 +1 @@ +This project is the Android kernel source for Xiaomi SM8475 (Snapdragon 8+ Gen 1) devices. It includes the full kernel tree with GKI ABI definitions for multiple vendors, Qualcomm-specific platform support, and device configurations. It is mainly useful for Android kernel developers and mobile security researchers working with custom kernel builds on Qualcomm Snapdragon 8+ Gen 1 hardware. diff --git a/description/M3351AN/AimStar/description_en.txt b/description/M3351AN/AimStar/description_en.txt new file mode 100644 index 00000000..6b5ebb9c --- /dev/null +++ b/description/M3351AN/AimStar/description_en.txt @@ -0,0 +1 @@ +This project is an external cheat framework for Counter-Strike 2, written in C++. It includes bone-based aimbot logic, entity tracking, ESP rendering, triggerbot, offset management, and a menu configuration system with multi-language documentation in English, Russian, and Chinese. It is mainly useful for game security researchers studying external cheat architecture and CS2 memory reading techniques. diff --git a/description/M3351AN/Samidare/description_en.txt b/description/M3351AN/Samidare/description_en.txt new file mode 100644 index 00000000..32270cbb --- /dev/null +++ b/description/M3351AN/Samidare/description_en.txt @@ -0,0 +1 @@ +This project is a CS2 external cheat with driver-based memory access, featuring a DirectX overlay, offset management, and game data reading through a kernel driver communication interface. The C++ codebase includes FIFO-based driver communication, overlay rendering, and math utilities for game coordinate calculations. It is mainly useful for game security researchers studying driver-assisted external cheat implementations and overlay rendering techniques. diff --git a/description/M3351AN/UkiaRPM/description_en.txt b/description/M3351AN/UkiaRPM/description_en.txt new file mode 100644 index 00000000..68b3ded2 --- /dev/null +++ b/description/M3351AN/UkiaRPM/description_en.txt @@ -0,0 +1 @@ +This project is an external CS2 cheat that uses kernel driver-based remote process memory reading for aimbot, ESP, radar, and miscellaneous game modifications. The C++ codebase includes an ImGui-based DirectX9 menu, recoil control system, config saving, and visual overlay features. It is mainly useful for game security researchers studying RPM-based external cheat patterns and kernel driver communication for game memory access. diff --git a/description/M3351AN/ZhangBing-Injector/description_en.txt b/description/M3351AN/ZhangBing-Injector/description_en.txt new file mode 100644 index 00000000..441c41d7 --- /dev/null +++ b/description/M3351AN/ZhangBing-Injector/description_en.txt @@ -0,0 +1 @@ +This project is a Windows DLL injector that uses vulnerable kernel drivers for injection into protected processes. It bundles multiple .sys driver files and provides a C++ user-mode application that communicates with loaded drivers to perform memory operations and DLL injection. It is mainly useful for game security researchers studying kernel-assisted DLL injection techniques and vulnerable driver exploitation for process manipulation. diff --git a/description/M3351AN/saphire/description_en.txt b/description/M3351AN/saphire/description_en.txt new file mode 100644 index 00000000..9ef4465b --- /dev/null +++ b/description/M3351AN/saphire/description_en.txt @@ -0,0 +1 @@ +This project is a CSGO cheat framework with an ImGui-based DirectX9 overlay menu and a built-in code editor. The C++ codebase includes FreeType font rendering integration, custom ImGui widgets, and a modular cheat interface with configuration support. It is mainly useful for game security researchers studying cheat UI frameworks and ImGui-based overlay implementations in Source engine games. diff --git a/description/MBA-research/mba-wasm/description_en.txt b/description/MBA-research/mba-wasm/description_en.txt new file mode 100644 index 00000000..a291d176 --- /dev/null +++ b/description/MBA-research/mba-wasm/description_en.txt @@ -0,0 +1 @@ +This project is a WebAssembly-based Mixed Boolean-Arithmetic (MBA) expression toolkit written in Rust. It provides web-accessible tools for MBA obfuscation, linear congruence solving, permutation polynomial generation, and expression simplification through a browser-based interface with MathJax rendering. It is mainly useful for obfuscation researchers and security analysts exploring MBA expression theory and interactive deobfuscation tools. diff --git a/description/MGreif/PCILeech_DMA_Proxy/description_en.txt b/description/MGreif/PCILeech_DMA_Proxy/description_en.txt new file mode 100644 index 00000000..9145a60e --- /dev/null +++ b/description/MGreif/PCILeech_DMA_Proxy/description_en.txt @@ -0,0 +1 @@ +This project is a DLL proxy that hooks standard Windows memory API functions and redirects them to a remote device via DMA using the PCILeech/MemProcFS framework. It includes a MinHook-based hooking layer for process, module, thread, and memory operations, a DMA memory library with input and registry access, and a proxy loader application. It is mainly useful for DMA security researchers studying API-transparent remote memory access and DMA-proxied game interaction techniques. diff --git a/description/MKXJun/DirectX11-With-Windows-SDK/description_en.txt b/description/MKXJun/DirectX11-With-Windows-SDK/description_en.txt new file mode 100644 index 00000000..9dcf16e3 --- /dev/null +++ b/description/MKXJun/DirectX11-With-Windows-SDK/description_en.txt @@ -0,0 +1 @@ +This project is a comprehensive DirectX 11 tutorial and sample code collection built with the Windows SDK. It includes progressive rendering examples with ImGui integration, CMake and Visual Studio build support, and covers topics from basic triangle rendering through advanced techniques like shadow mapping, deferred shading, and compute shaders. It is mainly useful for graphics programmers and game developers learning DirectX 11 rendering pipeline programming. diff --git a/description/MarilynDafa/Bulllord-Engine/description_en.txt b/description/MarilynDafa/Bulllord-Engine/description_en.txt new file mode 100644 index 00000000..5caf3a93 --- /dev/null +++ b/description/MarilynDafa/Bulllord-Engine/description_en.txt @@ -0,0 +1 @@ +This project is a lightweight cross-platform C game engine called Bulllord Engine. It includes external libraries for ASTC texture compression, FastLZ, FreeType font rendering, and provides a modular engine architecture with rendering, audio, physics, and asset management subsystems. It is mainly useful for game engine developers and researchers studying compact, C-based cross-platform game engine design. diff --git a/description/Muz1K1zuM/PoisonKiller_bof/description_en.txt b/description/Muz1K1zuM/PoisonKiller_bof/description_en.txt new file mode 100644 index 00000000..831fc7ab --- /dev/null +++ b/description/Muz1K1zuM/PoisonKiller_bof/description_en.txt @@ -0,0 +1 @@ +This project is a collection of Beacon Object Files (BOFs) that use a vulnerable kernel driver (PoisonX.sys) to perform process killing, driver loading and unloading, and file deletion from kernel mode. The C-based BOFs are cross-compiled with MinGW for use in Cobalt Strike or similar C2 frameworks, with a Python helper script. It is mainly useful for red team operators and security researchers studying BYOVD-based process termination and kernel-level file operations through BOF payloads. diff --git a/description/NSG650/BugCheck2Linux/description_en.txt b/description/NSG650/BugCheck2Linux/description_en.txt new file mode 100644 index 00000000..45a59161 --- /dev/null +++ b/description/NSG650/BugCheck2Linux/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver that boots a RISC-V Linux emulator inside a bug check (BSOD) screen. It uses a mini-rv32ima RISC-V emulator, BOOTVID for framebuffer rendering during the bug check phase, and an embedded device tree and boot image to run a minimal Linux system. It is mainly useful for kernel researchers and enthusiasts exploring creative uses of the Windows bug check environment and embedded emulation from kernel mode. diff --git a/description/NVIDIA-RTX/godot/description_en.txt b/description/NVIDIA-RTX/godot/description_en.txt new file mode 100644 index 00000000..4628fc33 --- /dev/null +++ b/description/NVIDIA-RTX/godot/description_en.txt @@ -0,0 +1 @@ +This project is an NVIDIA RTX fork of the Godot game engine with enhanced rendering capabilities. It extends the open-source Godot engine with RTX-specific optimizations and features across the rendering server, editor interface, and scene tree systems. It is mainly useful for game developers and graphics researchers working with ray tracing, advanced rendering techniques, and NVIDIA GPU-accelerated game development in the Godot ecosystem. diff --git a/description/NVIDIAGameWorks/PhysX-3.4/description_en.txt b/description/NVIDIAGameWorks/PhysX-3.4/description_en.txt new file mode 100644 index 00000000..3ef44104 --- /dev/null +++ b/description/NVIDIAGameWorks/PhysX-3.4/description_en.txt @@ -0,0 +1 @@ +This project is NVIDIA PhysX SDK version 3.4, a production physics simulation engine for games and interactive applications. It provides rigid body dynamics, continuous collision detection, scene queries, vehicle simulation, cloth, and particle systems with a component-based architecture and cross-platform support. It is mainly useful for game developers and physics engine researchers studying industrial-grade physics simulation implementation and integration. diff --git a/description/Natfii/UnrealClaude/description_en.txt b/description/Natfii/UnrealClaude/description_en.txt new file mode 100644 index 00000000..dc1dde66 --- /dev/null +++ b/description/Natfii/UnrealClaude/description_en.txt @@ -0,0 +1 @@ +This project is an Unreal Engine plugin that integrates Claude AI as a development copilot through an MCP bridge. It provides context-aware AI assistance for actors, animations, assets, blueprints, characters, materials, enhanced input, replication, and Slate UI development within the Unreal Editor. It is mainly useful for Unreal Engine developers seeking AI-assisted game development workflows and automated code generation for UE-specific patterns. diff --git a/description/NoviceLevel/Pcileech-QuantumStealth-Max/description_en.txt b/description/NoviceLevel/Pcileech-QuantumStealth-Max/description_en.txt new file mode 100644 index 00000000..95e64dfe --- /dev/null +++ b/description/NoviceLevel/Pcileech-QuantumStealth-Max/description_en.txt @@ -0,0 +1 @@ +This project is a PCILeech FPGA firmware collection supporting multiple DMA hardware configurations including 100T, Squirrel, and Captain variants. It includes Vivado IP cores for PCIe config space, BRAM, clock wizards, FIFOs, and batch scripts for generating firmware builds targeting different FPGA boards. It is mainly useful for DMA security researchers and firmware developers working with PCILeech-compatible FPGA hardware for memory forensics and DMA attack research. diff --git a/description/PacktPublishing/Learn-FPGA-Programming/description_en.txt b/description/PacktPublishing/Learn-FPGA-Programming/description_en.txt new file mode 100644 index 00000000..41e100ca --- /dev/null +++ b/description/PacktPublishing/Learn-FPGA-Programming/description_en.txt @@ -0,0 +1 @@ +This project is the companion code for the book "Learn FPGA Programming" by Packt Publishing. It contains SystemVerilog HDL examples and testbenches organized by chapter, covering topics from basic logic design through I2C, PS/2, VGA, DDR memory, and complete final projects. It is mainly useful for hardware engineers and security researchers learning FPGA programming fundamentals relevant to DMA hardware and custom hardware development. diff --git a/description/PiMoNFeeD/csgo-src/description_en.txt b/description/PiMoNFeeD/csgo-src/description_en.txt new file mode 100644 index 00000000..eb13ca66 --- /dev/null +++ b/description/PiMoNFeeD/csgo-src/description_en.txt @@ -0,0 +1 @@ +This project is a mirror or archive of leaked Counter-Strike: Global Offensive source code. It contains the Source engine codebase with game-specific implementations covering networking, rendering, game logic, and client-server architecture. It is mainly useful for game engine researchers and reverse engineers studying Source engine internals and CSGO's client-server architecture. diff --git a/description/RavEngine/RavEngine/description_en.txt b/description/RavEngine/RavEngine/description_en.txt new file mode 100644 index 00000000..cf7a605d --- /dev/null +++ b/description/RavEngine/RavEngine/description_en.txt @@ -0,0 +1 @@ +This project is a modern C++ game engine built with a data-oriented Entity Component System architecture, Vulkan-based rendering through the RGL abstraction layer, and GameNetworkingSockets for multiplayer networking. It features cross-platform support, CMake-based build system, resource packing pipelines, and a comprehensive set of engine subsystems including input, GUI, and audio. It is mainly useful for game engine developers and graphics researchers studying modern ECS-based engine design with Vulkan rendering. diff --git a/description/RootKit-Org/AI-Aimbot/description_en.txt b/description/RootKit-Org/AI-Aimbot/description_en.txt new file mode 100644 index 00000000..0388ca44 --- /dev/null +++ b/description/RootKit-Org/AI-Aimbot/description_en.txt @@ -0,0 +1 @@ +This project is an AI-powered aimbot that uses machine learning models to detect and aim at targets in games through screen capture analysis. It supports custom YOLO-based models for different games including Fortnite and Rust, uses Conda for environment management, and includes configuration for detection sensitivity and aiming parameters. It is mainly useful for game security researchers studying AI-based cheat detection challenges and machine learning approaches to automated game interaction. diff --git a/description/SM7325-AE/android_kernel_motorola_dubai/description_en.txt b/description/SM7325-AE/android_kernel_motorola_dubai/description_en.txt new file mode 100644 index 00000000..bf6dadf0 --- /dev/null +++ b/description/SM7325-AE/android_kernel_motorola_dubai/description_en.txt @@ -0,0 +1 @@ +This project is the Android kernel source for Motorola Dubai devices based on the SM7325 (Snapdragon 778G) platform. It includes GKI ABI definitions, Qualcomm-specific drivers, and Motorola device tree configurations. It is mainly useful for Android kernel developers and mobile security researchers working with Qualcomm Snapdragon 778G device kernel customization and analysis. diff --git a/description/SamuelTulach/rainbow/description_en.txt b/description/SamuelTulach/rainbow/description_en.txt new file mode 100644 index 00000000..8d40f5a1 --- /dev/null +++ b/description/SamuelTulach/rainbow/description_en.txt @@ -0,0 +1 @@ +This project is a UEFI-based bootkit that operates before the Windows kernel loads, built using the EDK-II firmware development framework. It includes OVMF debugging support for QEMU-based development and testing, with a Visual Studio solution for building UEFI applications. It is mainly useful for UEFI security researchers and anti-cheat analysts studying pre-boot attack vectors, bootkit techniques, and firmware-level persistence mechanisms. diff --git a/description/SkyFire/MopCore547/description_en.txt b/description/SkyFire/MopCore547/description_en.txt new file mode 100644 index 00000000..de573815 --- /dev/null +++ b/description/SkyFire/MopCore547/description_en.txt @@ -0,0 +1 @@ +This project is a World of Warcraft server emulator targeting the Mists of Pandaria expansion (5.4.7). Built with C++ and CMake, it implements game world simulation, player management, NPC scripting, and network protocol handling for running private WoW servers. It is mainly useful for game server emulation researchers and MMORPG reverse engineers studying WoW server architecture and game protocol implementation. diff --git a/description/SsageParuders/Android_Native_Surface/description_en.txt b/description/SsageParuders/Android_Native_Surface/description_en.txt new file mode 100644 index 00000000..b82fafa2 --- /dev/null +++ b/description/SsageParuders/Android_Native_Surface/description_en.txt @@ -0,0 +1 @@ +This project provides a native surface rendering library for Android that creates overlay surfaces without requiring app-level permissions. It includes AOSP-compatible source for Android versions 10 through 14, supporting both surface rendering and screen recording through native Android APIs. It is mainly useful for Android game security researchers and overlay developers studying native surface creation and drawing techniques across Android versions. diff --git a/description/SwagSoftware/Kisak-Strike/description_en.txt b/description/SwagSoftware/Kisak-Strike/description_en.txt new file mode 100644 index 00000000..eacdac3e --- /dev/null +++ b/description/SwagSoftware/Kisak-Strike/description_en.txt @@ -0,0 +1 @@ +This project is an open-source Linux port of Counter-Strike: Global Offensive based on Valve's Source engine. It includes the full game codebase with CMake build support, app framework, material system, sound system, networking, VPC project files, and Linux-specific adaptations including SDL and OpenGL rendering paths. It is mainly useful for Source engine researchers and game developers studying the Source engine architecture and Linux game porting. diff --git a/description/SynthesisLab/MBA/description_en.txt b/description/SynthesisLab/MBA/description_en.txt new file mode 100644 index 00000000..86fa39ae --- /dev/null +++ b/description/SynthesisLab/MBA/description_en.txt @@ -0,0 +1 @@ +This project is a GPU-accelerated Mixed Boolean-Arithmetic (MBA) expression simplification toolkit using CUDA. It includes multiple CUDA kernel implementations for MBA evaluation and simplification, along with JSON-based data handling and custom helper libraries for cooperative groups, memory management, and hashing. It is mainly useful for deobfuscation researchers studying high-performance approaches to MBA simplification using GPU parallelism. diff --git a/description/TLeonardUK/ds3os/description_en.txt b/description/TLeonardUK/ds3os/description_en.txt new file mode 100644 index 00000000..3a1103c8 --- /dev/null +++ b/description/TLeonardUK/ds3os/description_en.txt @@ -0,0 +1 @@ +This project is an open-source server emulator for Dark Souls 2 and Dark Souls 3 online services. It implements the game's multiplayer protocol using Protobuf message definitions, supports Docker deployment, and handles player matchmaking, co-op summoning, invasions, and message systems. It is mainly useful for game server researchers and reverse engineers studying Souls-series network protocols and multiplayer server architecture. diff --git a/description/TOSTcRa/vigil/description_en.txt b/description/TOSTcRa/vigil/description_en.txt new file mode 100644 index 00000000..e9fbee6e --- /dev/null +++ b/description/TOSTcRa/vigil/description_en.txt @@ -0,0 +1 @@ +This project is a Rust-based eBPF security monitoring tool that uses BPF programs for kernel-level event tracing and analysis. It includes a modular crate architecture with BPF ELF loading, perf event handling, CLI interface, and client-server communication for distributed monitoring. It is mainly useful for Linux security researchers and kernel engineers studying eBPF-based runtime monitoring and threat detection systems. diff --git a/description/TaszkSecLabs/xiaomi-c400-pwn/description_en.txt b/description/TaszkSecLabs/xiaomi-c400-pwn/description_en.txt new file mode 100644 index 00000000..879d9895 --- /dev/null +++ b/description/TaszkSecLabs/xiaomi-c400-pwn/description_en.txt @@ -0,0 +1 @@ +This project is a security research package containing exploit code and jailbreak tools for the Xiaomi C400 router. It includes a Python-based exploit with RNG prediction, formal verification models in Tamarin, handshake sequence documentation, and a separate jailbreak component for gaining persistent access. It is mainly useful for embedded security researchers and IoT exploit developers studying router vulnerability analysis and firmware exploitation. diff --git a/description/Th3Spl/SimpleUEFI/description_en.txt b/description/Th3Spl/SimpleUEFI/description_en.txt new file mode 100644 index 00000000..f3460a8d --- /dev/null +++ b/description/Th3Spl/SimpleUEFI/description_en.txt @@ -0,0 +1 @@ +This project is a simplified UEFI application development framework using Visual Studio and the EDK-II toolchain. It provides MSVC project templates, property sheets, and a Python setup script for quickly bootstrapping UEFI application projects without the full EDK-II build complexity. It is mainly useful for UEFI security researchers and bootkit developers who need a streamlined Visual Studio-based UEFI development environment. diff --git a/description/TheQmaks/phantom-frida/description_en.txt b/description/TheQmaks/phantom-frida/description_en.txt new file mode 100644 index 00000000..205b8973 --- /dev/null +++ b/description/TheQmaks/phantom-frida/description_en.txt @@ -0,0 +1 @@ +This project is a build system that patches Frida to evade common anti-instrumentation detection mechanisms. It uses Python-based patch scripts and name generators to randomize Frida's identifiable strings, symbols, and artifacts during the build process, with WSL build support and comprehensive JavaScript-based testing. It is mainly useful for mobile reverse engineers and security researchers who need stealth Frida builds that bypass anti-Frida detection in protected applications. diff --git a/description/TorqueGameEngines/Torque3D/description_en.txt b/description/TorqueGameEngines/Torque3D/description_en.txt new file mode 100644 index 00000000..39782b90 --- /dev/null +++ b/description/TorqueGameEngines/Torque3D/description_en.txt @@ -0,0 +1 @@ +This project is the open-source Torque 3D game engine, a full-featured C++ engine with CMake build system, Assimp model importing, and comprehensive engine subsystems for rendering, physics, networking, and scripting. It supports multiple platforms with configurable build options and community-driven development. It is mainly useful for game engine developers and researchers studying open-source 3D game engine architecture and design. diff --git a/description/TrinityCore/TrinityCore/description_en.txt b/description/TrinityCore/TrinityCore/description_en.txt new file mode 100644 index 00000000..f2157336 --- /dev/null +++ b/description/TrinityCore/TrinityCore/description_en.txt @@ -0,0 +1 @@ +This project is TrinityCore, a comprehensive open-source MMORPG framework implementing a complete World of Warcraft server emulator. The C++ codebase features modular authentication and world servers, asynchronous database pooling with prepared statements, extensive scripting APIs for custom content, and support for multiple WoW expansions including combat, quests, achievements, and battleground systems. It is mainly useful for game server researchers and MMORPG reverse engineers studying large-scale game server architecture and protocol emulation. diff --git a/description/Unity-Technologies/FPSSample/description_en.txt b/description/Unity-Technologies/FPSSample/description_en.txt new file mode 100644 index 00000000..36e5b5ae --- /dev/null +++ b/description/Unity-Technologies/FPSSample/description_en.txt @@ -0,0 +1 @@ +This project is Unity's official first-person shooter sample game demonstrating production-level game development patterns. It includes character animation systems, weapon handling, networked multiplayer architecture, and comprehensive asset pipelines for a complete playable FPS game built with the Unity engine. It is mainly useful for game developers and Unity researchers studying production FPS game architecture, networking, and animation state machine design. diff --git a/description/ValveSoftware/Proton/description_en.txt b/description/ValveSoftware/Proton/description_en.txt new file mode 100644 index 00000000..d53b2171 --- /dev/null +++ b/description/ValveSoftware/Proton/description_en.txt @@ -0,0 +1 @@ +This project is Valve's Proton, a compatibility layer based on Wine that enables running Windows games on Linux through Steam. It includes build scripts, Docker-based build infrastructure, default prefix configuration, Steam integration manifests, and compatibility fixups for running Windows game binaries on Linux. It is mainly useful for Linux gaming researchers and compatibility layer developers studying Windows-to-Linux game translation and Steam Play technology. diff --git a/description/VirtualBox/virtualbox/description_en.txt b/description/VirtualBox/virtualbox/description_en.txt new file mode 100644 index 00000000..3d3672bc --- /dev/null +++ b/description/VirtualBox/virtualbox/description_en.txt @@ -0,0 +1 @@ +This project is Oracle VirtualBox, a comprehensive open-source x86_64 virtualization platform. It implements a full Virtual Machine Monitor with CPU and memory virtualization, device emulation, guest additions, networking, storage, and remote desktop services across Windows, Linux, macOS, and Solaris hosts. The modular architecture uses kBuild, supports multiple CPU architectures, and provides COM APIs and IOCTL-based driver interfaces. It is mainly useful for virtualization researchers and security analysts studying hypervisor internals, hardware virtualization, and VM-based security research environments. diff --git a/description/WolfireGames/overgrowth/description_en.txt b/description/WolfireGames/overgrowth/description_en.txt new file mode 100644 index 00000000..795dd77e --- /dev/null +++ b/description/WolfireGames/overgrowth/description_en.txt @@ -0,0 +1 @@ +This project is the open-source release of Overgrowth by Wolfire Games, a 3D action game engine and game. It includes the complete game source code with custom engine components for rendering, physics, animation, AI, level editing, and scripting. It is mainly useful for game engine researchers and modders studying commercial game engine internals and open-sourced game codebases. diff --git a/description/YouNeverKnow00/Kernelmode-DLL-Injector/description_en.txt b/description/YouNeverKnow00/Kernelmode-DLL-Injector/description_en.txt new file mode 100644 index 00000000..f9b6ec41 --- /dev/null +++ b/description/YouNeverKnow00/Kernelmode-DLL-Injector/description_en.txt @@ -0,0 +1 @@ +This project is a kernel-mode DLL injector that uses kdmapper with an Intel vulnerable driver to load a custom kernel driver, then performs manual DLL mapping into target processes from kernel space. The C++ codebase includes PE section mapping, import resolution, TLS callback handling, and user-kernel communication through IOCTL operations. It is mainly useful for game security researchers studying kernel-assisted DLL injection, manual mapping techniques, and vulnerable driver exploitation for process manipulation. diff --git a/description/ZeroMemoryEx/CVE-2025-26125/description_en.txt b/description/ZeroMemoryEx/CVE-2025-26125/description_en.txt new file mode 100644 index 00000000..11ac8530 --- /dev/null +++ b/description/ZeroMemoryEx/CVE-2025-26125/description_en.txt @@ -0,0 +1 @@ +This project is a proof-of-concept exploit for CVE-2025-26125, a Windows local privilege escalation vulnerability. The C++ PoC demonstrates file or folder deletion abuse to achieve SYSTEM-level access, using MSI-based exploitation with NT API definitions and resource manipulation. It is mainly useful for Windows security researchers and exploit developers studying local privilege escalation techniques and vulnerability reproduction. diff --git a/description/a0yark/ArcRaidersRadar-dma-Radar/description_en.txt b/description/a0yark/ArcRaidersRadar-dma-Radar/description_en.txt new file mode 100644 index 00000000..3bb042c5 --- /dev/null +++ b/description/a0yark/ArcRaidersRadar-dma-Radar/description_en.txt @@ -0,0 +1,4 @@ +This project is a DMA-based radar and ESP tool for Arc Raiders that reads game memory externally through FPGA hardware using MemProcFS. +It uses Unicorn Engine to emulate the game's own decryption functions for resolving obfuscated pointers such as GWorld, GameInstance, CameraManager, and BoneBase without manually reversing the decryption logic. +The C++ codebase includes DMA initialization, process and module discovery, emulation-based pointer decryption, and a framework for player and actor iteration. +It is mainly useful for DMA security researchers studying emulation-assisted pointer resolution and hardware-based external memory reading techniques. diff --git a/description/a0yark/DXInject-UC/description_en.txt b/description/a0yark/DXInject-UC/description_en.txt new file mode 100644 index 00000000..7d2f4e35 --- /dev/null +++ b/description/a0yark/DXInject-UC/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof-of-concept for GPU-assisted process hollowing using DirectX 11 shared buffers and compute shaders. +The C++ codebase consists of an Injector that encodes shellcode and uploads it to a GPU shared buffer, and a Target that uses an HLSL compute shader to decode the payload on the GPU before executing it on the CPU. +Cross-process synchronization is handled through named events and shared memory with DXGI shared handles. +It is mainly useful for security researchers studying GPU-based payload transport, compute shader abuse, and novel code injection techniques. diff --git a/description/a0yark/Duckov_marketmod/description_en.txt b/description/a0yark/Duckov_marketmod/description_en.txt new file mode 100644 index 00000000..b79cbe8b --- /dev/null +++ b/description/a0yark/Duckov_marketmod/description_en.txt @@ -0,0 +1,4 @@ +This project is a game market mod for Duckov that implements a flea market system with listing, purchasing, and fulfillment workflows. +The C# codebase includes a core module with UI management, network API client with Steam authentication, WebSocket communication, Harmony-based game patches, and a mod loader with version checking and auto-update support. +It was developed through reverse engineering of the game's internals, with sanitized and semantically renamed variables for readability and secondary development. +It is mainly useful for game modding researchers studying online marketplace integration and reverse-engineered mod architectures. diff --git a/description/a0yark/Pubg-demo/description_en.txt b/description/a0yark/Pubg-demo/description_en.txt new file mode 100644 index 00000000..7a404112 --- /dev/null +++ b/description/a0yark/Pubg-demo/description_en.txt @@ -0,0 +1,4 @@ +This project is an external cheat demo for PUBG built with C++ and the Unreal Engine SDK. +It includes a dumped CppSDK with generated class headers, bone helper utilities for skeleton rendering, an ESP and aimbot framework, and an ImGui-based DirectX 11 overlay for rendering. +The DLL-injected cheat module handles game memory reading and visual overlays through a separate rendering pipeline. +It is mainly useful for game security researchers studying Unreal Engine SDK-based cheat architectures and external overlay techniques. diff --git a/description/alephsecurity/xnu-qemu-arm64/description_en.txt b/description/alephsecurity/xnu-qemu-arm64/description_en.txt new file mode 100644 index 00000000..f91f753e --- /dev/null +++ b/description/alephsecurity/xnu-qemu-arm64/description_en.txt @@ -0,0 +1,4 @@ +This project is a QEMU fork by Aleph Security that aims to boot a fully functional iOS system on QEMU with ARM64 emulation. +It supports launchd services, interactive bash, read/write secondary disk devices, execution of unsigned binaries, and SSH through TCP tunneling, with optional KVM hardware acceleration. +The codebase extends QEMU with iOS-specific machine and device models for XNU kernel emulation on ARM64. +It is mainly useful for iOS security researchers and kernel exploit developers studying XNU internals and iOS runtime behavior in an emulated environment. diff --git a/description/allthingsida/idacpp/description_en.txt b/description/allthingsida/idacpp/description_en.txt new file mode 100644 index 00000000..0fc13a20 --- /dev/null +++ b/description/allthingsida/idacpp/description_en.txt @@ -0,0 +1,4 @@ +This project is a C++ scripting plugin for IDA Pro that embeds a Cling/Clang 20-based C++ interpreter directly into IDA's scripting engine. +It provides native access to the full IDA SDK and Hex-Rays APIs in a REPL, using the same types (ea_t, func_t*, cfunc_t*) as compiled plugins without FFI or bindings. +The plugin includes a snippet editor, output window REPL tab, and cross-platform support for Windows and macOS. +It is mainly useful for reverse engineers who want interactive C++ scripting in IDA Pro with direct SDK-level access. diff --git a/description/amruth-sn/kong/description_en.txt b/description/amruth-sn/kong/description_en.txt new file mode 100644 index 00000000..aec0f7a1 --- /dev/null +++ b/description/amruth-sn/kong/description_en.txt @@ -0,0 +1 @@ +This project is Kong, a tool for deobfuscating or analyzing obfuscated code, likely targeting mixed boolean-arithmetic (MBA) expressions or similar obfuscation patterns. It applies algebraic simplification, pattern matching, or symbolic execution to reduce complex obfuscated expressions back to their original simpler forms. It is aimed at reverse engineers and deobfuscation researchers working with MBA-obfuscated binaries and expressions. diff --git a/description/andreisss/KslDump/description_en.txt b/description/andreisss/KslDump/description_en.txt new file mode 100644 index 00000000..3f7c103a --- /dev/null +++ b/description/andreisss/KslDump/description_en.txt @@ -0,0 +1,4 @@ +This project extracts credentials from PPL-protected LSASS using only Microsoft-signed components already present on the system. +It exploits a vulnerable version of Microsoft Defender's KslD.sys driver that exposes IOCTL 0x222044 with sub-commands for arbitrary kernel memory read via MmCopyMemory and CPU control register disclosure for KASLR defeat. +The attack chain requires no external driver loading, as it points the service back to the old unpatched driver binary left on disk by Microsoft. +It is mainly useful for security researchers studying BYOVD-style attacks using vendor-shipped vulnerable drivers and PPL bypass techniques. diff --git a/description/aosp-mirror/kernel_common/description_en.txt b/description/aosp-mirror/kernel_common/description_en.txt new file mode 100644 index 00000000..8cb54686 --- /dev/null +++ b/description/aosp-mirror/kernel_common/description_en.txt @@ -0,0 +1 @@ +Official AOSP Generic Kernel Image (GKI) common kernel mirror that serves as the shared upstream base all Android device vendors build upon, containing the core kernel source with Android-specific patches, Bazel build integration, and Rust toolchain support used to study kernel attack surfaces and defense mechanisms across the Android ecosystem. diff --git a/description/astean1001/ProMBA/description_en.txt b/description/astean1001/ProMBA/description_en.txt new file mode 100644 index 00000000..61f367aa --- /dev/null +++ b/description/astean1001/ProMBA/description_en.txt @@ -0,0 +1 @@ +This project is ProMBA, a tool for deobfuscating Mixed Boolean-Arithmetic (MBA) expressions. It applies algebraic simplification techniques, pattern matching, and synthesis-based approaches to reduce complex MBA-obfuscated expressions back to their simpler original forms. The tool handles linear and polynomial MBA transformations commonly used by VM-based protectors. It is aimed at reverse engineers and deobfuscation researchers tackling MBA-obfuscated code in protected binaries. diff --git a/description/atenfyr/UAssetGUI/description_en.txt b/description/atenfyr/UAssetGUI/description_en.txt new file mode 100644 index 00000000..33c2b795 --- /dev/null +++ b/description/atenfyr/UAssetGUI/description_en.txt @@ -0,0 +1 @@ +This project is UAssetGUI, a GUI tool for viewing and editing Unreal Engine .uasset and .umap files. It parses the UAsset binary format and displays exports, imports, name maps, property data, and asset metadata in an interactive tree view with editing capabilities. The C# application supports multiple Unreal Engine versions from UE4 through UE5. It is aimed at Unreal Engine modders and game researchers who need to inspect or modify cooked asset files without the Unreal Editor. diff --git a/description/atombottle/cs2_kvm_dma/description_en.txt b/description/atombottle/cs2_kvm_dma/description_en.txt new file mode 100644 index 00000000..e1120465 --- /dev/null +++ b/description/atombottle/cs2_kvm_dma/description_en.txt @@ -0,0 +1 @@ +This project is a CS2 (Counter-Strike 2) cheat that operates from a KVM virtual machine using DMA (Direct Memory Access) for memory reading. It runs the cheat logic in a separate VM or host OS, accessing the game's physical memory through DMA hardware or KVM's memory mapping, rendering radar or ESP information outside the game's OS. This architecture makes the cheat invisible to the game's anti-cheat running inside the guest VM. It is aimed at security researchers studying KVM/DMA-based cheat architectures and their detection challenges. diff --git a/description/atrexus/vulkan/description_en.txt b/description/atrexus/vulkan/description_en.txt new file mode 100644 index 00000000..492067e5 --- /dev/null +++ b/description/atrexus/vulkan/description_en.txt @@ -0,0 +1,4 @@ +This project is a PE image dumper designed for processes protected by dynamic code encryption such as Hyperion and Theia anti-tamper solutions. +It restores encrypted PE images by iteratively resolving NOACCESS pages until the target module is decrypted, with configurable decryption factor thresholds and import resolution support. +The C++ tool has been tested on Roblox and The Finals, and also works for dumping regular images and loaded modules from memory. +It is mainly useful for reverse engineers and game security researchers studying anti-tamper protections and PE dumping techniques for encrypted executables. diff --git a/description/attilathedud/CoD_Hacks/description_en.txt b/description/attilathedud/CoD_Hacks/description_en.txt new file mode 100644 index 00000000..dc421ba8 --- /dev/null +++ b/description/attilathedud/CoD_Hacks/description_en.txt @@ -0,0 +1,4 @@ +This project is a collection of game hacks for Call of Duty v1.5 demonstrating various cheat implementation techniques. +It includes Desk.dll (a multi-hack with wallhack, chams, night-mode, and no-fog), an internal ESP using world-to-screen hooking, OpenGL wallhack via glDrawElements hooking, a syscall-based internal wallhack, and a trainer with pattern scanning. +The C++ codebase covers both internal DLL injection and external trainer approaches with detailed screenshots. +It is mainly useful for game security researchers studying classic FPS cheat architectures including OpenGL hooking, game loop interception, and pattern-based memory scanning. diff --git a/description/atulkunal999/pubg_mobile_memory_hacking/description_en.txt b/description/atulkunal999/pubg_mobile_memory_hacking/description_en.txt new file mode 100644 index 00000000..6c5c5f4b --- /dev/null +++ b/description/atulkunal999/pubg_mobile_memory_hacking/description_en.txt @@ -0,0 +1,4 @@ +This project is a PUBG Mobile cheat for the Gameloop emulator with ESP and aimbot functionality implemented in C++. +It uses a kernel driver for memory access, DirectX-based overlay rendering for ESP display, and includes the full Unreal Engine SDK headers for game structure access. +The codebase covers driver loading with DSEFix, x64 build configuration, and window detection through process enumeration. +It is mainly useful for game security researchers studying mobile game cheat implementations on PC emulators with kernel-level memory access. diff --git a/description/australeo/libipt-rs/description_en.txt b/description/australeo/libipt-rs/description_en.txt new file mode 100644 index 00000000..306e1a69 --- /dev/null +++ b/description/australeo/libipt-rs/description_en.txt @@ -0,0 +1,4 @@ +This project is a Rust library for interacting with the Windows built-in Intel Processor Trace (IPT) driver from user mode. +It provides APIs to start, stop, and retrieve IPT traces through DeviceIoControl calls to the ipt.sys driver, based on reverse engineering of the current Windows IPT driver interface. +The library focuses on driver interaction only and does not include IPT trace parsing or coverage analysis functionality. +It is mainly useful for security researchers and anti-cheat analysts studying hardware-assisted code tracing on Windows via Intel PT. diff --git a/description/ax/apk.sh/description_en.txt b/description/ax/apk.sh/description_en.txt new file mode 100644 index 00000000..8defe046 --- /dev/null +++ b/description/ax/apk.sh/description_en.txt @@ -0,0 +1,4 @@ +This project is a Bash script that automates Android APK reverse engineering tasks including pulling, decoding, rebuilding, and patching APKs. +It uses apktool for disassembly and rebuilding, supports Frida gadget injection for runtime instrumentation, handles app bundles and split APKs by combining them into a single APK, and signs the result with apksigner. +The tool supports multiple architectures (arm, arm64, x86, x86_64) and works without requiring a rooted Android device. +It is mainly useful for mobile security researchers and reverse engineers performing Android app analysis and Frida-based instrumentation. diff --git a/description/axelmierczuk/tenrec/description_en.txt b/description/axelmierczuk/tenrec/description_en.txt new file mode 100644 index 00000000..5375857e --- /dev/null +++ b/description/axelmierczuk/tenrec/description_en.txt @@ -0,0 +1,4 @@ +This project is a headless, extendable, multi-session MCP framework for IDA Pro built with ida-domain and FastMCP. +It supports simultaneous analysis of multiple binaries and includes built-in plugins for functions, cross-references, symbol naming, comments, strings, segments, byte patching, types, and entry points. +The Python package is extensible through custom plugins via entry points and provides auto-generated documentation. +It is mainly useful for reverse engineers seeking AI-integrated, headless IDA Pro analysis through the Model Context Protocol. diff --git a/description/axhlzy/Il2CppHookScripts/description_en.txt b/description/axhlzy/Il2CppHookScripts/description_en.txt new file mode 100644 index 00000000..a2defd15 --- /dev/null +++ b/description/axhlzy/Il2CppHookScripts/description_en.txt @@ -0,0 +1,4 @@ +This project is a Frida-based runtime parsing and hooking framework for Unity IL2CPP games, published as the il2cpp-hooker npm package. +It provides runtime parsing of IL2CPP methods, classes, fields, and instances, batch hooking utilities, function return value modification, object hierarchy printing, disassembly with method info, and QBDI-based function emulation. +The TypeScript codebase includes JNI RegisterNatives hooking, Il2CppMethod inspection, game object detail display, and an MCP companion version. +It is mainly useful for mobile game security researchers and reverse engineers performing runtime analysis and instrumentation of Unity IL2CPP games with Frida. diff --git a/description/axhlzy/PyAsmPatch/description_en.txt b/description/axhlzy/PyAsmPatch/description_en.txt new file mode 100644 index 00000000..c3790e34 --- /dev/null +++ b/description/axhlzy/PyAsmPatch/description_en.txt @@ -0,0 +1,4 @@ +This project is a Python-based inline hooking tool for ARM ELF binaries, specifically targeting Unity IL2CPP shared libraries (libil2cpp.so). +It uses LIEF for ELF manipulation, Keystone for assembly, and Capstone for disassembly to merge code sections, patch GOT tables, and inject inline hooks with register inspection and LDR instruction fixup. +The tool supports hooking InitArray functions, adding breakpoints for IDA debugging, and calling wrapped Android native functions like android_log_print and mprotect. +It is mainly useful for mobile game security researchers performing static binary patching and inline hook injection on Unity IL2CPP games. diff --git a/description/azerothcore/azerothcore-wotlk/description_en.txt b/description/azerothcore/azerothcore-wotlk/description_en.txt new file mode 100644 index 00000000..63ed86a0 --- /dev/null +++ b/description/azerothcore/azerothcore-wotlk/description_en.txt @@ -0,0 +1 @@ +This project is AzerothCore, an open-source World of Warcraft server emulator for the Wrath of the Lich King (3.3.5a) expansion. The C++ codebase implements the complete game server including world simulation, player management, NPC AI, scripting engine, database-driven content, and network protocol handling compatible with WoW 3.3.5a clients. It features a modular architecture with Eluna Lua scripting support. It is aimed at game server developers, WoW private server operators, and researchers studying MMO server architecture. diff --git a/description/b1scoito/cozinha_loader/description_en.txt b/description/b1scoito/cozinha_loader/description_en.txt new file mode 100644 index 00000000..3e02df15 --- /dev/null +++ b/description/b1scoito/cozinha_loader/description_en.txt @@ -0,0 +1 @@ +This project is Cozinha Loader, a CS:GO cheat loader in C++ that handles DLL injection with anti-detection measures. It downloads cheat modules from a remote server, implements process hollowing or manual mapping injection, and includes anti-debugging checks, string encryption, and import obfuscation to evade anti-cheat scanning. It is aimed at game security researchers studying cheat loader anti-detection techniques and injection workflows. diff --git a/description/b4rtik/ATPMiniDump/description_en.txt b/description/b4rtik/ATPMiniDump/description_en.txt new file mode 100644 index 00000000..2bf915d0 --- /dev/null +++ b/description/b4rtik/ATPMiniDump/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on aTPMiniDump Callback. +It is primarily written in C and C/C++ and centers on memory analysis. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / windows ring3 callback area. diff --git a/description/backengineering/POC-ExFlushTb/description_en.txt b/description/backengineering/POC-ExFlushTb/description_en.txt new file mode 100644 index 00000000..a4acfd3a --- /dev/null +++ b/description/backengineering/POC-ExFlushTb/description_en.txt @@ -0,0 +1,3 @@ +This project is a POC for monitoring Tb. +It is primarily written in C++ and centers on asset pipelines. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring0 area. diff --git a/description/backengineering/VDM/description_en.txt b/description/backengineering/VDM/description_en.txt new file mode 100644 index 00000000..e9852e91 --- /dev/null +++ b/description/backengineering/VDM/description_en.txt @@ -0,0 +1 @@ +This project is VDM (Voyager Driver Manager), a C++ library for exploiting vulnerable signed drivers to gain arbitrary physical memory read/write and kernel code execution on Windows. It provides a clean API over multiple vulnerable driver backends (gdrv, cpuz, etc.) to read/write physical memory, translate virtual addresses, and execute shellcode in kernel mode. The library is designed as a modular backend for tools like kdmapper, msrexec, and bluepill. It is aimed at kernel exploitation researchers studying BYOVD attack primitives and building kernel-level tooling. diff --git a/description/backengineering/Voyager/description_en.txt b/description/backengineering/Voyager/description_en.txt new file mode 100644 index 00000000..2ca76318 --- /dev/null +++ b/description/backengineering/Voyager/description_en.txt @@ -0,0 +1,3 @@ +This project is a Hyper-V Hacking Framework For Windows 10 x64 (AMD & Intel. +This project works on all versions of Windows 10-x64 (2004-1507). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/backengineering/msrexec/description_en.txt b/description/backengineering/msrexec/description_en.txt new file mode 100644 index 00000000..c7512030 --- /dev/null +++ b/description/backengineering/msrexec/description_en.txt @@ -0,0 +1 @@ +This project is a C++ library that escalates arbitrary MSR (Model Specific Register) write primitives to full kernel code execution on Windows. It leverages LSTAR MSR overwrites to redirect the syscall handler entry point, allowing controlled kernel shellcode execution from user mode. The library integrates with VDM (Voyager) and bluepill backends for obtaining the initial MSR write capability. It is aimed at low-level security researchers studying MSR-based kernel exploitation and privilege escalation techniques. diff --git a/description/bad-antics/rce-shield/description_en.txt b/description/bad-antics/rce-shield/description_en.txt new file mode 100644 index 00000000..36289e8c --- /dev/null +++ b/description/bad-antics/rce-shield/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on rCE hardening toolkit for PC gamers. +It detects, prevents, and remediates Remote Code Execution (RCE) vulnerabilities in game launchers, mod loaders, overlay software, voice chat clients, and gaming peripherals. +It is mainly useful for tooling developers and reverse engineers working in the game tools area. diff --git a/description/badApple001/Il2cppEncrtypt/description_en.txt b/description/badApple001/Il2cppEncrtypt/description_en.txt new file mode 100644 index 00000000..fdeb03a4 --- /dev/null +++ b/description/badApple001/Il2cppEncrtypt/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / game engine protection:unity and centers on il2cpp encrtypt. +It is primarily written in C++ and C/C++ and centers on asset pipelines, plugin development, and Unity. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / game engine protection:unity area. diff --git a/description/badabing2005/PixelFlasher/description_en.txt b/description/badabing2005/PixelFlasher/description_en.txt new file mode 100644 index 00000000..ac9b9a82 --- /dev/null +++ b/description/badabing2005/PixelFlasher/description_en.txt @@ -0,0 +1 @@ +Cross-platform GUI application for flashing Google Pixel phones that supports bootloader unlocking, factory and OTA image flashing, Magisk/KernelSU/APatch rooting, boot image patching, and backup management, distributed as a self-contained Python-built executable requiring no runtime dependencies on the host system. diff --git a/description/badhive/stitch/description_en.txt b/description/badhive/stitch/description_en.txt new file mode 100644 index 00000000..adb3e698 --- /dev/null +++ b/description/badhive/stitch/description_en.txt @@ -0,0 +1 @@ +This project is a C++ binary rewriting and obfuscation framework for x86 code. It provides function relocation, global reference patching, complex obfuscation transformations, and branch handling through CMake-built examples demonstrating various code manipulation techniques. It is mainly useful for binary protection researchers and reverse engineers studying x86 code obfuscation and binary rewriting methodologies. diff --git a/description/banteg/bn/description_en.txt b/description/banteg/bn/description_en.txt new file mode 100644 index 00000000..197d454d --- /dev/null +++ b/description/banteg/bn/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on binary ninja cli for agents. +It is primarily written in Python and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/barry-ran/QtScrcpy/description_en.txt b/description/barry-ran/QtScrcpy/description_en.txt new file mode 100644 index 00000000..42f25375 --- /dev/null +++ b/description/barry-ran/QtScrcpy/description_en.txt @@ -0,0 +1 @@ +This project is QtScrcpy, a Qt-based GUI application for displaying and controlling Android devices from a PC over USB or TCP/IP. It uses scrcpy's server component to capture the device screen via MediaCodec and streams it to the desktop with low latency, supporting keyboard/mouse input, file drag-and-drop, screen recording, and multi-device management. The C++ application works without requiring root access on the Android device. It is aimed at Android developers, testers, and users wanting to mirror and control Android devices from desktop. diff --git a/description/basil00/Divert/description_en.txt b/description/basil00/Divert/description_en.txt new file mode 100644 index 00000000..c924a05d --- /dev/null +++ b/description/basil00/Divert/description_en.txt @@ -0,0 +1 @@ +This project is WinDivert, a Windows packet capture and diversion library that allows user-mode applications to intercept, modify, drop, or inject network packets in real time. It operates through a kernel driver that hooks into the Windows network stack using WFP (Windows Filtering Platform), supporting layer-based filtering by IP addresses, ports, protocols, and packet direction. The C library provides both sniffing and active packet manipulation capabilities. It is aimed at network security developers building firewalls, NAT solutions, packet analyzers, and network tunneling tools on Windows. diff --git a/description/batusan/Hardened-qemu/description_en.txt b/description/batusan/Hardened-qemu/description_en.txt new file mode 100644 index 00000000..d34a9cc6 --- /dev/null +++ b/description/batusan/Hardened-qemu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hidden QEMU. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/bavulapati/DXGICaptureApplication/description_en.txt b/description/bavulapati/DXGICaptureApplication/description_en.txt new file mode 100644 index 00000000..c231bf79 --- /dev/null +++ b/description/bavulapati/DXGICaptureApplication/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on capture Desktop. +It is primarily written in C/C++ and C++ and centers on shader work. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / screenshot area. diff --git a/description/bbfox0703/Mydev-Cheat-Engine-Tables/description_en.txt b/description/bbfox0703/Mydev-Cheat-Engine-Tables/description_en.txt new file mode 100644 index 00000000..1e3550c6 --- /dev/null +++ b/description/bbfox0703/Mydev-Cheat-Engine-Tables/description_en.txt @@ -0,0 +1 @@ +This project is a collection of Cheat Engine tables (.CT files) for various games. Each table contains pre-configured memory addresses, pointer chains, script-based cheats, and hotkey bindings for modifying game values such as health, currency, experience, and items. The tables are formatted for direct loading in Cheat Engine. It is aimed at game modders and casual game hackers who use Cheat Engine for single-player game modification. diff --git a/description/beakthoven/TrickyStore/description_en.txt b/description/beakthoven/TrickyStore/description_en.txt new file mode 100644 index 00000000..c64a16da --- /dev/null +++ b/description/beakthoven/TrickyStore/description_en.txt @@ -0,0 +1,3 @@ +This project is a trick of keystore. +Because of this, I decided to create a complete rewrite from scratch , based on. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/beamstar/cheatengine-mcp-bridge/description_en.txt b/description/beamstar/cheatengine-mcp-bridge/description_en.txt new file mode 100644 index 00000000..8ec611e1 --- /dev/null +++ b/description/beamstar/cheatengine-mcp-bridge/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP for Cheat Engine. +If you need help, remember that support and guidance are available through the community channels. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/beans42/epic-r6-v9/description_en.txt b/description/beans42/epic-r6-v9/description_en.txt new file mode 100644 index 00000000..772ffca6 --- /dev/null +++ b/description/beans42/epic-r6-v9/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:r6 and centers on epic r6 v9. +It is primarily written in C++ and centers on DirectX, rendering, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:r6 area. diff --git a/description/beehive-lab/mambo/description_en.txt b/description/beehive-lab/mambo/description_en.txt new file mode 100644 index 00000000..746002c9 --- /dev/null +++ b/description/beehive-lab/mambo/description_en.txt @@ -0,0 +1 @@ +This project is MAMBO, a low-overhead dynamic binary instrumentation framework for ARM and AArch64 on Linux. It translates and instruments machine code at runtime using a software code cache, supporting instruction-level callbacks, basic block tracing, function interception, and custom analysis plugins. The C framework operates transparently on unmodified binaries. It is aimed at security researchers, performance analysts, and tool builders needing lightweight binary instrumentation on ARM platforms. diff --git a/description/benanil/Castle-Engine/description_en.txt b/description/benanil/Castle-Engine/description_en.txt new file mode 100644 index 00000000..ac2359b0 --- /dev/null +++ b/description/benanil/Castle-Engine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dX11. +It is primarily written in C/C++ and C++ and centers on DirectX, shader work, and rendering. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/benjinx/Toon/description_en.txt b/description/benjinx/Toon/description_en.txt new file mode 100644 index 00000000..2441c66d --- /dev/null +++ b/description/benjinx/Toon/description_en.txt @@ -0,0 +1,3 @@ +This project is a modular C++ Game Engine, designed to easily create Graphics demos. +It is primarily written in C++ and C/C++ and centers on driver development, OpenGL, and Vulkan. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/benui-dev/UE-BUIValidator/description_en.txt b/description/benui-dev/UE-BUIValidator/description_en.txt new file mode 100644 index 00000000..509a16a2 --- /dev/null +++ b/description/benui-dev/UE-BUIValidator/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on uE4 UI Texture Validator Plugin. +Each rule allows multiple values for a given setting. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unreal area. diff --git a/description/bevyengine/bevy/description_en.txt b/description/bevyengine/bevy/description_en.txt new file mode 100644 index 00000000..cd00a01c --- /dev/null +++ b/description/bevyengine/bevy/description_en.txt @@ -0,0 +1,3 @@ +This project is a refreshingly simple data-driven game engine built in Rust. +It is free and open-source forever! +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/binarly-io/idapcode/description_en.txt b/description/binarly-io/idapcode/description_en.txt new file mode 100644 index 00000000..9a4b0563 --- /dev/null +++ b/description/binarly-io/idapcode/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on displaying the P-Code for the current function. +It is primarily written in Python and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/binkynz/cstrike-hack/description_en.txt b/description/binkynz/cstrike-hack/description_en.txt new file mode 100644 index 00000000..9cd38d8f --- /dev/null +++ b/description/binkynz/cstrike-hack/description_en.txt @@ -0,0 +1,3 @@ +This project is a C++ hack for the video game: Counter-Strike Global Offensive. +It is primarily written in C/C++ and C++ and centers on rendering, networking, and animation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/binsnake/KUBERA/description_en.txt b/description/binsnake/KUBERA/description_en.txt new file mode 100644 index 00000000..76613dac --- /dev/null +++ b/description/binsnake/KUBERA/description_en.txt @@ -0,0 +1,3 @@ +This project is a x86 environment emulator for Windows user and kernel binaries. +It is aiming to be platform-independent and designed for research. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dynamic binary instrumentation area. diff --git a/description/bit-paper/sakura/description_en.txt b/description/bit-paper/sakura/description_en.txt new file mode 100644 index 00000000..c6d2f0f2 --- /dev/null +++ b/description/bit-paper/sakura/description_en.txt @@ -0,0 +1,3 @@ +This project is a free and public cheat for Counter-Strike 1.6 written in C++. +It is primarily written in C/C++ and C++ and centers on anti-cheat research, DirectX, and OpenGL. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs1.6 area. diff --git a/description/bitdefender/river/description_en.txt b/description/bitdefender/river/description_en.txt new file mode 100644 index 00000000..07ab5789 --- /dev/null +++ b/description/bitdefender/river/description_en.txt @@ -0,0 +1 @@ +This project is RIVER (Runtime Inspector and Versatile Engine for Reversing), a dynamic binary analysis framework by Bitdefender. It includes a binary loader supporting both ELF and PE formats, external mapping, native import resolution, and instrumentation capabilities for runtime analysis of x86 executables. It is mainly useful for binary analysis researchers and malware analysts studying dynamic instrumentation and binary loading frameworks. diff --git a/description/bkaradzic/bgfx/description_en.txt b/description/bkaradzic/bgfx/description_en.txt new file mode 100644 index 00000000..53c48f69 --- /dev/null +++ b/description/bkaradzic/bgfx/description_en.txt @@ -0,0 +1 @@ +This project is bgfx, a cross-platform rendering library that provides a thin abstraction over multiple graphics APIs including Direct3D 9/11/12, Metal, OpenGL, OpenGL ES, Vulkan, and WebGPU. It offers a unified API for draw call submission, shader management, texture handling, compute dispatches, and render state management, allowing applications to target all major platforms with a single codebase. The C/C++ library includes a shader cross-compiler (shaderc) based on GLSL. It is aimed at game engine developers and graphics programmers needing portable low-level rendering across platforms. diff --git a/description/blackhades00/PareidoliaTriggerbot/description_en.txt b/description/blackhades00/PareidoliaTriggerbot/description_en.txt new file mode 100644 index 00000000..2c47eb0d --- /dev/null +++ b/description/blackhades00/PareidoliaTriggerbot/description_en.txt @@ -0,0 +1,3 @@ +This project is a hypervisor-based, external Widowmaker triggerbot which uses the VivienneVMM and MouClassInputInjection projects to bypass the Overwatch Anti-Cheat. +This hack has remained undetected since its initial completion in early 2018. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/blacktop/ida-mcp-rs/description_en.txt b/description/blacktop/ida-mcp-rs/description_en.txt new file mode 100644 index 00000000..11192f71 --- /dev/null +++ b/description/blacktop/ida-mcp-rs/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on headless IDA Pro MCP server. +It is primarily written in Rust and centers on reverse engineering, modding, and memory analysis. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/blaquee/dllnotif/description_en.txt b/description/blaquee/dllnotif/description_en.txt new file mode 100644 index 00000000..dea1d247 --- /dev/null +++ b/description/blaquee/dllnotif/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dllNotification. +It is primarily written in C++ and C/C++ and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / windows ring3 callback area. diff --git a/description/blendi-remade/sprite-sheet-creator/description_en.txt b/description/blendi-remade/sprite-sheet-creator/description_en.txt new file mode 100644 index 00000000..7b07fe5e --- /dev/null +++ b/description/blendi-remade/sprite-sheet-creator/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on aI 2D pixel-art sprite sheets & parallax backgrounds; fal.ai; Next.js; walk/jump/attack/idle, sandbox. +It is primarily written in TypeScript and JavaScript and centers on animation, asset pipelines, and modding. +It is mainly useful for game AI and tooling developers working in the ai area. diff --git a/description/bliutech/mbased/description_en.txt b/description/bliutech/mbased/description_en.txt new file mode 100644 index 00000000..4f808125 --- /dev/null +++ b/description/bliutech/mbased/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on practical Simplifications of Mixed Boolean-Arithmetic Obfuscation. +It serves the purpose of making code more difficult to analyze, protecting software from reverse engineering and tampering. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / mixed boolean-arithmetic area. diff --git a/description/block/stoic/description_en.txt b/description/block/stoic/description_en.txt new file mode 100644 index 00000000..c2c1a073 --- /dev/null +++ b/description/block/stoic/description_en.txt @@ -0,0 +1 @@ +Developer tool by Block that injects code into any debuggable Android process (API 26+) via JVMTI without modifying its APK, enabling live method hooking, heap object inspection, and internal API calls through a Kotlin/Java plugin system with first-attach latency under three seconds and sub-second subsequent connections. diff --git a/description/bloesway/csgo_sdk/description_en.txt b/description/bloesway/csgo_sdk/description_en.txt new file mode 100644 index 00000000..5641927e --- /dev/null +++ b/description/bloesway/csgo_sdk/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK. +It is primarily written in C++ and C/C++ and centers on rendering, networking, and animation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/bluecapesecurity/PWF/description_en.txt b/description/bluecapesecurity/PWF/description_en.txt new file mode 100644 index 00000000..a12b6203 --- /dev/null +++ b/description/bluecapesecurity/PWF/description_en.txt @@ -0,0 +1 @@ +This project is the Personal Windows Forensics toolkit, a collection of scripts and tools for performing forensic analysis on Windows systems. It provides utilities for artifact collection, timeline generation, registry analysis, and evidence preservation in incident response scenarios. The toolkit bundles multiple forensic utilities into a streamlined workflow. It is aimed at digital forensics practitioners and incident responders performing Windows-based investigations. diff --git a/description/bluefrostsecurity/CVE-2020-0041/description_en.txt b/description/bluefrostsecurity/CVE-2020-0041/description_en.txt new file mode 100644 index 00000000..b37d90f8 --- /dev/null +++ b/description/bluefrostsecurity/CVE-2020-0041/description_en.txt @@ -0,0 +1 @@ +Complete exploit chain for CVE-2020-0041 by Blue Frost Security, comprising both a Chrome renderer sandbox escape that abuses Binder IPC from a compromised web process and a local privilege escalation through binder node manipulation to achieve full kernel root, demonstrated end-to-end on Pixel 3 with accompanying technical blog posts. diff --git a/description/bmax121/APatch/description_en.txt b/description/bmax121/APatch/description_en.txt new file mode 100644 index 00000000..00440598 --- /dev/null +++ b/description/bmax121/APatch/description_en.txt @@ -0,0 +1,3 @@ +This project is the patching of Android kernel and Android system. +The SuperKey has higher privileges than root access. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android root area. diff --git a/description/bmax121/KernelPatch/description_en.txt b/description/bmax121/KernelPatch/description_en.txt new file mode 100644 index 00000000..fa451483 --- /dev/null +++ b/description/bmax121/KernelPatch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hooking the Linux kernel. +It is primarily written in C/C++ and C and centers on kernel-level work, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hook area. diff --git a/description/bmharper/WindowsDesktopDuplicationSample/description_en.txt b/description/bmharper/WindowsDesktopDuplicationSample/description_en.txt new file mode 100644 index 00000000..e4d3d016 --- /dev/null +++ b/description/bmharper/WindowsDesktopDuplicationSample/description_en.txt @@ -0,0 +1 @@ +This project is a sample application demonstrating the Windows Desktop Duplication API (DXGI Output Duplication) for capturing the desktop screen content. It shows how to acquire frames from the desktop compositor, access pixel data, handle cursor rendering, and detect dirty/moved regions for efficient screen capture. The C++ sample uses DirectX 11 and DXGI 1.2. It is aimed at developers building screen capture tools, remote desktop applications, or screenshot-based anti-cheat systems. diff --git a/description/bmjoy/Unity3D_Obfuscator/description_en.txt b/description/bmjoy/Unity3D_Obfuscator/description_en.txt new file mode 100644 index 00000000..403891f3 --- /dev/null +++ b/description/bmjoy/Unity3D_Obfuscator/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / game engine protection:unity and centers on unity3 d obfuscator. +It is primarily written in C# and centers on Unity and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / game engine protection:unity area. diff --git a/description/bobeff/open-source-engines/description_en.txt b/description/bobeff/open-source-engines/description_en.txt new file mode 100644 index 00000000..3950609c --- /dev/null +++ b/description/bobeff/open-source-engines/description_en.txt @@ -0,0 +1,3 @@ +This project is A list of open source game engines. +**raylib** - A simple and easy-to-use library to enjoy videogames programming. +It is mainly useful for game developers, engine programmers, and graphics researchers working on rendering and graphics in the game engine / guide area. diff --git a/description/bobeff/open-source-games/description_en.txt b/description/bobeff/open-source-games/description_en.txt new file mode 100644 index 00000000..6697b992 --- /dev/null +++ b/description/bobeff/open-source-games/description_en.txt @@ -0,0 +1,3 @@ +This project provides a list of open source games. +Commander Keen (1-6, Dreams) and Cosmo's Cosmic series which allows you to play the original episodes and some of the mods made for them. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / guide area. diff --git a/description/boltgolt/boltobserv/description_en.txt b/description/boltgolt/boltobserv/description_en.txt new file mode 100644 index 00000000..d144d1c4 --- /dev/null +++ b/description/boltgolt/boltobserv/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on radar. +The player slot number is shown as clear as possible on top of each dot. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/bombomby/optick/description_en.txt b/description/bombomby/optick/description_en.txt new file mode 100644 index 00000000..8c70bbb8 --- /dev/null +++ b/description/bombomby/optick/description_en.txt @@ -0,0 +1,3 @@ +Optick is a C++ game performance profiler featuring a lightweight in-game instrumentation SDK and a WPF-based GUI viewer that captures per-frame CPU timing, GPU events (D3D12/Vulkan), thread scheduling, context switches, and hardware counters via ETW on Windows. +The SDK supports Unreal Engine 4/5, Unity, and custom engines through macros like OPTICK_EVENT/OPTICK_FRAME, communicates capture data over TCP sockets to the viewer, and provides flame graphs, per-thread timelines, call-stack sampling, and frame-comparison analysis with task-tracker integrations (GitHub, Jira). +It is mainly useful for game developers and engine programmers profiling rendering, physics, and gameplay systems to identify CPU/GPU bottlenecks. diff --git a/description/boowampp/ApexDmaCheatUpdated/description_en.txt b/description/boowampp/ApexDmaCheatUpdated/description_en.txt new file mode 100644 index 00000000..ee871eb7 --- /dev/null +++ b/description/boowampp/ApexDmaCheatUpdated/description_en.txt @@ -0,0 +1 @@ +This project is a DMA-based external cheat for Apex Legends that uses the PCILeech/MemProcFS framework for remote memory access through FPGA hardware. The C++ codebase includes aimbot with configurable FOV and smoothing, recoil compensation, ESP rendering, camera calculations, and a DMA memory library with input management, registry access, and shellcode injection support. It is mainly useful for DMA security researchers studying hardware-based game memory access and anti-cheat evasion techniques. diff --git a/description/borzacchiello/seninja/description_en.txt b/description/borzacchiello/seninja/description_en.txt new file mode 100644 index 00000000..d4582270 --- /dev/null +++ b/description/borzacchiello/seninja/description_en.txt @@ -0,0 +1 @@ +This project is SENinja, a symbolic execution plugin for Binary Ninja. It implements a symbolic execution engine that explores program paths symbolically, tracking constraints on input values, detecting unreachable code, and identifying conditions required to reach specific program locations. The Python plugin integrates with Binary Ninja's IL and provides an interactive UI for controlling symbolic exploration. It is aimed at vulnerability researchers and reverse engineers using symbolic execution for path analysis and constraint solving in binary analysis. diff --git a/description/boxqkrtm/com.unity.ide.cursor/description_en.txt b/description/boxqkrtm/com.unity.ide.cursor/description_en.txt new file mode 100644 index 00000000..4381aaab --- /dev/null +++ b/description/boxqkrtm/com.unity.ide.cursor/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on code editor integration for supporting Cursor as code editor for unity. +It is primarily written in C# and C/C++ and centers on editor tooling, plugin development, and Unity. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unity area. diff --git a/description/boylin0/AVA-Hack/description_en.txt b/description/boylin0/AVA-Hack/description_en.txt new file mode 100644 index 00000000..00f97e9d --- /dev/null +++ b/description/boylin0/AVA-Hack/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:ava and centers on ava hack. +It is primarily written in C/C++ and C++ and centers on DirectX, OpenGL, and Vulkan. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:ava area. diff --git a/description/br-sn/CheekyBlinder/description_en.txt b/description/br-sn/CheekyBlinder/description_en.txt new file mode 100644 index 00000000..355f9c54 --- /dev/null +++ b/description/br-sn/CheekyBlinder/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on enumerating and removing kernel callbacks using signed vulnerable drivers. +This program is a Proof of Concept that allows for the enumeration and modification of some of these kernel callbacks using a signed, vulnerable MSI driver. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/brackeen/glfm/description_en.txt b/description/brackeen/glfm/description_en.txt new file mode 100644 index 00000000..e5875095 --- /dev/null +++ b/description/brackeen/glfm/description_en.txt @@ -0,0 +1,4 @@ +This project is a C API for mobile app development with OpenGL ES and Metal, inspired by GLFW. +It supports iOS 9+, tvOS 9+, Android 4.1+, and WebGL via Emscripten, with features including OpenGL ES 2/3 and Metal display setup, retina/high-DPI support, touch and keyboard events, and sensor input (accelerometer, gyroscope, magnetometer). +The single-header library provides cross-platform windowing, input handling, and application lifecycle management for mobile and web platforms. +It is mainly useful for mobile game developers and cross-platform graphics programmers building OpenGL ES or Metal applications. diff --git a/description/bradharding/doomretro/description_en.txt b/description/bradharding/doomretro/description_en.txt new file mode 100644 index 00000000..1776e009 --- /dev/null +++ b/description/bradharding/doomretro/description_en.txt @@ -0,0 +1 @@ +This project is DOOM Retro, a classic DOOM source port for Windows written in C using SDL2. It enhances the original DOOM engine with widescreen rendering, uncapped framerate, improved lighting, texture filtering, gamepad support, and numerous bug fixes while preserving authentic gameplay feel. The port supports all original WAD formats, DeHackEd patches, and BOOM-compatible map features. It is aimed at classic FPS enthusiasts, DOOM modders, and game engine researchers studying idTech 1 engine modernization. diff --git a/description/brew02/BudgetEPT/description_en.txt b/description/brew02/BudgetEPT/description_en.txt new file mode 100644 index 00000000..df903cd7 --- /dev/null +++ b/description/brew02/BudgetEPT/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof-of-concept that uses supervisor-mode access prevention (SMAP) and supervisor-mode execution prevention (SMEP) to create inline hooks functionally similar to extended page table (EPT) hooks. +It demonstrates how CPU access control features can be repurposed to achieve split-page-like hooking behavior without requiring a hypervisor or actual EPT manipulation. +The kernel driver also includes a limited example of how software virtualization could complement these hooks to better conceal their presence. +It is mainly useful for kernel security researchers studying alternative hooking techniques, SMAP/SMEP abuse, and EPT hook emulation without virtualization. diff --git a/description/brew02/CovertThread/description_en.txt b/description/brew02/CovertThread/description_en.txt new file mode 100644 index 00000000..484dfdb2 --- /dev/null +++ b/description/brew02/CovertThread/description_en.txt @@ -0,0 +1,4 @@ +This project creates transparent system threads on Windows that are nearly invisible to system introspection by removing a loaded module from the system page tables. +It sets up a fully controlled custom address space with its own interrupt descriptor table (IDT) and prevents individual thread inspection via non-maskable interrupts (NMIs). +The Windows kernel driver supports creating threads from both outside and within the custom address space with direct function execution requiring no macros or wrapper calls. +It is mainly useful for kernel security researchers studying covert thread execution, page table manipulation, and anti-forensic techniques in Windows drivers. diff --git a/description/brew02/FastPFHook/description_en.txt b/description/brew02/FastPFHook/description_en.txt new file mode 100644 index 00000000..ff49254f --- /dev/null +++ b/description/brew02/FastPFHook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pF Hook. +FastPFHook parses and translates assembly instructions from a page containing the assembly instructions of the function that we want to hook and translates them to be executed on a separate page after a #PF exception is triggered and caught by an exception handler. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring0 area. diff --git a/description/brew02/KiUserExceptionDispatcherHook/description_en.txt b/description/brew02/KiUserExceptionDispatcherHook/description_en.txt new file mode 100644 index 00000000..5d6c283d --- /dev/null +++ b/description/brew02/KiUserExceptionDispatcherHook/description_en.txt @@ -0,0 +1,4 @@ +This project hooks KiUserExceptionDispatcher, the initial user-mode exception dispatcher called from the kernel, by modifying the Wow64PrepareForException function pointer stored in ntdll's .mrdata section. +It uses LdrProtectMrdata to unlock the protected MRDATA section and Zydis disassembler for dynamically locating the target function pointers within ntdll. +The C++ implementation demonstrates an alternative exception handler hooking technique that avoids traditional VEH chain manipulation. +It is mainly useful for Windows kernel and anti-cheat researchers studying user-mode exception dispatching internals and stealthy hook installation methods. diff --git a/description/brew02/MountSystemPartition/description_en.txt b/description/brew02/MountSystemPartition/description_en.txt new file mode 100644 index 00000000..e0709b8d --- /dev/null +++ b/description/brew02/MountSystemPartition/description_en.txt @@ -0,0 +1,4 @@ +This project demonstrates how to programmatically mount the hidden EFI system partition on Windows using only the Windows API. +It provides a clean C++ example of partition enumeration and mounting without requiring external tools or elevated command-line utilities. +The implementation serves as a reference for accessing the system partition from user-mode code on Windows systems. +It is mainly useful for UEFI security researchers and system-level developers who need programmatic access to the EFI system partition. diff --git a/description/bromoket/access_updated/description_en.txt b/description/bromoket/access_updated/description_en.txt new file mode 100644 index 00000000..84214f44 --- /dev/null +++ b/description/bromoket/access_updated/description_en.txt @@ -0,0 +1,4 @@ +This project is an updated fork of btbd/access that provides handle-free kernel-mode process operations by hooking the xKdEnumerateDebuggingDevices pointer for kernel-usermode communication. +It replaces hardcoded offsets with Zydis-based dynamic pattern finding for runtime discovery of kernel functions, supporting Windows 10 (1607+) through Windows 11 (24H2) in a single binary. +The kernel driver performs PROCESS_ALL_ACCESS operations without creating real handles, using a clean .data section hook with no inline patches. +It is mainly useful for kernel security researchers studying handleless process access, syscall hooking, and version-independent Windows kernel techniques. diff --git a/description/bromoket/x64dbg_mcp/description_en.txt b/description/bromoket/x64dbg_mcp/description_en.txt new file mode 100644 index 00000000..19873e28 --- /dev/null +++ b/description/bromoket/x64dbg_mcp/description_en.txt @@ -0,0 +1,4 @@ +This project is an MCP server that provides AI assistants with full control over the x64dbg debugger through 23 mega-tools covering 151 REST endpoints. +It supports stepping, breakpoints, memory operations, disassembly, tracing, anti-debug bypasses, control flow analysis, PE dumping, and is compatible with Claude, Cursor, Windsurf, and other MCP clients. +The TypeScript server uses Zod discriminated unions for type-safe endpoint mapping, with a native x64dbg plugin (.dp64/.dp32) bridging the debugger to the REST API. +It is mainly useful for reverse engineers seeking AI-augmented debugging workflows and automated binary analysis through x64dbg. diff --git a/description/bruce30262/TWindbg/description_en.txt b/description/bruce30262/TWindbg/description_en.txt new file mode 100644 index 00000000..b1c1e502 --- /dev/null +++ b/description/bruce30262/TWindbg/description_en.txt @@ -0,0 +1,4 @@ +This project is a PEDA-like debugger UI extension for WinDbg built using the pykd Python scripting engine. +It displays registers, disassembled code near the program counter, and stack contents with smart dereference on each step or trace, along with PEDA-style commands for memory inspection and symbol lookup. +The Python extension provides a GDB-PEDA-inspired debugging experience within the WinDbg environment for more comfortable exploit development and binary analysis. +It is mainly useful for Windows exploit developers and reverse engineers who prefer a PEDA-style debugging workflow in WinDbg. diff --git a/description/bruhmoment21/UniversalHookX/description_en.txt b/description/bruhmoment21/UniversalHookX/description_en.txt new file mode 100644 index 00000000..74295b76 --- /dev/null +++ b/description/bruhmoment21/UniversalHookX/description_en.txt @@ -0,0 +1,4 @@ +This project is a universal graphics API hooking library for Windows that supports rendering ImGui overlays across multiple rendering backends. +It hooks DirectX 9/9Ex, DirectX 10, DirectX 11, DirectX 12, OpenGL (via wglSwapBuffers), and Vulkan (via vkQueuePresentKHR) using dummy device creation to obtain vtable pointers for each backend. +The C++ DLL provides a unified architecture where each backend follows the same hooking pattern with configurable backend selection at compile time. +It is mainly useful for game security researchers and overlay developers studying graphics API interception and cross-backend ImGui rendering techniques. diff --git a/description/bruhmoment21/cs2-sdk/description_en.txt b/description/bruhmoment21/cs2-sdk/description_en.txt new file mode 100644 index 00000000..5a6e1b2a --- /dev/null +++ b/description/bruhmoment21/cs2-sdk/description_en.txt @@ -0,0 +1,4 @@ +This project is a Counter-Strike 2 SDK written in C++ that supports both Windows and Linux with DirectX 11 and Vulkan rendering backends. +It provides a simplified Source 2 SDK implementation kept close to the original engine code, with features for game manipulation and an ImGui-based menu system. +The cross-platform codebase supports DLL injection via LoadLibrary on Windows and dlopen on Linux, with manual mapping requiring specific compiler flags. +It is mainly useful for game security researchers studying Source 2 engine internals and CS2 SDK structures across multiple platforms. diff --git a/description/brunodev85/winlator/description_en.txt b/description/brunodev85/winlator/description_en.txt new file mode 100644 index 00000000..58a6e557 --- /dev/null +++ b/description/brunodev85/winlator/description_en.txt @@ -0,0 +1 @@ +This project is Winlator, an Android application that runs Windows x86/x64 applications and games on ARM-based Android devices. It combines Box86/Box64 for x86-to-ARM binary translation with Wine for Windows API compatibility, and includes a PRoot-based Linux container, Mesa Turnip or VirGL for GPU acceleration, and a virtual desktop environment with touch controls. It is aimed at Android users and developers interested in running Windows software on mobile devices and researchers studying cross-architecture binary translation. diff --git a/description/btbd/access/description_en.txt b/description/btbd/access/description_en.txt new file mode 100644 index 00000000..0205a4de --- /dev/null +++ b/description/btbd/access/description_en.txt @@ -0,0 +1,4 @@ +This project is a kernel-mode syscall wrapper that enables PROCESS_ALL_ACCESS operations on protected processes without creating real handles. +It hooks a syscall via .data section modification in the kernel and provides a user-mode DLL wrapper that transparently redirects privileged operations through the driver. +The implementation avoids structured exception handling (SEH) while still performing safe operations, tested against protected game processes like Fortnite. +It is mainly useful for game security researchers studying handleless kernel-mode process access and syscall hooking techniques for bypassing process protection. diff --git a/description/btbd/ddma/description_en.txt b/description/btbd/ddma/description_en.txt new file mode 100644 index 00000000..d622e214 --- /dev/null +++ b/description/btbd/ddma/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof-of-concept for using disk devices (HBA controllers) to perform DMA operations on Windows, bypassing hypervisor-level memory protections. +It demonstrates how native hypervisors like Hyper-V that allow unvirtualized device access enable SLAT (Second Level Address Translation) circumvention through ATA disk device DMA. +The kernel driver was demonstrated modifying Hyper-V at runtime on bare metal, though it only supports ATA and may be limited by 64-bit addressing capabilities of the HBA. +It is mainly useful for kernel and hypervisor security researchers studying disk-based DMA attacks and SLAT bypass techniques. diff --git a/description/btbd/hwid/description_en.txt b/description/btbd/hwid/description_en.txt new file mode 100644 index 00000000..381fa597 --- /dev/null +++ b/description/btbd/hwid/description_en.txt @@ -0,0 +1,4 @@ +This project is a hardware ID spoofer for Windows that modifies disk, volume, NIC, ARP, SMBIOS, boot, and GPU identifiers at the kernel level. +The kernel driver intercepts and modifies IOCTL responses to return spoofed hardware serial numbers and identifiers, while the user-mode component handles registry keys and common tracking files. +It was tested on Windows 10 versions from 1507 through 1903 and targets x64 systems, though NVME-specific IOCTLs are not handled. +It is mainly useful for game security researchers studying hardware fingerprinting techniques and HWID-based ban evasion methods. diff --git a/description/btbd/modmap/description_en.txt b/description/btbd/modmap/description_en.txt new file mode 100644 index 00000000..4df53432 --- /dev/null +++ b/description/btbd/modmap/description_en.txt @@ -0,0 +1,4 @@ +This project is a DLL manual mapper that extends a pre-existing module's size and maps the payload DLL into the extended region. +It forcefully allocates memory immediately after a target module's end, extends the module's size in its LDR entry to cover the new allocation, and maps the DLL into this region to appear as part of the legitimate module. +The kernel driver uses MiAllocateVad for memory allocation and LDR entry manipulation to make the injected module blend with the host process's module list. +It is mainly useful for game security researchers studying advanced manual mapping techniques that evade module enumeration-based detection. diff --git a/description/btbd/smap/description_en.txt b/description/btbd/smap/description_en.txt new file mode 100644 index 00000000..6135a798 --- /dev/null +++ b/description/btbd/smap/description_en.txt @@ -0,0 +1 @@ +This project is smap, a Windows kernel-mode shellcode mapper in C that loads position-independent shellcode into kernel memory using a vulnerable signed driver. Unlike full driver mappers, it operates on raw shellcode rather than PE images, making the mapped code harder to detect through PE signature scanning. The tool copies shellcode to kernel pool memory and executes it via the vulnerable driver's arbitrary execution primitive. It is aimed at kernel security researchers studying shellcode-based kernel payloads and detection evasion techniques. diff --git a/description/btbd/umap/description_en.txt b/description/btbd/umap/description_en.txt new file mode 100644 index 00000000..2461c5f5 --- /dev/null +++ b/description/btbd/umap/description_en.txt @@ -0,0 +1 @@ +This project is umap, a minimalist Windows kernel driver mapper in C that manually maps an unsigned driver into kernel memory. It uses a vulnerable signed driver for physical memory access to allocate kernel pool space, copy driver sections, process relocations, resolve imports, and invoke the mapped driver's entry point entirely from user mode. The mapper avoids creating registry traces or loading through standard driver loading paths. It is aimed at kernel researchers studying stealthy driver mapping techniques and their detection vectors. diff --git a/description/btbd/wpp/description_en.txt b/description/btbd/wpp/description_en.txt new file mode 100644 index 00000000..7ec45b12 --- /dev/null +++ b/description/btbd/wpp/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof-of-concept for intercepting driver DeviceControl calls by hijacking Windows WPP (Windows Software Trace Preprocessor) tracing infrastructure. +It modifies the WPP trace function pointer and control flags in drivers like disk.sys and mountmgr.sys, then identifies DeviceControl invocations via return address checks and IRP pointer extraction through stack walking or register capture. +The kernel driver demonstrates how .data section WPP pointers in system drivers can be repurposed for DeviceControl interception. +It is mainly useful for kernel security researchers studying unconventional driver hooking techniques and HWID spoofing via disk serial interception. diff --git a/description/bulletphysics/bullet3/description_en.txt b/description/bulletphysics/bullet3/description_en.txt new file mode 100644 index 00000000..6e5420b1 --- /dev/null +++ b/description/bulletphysics/bullet3/description_en.txt @@ -0,0 +1 @@ +This project is Bullet Physics SDK, an open-source real-time collision detection and multi-physics simulation library written in C++. It provides rigid body dynamics, soft body dynamics, vehicle simulation, character controllers, and constraint solving for games, robotics, visual effects, and scientific computing. The library includes GPU-accelerated broadphase via OpenCL and integrates with major game engines and simulation environments. It is aimed at game developers, robotics researchers, and VFX engineers implementing physics simulation. diff --git a/description/buzzer-re/NineS/description_en.txt b/description/buzzer-re/NineS/description_en.txt new file mode 100644 index 00000000..f0671ede --- /dev/null +++ b/description/buzzer-re/NineS/description_en.txt @@ -0,0 +1,4 @@ +This project is an ELF injector for the PlayStation 5 that manually maps ELF files into remote processes and executes them in remote threads. +It runs a TCP server on port 9033 that accepts a target process name and ELF payload, performing manual mapping including section loading, relocation processing, and thread creation within the target PS5 process. +The C codebase is built using John Törnblom's PS5 SDK and includes a Python helper script for sending injection payloads. +It is mainly useful for console security researchers studying PS5 process injection, ELF manual mapping, and remote code execution on FreeBSD-based game consoles. diff --git a/description/buzzer-re/Rikugan/description_en.txt b/description/buzzer-re/Rikugan/description_en.txt new file mode 100644 index 00000000..b54a795f --- /dev/null +++ b/description/buzzer-re/Rikugan/description_en.txt @@ -0,0 +1,4 @@ +This project is a reverse-engineering AI agent for IDA Pro and Binary Ninja that integrates multi-provider LLM support directly into the disassembler UI. +It features a generator-based agentic loop with streaming, in-process tool orchestration, automatic error recovery, plan mode for multi-step workflows, and context management without leaving the RE environment. +The Python plugin supports multiple LLM providers including cloud APIs and local Ollama installations, with a chat interface accessible via Ctrl+Shift+I. +It is mainly useful for reverse engineers seeking an embedded AI assistant for binary analysis that operates natively within IDA Pro or Binary Ninja. diff --git a/description/bytemyass/EFTLeecher/description_en.txt b/description/bytemyass/EFTLeecher/description_en.txt new file mode 100644 index 00000000..62fa58f0 --- /dev/null +++ b/description/bytemyass/EFTLeecher/description_en.txt @@ -0,0 +1,4 @@ +This project is a DMA-based cheat toolbox for Escape From Tarkov that reads game memory externally through FPGA hardware. +It includes features for visor effect removal, night/thermal vision effects, recoil elimination, stamina bypass, weight removal, and stealth injection with configurable settings through an INI file. +The C++ codebase uses MemProcFS for DMA memory access and supports map file loading and automatic disconnection for operational security. +It is mainly useful for DMA security researchers studying external game memory manipulation and anti-cheat evasion techniques in EFT. diff --git a/description/c3rb3ru5d3d53c/binlex/description_en.txt b/description/c3rb3ru5d3d53c/binlex/description_en.txt new file mode 100644 index 00000000..c8aeadda --- /dev/null +++ b/description/c3rb3ru5d3d53c/binlex/description_en.txt @@ -0,0 +1 @@ +This project is a binary pattern extraction and genetic trait analysis tool written in C++ and Rust. It disassembles PE, ELF, and raw binary files to extract function-level byte patterns and instruction traits that can be used for malware similarity analysis, YARA rule generation, and threat intelligence correlation. The tool supports multiple architectures and outputs patterns in JSON format for integration with analysis pipelines. It is aimed at malware analysts, threat intelligence researchers, and reverse engineers building detection signatures from binary artifacts. diff --git a/description/c4kef/UAC/description_en.txt b/description/c4kef/UAC/description_en.txt new file mode 100644 index 00000000..8845c876 --- /dev/null +++ b/description/c4kef/UAC/description_en.txt @@ -0,0 +1,4 @@ +This project is an anti-cheat development platform designed to help cheat developers detect weaknesses in their own implementations. +It includes a kernel-mode anti-cheat driver component built with Visual Studio that implements detection routines for common cheat techniques. +The C++ codebase provides a framework for testing and validating cheat detection methods from the kernel level. +It is mainly useful for anti-cheat engineers and game security researchers studying kernel-level cheat detection mechanisms and anti-cheat architecture. diff --git a/description/cakehonolulu/pciem/description_en.txt b/description/cakehonolulu/pciem/description_en.txt new file mode 100644 index 00000000..db103d5e --- /dev/null +++ b/description/cakehonolulu/pciem/description_en.txt @@ -0,0 +1,4 @@ +This project is a Linux kernel framework for creating synthetic userspace PCIe device emulation without requiring actual hardware. +It creates virtual PCIe devices that appear as legitimate PCI devices to the host OS, enabling PCIe driver development and testing entirely in software. +The kernel module uses novel techniques to populate synthetic cards in the PCI subsystem, differing from libvfio-user by operating directly on the host without requiring a VM or QEMU. +It is mainly useful for PCIe security researchers and DMA tool developers studying PCIe device emulation and driver interaction without physical hardware. diff --git a/description/can1357/NtLua/description_en.txt b/description/can1357/NtLua/description_en.txt new file mode 100644 index 00000000..cd6845fd --- /dev/null +++ b/description/can1357/NtLua/description_en.txt @@ -0,0 +1 @@ +This project is a proof of concept for running Lua scripts inside the Windows kernel. It embeds a Lua 5.4 interpreter into a kernel driver, exposing NT kernel APIs such as physical and virtual memory access, process enumeration, and MSR read/write to Lua scripts executing at ring 0. The C/C++ driver communicates with a user-mode client that sends Lua code for kernel-side evaluation. It is aimed at kernel researchers and exploit developers exploring scripted kernel introspection and the implications of running interpreted languages in privileged contexts. diff --git a/description/can1357/ThePerfectInjector/description_en.txt b/description/can1357/ThePerfectInjector/description_en.txt new file mode 100644 index 00000000..7485f550 --- /dev/null +++ b/description/can1357/ThePerfectInjector/description_en.txt @@ -0,0 +1 @@ +This project is a Windows DLL injector in C++ that uses a novel injection technique combining NtCreateThreadEx with a thread-safe shellcode stub that resolves LdrLoadDll at runtime. The injector crafts position-independent shellcode, allocates it in the target process, and creates a remote thread that loads the target DLL without relying on kernel32.LoadLibrary being at a fixed address. It handles edge cases like WoW64 injection and process creation flags. It is aimed at security researchers studying advanced DLL injection techniques and anti-cheat evasion. diff --git a/description/can1357/hvdetecc/description_en.txt b/description/can1357/hvdetecc/description_en.txt new file mode 100644 index 00000000..a6364dc5 --- /dev/null +++ b/description/can1357/hvdetecc/description_en.txt @@ -0,0 +1,4 @@ +This project demonstrates various techniques for detecting the presence of a hypervisor or virtual machine monitor on x86-64 systems. +It includes processor behavior tests, performance monitoring counter analysis, memory management and TLB anomaly detection, timing analysis using multiple sources including DRAM power utilization side-channels, MSR behavior checks, and interrupt handling tests. +The C++ codebase targets both Intel VMX and AMD SVM implementations, also detecting Type 1 hypervisors via SMBIOS, ACPI tables, and PCI enumeration. +It is mainly useful for anti-cheat and hypervisor security researchers studying VM detection techniques and virtualization evasion analysis. diff --git a/description/cansarigol/pdbr/description_en.txt b/description/cansarigol/pdbr/description_en.txt new file mode 100644 index 00000000..b098ee61 --- /dev/null +++ b/description/cansarigol/pdbr/description_en.txt @@ -0,0 +1 @@ +This project is pdbr, a tool for extracting symbol information from Microsoft PDB (Program Database) debug symbol files. It parses PDB streams to recover function names, type definitions, global variables, and source file references, outputting them in a readable format. The tool works standalone without requiring Visual Studio or the DIA SDK. It is aimed at reverse engineers and security researchers who need to extract debug symbol data from PDB files for binary analysis. diff --git a/description/canyie/MagiskEoP/description_en.txt b/description/canyie/MagiskEoP/description_en.txt new file mode 100644 index 00000000..c5a61eaa --- /dev/null +++ b/description/canyie/MagiskEoP/description_en.txt @@ -0,0 +1 @@ +This project is a proof-of-concept Android privilege escalation that demonstrates a vulnerability in Magisk's su daemon. It exploits a race condition or logic flaw in Magisk's root access granting mechanism to escalate privileges from an unprivileged app to root without user approval. The Java/C implementation documents the vulnerability and attack vector. It is aimed at Android security researchers studying Magisk internals and root management security. diff --git a/description/canyie/MagiskKiller/description_en.txt b/description/canyie/MagiskKiller/description_en.txt new file mode 100644 index 00000000..cbdd676f --- /dev/null +++ b/description/canyie/MagiskKiller/description_en.txt @@ -0,0 +1,4 @@ +This project is an Android app that detects Magisk root and MagiskHide on devices through multiple detection vectors. +It checks for active tracers (MagiskHide), unlocked bootloader state, modified system properties via property area inspection, active Magisk su sessions through PTS detection, and uses a subprocess-based approach to avoid self-tracing interference. +The Java and JNI/C++ codebase runs detection in a forked subprocess with pipe-based IPC to perform checks that MagiskHide cannot intercept on the calling process. +It is mainly useful for mobile security researchers studying Magisk detection techniques and anti-root-hiding methods on Android. diff --git a/description/canyie/Riru-MomoHider/description_en.txt b/description/canyie/Riru-MomoHider/description_en.txt new file mode 100644 index 00000000..9d45f6ac --- /dev/null +++ b/description/canyie/Riru-MomoHider/description_en.txt @@ -0,0 +1 @@ +This project is a Riru module for hiding Magisk root from detection by apps. It hooks system calls and Java APIs used by root detection libraries (like MagiskDetector/RootBeer) to hide Magisk's presence, including spoofing mount points, hiding Magisk files, and blocking property queries that reveal root status. The C/Java module operates through Riru's Zygote injection mechanism. It is aimed at Android users and security researchers studying root detection bypass techniques. diff --git a/description/canyie/pine/description_en.txt b/description/canyie/pine/description_en.txt new file mode 100644 index 00000000..39dc31cf --- /dev/null +++ b/description/canyie/pine/description_en.txt @@ -0,0 +1 @@ +This project is Pine, a dynamic Java method hooking framework for Android (ART runtime). It hooks Java methods at runtime by modifying ART's internal method entry points, supporting both inline hooks and method replacement without requiring root access. The framework works on Android 7.0+ and provides an Xposed-compatible API for method before/after hooks. It is aimed at Android reverse engineers and app modifiers who need runtime Java method interception without Xposed framework. diff --git a/description/caprinux/rel-fuscate/description_en.txt b/description/caprinux/rel-fuscate/description_en.txt new file mode 100644 index 00000000..113bd387 --- /dev/null +++ b/description/caprinux/rel-fuscate/description_en.txt @@ -0,0 +1,4 @@ +This project obfuscates ELF binaries by modifying JMPREL relocation table entries to cause functions to resolve into incorrect GOT entries, misleading disassemblers and decompilers. +It manipulates r_offset values in jmprel entries so that imported function names display incorrectly in static analysis tools, while the program continues to function correctly at runtime. +The Python-based toolchain includes scripts for extracting imports, generating obfuscation headers, and patching the ELF binary with partial RELRO lazy binding. +It is mainly useful for binary protection researchers studying ELF relocation-based obfuscation and anti-disassembly techniques. diff --git a/description/cazzwastaken/kakhack/description_en.txt b/description/cazzwastaken/kakhack/description_en.txt new file mode 100644 index 00000000..64cd9b83 --- /dev/null +++ b/description/cazzwastaken/kakhack/description_en.txt @@ -0,0 +1,4 @@ +This project is an internal cheat for Counter-Strike: Global Offensive with a reversed SDK and multiple hook implementations. +It features an ImGui menu with FreeType font rendering, a JSON-based configuration system, extensive visual features, and a comprehensive reversed SDK covering game interfaces. +The C++ codebase is built as a DLL for x86 injection using Visual Studio 2022 with multiple graphics and game hooks beyond typical requirements. +It is mainly useful for game security researchers studying CSGO internal cheat architectures, SDK reversing, and ImGui-based overlay implementation. diff --git a/description/cdong1012/ollvm-unflattener/description_en.txt b/description/cdong1012/ollvm-unflattener/description_en.txt new file mode 100644 index 00000000..83215d22 --- /dev/null +++ b/description/cdong1012/ollvm-unflattener/description_en.txt @@ -0,0 +1,4 @@ +This project is a Python tool that deobfuscates control flow flattening applied by OLLVM (Obfuscator-LLVM) using the Miasm symbolic execution framework. +It reconstructs original control flow by identifying and connecting basic blocks, supports multi-layered deobfuscation through BFS-based call following, and generates deobfuscated binaries for both Windows and Linux on x86 and x64 architectures. +Unlike static approaches, the tool uses Miasm's symbolic execution engine to dynamically recover the original program flow from the flattened state-variable dispatch structure. +It is mainly useful for reverse engineers and deobfuscation researchers studying OLLVM control flow flattening recovery techniques. diff --git a/description/cdpred/RedTalaria/description_en.txt b/description/cdpred/RedTalaria/description_en.txt new file mode 100644 index 00000000..4db734f6 --- /dev/null +++ b/description/cdpred/RedTalaria/description_en.txt @@ -0,0 +1,4 @@ +This project is an Unreal Engine plugin that provides shareable deep links to specific parts of a project such as Blueprint nodes, assets, and editor locations. +It builds on the Hermes URL handling framework and adds endpoints for copying and opening links to Blueprint nodes, enabling team collaboration through Slack or other messaging tools. +The C++ plugin is compatible with UE 5.3 and UE 4.27, adding context menu options for generating focus and navigation URLs from any Blueprint node. +It is mainly useful for Unreal Engine developers and game development teams seeking deep-linking workflows for project asset sharing and collaboration. diff --git a/description/cellebrite-labs/FunctionInliner/description_en.txt b/description/cellebrite-labs/FunctionInliner/description_en.txt new file mode 100644 index 00000000..5dba8e29 --- /dev/null +++ b/description/cellebrite-labs/FunctionInliner/description_en.txt @@ -0,0 +1,4 @@ +This project is an IDA Pro plugin that reverses function outlining optimization (e.g., clang --moutline) by inlining outlined functions back into their callers. +It creates clones of outlined functions per caller, replaces BL instructions with direct branches to the clone, and converts clone RET instructions to branches back to the caller, adding each clone as a function chunk. +The plugin supports both manual context-menu-based inlining and heuristic identification of all outlined functions for batch processing. +It is mainly useful for reverse engineers analyzing space-optimized ARM binaries where function outlining breaks Hex-Rays decompilation and static analysis workflows. diff --git a/description/cellebrite-labs/LabSync/description_en.txt b/description/cellebrite-labs/LabSync/description_en.txt new file mode 100644 index 00000000..7419615d --- /dev/null +++ b/description/cellebrite-labs/LabSync/description_en.txt @@ -0,0 +1,4 @@ +This project is an IDA Pro plugin that synchronizes IDB data between multiple reverse engineers working on the same binary through a shared git repository. +It exports names, types, inlined functions, and other IDB data to YAML format on each save, then commits, pushes, and pulls changes through git with automatic merge conflict resolution via git mergetool. +The plugin identifies IDBs by the MD5 of the input file for cross-user synchronization and is designed for frequent, non-intrusive syncs. +It is mainly useful for reverse engineering teams collaborating on the same binary who need lightweight IDB synchronization without full database sharing. diff --git a/description/cellebrite-labs/PPLorer/description_en.txt b/description/cellebrite-labs/PPLorer/description_en.txt new file mode 100644 index 00000000..aceab031 --- /dev/null +++ b/description/cellebrite-labs/PPLorer/description_en.txt @@ -0,0 +1,4 @@ +This project is an IDA Pro plugin that resolves PPL (Page Protection Layer) calls in iOS and macOS kernelcaches to their actual underlying PPL functions. +It provides hotkey-based navigation (Ctrl-Shift-X) for jumping between PPL gate call sites and their target PPL functions, with automatic IDB analysis to identify and annotate PPL cross-references. +The Python plugin uses ida-netnode for persistent storage and integrates with IDA's context menu for bidirectional PPL function and call site resolution. +It is mainly useful for iOS kernel researchers and reverse engineers analyzing PPL-protected code paths in Apple kernelcaches. diff --git a/description/cellebrite-labs/ida_kcpp/description_en.txt b/description/cellebrite-labs/ida_kcpp/description_en.txt new file mode 100644 index 00000000..08f53038 --- /dev/null +++ b/description/cellebrite-labs/ida_kcpp/description_en.txt @@ -0,0 +1,4 @@ +This project is an IDAPython plugin for reverse engineering iOS kernelcaches that maps C++ virtual method calls to their actual implementations. +It leverages ida_kernelcache's class hierarchy reconstruction to synchronize binary functions with original virtual methods, enabling double-click navigation on C++ virtual calls and cross-reference tracking. +Inspired by ida_medigate, it exploits the unique structure of iOS kernelcaches to provide a more powerful research environment for analyzing vtable-heavy C++ code. +It is mainly useful for iOS kernel security researchers analyzing C++ virtual dispatch patterns and vtable-based code flow in Apple kernelcaches. diff --git a/description/cfig/Android_boot_image_editor/description_en.txt b/description/cfig/Android_boot_image_editor/description_en.txt new file mode 100644 index 00000000..534fe2cb --- /dev/null +++ b/description/cfig/Android_boot_image_editor/description_en.txt @@ -0,0 +1,4 @@ +This project is a tool for reverse engineering Android ROM images including boot.img, recovery, vendor_boot, and other partition images. +It provides Gradle-based unpack and repack workflows that extract kernels, ramdisks, DTBs, and VBMeta images with full support for AVB signing, LZ4/XZ/GZIP compression, and EROFS/sparse image handling. +The Kotlin/Java codebase runs on Linux, macOS, and Windows with JDK 11+ and supports Android boot image formats from version 0 through 4 plus vendor boot images. +It is mainly useful for Android security researchers and ROM developers performing boot image analysis, modification, and repacking. diff --git a/description/ch3rn0byl/ANTfs/description_en.txt b/description/ch3rn0byl/ANTfs/description_en.txt new file mode 100644 index 00000000..b592b1f3 --- /dev/null +++ b/description/ch3rn0byl/ANTfs/description_en.txt @@ -0,0 +1,4 @@ +This project is an anti-forensics tool that recovers deleted NTFS files and permanently wipes file records and their contents from the filesystem. +The user-mode application recovers deleted files by parsing NTFS MFT entries and outputs them to a specified directory, while the kernel driver overwrites file records and file content data to make recovery impossible. +The C++ codebase includes both a Visual Studio 2019 solution with WDK driver and a user-mode console application for NTFS filesystem manipulation. +It is mainly useful for digital forensics researchers and security analysts studying NTFS anti-forensic techniques and secure file deletion at the filesystem driver level. diff --git a/description/ch3rn0byl/WinDbg-Extensions/description_en.txt b/description/ch3rn0byl/WinDbg-Extensions/description_en.txt new file mode 100644 index 00000000..49407bd4 --- /dev/null +++ b/description/ch3rn0byl/WinDbg-Extensions/description_en.txt @@ -0,0 +1,4 @@ +This project is a WinDbg extension that enumerates kernel callback registrations on a Windows system. +It queries PspCreateProcessNotifyRoutine, PspCreateThreadNotifyRoutine, and PspLoadImageNotifyRoutine to list all registered process, thread, and image load callback pointers with their associated driver modules. +The extension accepts parameters for filtering by callback type (process, image, thread, or all) for convenient inspection during kernel debugging sessions. +It is mainly useful for anti-cheat researchers and kernel debuggers inspecting registered callback routines for rootkit detection and driver analysis. diff --git a/description/ch4ncellor/CSGO-P2C-Dumper/description_en.txt b/description/ch4ncellor/CSGO-P2C-Dumper/description_en.txt new file mode 100644 index 00000000..9b19eef0 --- /dev/null +++ b/description/ch4ncellor/CSGO-P2C-Dumper/description_en.txt @@ -0,0 +1,4 @@ +This project is a process memory dumper targeting CS:GO internal cheats for reverse engineering and analysis. +It offers three dumping methods: signature-based dumping using popular cheat signatures, hook-based dumping that finds direct JMPs to cheat modules from commonly hooked functions with displacement logging, and allocation-based dumping that compares memory regions before and after injection. +The tool logs pre/post injection buffers, decoded assembly, and handler function locations relative to the dump start address. +It is mainly useful for anti-cheat researchers and game security analysts studying injected cheat module analysis and memory forensics in CS:GO. diff --git a/description/ch4ncellor/EAC-Reversal/description_en.txt b/description/ch4ncellor/EAC-Reversal/description_en.txt new file mode 100644 index 00000000..e21cb66b --- /dev/null +++ b/description/ch4ncellor/EAC-Reversal/description_en.txt @@ -0,0 +1,4 @@ +This project is a collection of reversed EasyAntiCheat (EAC) driver internals including decompiled callback checks, driver validation routines, and anti-cheat detection logic. +It documents EAC's driver dispatch verification, callback enumeration, certificate validation, and code integrity checking through reversed C++ pseudocode from the devirtualized EAC binary. +The reversal builds on previous work including VMP2 devirtualization and community-shared EAC analysis, serving as an updated reference for EAC's kernel-mode protections. +It is mainly useful for anti-cheat researchers and reverse engineers studying EasyAntiCheat's kernel-level detection mechanisms and driver validation strategies. diff --git a/description/chaeyk/eac-leak/description_en.txt b/description/chaeyk/eac-leak/description_en.txt new file mode 100644 index 00000000..3727b562 --- /dev/null +++ b/description/chaeyk/eac-leak/description_en.txt @@ -0,0 +1,4 @@ +This project is a leaked EasyAntiCheat server implementation that interfaces with Epic Online Services (EOS) for anti-cheat session management. +The C++ codebase includes a server component with EOS SDK integration for anti-cheat session handling, requiring EOS application ID replacement for deployment. +It provides insight into the server-side communication protocol between game servers and EAC's cloud validation infrastructure. +It is mainly useful for anti-cheat researchers studying EasyAntiCheat's server-side architecture and EOS-based anti-cheat session management. diff --git a/description/changeofpace/Force-Page-Protection/description_en.txt b/description/changeofpace/Force-Page-Protection/description_en.txt new file mode 100644 index 00000000..22acad9d --- /dev/null +++ b/description/changeofpace/Force-Page-Protection/description_en.txt @@ -0,0 +1,4 @@ +This project is an x64dbg plugin that forcefully sets page protection for memory mapped views in cases where NtProtectVirtualMemory fails. +It handles views mapped with SEC_NO_CHANGE allocation type, views with incompatible initial protection settings, and defeats anti-patching mechanisms that exploit these NtProtectVirtualMemory limitations by remapping views with the desired protection. +The plugin adds ForcePageProtection (fpp) commands to x64dbg for overriding memory protection restrictions during dynamic analysis. +It is mainly useful for reverse engineers and anti-cheat analysts who need to patch memory regions protected by anti-tamper techniques that abuse memory mapped view restrictions. diff --git a/description/changeofpace/MouHidInputHook/description_en.txt b/description/changeofpace/MouHidInputHook/description_en.txt new file mode 100644 index 00000000..6fccee17 --- /dev/null +++ b/description/changeofpace/MouHidInputHook/description_en.txt @@ -0,0 +1,4 @@ +This project is a Windows kernel driver that hooks the CONNECT_DATA object inside MouHid device objects to filter, modify, and inject mouse input packets without modifying HID USB mouse device stacks. +It emulates the Moufiltr strategy by intercepting the ClassService callback used to transfer mouse data to class data queues, supporting safe unhooking without unloading device stacks and PnP notification for device changes. +The technique is PatchGuard-safe and relatively stealthy since it avoids attaching filter device objects and uses a heuristic to resolve undocumented CONNECT_DATA field offsets. +It is mainly useful for anti-cheat researchers and input security analysts studying kernel-level mouse input interception and input simulation detection. diff --git a/description/changeofpace/Self-Remapping-Code/description_en.txt b/description/changeofpace/Self-Remapping-Code/description_en.txt new file mode 100644 index 00000000..687075e2 --- /dev/null +++ b/description/changeofpace/Self-Remapping-Code/description_en.txt @@ -0,0 +1 @@ +This project is a Windows proof of concept demonstrating self-remapping code as an anti-tampering technique. It creates multiple virtual mappings of the same physical pages, executes code from one mapping while integrity-checking another, making it difficult for debuggers and patching tools to modify the running code without being detected. The C implementation shows how section-backed file mappings can create aliased views. It is aimed at software protection researchers studying anti-patching and anti-debugging techniques through memory aliasing. diff --git a/description/charliewolfe/PointerGuard/description_en.txt b/description/charliewolfe/PointerGuard/description_en.txt new file mode 100644 index 00000000..c56b88d4 --- /dev/null +++ b/description/charliewolfe/PointerGuard/description_en.txt @@ -0,0 +1 @@ +This project is a Windows proof of concept for protecting function pointers and vtable entries against runtime tampering. It uses hardware breakpoints or page guard mechanisms to monitor critical pointer locations, detecting when cheats or exploits attempt to redirect execution flow by overwriting pointers. The C/C++ implementation demonstrates defensive integrity checking for game and application security. It is aimed at anti-cheat developers and security researchers studying pointer integrity protection techniques. diff --git a/description/charliewolfe/Stealthy-Kernelmode-Injector/description_en.txt b/description/charliewolfe/Stealthy-Kernelmode-Injector/description_en.txt new file mode 100644 index 00000000..313a5041 --- /dev/null +++ b/description/charliewolfe/Stealthy-Kernelmode-Injector/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel-mode DLL injector that uses stealthy techniques to inject DLLs into target processes from kernel space. It employs methods such as APC injection, thread hijacking, or image load callbacks while implementing anti-detection measures like removing injection traces from PEB module lists and cleaning up allocated memory metadata. The C driver demonstrates injection techniques designed to evade anti-cheat detection. It is aimed at kernel researchers studying stealthy injection methods and their detection vectors. diff --git a/description/chaycee/CS2Internal/description_en.txt b/description/chaycee/CS2Internal/description_en.txt new file mode 100644 index 00000000..f741c377 --- /dev/null +++ b/description/chaycee/CS2Internal/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +It is primarily written in C# and centers on SDK generation, hooking, and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/cheahjs/palworld-save-tools/description_en.txt b/description/cheahjs/palworld-save-tools/description_en.txt new file mode 100644 index 00000000..4b731ca7 --- /dev/null +++ b/description/cheahjs/palworld-save-tools/description_en.txt @@ -0,0 +1 @@ +This project is a Python toolkit for reading, converting, and editing Palworld save files. It parses Palworld's custom GVAS save format, converts between binary and JSON representations, and allows modification of player data, Pal stats, inventory contents, and world state. The tool handles compression, custom property serialization, and UE5 save structures. It is aimed at Palworld players, modders, and server administrators managing save file manipulation and migration. diff --git a/description/cheat-engine/cheat-engine/description_en.txt b/description/cheat-engine/cheat-engine/description_en.txt new file mode 100644 index 00000000..215da993 --- /dev/null +++ b/description/cheat-engine/cheat-engine/description_en.txt @@ -0,0 +1,4 @@ +This project is the open-source Cheat Engine, a development environment focused on modding games and applications for personal use. +It provides memory scanning, debugging, disassembly, Lua scripting, speedhack, code injection, and a comprehensive memory editing toolkit with both user-mode and kernel-mode driver components. +The large Delphi/Pascal and C codebase includes a graphical IDE, cheat table system, trainer maker, and cross-platform support elements. +It is mainly useful for game security researchers, reverse engineers, and modding communities studying memory analysis tools and runtime game modification techniques. diff --git a/description/cheatingwitdacode/apex-cheating/description_en.txt b/description/cheatingwitdacode/apex-cheating/description_en.txt new file mode 100644 index 00000000..25aaff7a --- /dev/null +++ b/description/cheatingwitdacode/apex-cheating/description_en.txt @@ -0,0 +1 @@ +This project is a collection of Apex Legends cheating resources including an HWID spoofer, offset dumps across multiple seasons, EAC bypass scripts, and SVG asset extraction tools. The C# spoofer modifies hardware identifiers, while batch scripts automate offset dumping and anti-cheat bypass procedures. It is mainly useful for game security researchers studying Apex Legends offset tracking, HWID spoofing techniques, and EasyAntiCheat bypass methodologies. diff --git a/description/chongdashu/unreal-mcp/description_en.txt b/description/chongdashu/unreal-mcp/description_en.txt new file mode 100644 index 00000000..7ecaa3d4 --- /dev/null +++ b/description/chongdashu/unreal-mcp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP for Unreal Engine. +This project is currently in an EXPERIMENTAL state. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/chrisgdt/DELBOT-Mouse/description_en.txt b/description/chrisgdt/DELBOT-Mouse/description_en.txt new file mode 100644 index 00000000..8ba4fd24 --- /dev/null +++ b/description/chrisgdt/DELBOT-Mouse/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on deep learning to distinguish human and bot from mouse movements. +It was initiated by an internship with the Bureau404 company as part of the Master's in Mathematics: Specialist Focus on Careers in Computer Science and Artificial Intelligence (University of Mons). +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:triggerbot & aimbot area. diff --git a/description/chrismaltby/gb-studio/description_en.txt b/description/chrismaltby/gb-studio/description_en.txt new file mode 100644 index 00000000..2e8f3a1e --- /dev/null +++ b/description/chrismaltby/gb-studio/description_en.txt @@ -0,0 +1,3 @@ +This project is a quick and easy to use retro adventure game creator for Game Boy available for Mac, Linux and Windows. +It is primarily written in TypeScript and JavaScript and centers on driver development, rendering, and animation. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/chronoxor/CppServer/description_en.txt b/description/chronoxor/CppServer/description_en.txt new file mode 100644 index 00000000..e3c88681 --- /dev/null +++ b/description/chronoxor/CppServer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on has integration with high-level message protocol based on Fast Binary Encoding. +It is primarily written in C++ and C/C++ and centers on modding and memory analysis. +It is mainly useful for backend, multiplayer, and online game developers working in the game network / source area. diff --git a/description/chztbby/RebirthGuard/description_en.txt b/description/chztbby/RebirthGuard/description_en.txt new file mode 100644 index 00000000..1add54f6 --- /dev/null +++ b/description/chztbby/RebirthGuard/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / open source anti cheat system and centers on rebirth guard. +It is primarily written in C++ and C/C++ and centers on anti-cheat research, modding, and SDK generation. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / open source anti cheat system area. diff --git a/description/cinit/WSAPatch/description_en.txt b/description/cinit/WSAPatch/description_en.txt new file mode 100644 index 00000000..c65ed649 --- /dev/null +++ b/description/cinit/WSAPatch/description_en.txt @@ -0,0 +1 @@ +This project is a patch for Windows Subsystem for Android (WSA) that enables it to run on unsupported Windows 10 builds and older Windows 11 versions. It modifies WSA binaries to bypass version checks, disable Hyper-V requirement enforcement, and apply compatibility fixes. The C++ patcher operates on WSA MSIX packages to enable Android app sideloading on a wider range of Windows configurations. It is aimed at users and developers wanting to run Android apps on unsupported Windows versions. diff --git a/description/ck0i/Kernelcloak/description_en.txt b/description/ck0i/Kernelcloak/description_en.txt new file mode 100644 index 00000000..172b6af4 --- /dev/null +++ b/description/ck0i/Kernelcloak/description_en.txt @@ -0,0 +1,3 @@ +This project is an advanced library for protecting/obfuscating kernel drivers using the C++ 17 standard. +It is primarily written in C/C++ and centers on kernel-level work, driver development, and modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / encrypt variable area. diff --git a/description/clauadv/cs2_webradar/description_en.txt b/description/clauadv/cs2_webradar/description_en.txt new file mode 100644 index 00000000..3dd698fd --- /dev/null +++ b/description/clauadv/cs2_webradar/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on undetected counter strike 2 browser based radar cheat. +It is primarily written in C++ and JavaScript and centers on asset pipelines, modding, and Unity. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/clearbluejar/ghidriff/description_en.txt b/description/clearbluejar/ghidriff/description_en.txt new file mode 100644 index 00000000..b26b3716 --- /dev/null +++ b/description/clearbluejar/ghidriff/description_en.txt @@ -0,0 +1,3 @@ +A Python-based Ghidra binary diffing framework that automates headless analysis of two binaries, correlates functions using multiple strategies (structural graph matching, version tracking, BSim similarity), and produces detailed Markdown reports with decompiled diffs, call-graph changes, and metadata deltas. +It supports PE, Mach-O, and ELF formats across Windows, macOS, and Linux, includes Docker packaging for CI pipelines, and provides a Docusaurus-powered documentation site with guides for diffing ntoskrnl, afd.sys CVEs, and iOS dylibs. +It is mainly useful for vulnerability researchers, patch analysts, and reverse engineers comparing binary updates to identify security fixes and behavioral changes. diff --git a/description/clibequilibrium/EquilibriumEngine/description_en.txt b/description/clibequilibrium/EquilibriumEngine/description_en.txt new file mode 100644 index 00000000..fab3673f --- /dev/null +++ b/description/clibequilibrium/EquilibriumEngine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on equilibrium Engine is a data-oriented and multi-threaded C11 game engine that takes advantage of ECS pattern followed by Hot-Reloading of your libraries and shaders which allows you to quickly iterate on different aspects of your projects. +Features clang is the primarily supported compiler. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/click4dylan/CSGO_AnimationCode_Reversed/description_en.txt b/description/click4dylan/CSGO_AnimationCode_Reversed/description_en.txt new file mode 100644 index 00000000..4291301a --- /dev/null +++ b/description/click4dylan/CSGO_AnimationCode_Reversed/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cSGO animation code. +It is primarily written in C++ and centers on animation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/clouddss/cs2-internal-sdk/description_en.txt b/description/clouddss/cs2-internal-sdk/description_en.txt new file mode 100644 index 00000000..00c4a412 --- /dev/null +++ b/description/clouddss/cs2-internal-sdk/description_en.txt @@ -0,0 +1 @@ +This project is a reverse-engineered internal SDK for Counter-Strike 2 containing Source 2 engine class definitions, interface pointers, netvar offsets, and schema system structures. The C++ headers provide type-accurate representations of CS2's entity system, player classes, weapon data, and rendering structures for internal cheat development. It is aimed at CS2 cheat developers and game security researchers who need an accurate Source 2 SDK for hooking and memory access. diff --git a/description/cloudfuzz/android-kernel-exploitation/description_en.txt b/description/cloudfuzz/android-kernel-exploitation/description_en.txt new file mode 100644 index 00000000..4b2afbb4 --- /dev/null +++ b/description/cloudfuzz/android-kernel-exploitation/description_en.txt @@ -0,0 +1 @@ +This project is a comprehensive guide and lab environment for Android kernel exploitation. It provides tutorials on setting up kernel debugging, understanding ARM/AArch64 kernel memory layout, exploiting common vulnerability classes (UAF, heap overflow, race conditions), bypassing kernel mitigations (KASLR, PAN, PXN), and building full exploit chains on Android devices. It is aimed at mobile security researchers and exploit developers learning Android kernel exploitation techniques. diff --git a/description/cloudwu/skynet/description_en.txt b/description/cloudwu/skynet/description_en.txt new file mode 100644 index 00000000..6c374519 --- /dev/null +++ b/description/cloudwu/skynet/description_en.txt @@ -0,0 +1,3 @@ +This project is a multi-user Lua framework supporting the actor model, often used in games. +It is heavily used in the Chinese game industry, but is also now spreading to other industries, and to English-centric developers. +It is mainly useful for backend, multiplayer, and online game developers working in the game network / source area. diff --git a/description/cnitlrt/headless-ida-mcp-server/description_en.txt b/description/cnitlrt/headless-ida-mcp-server/description_en.txt new file mode 100644 index 00000000..85f99b16 --- /dev/null +++ b/description/cnitlrt/headless-ida-mcp-server/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP for IDA pro(headless. +This project uses IDA Pro's headless mode to analyze binary files and provides a suite of tools via MCP to manage and manipulate functions, variables, and more. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/cocos/cocos-engine/description_en.txt b/description/cocos/cocos-engine/description_en.txt new file mode 100644 index 00000000..3d64ac19 --- /dev/null +++ b/description/cocos/cocos-engine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cocos Creator is the new generation of game development tool in Cocos family, it brings a complete set of 3D and 2D features while providing an intuitive, low cost and collaboration friendly workflow to game developers. +Cocos Engine is the runtime framework for Cocos Creator editor. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/cocos/cocos4/description_en.txt b/description/cocos/cocos4/description_en.txt new file mode 100644 index 00000000..45ac0202 --- /dev/null +++ b/description/cocos/cocos4/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cOCOS 4 is an open-source, high-performance, cross-platform game and interactive content development engine. +Built on a mature C++ architecture, it provides powerful rendering capabilities and flexible script bindings, supporting a "write once, run anywhere" philosophy. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/cocos2d/cocos2d-x/description_en.txt b/description/cocos2d/cocos2d-x/description_en.txt new file mode 100644 index 00000000..6ae146b3 --- /dev/null +++ b/description/cocos2d/cocos2d-x/description_en.txt @@ -0,0 +1,3 @@ +This project provides cocos2d-x][1] is a multi-platform framework for building 2d games, interactive books, demos and other graphical applications. +It is based on cocos2d-iphone , but instead of using Objective-C, it uses C++. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/code-tom-code/Software_D3D9/description_en.txt b/description/code-tom-code/Software_D3D9/description_en.txt new file mode 100644 index 00000000..e5eb4110 --- /dev/null +++ b/description/code-tom-code/Software_D3D9/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dX9. +It is intended to work with real games and other programs, and eventually should support a high level of compatibility with a wide range of existing D3D9 games and programs. +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / emulation area. diff --git a/description/codereversing/hl2aimbot/description_en.txt b/description/codereversing/hl2aimbot/description_en.txt new file mode 100644 index 00000000..1b31b32d --- /dev/null +++ b/description/codereversing/hl2aimbot/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:half-life 2 and centers on hl2aimbot. +It is primarily written in C/C++ and C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:half-life 2 area. diff --git a/description/codereversing/hl2esp/description_en.txt b/description/codereversing/hl2esp/description_en.txt new file mode 100644 index 00000000..40ef3c5b --- /dev/null +++ b/description/codereversing/hl2esp/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:half-life 2 and centers on hl2esp. +It is primarily written in C/C++ and C++ and centers on hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:half-life 2 area. diff --git a/description/codetronik/AndroidAntiCheat/description_en.txt b/description/codetronik/AndroidAntiCheat/description_en.txt new file mode 100644 index 00000000..ec08bbc6 --- /dev/null +++ b/description/codetronik/AndroidAntiCheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android Platform. +It is primarily written in C++ and C/C++ and centers on anti-cheat research, modding, and hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / open source anti cheat system area. diff --git a/description/codingben/maple-fighters/description_en.txt b/description/codingben/maple-fighters/description_en.txt new file mode 100644 index 00000000..c84f3c9b --- /dev/null +++ b/description/codingben/maple-fighters/description_en.txt @@ -0,0 +1,3 @@ +This project is a small online game similar to MapleStory. +Maple Fighters is an online multiplayer game inspired by MapleStory where you battle monsters with others in real-time. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/colinsenner/PECleaner/description_en.txt b/description/colinsenner/PECleaner/description_en.txt new file mode 100644 index 00000000..6b39075d --- /dev/null +++ b/description/colinsenner/PECleaner/description_en.txt @@ -0,0 +1 @@ +This project is PECleaner, a Windows tool for stripping debug information, Rich headers, timestamps, and other metadata from PE (Portable Executable) files. It zeros out or removes compilation artifacts that can be used for attribution or fingerprinting, including the PDB path, linker version, compiler timestamps, and Rich header data. The C# tool helps sanitize binaries before distribution. It is aimed at red team operators, malware researchers, and developers wanting to strip identifying metadata from compiled executables. diff --git a/description/coltonon/D2DOverlay/description_en.txt b/description/coltonon/D2DOverlay/description_en.txt new file mode 100644 index 00000000..f933282b --- /dev/null +++ b/description/coltonon/D2DOverlay/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on direct2d overlay who's goal is to be as simple to use as possible, while still maintaining great performance. +DirectOverlay.h contains the full documentation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / overlay area. diff --git a/description/comaeio/SwishDbgExt/description_en.txt b/description/comaeio/SwishDbgExt/description_en.txt new file mode 100644 index 00000000..1bf558f3 --- /dev/null +++ b/description/comaeio/SwishDbgExt/description_en.txt @@ -0,0 +1,3 @@ +This project is a Microsoft WinDbg debugging extension that expands the set of available commands by Microsoft WinDbg, but also fixes and improves existing commands. +This extension has been developed by Matt Suiche (@msuiche) – feel free to reach out on support@comae.io ask for more features, offer to contribute and/or report bugs. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windbg plugins area. diff --git a/description/connorjaydunn/BinaryShield/description_en.txt b/description/connorjaydunn/BinaryShield/description_en.txt new file mode 100644 index 00000000..d86f5612 --- /dev/null +++ b/description/connorjaydunn/BinaryShield/description_en.txt @@ -0,0 +1,3 @@ +This project is an open-source, bin-to-bin x86-64 code virtualizer designed to offer strong protection against reverse engineering efforts. +It translates commonly used x86-64 instructions into a custom bytecode, which is executed by a secure, purpose-built virtual machine. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/connormcgarr/EATGuard/description_en.txt b/description/connormcgarr/EATGuard/description_en.txt new file mode 100644 index 00000000..4d407473 --- /dev/null +++ b/description/connormcgarr/EATGuard/description_en.txt @@ -0,0 +1 @@ +This project is a Windows proof of concept that monitors and protects the Export Address Table (EAT) of loaded modules against runtime modification. It uses VEH (Vectored Exception Handling) to set page guards on EAT memory pages, detecting and logging any attempts to overwrite exported function pointers. The C implementation demonstrates how defenders can detect EAT hooking, a technique commonly used by rootkits and cheats. It is aimed at security researchers studying EAT integrity monitoring and hook detection. diff --git a/description/corporateshark/lightweightvk/description_en.txt b/description/corporateshark/lightweightvk/description_en.txt new file mode 100644 index 00000000..fa40e267 --- /dev/null +++ b/description/corporateshark/lightweightvk/description_en.txt @@ -0,0 +1,3 @@ +This project is a deeply refactored bindless-only fork of IGL which is designed to run on top of Vulkan 1.3 with optional mesh shaders and ray tracing support. +The main goals of LightweightVK. +It is mainly useful for low-level graphics programmers and performance-focused engine developers working in the vulkan / api area. diff --git a/description/cpkt9762/ida-cli/description_en.txt b/description/cpkt9762/ida-cli/description_en.txt new file mode 100644 index 00000000..2c7bfc87 --- /dev/null +++ b/description/cpkt9762/ida-cli/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on headless IDA Pro MCP server for AI-assisted binary analysis, powered by idalib. +It is primarily written in Rust and C/C++ and centers on reverse engineering, plugin development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/cpkt9762/solana-sbpf-rlib/description_en.txt b/description/cpkt9762/solana-sbpf-rlib/description_en.txt new file mode 100644 index 00000000..c14d7afa --- /dev/null +++ b/description/cpkt9762/solana-sbpf-rlib/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on solana sBPF rlib files for IDA Pro / Ghidra / Binary Ninja signature generation. +It is primarily written in Python and centers on plugin development, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida signature database area. diff --git a/description/cpz/trinity/description_en.txt b/description/cpz/trinity/description_en.txt new file mode 100644 index 00000000..94d15e36 --- /dev/null +++ b/description/cpz/trinity/description_en.txt @@ -0,0 +1 @@ +This project is Trinity, a Windows kernel exploitation framework written in C/C++ that chains multiple primitives for achieving arbitrary kernel code execution. It combines driver vulnerabilities, memory corruption techniques, and privilege escalation methods into a modular exploitation pipeline. The framework demonstrates building reliable kernel exploitation chains from individual vulnerability primitives. It is aimed at kernel exploit developers and security researchers studying Windows kernel exploitation methodology. diff --git a/description/cqcallaw/shootergame/description_en.txt b/description/cqcallaw/shootergame/description_en.txt new file mode 100644 index 00000000..cdb7505d --- /dev/null +++ b/description/cqcallaw/shootergame/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on shooterGame Demo. +Improvements are licensed under the MIT license. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unreal area. diff --git a/description/cra0/UE426_ABInfinite-Win64-Shipping/description_en.txt b/description/cra0/UE426_ABInfinite-Win64-Shipping/description_en.txt new file mode 100644 index 00000000..accfc6a2 --- /dev/null +++ b/description/cra0/UE426_ABInfinite-Win64-Shipping/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK. +It is primarily written in C/C++ and C++ and centers on SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:arena breakout infinite area. diff --git a/description/cragson/a53-code-exec/description_en.txt b/description/cragson/a53-code-exec/description_en.txt new file mode 100644 index 00000000..2bd40ecf --- /dev/null +++ b/description/cragson/a53-code-exec/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on poC for code execution on a53 used by PS5 on fw 02.00. +It is primarily written in C++ and C/C++ and centers on kernel-level work and SDK generation. +It is mainly useful for console emulator developers and PlayStation researchers working in the playstation area. diff --git a/description/cragson/osmium/description_en.txt b/description/cragson/osmium/description_en.txt new file mode 100644 index 00000000..f09d9636 --- /dev/null +++ b/description/cragson/osmium/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on c++ Framework for external cheats. +This was and is not an easy task for me but this project should not be a demonstration for best practices. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/craids/AresFramework/description_en.txt b/description/craids/AresFramework/description_en.txt new file mode 100644 index 00000000..4e1fa6e3 --- /dev/null +++ b/description/craids/AresFramework/description_en.txt @@ -0,0 +1,3 @@ +This project provides ares framework. +It is primarily written in C++ and C# and centers on modding, hooking, and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/crazymind90/CVE-2026-XNU-AIO-KEVENT-UAF/description_en.txt b/description/crazymind90/CVE-2026-XNU-AIO-KEVENT-UAF/description_en.txt new file mode 100644 index 00000000..891db495 --- /dev/null +++ b/description/crazymind90/CVE-2026-XNU-AIO-KEVENT-UAF/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on xNU kern_aio.c AIO+kevent UAF; sandbox app, no entitlements; panic/double-free; iOS 26.2, patched 26.3. +The AIO can complete and be freed before registration occurs. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios jailbreak area. diff --git a/description/crazyshader/GameDev/description_en.txt b/description/crazyshader/GameDev/description_en.txt new file mode 100644 index 00000000..0e8e6424 --- /dev/null +++ b/description/crazyshader/GameDev/description_en.txt @@ -0,0 +1 @@ +This project is a curated collection of game development resources and references compiled in a Chinese-language README. It aggregates links to game development tools, mixed reality resources, engine frameworks, and related learning materials. It is mainly useful for game developers seeking a comprehensive starting point for discovering game development resources and tools. diff --git a/description/crifan/AutoRename/description_en.txt b/description/crifan/AutoRename/description_en.txt new file mode 100644 index 00000000..580ce29b --- /dev/null +++ b/description/crifan/AutoRename/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on auto rename symbol. +It is primarily written in Python and centers on asset pipelines and plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/cristeigabriela/IDAFind/description_en.txt b/description/cristeigabriela/IDAFind/description_en.txt new file mode 100644 index 00000000..a2956b41 --- /dev/null +++ b/description/cristeigabriela/IDAFind/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on ctrl+F search support for Pseudocode windows. +It was great at early iteration but at some point it was faster for me to start implementing and writing some of the stuff, and handle refactoring. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/cristeigabriela/bb/description_en.txt b/description/cristeigabriela/bb/description_en.txt new file mode 100644 index 00000000..5e06a647 --- /dev/null +++ b/description/cristeigabriela/bb/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on benowin Blanc — parse Windows SDK/PHNT via libclang; struct layouts, enums, constants like dt without WinDbg; CLI + TUI, JSON export. +Separately, the community-maintained PHNT (Process Hacker NT headers) documents internal structures that Microsoft doesn't publish. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/crmulliner/adbi/description_en.txt b/description/crmulliner/adbi/description_en.txt new file mode 100644 index 00000000..87f0193b --- /dev/null +++ b/description/crmulliner/adbi/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on for Android. +Instrumentation is based on library injection and hooking function entry points (in-line hooking). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dynamic binary instrumentation area. diff --git a/description/crosire/reshade/description_en.txt b/description/crosire/reshade/description_en.txt new file mode 100644 index 00000000..550b4ee6 --- /dev/null +++ b/description/crosire/reshade/description_en.txt @@ -0,0 +1,3 @@ +This project is a generic post-processing injector for games and video software. +It exposes an automated way to access both frame color and depth information and a custom shader language called ReShade FX to write effects like ambient occlusion, depth of field, color correction and more which work everywhere. +It is mainly useful for graphics programmers and rendering researchers working in the renderer area. diff --git a/description/crownengine/crown/description_en.txt b/description/crownengine/crown/description_en.txt new file mode 100644 index 00000000..52adc47d --- /dev/null +++ b/description/crownengine/crown/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on c++ 2D/3D. +It is primarily written in C/C++ and C++ and centers on DirectX, Vulkan, and shader work. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/crtdll/ida-gameguard-str-dec/description_en.txt b/description/crtdll/ida-gameguard-str-dec/description_en.txt new file mode 100644 index 00000000..8e2af24d --- /dev/null +++ b/description/crtdll/ida-gameguard-str-dec/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on gameGuard String Decryption. +It is primarily written in Python and centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/crvvdev/intraceptor/description_en.txt b/description/crvvdev/intraceptor/description_en.txt new file mode 100644 index 00000000..7086ff83 --- /dev/null +++ b/description/crvvdev/intraceptor/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on access. +It is primarily written in C++ and C/C++ and centers on kernel-level work, driver development, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rpm area. diff --git a/description/crvvdev/vac-bypass-kernel/description_en.txt b/description/crvvdev/vac-bypass-kernel/description_en.txt new file mode 100644 index 00000000..80d11d84 --- /dev/null +++ b/description/crvvdev/vac-bypass-kernel/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fully working kernel-mode VAC bypass. +Basically the anti-cheat is fully external, meaning that it makes use of syscalls like NtReadVirtualMemory in order to read game memory and perform some checks. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:vac area. diff --git a/description/cryonumb/elfloader/description_en.txt b/description/cryonumb/elfloader/description_en.txt new file mode 100644 index 00000000..90663eb6 --- /dev/null +++ b/description/cryonumb/elfloader/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eLF Loader for ps5-jar-loader. +It is primarily written in Java and centers on kernel-level work, modding, and SDK generation. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/cryotb/RASD/description_en.txt b/description/cryotb/RASD/description_en.txt new file mode 100644 index 00000000..24349370 --- /dev/null +++ b/description/cryotb/RASD/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / detection:spoof stack and centers on rasd. +It is primarily written in C/C++ and C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:spoof stack area. diff --git a/description/cryotb/VmdtStr/description_en.txt b/description/cryotb/VmdtStr/description_en.txt new file mode 100644 index 00000000..e2e57321 --- /dev/null +++ b/description/cryotb/VmdtStr/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on detect VMMs with faulty handling of STR exit. +And this is with HVPP as a nested VMM. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection: hacked hypervisor area. diff --git a/description/crytic/ida-evm/description_en.txt b/description/crytic/ida-evm/description_en.txt new file mode 100644 index 00000000..f6f414a7 --- /dev/null +++ b/description/crytic/ida-evm/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro processor module for disassembling Ethereum Virtual Machine (EVM) bytecode. It adds EVM instruction decoding to IDA, displaying opcodes like PUSH, POP, SLOAD, SSTORE, CALL, and JUMPI with proper operand formatting and cross-reference generation. The Python plugin enables analysis of smart contract bytecodes within IDA's familiar disassembly environment. It is aimed at blockchain security auditors and smart contract researchers performing EVM bytecode reverse engineering. diff --git a/description/cs1ime/AndroidSuperInject/description_en.txt b/description/cs1ime/AndroidSuperInject/description_en.txt new file mode 100644 index 00000000..164c87dc --- /dev/null +++ b/description/cs1ime/AndroidSuperInject/description_en.txt @@ -0,0 +1 @@ +This project is an Android native code injection framework that injects shared libraries into running Android application processes. It uses ptrace-based injection or Zygote hooking to load custom .so files into target app processes, enabling runtime modification of Android applications without requiring root in some configurations. It is aimed at Android security researchers and game modders performing runtime application instrumentation. diff --git a/description/cs1ime/KernelDwm/description_en.txt b/description/cs1ime/KernelDwm/description_en.txt new file mode 100644 index 00000000..eed5d5c1 --- /dev/null +++ b/description/cs1ime/KernelDwm/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel-mode overlay rendering technique that hooks into the Desktop Window Manager (DWM) composition pipeline from kernel space. It intercepts DWM's DirectX rendering calls at the kernel level to inject custom draw commands into the desktop compositor, creating overlays that are invisible to user-mode anti-cheat detection. The C driver demonstrates kernel-level DWM hooking for covert overlay rendering. It is aimed at kernel researchers studying DWM composition internals and stealthy overlay techniques. diff --git a/description/cs1ime/blacksun-framework/description_en.txt b/description/cs1ime/blacksun-framework/description_en.txt new file mode 100644 index 00000000..68b3fa87 --- /dev/null +++ b/description/cs1ime/blacksun-framework/description_en.txt @@ -0,0 +1 @@ +This project is BlackSun Framework, a game hacking framework that provides infrastructure for building game cheats with multi-platform support. It includes memory reading/writing abstractions, pattern scanning, hooking utilities, overlay rendering, and communication layers that work across different access methods (user-mode, kernel, DMA). The modular C++ framework separates access backends from cheat logic. It is aimed at game security researchers studying cheat framework architecture and multi-backend memory access patterns. diff --git a/description/cs1ime/ceserver-rawmem/description_en.txt b/description/cs1ime/ceserver-rawmem/description_en.txt new file mode 100644 index 00000000..eecc2e83 --- /dev/null +++ b/description/cs1ime/ceserver-rawmem/description_en.txt @@ -0,0 +1 @@ +This project is a Cheat Engine server (ceserver) implementation that uses raw physical memory access instead of standard process memory APIs. It implements the ceserver network protocol for remote Cheat Engine connections, but reads target process memory through direct physical memory access (e.g., /dev/mem or DMA), bypassing OS-level memory access protections and anti-cheat monitoring. It is aimed at security researchers studying physical memory-based cheat engine configurations and DMA attack scenarios. diff --git a/description/cseagle/blc/description_en.txt b/description/cseagle/blc/description_en.txt new file mode 100644 index 00000000..e9c56d0a --- /dev/null +++ b/description/cseagle/blc/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on integrate Ghidra's decompiler. +This is the blc (Binary Lifting Contraption) plugin for IDA Pro. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/csgohacks/master-guide/description_en.txt b/description/csgohacks/master-guide/description_en.txt new file mode 100644 index 00000000..8f070a13 --- /dev/null +++ b/description/csgohacks/master-guide/description_en.txt @@ -0,0 +1,3 @@ +This project provides CSGO guide. +This guide is divided into five main parts. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/ctxis/DLLHSC/description_en.txt b/description/ctxis/DLLHSC/description_en.txt new file mode 100644 index 00000000..53deac70 --- /dev/null +++ b/description/ctxis/DLLHSC/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dLL Hijack SCanner. +The code was written and compiled with Visual Studio Community 2019 . +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dll hijack area. diff --git a/description/cursey/regenny/description_en.txt b/description/cursey/regenny/description_en.txt new file mode 100644 index 00000000..65baad5c --- /dev/null +++ b/description/cursey/regenny/description_en.txt @@ -0,0 +1 @@ +This project is ReGenny, a reverse engineering tool for interactively reconstructing data structures from memory. It provides a real-time memory viewer that maps raw bytes to user-defined struct layouts, supporting nested structs, arrays, pointers, enums, and bitfields. The C++ application reads live process memory and updates views in real time, allowing iterative refinement of struct definitions. It is aimed at game hackers and reverse engineers who need to reconstruct unknown data structures from running processes, particularly for SDK generation. diff --git a/description/cursey/sdkgenny/description_en.txt b/description/cursey/sdkgenny/description_en.txt new file mode 100644 index 00000000..f4814b52 --- /dev/null +++ b/description/cursey/sdkgenny/description_en.txt @@ -0,0 +1,3 @@ +This project is a library for generating C++ compatible SDKs for third party applications. +The only dependency is on PEGTL which is only necessary if you're using the included parser. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / sdk codegen area. diff --git a/description/cursey/ue4genny/description_en.txt b/description/cursey/ue4genny/description_en.txt new file mode 100644 index 00000000..125ee77b --- /dev/null +++ b/description/cursey/ue4genny/description_en.txt @@ -0,0 +1 @@ +This project is UE4Genny, a runtime Unreal Engine 4 SDK generator written in C++. It scans UE4's reflection system (UObject, UClass, UStruct, UEnum, UFunction) at runtime to generate complete C++ SDK headers with proper class hierarchies, property offsets, and function signatures. The generated SDK enables direct interaction with game objects for modding or research purposes. It is aimed at game hackers, modders, and reverse engineers who need accurate UE4 SDK dumps from running game instances. diff --git a/description/cursey/x64-virtualizer-rs/description_en.txt b/description/cursey/x64-virtualizer-rs/description_en.txt new file mode 100644 index 00000000..35073be8 --- /dev/null +++ b/description/cursey/x64-virtualizer-rs/description_en.txt @@ -0,0 +1 @@ +This project is a toy x86-64 virtualizing obfuscator written in Rust. It uses the iced-x86 crate to disassemble raw x86-64 byte arrays, translates native instructions into a custom stack-machine bytecode with opcodes such as Const, Load, Store, Add, and Mul, and JIT-assembles vmenter and vmexit bridge routines at runtime. The Machine struct maintains a full set of virtual registers and a stack pointer for executing the translated bytecode. It is aimed at security researchers studying the internals of VM-based code obfuscation engines and exploring Rust as a language for binary-transformation tooling. diff --git a/description/cutecatsandvirtualmachines/DmaProtect/description_en.txt b/description/cutecatsandvirtualmachines/DmaProtect/description_en.txt new file mode 100644 index 00000000..fb10aa0d --- /dev/null +++ b/description/cutecatsandvirtualmachines/DmaProtect/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver that protects against DMA (Direct Memory Access) attacks by configuring IOMMU/VT-d to restrict which PCIe devices can access system memory. It sets up DMA remapping tables to block unauthorized memory reads from FPGA-based DMA attack boards while allowing legitimate devices to operate normally. The C driver demonstrates defensive use of Intel VT-d technology. It is aimed at anti-cheat engineers and security researchers building DMA attack mitigations. diff --git a/description/cxxrev0to1dev/nb_obfuscator/description_en.txt b/description/cxxrev0to1dev/nb_obfuscator/description_en.txt new file mode 100644 index 00000000..aa790a41 --- /dev/null +++ b/description/cxxrev0to1dev/nb_obfuscator/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / obfuscation engine and centers on nb obfuscator. +It is primarily written in C# and C/C++ and centers on kernel-level work, driver development, and modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/cyberark/DLLSpy/description_en.txt b/description/cyberark/DLLSpy/description_en.txt new file mode 100644 index 00000000..f4b71024 --- /dev/null +++ b/description/cyberark/DLLSpy/description_en.txt @@ -0,0 +1 @@ +This project is DLLSpy, a CyberArk tool for detecting DLL hijacking vulnerabilities in installed Windows applications. It scans running processes and installed programs for missing DLL dependencies, writable DLL directories, and unsafe search path configurations that could be exploited for code execution. The tool generates reports identifying specific hijacking opportunities. It is aimed at security auditors and system administrators assessing DLL hijacking risk across their Windows environments. diff --git a/description/cyberark/PipeViewer/description_en.txt b/description/cyberark/PipeViewer/description_en.txt new file mode 100644 index 00000000..99e6e9ba --- /dev/null +++ b/description/cyberark/PipeViewer/description_en.txt @@ -0,0 +1 @@ +This project is PipeViewer, a Windows GUI tool for enumerating and inspecting named pipes on the system. It lists all active named pipe instances with their security descriptors, connected clients, access modes, and owning process information. The C# application allows filtering, searching, and monitoring pipe creation/deletion in real time. It is aimed at security researchers, malware analysts, and penetration testers studying Windows IPC mechanisms and named pipe-based attack surfaces. diff --git a/description/cyberus-technology/virtualbox-kvm/description_en.txt b/description/cyberus-technology/virtualbox-kvm/description_en.txt new file mode 100644 index 00000000..d99f2cd2 --- /dev/null +++ b/description/cyberus-technology/virtualbox-kvm/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on virtualBox with KVM Backend. +The hardware graphics acceleration is not integrated in the GUI yet and requires manual setup. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/cycraft-corp/BinaryAnalysisMCPs/description_en.txt b/description/cycraft-corp/BinaryAnalysisMCPs/description_en.txt new file mode 100644 index 00000000..665b2fe7 --- /dev/null +++ b/description/cycraft-corp/BinaryAnalysisMCPs/description_en.txt @@ -0,0 +1 @@ +This project provides MCP (Model Context Protocol) servers for integrating AI models with binary analysis tools, starting with IDA Pro. The Python-based IDA MCP server exposes function analysis, cross-references, variable inspection, and utility tools through a structured API that enables LLM-driven reverse engineering workflows. It is mainly useful for reverse engineers seeking AI-augmented binary analysis through MCP-compatible language models. diff --git a/description/czs108/PE-Packer/description_en.txt b/description/czs108/PE-Packer/description_en.txt new file mode 100644 index 00000000..0ab9f685 --- /dev/null +++ b/description/czs108/PE-Packer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on x86. +It is primarily written in C and C/C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/d1skq/vgk-dma-bypass/description_en.txt b/description/d1skq/vgk-dma-bypass/description_en.txt new file mode 100644 index 00000000..fa5cbb20 --- /dev/null +++ b/description/d1skq/vgk-dma-bypass/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vGK DMA bypass. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dma area. diff --git a/description/d35ha/CallObfuscator/description_en.txt b/description/d35ha/CallObfuscator/description_en.txt new file mode 100644 index 00000000..5cda9006 --- /dev/null +++ b/description/d35ha/CallObfuscator/description_en.txt @@ -0,0 +1,3 @@ +A PE binary post-processing tool that obfuscates API call targets by rewriting a binary's import table to point at different (decoy) functions, then patches the call sites at load time to redirect to the real targets through a shellcode-based resolver, making static analysis show misleading API references. +Configured via an INI file that maps real API calls to fake ones, the tool modifies the PE import directory entries and injects position-independent shellcode that resolves the actual function addresses at runtime via PEB->Ldr module walking and export table parsing. +It is mainly useful for malware researchers, red teamers, and game security researchers studying import table obfuscation techniques to evade static analysis and signature-based detection. diff --git a/description/d35ha/DumpPE/description_en.txt b/description/d35ha/DumpPE/description_en.txt new file mode 100644 index 00000000..ee20aeb5 --- /dev/null +++ b/description/d35ha/DumpPE/description_en.txt @@ -0,0 +1,3 @@ +A lightweight command-line PE dumper that reads a mapped PE image from a remote process's memory using OpenProcess/ReadProcessMemory, parses the DOS and NT headers to determine the full image size from SizeOfImage, and writes the complete in-memory PE dump to a file. +It supports both 32-bit and 64-bit processes, takes a PID, hex base address, and output filename as arguments, and handles the full PE reconstruction from the live mapped image including all sections. +It is mainly useful for reverse engineers and game security researchers dumping packed or protected executables from memory after they've been unpacked at runtime. diff --git a/description/d3dcoder/d3d12book/description_en.txt b/description/d3dcoder/d3d12book/description_en.txt new file mode 100644 index 00000000..b178705a --- /dev/null +++ b/description/d3dcoder/d3d12book/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dX12. +It is primarily written in C++ and C/C++ and centers on shader work, rendering, and animation. +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / guide area. diff --git a/description/d4em0n/exrop/description_en.txt b/description/d4em0n/exrop/description_en.txt new file mode 100644 index 00000000..5b2bf2dd --- /dev/null +++ b/description/d4em0n/exrop/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on exrop Exrop is automatic ROP chains generator tool which can build gadget chain automatically from given binary and constraints. +It is primarily written in Python. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rop generation area. diff --git a/description/d4rksystem/VMwareCloak/description_en.txt b/description/d4rksystem/VMwareCloak/description_en.txt new file mode 100644 index 00000000..3aba1371 --- /dev/null +++ b/description/d4rksystem/VMwareCloak/description_en.txt @@ -0,0 +1,3 @@ +This project is a PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analysis. +The script accomplishes this by doing the following. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / virtual environments area. diff --git a/description/dNop90/dOffset/description_en.txt b/description/dNop90/dOffset/description_en.txt new file mode 100644 index 00000000..1394e730 --- /dev/null +++ b/description/dNop90/dOffset/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iDA Pro and Cheat Engine to get the offset of the current module. +It is beneficial when performing static analysis of a file while simultaneously debugging with multiple tools, including IDA Pro, Cheat Engine, x64dbg, and others. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/dabao1955/kernel_build_action/description_en.txt b/description/dabao1955/kernel_build_action/description_en.txt new file mode 100644 index 00000000..0da25627 --- /dev/null +++ b/description/dabao1955/kernel_build_action/description_en.txt @@ -0,0 +1,3 @@ +This project is a action to build kernel automatically. +It is primarily written in TypeScript and Python and centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel driver development area. diff --git a/description/danbrodsky/GFred/description_en.txt b/description/danbrodsky/GFred/description_en.txt new file mode 100644 index 00000000..17438222 --- /dev/null +++ b/description/danbrodsky/GFred/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on command Palette. +A build for Ghidra 9.2.0 is available in the ~dist/~ directory. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ghidra plugins area. diff --git a/description/danhuynh0803/Campfire/description_en.txt b/description/danhuynh0803/Campfire/description_en.txt new file mode 100644 index 00000000..f9df7496 --- /dev/null +++ b/description/danhuynh0803/Campfire/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on summary Campfire is an in-progress game engine built using OpenGL and Vulkan. +Most of the engine's features are currently disabled, as we work through switching to Vulkan, but are available on the OpenGL branch. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/danielkrupinski/Anubis/description_en.txt b/description/danielkrupinski/Anubis/description_en.txt new file mode 100644 index 00000000..c327128b --- /dev/null +++ b/description/danielkrupinski/Anubis/description_en.txt @@ -0,0 +1 @@ +This project is Anubis, a CS:GO cheat for Linux written in C++ that operates by injecting into the game process. It provides ESP, aimbot, and other cheat features through Source engine SDK interaction, hooking into client-side rendering and game event processing. The Linux-native implementation demonstrates game hacking techniques adapted for the Linux platform. It is aimed at game security researchers studying Linux-based game cheat implementations and Source engine internals on non-Windows platforms. diff --git a/description/danielkrupinski/GOESP/description_en.txt b/description/danielkrupinski/GOESP/description_en.txt new file mode 100644 index 00000000..7350f31d --- /dev/null +++ b/description/danielkrupinski/GOESP/description_en.txt @@ -0,0 +1 @@ +This project is GOESP, a cross-platform CS:GO ESP cheat written in modern C++ with a Dear ImGui overlay. It reads game entity data through memory access and renders player information (boxes, names, health, weapons) as an overlay using the game's own rendering pipeline. The project supports both Windows and Linux, demonstrating external overlay rendering techniques. It is aimed at game security researchers studying ESP implementation patterns and overlay-based cheat detection. diff --git a/description/danielkrupinski/MemJect/description_en.txt b/description/danielkrupinski/MemJect/description_en.txt new file mode 100644 index 00000000..9a7d8645 --- /dev/null +++ b/description/danielkrupinski/MemJect/description_en.txt @@ -0,0 +1,3 @@ +A minimal Windows DLL injector that embeds a compiled DLL as a raw byte array in the source, then manually maps it into a target process (csgo.exe) entirely from user mode using VirtualAllocEx, WriteProcessMemory, and CreateRemoteThread. +The mapper parses PE headers to allocate properly sized memory in the target, copies sections, resolves imports via LoadLibraryA/GetProcAddress, applies relocations, and optionally erases the PE header and entry point after calling DllMain to reduce forensic artifacts. +It is mainly useful for game security researchers studying in-memory DLL injection techniques and PE manual mapping from user mode. diff --git a/description/danielkrupinski/Osiris/description_en.txt b/description/danielkrupinski/Osiris/description_en.txt new file mode 100644 index 00000000..1307a632 --- /dev/null +++ b/description/danielkrupinski/Osiris/description_en.txt @@ -0,0 +1 @@ +This project is Osiris, an open-source CS:GO cheat written in modern C++. It provides features including ESP (player boxes, health, names), glow outlines, aimbot, triggerbot, backtrack, skin changer, and inventory manipulation. The codebase hooks into the Source engine through interface pointers, pattern scanning, and VMT hooking, demonstrating the internal structure of a feature-complete game cheat. It is aimed at game security researchers studying Source engine cheat architecture and anti-cheat developers building detection for these techniques. diff --git a/description/danielkrupinski/VAC-Bypass-Loader/description_en.txt b/description/danielkrupinski/VAC-Bypass-Loader/description_en.txt new file mode 100644 index 00000000..ecb431ec --- /dev/null +++ b/description/danielkrupinski/VAC-Bypass-Loader/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vAC Bypass Loader Loader for VAC Bypass written in C. +Prerequisites Microsoft Visual Studio 2019 (preferably the latest version), platform toolset v142 and Windows SDK 10.0 are required in order to compile VAC Bypass Loader. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:vac area. diff --git a/description/danielkrupinski/VAC/description_en.txt b/description/danielkrupinski/VAC/description_en.txt new file mode 100644 index 00000000..7e77cbb3 --- /dev/null +++ b/description/danielkrupinski/VAC/description_en.txt @@ -0,0 +1 @@ +This project is a reverse engineering analysis of Valve Anti-Cheat (VAC), documenting its internal detection modules, scanning techniques, and integrity verification mechanisms. The repository contains decompiled and annotated code from VAC modules, showing how they scan for cheat signatures, check process memory, verify loaded module integrity, and communicate with Steam servers. It is aimed at anti-cheat researchers and game security analysts studying commercial anti-cheat implementation details and detection strategies. diff --git a/description/danielkrupinski/cs2-anticheat/description_en.txt b/description/danielkrupinski/cs2-anticheat/description_en.txt new file mode 100644 index 00000000..460c1524 --- /dev/null +++ b/description/danielkrupinski/cs2-anticheat/description_en.txt @@ -0,0 +1,3 @@ +This project is the analysis is based on the 6 June 2023 update. +It centers on modding and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:cs2 area. diff --git a/description/danielkrupinski/vac-hooks/description_en.txt b/description/danielkrupinski/vac-hooks/description_en.txt new file mode 100644 index 00000000..9a57c963 --- /dev/null +++ b/description/danielkrupinski/vac-hooks/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on 16.1.6), platform toolset v142 and Windows SDK 10.0 are required in order to compile vac-hooks. +If you don't have ones, you can download VS here (Windows SDK is installed during Visual Studio Setup). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:vac area. diff --git a/description/danielkrupinski/x86RetSpoof/description_en.txt b/description/danielkrupinski/x86RetSpoof/description_en.txt new file mode 100644 index 00000000..a4cdb372 --- /dev/null +++ b/description/danielkrupinski/x86RetSpoof/description_en.txt @@ -0,0 +1,3 @@ +A header-only C++ library for invoking x86 (32-bit) Windows functions with a spoofed return address by routing calls through a JMP DWORD PTR [EBX] gadget found in a target module's code section. +It supports stdcall, cdecl, fastcall, and thiscall calling conventions, making the invoked function see the gadget address as its return address instead of the true caller. +It is mainly useful for game security researchers studying return-address spoofing techniques used by cheats to evade call-stack analysis. diff --git a/description/danielplohmann/gui-plugin-template/description_en.txt b/description/danielplohmann/gui-plugin-template/description_en.txt new file mode 100644 index 00000000..1d3dab32 --- /dev/null +++ b/description/danielplohmann/gui-plugin-template/description_en.txt @@ -0,0 +1,3 @@ +A Python plugin template that provides a cross-compatible GUI framework for building plugins that work simultaneously across IDA Pro, Ghidra, Binary Ninja, and Cutter using PyQt/PySide. +It abstracts each tool's API through a common harmonized interface layer, allowing plugin developers to write a single GUI codebase that runs in all four platforms. +It is mainly useful for reverse engineers and security researchers who want to develop portable binary analysis plugins without maintaining separate codebases per tool. diff --git a/description/danielplohmann/mcrit-plugin/description_en.txt b/description/danielplohmann/mcrit-plugin/description_en.txt new file mode 100644 index 00000000..94c2afda --- /dev/null +++ b/description/danielplohmann/mcrit-plugin/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro plugin that integrates with MCRIT (MinHash-based Code Recognition and Intelligence Toolkit) to perform binary function similarity matching and code recognition directly from the disassembler. +It provides a GUI for uploading samples, querying function matches, browsing similarity scores, and managing a MCRIT server connection within IDA's interface. +It is mainly useful for malware analysts and reverse engineers performing large-scale binary code similarity analysis and function identification. diff --git a/description/dariushoule/x64dbg-rippy/description_en.txt b/description/dariushoule/x64dbg-rippy/description_en.txt new file mode 100644 index 00000000..f15c42b5 --- /dev/null +++ b/description/dariushoule/x64dbg-rippy/description_en.txt @@ -0,0 +1,3 @@ +An AI-powered reverse engineering assistant plugin for x64dbg that embeds a WebView2 chat panel directly in the debugger with LLM tool-use capabilities via Anthropic or OpenAI-compatible APIs. +The AI agent can read memory, disassemble code, set breakpoints, single-step, and interact with the debugger programmatically through a conversational interface. +It is mainly useful for reverse engineers seeking AI-assisted interactive debugging and automated analysis within x64dbg. diff --git a/description/darvincisec/DetectFrida/description_en.txt b/description/darvincisec/DetectFrida/description_en.txt new file mode 100644 index 00000000..2bb71c9c --- /dev/null +++ b/description/darvincisec/DetectFrida/description_en.txt @@ -0,0 +1,3 @@ +An Android native library that implements multiple Frida detection techniques including named-pipe scanning, Frida-specific thread name detection, and .text section integrity comparison between memory and on-disk ELF images. +It also demonstrates native code hardening through syscall-based libc replacement, custom string/memory operations, and O-LLVM obfuscation to resist hooking and tampering. +It is mainly useful for mobile game security engineers studying anti-instrumentation and native code hardening techniques on Android. diff --git a/description/daswareinfach/Battleye-VAC-EAC-Kernel-Bypass/description_en.txt b/description/daswareinfach/Battleye-VAC-EAC-Kernel-Bypass/description_en.txt new file mode 100644 index 00000000..cedf15a7 --- /dev/null +++ b/description/daswareinfach/Battleye-VAC-EAC-Kernel-Bypass/description_en.txt @@ -0,0 +1,3 @@ +A Windows kernel driver that bypasses BattlEye, VAC, and EAC anti-cheat systems by hiding processes and providing kernel-level read/write memory access through IOCTL-based communication with a usermode client. +It uses filesystem and registry filtering along with process monitoring callbacks to conceal its presence from anti-cheat detection mechanisms. +It is mainly useful for game security researchers studying kernel-level anti-cheat bypass techniques and driver-based process hiding methods. diff --git a/description/datalayer/jupyter-mcp-server/description_en.txt b/description/datalayer/jupyter-mcp-server/description_en.txt new file mode 100644 index 00000000..7e672a71 --- /dev/null +++ b/description/datalayer/jupyter-mcp-server/description_en.txt @@ -0,0 +1,3 @@ +A Model Context Protocol (MCP) server that exposes Jupyter notebook operations as MCP tools, enabling AI assistants to create, read, edit, and execute Jupyter notebooks programmatically. +It supports multiple transport modes (stdio, streamable HTTP) and can connect to local Jupyter servers, JupyterHub, or Google Colab environments. +It is mainly useful for AI-assisted data analysis workflows and integrating notebook-based computation into LLM tool-use pipelines. diff --git a/description/david942j/kvm-kernel-example/description_en.txt b/description/david942j/kvm-kernel-example/description_en.txt new file mode 100644 index 00000000..693286d7 --- /dev/null +++ b/description/david942j/kvm-kernel-example/description_en.txt @@ -0,0 +1,3 @@ +A minimal KVM-based hypervisor and guest kernel implementation that demonstrates how to use Linux KVM APIs to create a virtual machine with custom hypercalls, memory management, syscall handling, and ELF loading. +The hypervisor component acts as a QEMU-like VMM while the kernel implements basic subsystems including mmap, process execution, and file I/O via hypercall forwarding. +It is mainly useful for security researchers and kernel developers learning KVM internals and hypervisor-based virtualization from scratch. diff --git a/description/dayzerosec/AMD-SP-Loader/description_en.txt b/description/dayzerosec/AMD-SP-Loader/description_en.txt new file mode 100644 index 00000000..b887fdbd --- /dev/null +++ b/description/dayzerosec/AMD-SP-Loader/description_en.txt @@ -0,0 +1,3 @@ +A Binary Ninja loader plugin for AMD Secure Processor (SP) / Platform Security Processor (PSP) firmware binaries that correctly sets up load addresses for AGESA Bootloader (ABL) and PSP bootloader blobs. +It optionally annotates PSP syscalls using a bundled dictionary and is designed to work with binaries extracted via PSPTool. +It is mainly useful for firmware security researchers reverse engineering AMD PSP firmware and analyzing the AMD Secure Processor's bootloader chain. diff --git a/description/deadeert/EWS/description_en.txt b/description/deadeert/EWS/description_en.txt new file mode 100644 index 00000000..1f993bf8 --- /dev/null +++ b/description/deadeert/EWS/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro plugin called Emulator Wrapper Solution (EWS) that integrates CPU emulation via Unicorn Engine to provide debugger-like emulation features for various architectures including ARM, x86, and x64. +It offers click-ready trace generation, basic code exploration, and assembler/disassembler integration using Keystone and Capstone within IDA's interface. +It is mainly useful for reverse engineers analyzing embedded binaries, Android native libraries, and automotive firmware on non-native architectures. diff --git a/description/deathkiller/jazz2-native/description_en.txt b/description/deathkiller/jazz2-native/description_en.txt new file mode 100644 index 00000000..137d855a --- /dev/null +++ b/description/deathkiller/jazz2-native/description_en.txt @@ -0,0 +1,3 @@ +An open-source C++ reimplementation of Jazz Jackrabbit 2 built from scratch with a custom engine supporting OpenGL ES rendering, cross-platform deployment, and modern features. +It provides a complete recreation of the original game's actors, levels, tilesets, and gameplay mechanics without depending on proprietary engine code. +It is mainly useful for game engine researchers and modders studying full game reimplementation techniques and custom 2D engine architectures. diff --git a/description/deepinstinct/Dirty-Vanity/description_en.txt b/description/deepinstinct/Dirty-Vanity/description_en.txt new file mode 100644 index 00000000..e860e7af --- /dev/null +++ b/description/deepinstinct/Dirty-Vanity/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept demonstrating a process injection technique that abuses the Windows process forking API (RtlCreateProcessReflection) to clone a target process and redirect the forked copy's start address to injected shellcode. +It avoids traditional WriteProcessMemory-based injection by writing shellcode to the original process and letting the fork inherit the memory, evading common EDR detection heuristics. +It is mainly useful for security researchers studying novel code injection techniques and anti-cheat engineers evaluating fork-based evasion methods. diff --git a/description/dendibakh/perf-ninja/description_en.txt b/description/dendibakh/perf-ninja/description_en.txt new file mode 100644 index 00000000..8b7e9347 --- /dev/null +++ b/description/dendibakh/perf-ninja/description_en.txt @@ -0,0 +1,3 @@ +An online C++ performance optimization course structured as lab assignments covering CPU cache misses, branch mispredictions, vectorization, memory access patterns, and other low-level performance bottlenecks. +Each lab includes benchmarks, validation, and automated CI testing on Intel Alderlake, AMD Zen3, and Apple M1 hardware platforms. +It is mainly useful for systems programmers and game developers learning practical CPU performance analysis and micro-optimization techniques. diff --git a/description/designer1337/csgo-cheat-base/description_en.txt b/description/designer1337/csgo-cheat-base/description_en.txt new file mode 100644 index 00000000..5ff4c548 --- /dev/null +++ b/description/designer1337/csgo-cheat-base/description_en.txt @@ -0,0 +1,3 @@ +A CS:GO internal cheat base written in C++ that hooks the game via MinHook, provides an ImGui-based menu framework, and includes engine prediction, glow ESP, and interface resolution through Source engine SDK patterns. +It implements DirectX surface rendering, game event management, and client/engine interface wrappers for common cheat functionality. +It is mainly useful for game security researchers studying Source engine cheat architectures, hook techniques, and anti-cheat detection surfaces. diff --git a/description/dhanax26/Apex-Legends-Offset-Dumper/description_en.txt b/description/dhanax26/Apex-Legends-Offset-Dumper/description_en.txt new file mode 100644 index 00000000..02ea80b9 --- /dev/null +++ b/description/dhanax26/Apex-Legends-Offset-Dumper/description_en.txt @@ -0,0 +1,3 @@ +A Windows tool that dumps memory offsets, interfaces, and netvars from Apex Legends by reading the game's process memory, providing addresses needed for cheat development including SwapChain pointers. +It performs pattern scanning and netvar enumeration to extract game structure offsets that survive across minor game updates. +It is mainly useful for game security researchers studying Source engine offset dumping techniques and anti-cheat bypass requirements for memory access. diff --git a/description/dimkr/papaw/description_en.txt b/description/dimkr/papaw/description_en.txt new file mode 100644 index 00000000..79c1b2eb --- /dev/null +++ b/description/dimkr/papaw/description_en.txt @@ -0,0 +1,3 @@ +A permissively-licensed executable packer for Linux that compresses statically-linked ELF binaries using LZMA/zstd/miniz, enables self-replacement on disk, and optionally provides basic anti-debugging protection. +It reduces executable size for resource-constrained devices while supporting multiple compression backends and a simple papawify/unpapawify workflow. +It is mainly useful for security researchers studying ELF packing, anti-debugging techniques, and binary protection mechanisms on Linux. diff --git a/description/dis0rder0x00/DbgNexum/description_en.txt b/description/dis0rder0x00/DbgNexum/description_en.txt new file mode 100644 index 00000000..ec55ca80 --- /dev/null +++ b/description/dis0rder0x00/DbgNexum/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept shellcode injector that uses the Windows Debugging API and shared memory (file mapping) to inject payloads without calling WriteProcessMemory, VirtualAllocEx, or ReadProcessMemory. +It attaches as a debugger, sets hardware breakpoints, and manipulates thread context registers to orchestrate a chain of API calls inside the target process that map and execute the shellcode. +It is mainly useful for security researchers studying advanced injection techniques that evade EDR detection by avoiding traditional memory manipulation APIs. diff --git a/description/diversenok/DiaSymbolView/description_en.txt b/description/diversenok/DiaSymbolView/description_en.txt new file mode 100644 index 00000000..af44607f --- /dev/null +++ b/description/diversenok/DiaSymbolView/description_en.txt @@ -0,0 +1,3 @@ +A Delphi-based GUI tool for visually inspecting debug symbols and their 200+ properties stored in PDB files using the Microsoft MSDIA (Debug Interface Access) API. +It presents a navigable hierarchy of symbol types, functions, variables, and compilation units with full property enumeration and register name resolution. +It is mainly useful for reverse engineers and security researchers examining PDB debug information structure and symbol metadata for Windows binaries. diff --git a/description/divodeuxsevres/gvmp-anticheat/description_en.txt b/description/divodeuxsevres/gvmp-anticheat/description_en.txt new file mode 100644 index 00000000..380c9b42 --- /dev/null +++ b/description/divodeuxsevres/gvmp-anticheat/description_en.txt @@ -0,0 +1,3 @@ +A C++ anti-cheat system for GTA V multiplayer (GVMP) that implements cheat detection, player tracking, and security monitoring using ENet networking and DirectX rendering hooks. +It includes pattern scanning, MinHook-based function interception, process integrity checks, and a CMake-based build system for integration with alt:V multiplayer framework. +It is mainly useful for game server operators and anti-cheat engineers studying client-side cheat detection implementations for GTA V multiplayer environments. diff --git a/description/djkaty/Il2CppInspector/description_en.txt b/description/djkaty/Il2CppInspector/description_en.txt new file mode 100644 index 00000000..7f15a1ef --- /dev/null +++ b/description/djkaty/Il2CppInspector/description_en.txt @@ -0,0 +1,3 @@ +A comprehensive C# tool and library for reverse engineering Unity IL2CPP applications that extracts type definitions, method signatures, and metadata from global-metadata.dat and IL2CPP binaries. +It generates IDA Pro, Ghidra, and Binary Ninja scripts with full type annotations, C++ header scaffolds, and DLL injection frameworks, supporting all IL2CPP versions and platforms. +It is mainly useful for game security researchers and modders reverse engineering IL2CPP-compiled Unity games to recover original C# class structures and method offsets. diff --git a/description/djolertrk/kLLDB/description_en.txt b/description/djolertrk/kLLDB/description_en.txt new file mode 100644 index 00000000..1bfb0b09 --- /dev/null +++ b/description/djolertrk/kLLDB/description_en.txt @@ -0,0 +1,3 @@ +An LLDB-based kernel debugger for Linux that provides live and offline kernel debugging through custom LLDB plugins and Python scripting, built against LLVM-19 infrastructure. +It includes both a live debugging plugin (kLLDBLive) for running kernel sessions and an offline plugin for post-mortem analysis with automated bug reporting scripts. +It is mainly useful for kernel developers and security researchers debugging Linux kernel internals using LLDB instead of GDB-based workflows. diff --git a/description/dllcrt0/battleye-decryption/description_en.txt b/description/dllcrt0/battleye-decryption/description_en.txt new file mode 100644 index 00000000..b1fca33c --- /dev/null +++ b/description/dllcrt0/battleye-decryption/description_en.txt @@ -0,0 +1,3 @@ +A tool that decrypts BattlEye's multi-layered encrypted communication packets exchanged between the BEService usermode component and the BEDaisy kernel driver via named pipes. +It implements the XOR-based decryption algorithms including generic packet decryption, hardware information encryption/decryption, and second-stage key-derived decryption routines. +It is mainly useful for anti-cheat researchers reverse engineering BattlEye's client-driver communication protocol and packet encryption schemes. diff --git a/description/dllcrt0/battleye-shellcode/description_en.txt b/description/dllcrt0/battleye-shellcode/description_en.txt new file mode 100644 index 00000000..da42a6b8 --- /dev/null +++ b/description/dllcrt0/battleye-shellcode/description_en.txt @@ -0,0 +1,3 @@ +A collection of reverse-engineered and decompiled BattlEye shellcode modules including AutoHotKey detection, Present hook scanning, and stack-walking routines used by the anti-cheat's runtime integrity checks. +The decompiled code reveals BattlEye's techniques for detecting automation tools, graphics API hooks on the swap chain, and validating call stacks for suspicious return addresses. +It is mainly useful for anti-cheat researchers studying BattlEye's shellcode-based detection mechanisms and runtime scanning strategies. diff --git a/description/dllcrt0/bedaisy-reversal/description_en.txt b/description/dllcrt0/bedaisy-reversal/description_en.txt new file mode 100644 index 00000000..49b2d465 --- /dev/null +++ b/description/dllcrt0/bedaisy-reversal/description_en.txt @@ -0,0 +1,3 @@ +A comprehensive reverse engineering of the BEDaisy.sys kernel driver documenting BattlEye's kernel-level anti-cheat checks including integrity validation, callback enumeration, HAL table verification, and manual-mapped driver detection. +It covers object handle protection, filesystem filter checks, physical memory scanning, CSRSS integrity validation, graphics component verification, and thread/image notification callbacks. +It is mainly useful for anti-cheat researchers studying BattlEye's kernel driver architecture and the full scope of its detection and reporting mechanisms. diff --git a/description/dmaivel/covirt/description_en.txt b/description/dmaivel/covirt/description_en.txt new file mode 100644 index 00000000..405d5d4b --- /dev/null +++ b/description/dmaivel/covirt/description_en.txt @@ -0,0 +1,3 @@ +An x86-64 code virtualizer that transforms native instructions into a stack-based virtual machine architecture for VM-based obfuscation, supporting both PE (MinGW) and ELF binaries. +It implements mixed boolean arithmetic (MBA) transformations and self-modifying code obfuscation passes, with code markers to define protected regions in the target binary. +It is mainly useful for security researchers studying VM-based code obfuscation techniques and building custom binary protection schemes. diff --git a/description/dmaivel/ntoseye/description_en.txt b/description/dmaivel/ntoseye/description_en.txt new file mode 100644 index 00000000..d931546c --- /dev/null +++ b/description/dmaivel/ntoseye/description_en.txt @@ -0,0 +1,3 @@ +A Windows kernel debugger for Linux hosts that debugs Windows 10/11 guests running under KVM/QEMU, providing WinDbg-style commands, PDB symbol fetching/parsing, and breakpoint support. +It connects via GDB stub to the KVM hypervisor for memory access and register manipulation, essentially functioning as a WinDbg replacement for Linux-based virtualization environments. +It is mainly useful for security researchers performing Windows kernel debugging and introspection from Linux without requiring a Windows host or WinDbg. diff --git a/description/dnSpy/Mono.Debugger.Soft/description_en.txt b/description/dnSpy/Mono.Debugger.Soft/description_en.txt new file mode 100644 index 00000000..103005cb --- /dev/null +++ b/description/dnSpy/Mono.Debugger.Soft/description_en.txt @@ -0,0 +1,3 @@ +A fork of the Mono Soft Debugger client library (Mono.Debugger.Soft) maintained by the dnSpy project with modifications to support enhanced Unity and Mono runtime debugging capabilities. +It provides the wire protocol implementation and mirror API for communicating with Mono's soft debugger agent, enabling breakpoints, stepping, and object inspection in managed code. +It is mainly useful for reverse engineers and game modders debugging Unity and Mono-based game applications at the managed code level. diff --git a/description/dnSpy/dnSpy-Unity-mono/description_en.txt b/description/dnSpy/dnSpy-Unity-mono/description_en.txt new file mode 100644 index 00000000..c3c81c84 --- /dev/null +++ b/description/dnSpy/dnSpy-Unity-mono/description_en.txt @@ -0,0 +1,3 @@ +A collection of patched Mono runtime builds maintained by the dnSpy project that enable debugging of Unity games by providing custom mono.dll binaries with soft debugger support enabled. +It covers multiple Unity/Mono versions, allowing dnSpy to attach as a debugger to Unity game processes that normally ship without debugging infrastructure. +It is mainly useful for reverse engineers and game security researchers who need to debug and inspect Unity game internals using dnSpy's managed debugger. diff --git a/description/dnSpy/dnSpy/description_en.txt b/description/dnSpy/dnSpy/description_en.txt new file mode 100644 index 00000000..79b65332 --- /dev/null +++ b/description/dnSpy/dnSpy/description_en.txt @@ -0,0 +1,3 @@ +A .NET assembly debugger, decompiler, and editor that can debug and modify .NET and Unity assemblies without source code, featuring C#/VB/IL decompilation, live editing, and integrated debugging. +It supports breakpoints, stepping, locals/watch windows, and can edit method bodies, IL code, and metadata directly, with dedicated Unity game debugging via patched Mono runtimes. +It is mainly useful for game security researchers, modders, and reverse engineers analyzing and modifying .NET/Unity game assemblies and managed code. diff --git a/description/dnakov/radare2-mcp/description_en.txt b/description/dnakov/radare2-mcp/description_en.txt new file mode 100644 index 00000000..2264a631 --- /dev/null +++ b/description/dnakov/radare2-mcp/description_en.txt @@ -0,0 +1,3 @@ +A Model Context Protocol (MCP) server written in C that exposes radare2's binary analysis capabilities to AI agents, supporting both CLI and plugin modes with stdin/stdout communication. +It provides tools for disassembly, decompilation, cross-references, and binary analysis via r2pipe, with configurable sandboxing, readonly mode, and fine-grained tool restrictions. +It is mainly useful for security researchers integrating radare2-based binary analysis into AI-assisted reverse engineering workflows. diff --git a/description/dobin/SuperMega/description_en.txt b/description/dobin/SuperMega/description_en.txt new file mode 100644 index 00000000..bb884bf6 --- /dev/null +++ b/description/dobin/SuperMega/description_en.txt @@ -0,0 +1,3 @@ +A shellcode loader that infects legitimate PE executables (.exe and .dll) by injecting a carrier shellcode tightly integrated into the host binary, making static analysis difficult to distinguish from the original code. +It implements the Cordyceps parasitic injection technique with a web-based project management interface for configuring payloads, anti-emulation strategies, and injection targets. +It is mainly useful for security researchers studying advanced shellcode loading, PE infection techniques, and evasion of static analysis tools. diff --git a/description/dom0ng/pcileech-wifi-v2/description_en.txt b/description/dom0ng/pcileech-wifi-v2/description_en.txt new file mode 100644 index 00000000..0bee8c0e --- /dev/null +++ b/description/dom0ng/pcileech-wifi-v2/description_en.txt @@ -0,0 +1,3 @@ +A PCILeech FPGA firmware variant that emulates a wireless network adapter's PCIe configuration space, allowing a DMA attack device to masquerade as a WiFi card on the target system's PCIe bus. +It builds on ekknod's pcileech-wifi project with Verilog-based PCIe 7x IP core integration and customizable device ID generation scripts for various FPGA boards. +It is mainly useful for DMA security researchers studying PCIe device impersonation techniques and anti-cheat DMA detection evasion. diff --git a/description/donaldwuid/unreal_source_explained/description_en.txt b/description/donaldwuid/unreal_source_explained/description_en.txt new file mode 100644 index 00000000..f85f57af --- /dev/null +++ b/description/donaldwuid/unreal_source_explained/description_en.txt @@ -0,0 +1,3 @@ +A profiler-driven Unreal Engine source code analysis covering engine initialization, game loop, memory management, thread management, Blueprint scripting, and the rendering pipeline with detailed diagrams. +It traces code paths through UE4's task graph, mesh drawing pipeline, RHI command lists, and platform-specific Metal/D3D11 rendering backends using profiler call stacks. +It is mainly useful for game engine programmers and security researchers studying Unreal Engine internals and understanding its runtime architecture from source. diff --git a/description/donnaskiez/ac/description_en.txt b/description/donnaskiez/ac/description_en.txt new file mode 100644 index 00000000..e81f4f17 --- /dev/null +++ b/description/donnaskiez/ac/description_en.txt @@ -0,0 +1,3 @@ +An open-source Windows kernel anti-cheat driver implementing multiple detection vectors including NMI-based stack walking, APC/DPC stack analysis, .text integrity checks, handle stripping via object callbacks, and chained data pointer detection. +It features attached thread detection, return address exception hook detection, system module device object verification, and process handle table enumeration for identifying suspicious access patterns. +It is mainly useful for anti-cheat engineers and game security researchers studying kernel-level cheat detection techniques and building defensive anti-cheat systems. diff --git a/description/donnaskiez/nmi-callback-handler/description_en.txt b/description/donnaskiez/nmi-callback-handler/description_en.txt new file mode 100644 index 00000000..9a9b1564 --- /dev/null +++ b/description/donnaskiez/nmi-callback-handler/description_en.txt @@ -0,0 +1,3 @@ +A Windows kernel driver demonstrating how Non-Maskable Interrupts (NMIs) can be used for stack walking by locating the MACHINE_FRAME structure from the iretq ISR return to determine the interrupted instruction pointer. +It registers an NMI callback handler that captures the interrupted RIP across all processors, enabling detection of code executing from suspicious memory regions. +It is mainly useful for anti-cheat developers and kernel security researchers studying NMI-based thread stack walking as a cheat detection technique. diff --git a/description/doomedraven/Tools/description_en.txt b/description/doomedraven/Tools/description_en.txt new file mode 100644 index 00000000..48f97272 --- /dev/null +++ b/description/doomedraven/Tools/description_en.txt @@ -0,0 +1,3 @@ +A collection of utility scripts and tools for malware analysis infrastructure including KVM/QEMU virtualization setup, IDA Pro string deobfuscation scripts, Volatility3 plugins, and database management helpers. +It includes flare-emu based deobfuscation, libguestfs Docker containers, and Windows configuration scripts commonly used in CAPE/Cuckoo sandbox environments. +It is mainly useful for malware analysts and security researchers setting up automated analysis environments and performing binary deobfuscation. diff --git a/description/dot1991/lilypublic/description_en.txt b/description/dot1991/lilypublic/description_en.txt new file mode 100644 index 00000000..515fc2a0 --- /dev/null +++ b/description/dot1991/lilypublic/description_en.txt @@ -0,0 +1,3 @@ +A game cheat framework with kernel-mode and user-mode components featuring DBVM hypervisor integration, physical memory read/write, pattern scanning, object callbacks, and multiple overlay rendering backends (DirectComposition, DirectDraw, DX9/11). +It includes encrypted strings, compile-time obfuscation, shellcode injection helpers, remote process manipulation, and an ImGui-based menu rendered through various DirectX backends. +It is mainly useful for game security researchers studying advanced cheat architectures combining hypervisor access, kernel drivers, and overlay rendering techniques. diff --git a/description/dougwithseismic/dezlock-dump/description_en.txt b/description/dougwithseismic/dezlock-dump/description_en.txt new file mode 100644 index 00000000..53fd45fb --- /dev/null +++ b/description/dougwithseismic/dezlock-dump/description_en.txt @@ -0,0 +1,3 @@ +A runtime schema and RTTI extraction tool for Source 2 engine games (Deadlock, CS2, Dota 2) that dumps class hierarchies, netvars, interfaces, protobuf definitions, and global singletons from live game processes. +It includes pattern scanning, MSVC x64 RTTI hierarchy reconstruction, a WebSocket-based live bridge for real-time introspection, and a visual schema browser. +It is mainly useful for game security researchers and modders reverse engineering Source 2 engine internals and extracting SDK definitions from Valve games. diff --git a/description/dqforgive-sudo/pubg-ai-yolov4/description_en.txt b/description/dqforgive-sudo/pubg-ai-yolov4/description_en.txt new file mode 100644 index 00000000..1b441714 --- /dev/null +++ b/description/dqforgive-sudo/pubg-ai-yolov4/description_en.txt @@ -0,0 +1,3 @@ +A YOLOv4-based object detection system trained on PUBG game screenshots using Darknet for real-time player and object recognition from screen captures or video feeds. +It includes pre-trained weights, custom PUBG training configurations for YOLOv4-tiny and YOLOv7, label tools, and both image and video detection scripts with Python bindings. +It is mainly useful for game security researchers studying AI-based aimbot and visual detection techniques used in competitive FPS games. diff --git a/description/dr4k0nia/Origami/description_en.txt b/description/dr4k0nia/Origami/description_en.txt new file mode 100644 index 00000000..c3bd6bda --- /dev/null +++ b/description/dr4k0nia/Origami/description_en.txt @@ -0,0 +1,3 @@ +A .NET assembly packer that compresses managed executables and stores the compressed payload within PE format structures, abusing either the debug directory or a custom PE section (.origami) for data storage. +It includes a runtime relocating loader (RelocLoader) that decompresses and executes the original assembly from the embedded PE data at runtime. +It is mainly useful for security researchers studying .NET packing techniques, PE format abuse, and managed code protection mechanisms. diff --git a/description/dreamland-blog/KSU-Rust-Frida/description_en.txt b/description/dreamland-blog/KSU-Rust-Frida/description_en.txt new file mode 100644 index 00000000..661b54d1 --- /dev/null +++ b/description/dreamland-blog/KSU-Rust-Frida/description_en.txt @@ -0,0 +1,3 @@ +A KernelSU module written in Rust that loads Frida gadget into target Android applications at startup, combining KernelSU's kernel-level app modification with Frida's dynamic instrumentation capabilities. +It injects the Frida shared library into the Zygote-forked process before the app's own code executes, enabling runtime hooking without requiring root detection bypass. +It is mainly useful for mobile security researchers performing dynamic analysis and instrumentation of Android games and apps using KernelSU and Frida. diff --git a/description/dreamstalker/rehlds/description_en.txt b/description/dreamstalker/rehlds/description_en.txt new file mode 100644 index 00000000..f17fb709 --- /dev/null +++ b/description/dreamstalker/rehlds/description_en.txt @@ -0,0 +1,3 @@ +A reverse-engineered and bugfixed reimplementation of the Half-Life Dedicated Server (HLDS build 6152/6153) created using DWARF debug info from the original Linux engine_i486.so binary. +It fixes numerous defects found during reverse engineering while maintaining full compatibility with the original GoldSource engine protocol, HLTV, and game mods. +It is mainly useful for game server operators, engine researchers, and modders studying GoldSource engine internals and running improved Half-Life 1 dedicated servers. diff --git a/description/dretax/GarHal_CSGO/description_en.txt b/description/dretax/GarHal_CSGO/description_en.txt new file mode 100644 index 00000000..d7f26903 --- /dev/null +++ b/description/dretax/GarHal_CSGO/description_en.txt @@ -0,0 +1,3 @@ +A CS:GO kernel-mode cheat driver with a companion usermode controller that demonstrates game manipulation from kernel space via IOCTL communication. +It implements kernel-level memory read/write for game entity data access, with plans for kernel-level DirectX hooking and drawing overlays without usermode injection. +It is mainly useful for game security researchers studying kernel-driver-based cheat architectures and understanding how anti-cheat systems must defend against ring-0 threats. diff --git a/description/droberson/ELFcrypt/description_en.txt b/description/droberson/ELFcrypt/description_en.txt new file mode 100644 index 00000000..03b72024 --- /dev/null +++ b/description/droberson/ELFcrypt/description_en.txt @@ -0,0 +1,3 @@ +A tool that encrypts the .text section of ELF binaries using RC4, embedding a decryption stub that recovers the original code at runtime by mprotect-ing and decrypting the section before jumping to the entry point. +It operates by mmap-ing the ELF, locating the target section via section headers, applying RC4 encryption, and writing a self-decrypting binary to disk. +It is mainly useful for security researchers studying ELF binary encryption, runtime unpacking techniques, and basic software protection mechanisms on Linux. diff --git a/description/droidrun/droidrun/description_en.txt b/description/droidrun/droidrun/description_en.txt new file mode 100644 index 00000000..2734e596 --- /dev/null +++ b/description/droidrun/droidrun/description_en.txt @@ -0,0 +1,3 @@ +A Python framework for controlling Android and iOS devices through LLM-powered agents that automate device interactions using natural language commands via ADB and platform-native accessibility APIs. +It supports multiple LLM providers (OpenAI, Anthropic, Gemini, Ollama, DeepSeek) with a scripter agent architecture, custom tool registration, and structured output for reliable device automation. +It is mainly useful for mobile security testers and QA engineers automating Android/iOS app testing and interaction workflows with AI-driven device control. diff --git a/description/dronavallipranav/rust-obfuscator/description_en.txt b/description/dronavallipranav/rust-obfuscator/description_en.txt new file mode 100644 index 00000000..4bce0825 --- /dev/null +++ b/description/dronavallipranav/rust-obfuscator/description_en.txt @@ -0,0 +1,3 @@ +A set of Rust source code obfuscation tools including an automatic obfuscator that inserts procedural macros for string literal encryption, control flow flattening, and symbol renaming across Rust projects. +It provides the cryptify proc-macro crate for fine-grained compile-time string encryption and the labyrinth_macros crate for control flow obfuscation at the source level. +It is mainly useful for security researchers and Rust developers studying source-level obfuscation techniques and protecting Rust binaries against static analysis. diff --git a/description/dsasmblr/game-hacking/description_en.txt b/description/dsasmblr/game-hacking/description_en.txt new file mode 100644 index 00000000..8c1746bc --- /dev/null +++ b/description/dsasmblr/game-hacking/description_en.txt @@ -0,0 +1,3 @@ +A comprehensive curated list of game hacking resources including disassemblers, debuggers, hex editors, memory scanners, .NET decompilers, graphics debuggers, and reverse engineering tutorials organized by tool type. +It covers Cheat Engine, x64dbg, IDA Pro, Ghidra, dnSpy, RenderDoc, and dozens of other tools alongside game-specific hacking guides, libraries, and frameworks. +It is mainly useful for game security researchers and reverse engineers seeking a centralized reference for game hacking tools, techniques, and educational resources. diff --git a/description/dsasmblr/hacking-online-games/description_en.txt b/description/dsasmblr/hacking-online-games/description_en.txt new file mode 100644 index 00000000..064821d4 --- /dev/null +++ b/description/dsasmblr/hacking-online-games/description_en.txt @@ -0,0 +1,3 @@ +A curated collection of resources specifically focused on hacking online and multiplayer games, including network protocol reverse engineering, server-side emulation, packet encryption analysis, and anti-cheat bypass research. +It includes papers on GameGuard architecture, real-time map hack prevention, MMORPG protocol deciphering, and presentations on extending closed-source games with multiplayer functionality. +It is mainly useful for game security researchers studying online game attack surfaces, network protocol security, and server-side protection mechanisms. diff --git a/description/dslee2022/SignatureKid/description_en.txt b/description/dslee2022/SignatureKid/description_en.txt new file mode 100644 index 00000000..e9d9dd36 --- /dev/null +++ b/description/dslee2022/SignatureKid/description_en.txt @@ -0,0 +1,3 @@ +A header-only C++ tool that steals Authenticode digital signatures from signed PE files and copies them onto unsigned target executables, then hooks Windows registry internals to make the copied signature appear valid to the OS. +It manipulates the WIN_CERTIFICATE structure in the PE's security directory and patches certificate trust verification at the system level. +It is mainly useful for security researchers studying code signing bypass techniques and anti-cheat engineers evaluating signature-based trust verification robustness. diff --git a/description/duddel/yourgamelib/description_en.txt b/description/duddel/yourgamelib/description_en.txt new file mode 100644 index 00000000..855d5131 --- /dev/null +++ b/description/duddel/yourgamelib/description_en.txt @@ -0,0 +1,3 @@ +A cross-platform C++11 framework for game-like applications built on CMake with OpenGL/OpenGL ES rendering, providing automated integration of common libraries like GLFW, GLM, ImGui, Lua, Box2D, Bullet, and miniaudio. +It supports desktop (Windows, Linux, macOS), Android, and web (Emscripten) targets with a toolbox of asset loading, audio, math, and input utilities. +It is mainly useful for game developers and engine researchers building lightweight cross-platform OpenGL applications with managed dependency integration. diff --git a/description/dufernst/LegionCore-7.3.5/description_en.txt b/description/dufernst/LegionCore-7.3.5/description_en.txt new file mode 100644 index 00000000..32bf1da1 --- /dev/null +++ b/description/dufernst/LegionCore-7.3.5/description_en.txt @@ -0,0 +1 @@ +This project is a World of Warcraft server emulator for the Legion expansion (7.3.5 client version) built on the TrinityCore framework. The C++ server implements world simulation, dungeon/raid mechanics, artifact weapons, class halls, world quests, and Legion-specific content. It handles player management, NPC scripting, spell processing, and the WoW network protocol. It is aimed at WoW private server developers and game server researchers studying modern MMO expansion server implementation. diff --git a/description/dumbasPL/fumo_loader/description_en.txt b/description/dumbasPL/fumo_loader/description_en.txt new file mode 100644 index 00000000..44051337 --- /dev/null +++ b/description/dumbasPL/fumo_loader/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pTE.User. +It is primarily written in C/C++ and C++ and centers on anti-cheat research, kernel-level work, and driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/dword64/Apex-Legends-SDK-Remaster/description_en.txt b/description/dword64/Apex-Legends-SDK-Remaster/description_en.txt new file mode 100644 index 00000000..abf1806f --- /dev/null +++ b/description/dword64/Apex-Legends-SDK-Remaster/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on apex-Legends-SDK-Remaster This is a simple version of since so many people having struggles with python binding. +Open Source Cheat for Apex Legends , designed for ease of use. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/dword64/Ow-Anti-Flag/description_en.txt b/description/dword64/Ow-Anti-Flag/description_en.txt new file mode 100644 index 00000000..c3581c24 --- /dev/null +++ b/description/dword64/Ow-Anti-Flag/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on anti-Flag is a simply Console Application written in modern C++. +It prevents Chainban's by clearing common Directories and Registry Keys, which Blizzard and Cheat Developers use to Flag your Device if you either were a Bad Boy >:( or downloaded malware disguised as Overwatch Cheats. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/dword64/Ow-FOV/description_en.txt b/description/dword64/Ow-FOV/description_en.txt new file mode 100644 index 00000000..e1732924 --- /dev/null +++ b/description/dword64/Ow-FOV/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fOV. +Note: If you build the project yourself, it is recommended to use the same injector as the one used in the batch file or any injector of your choice. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:overwatch area. diff --git a/description/dyussekeyev/ida-spotlight/description_en.txt b/description/dyussekeyev/ida-spotlight/description_en.txt new file mode 100644 index 00000000..24a75121 --- /dev/null +++ b/description/dyussekeyev/ida-spotlight/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on workflow-centric function triage and prioritization plugin for IDA Pro. +This creates a significant bottleneck in malware analysis workflows. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/dzervas/frinja/description_en.txt b/description/dzervas/frinja/description_en.txt new file mode 100644 index 00000000..81828bf8 --- /dev/null +++ b/description/dzervas/frinja/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on frida plugin for Binary Ninja. +This is a continuation of the BinRida plugin by @c3r34lk1ll3r. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/eclipse/paho.mqtt.cpp/description_en.txt b/description/eclipse/paho.mqtt.cpp/description_en.txt new file mode 100644 index 00000000..1138e0cd --- /dev/null +++ b/description/eclipse/paho.mqtt.cpp/description_en.txt @@ -0,0 +1 @@ +This project is the Eclipse Paho MQTT C++ client library, providing a modern C++ API for MQTT messaging protocol communication. It supports MQTT v3.1, v3.1.1, and v5.0 with features including QoS levels 0-2, persistent sessions, TLS encryption, automatic reconnection, and asynchronous message delivery. The library wraps the Paho C client with RAII-style resource management and callback-based event handling. It is aimed at IoT developers and systems programmers integrating MQTT pub/sub messaging into C++ applications. diff --git a/description/eddeeh/kdmapper/description_en.txt b/description/eddeeh/kdmapper/description_en.txt new file mode 100644 index 00000000..e4ab7a1f --- /dev/null +++ b/description/eddeeh/kdmapper/description_en.txt @@ -0,0 +1 @@ +This project is kdmapper, a Windows kernel driver mapper that loads unsigned drivers into kernel memory by exploiting the Intel iqvw64e.sys vulnerable signed driver. It uses the driver's arbitrary physical memory read/write IOCTL to manually map a custom driver: allocating kernel pool memory, copying sections, resolving imports against ntoskrnl, processing relocations, and calling the driver entry point. The C++ tool automates the full mapping pipeline including vulnerable driver deployment and cleanup. It is aimed at kernel researchers and cheat developers studying manual driver mapping and DSE bypass techniques. diff --git a/description/eden13378/CS2-DMA-Cheat/description_en.txt b/description/eden13378/CS2-DMA-Cheat/description_en.txt new file mode 100644 index 00000000..c562f65b --- /dev/null +++ b/description/eden13378/CS2-DMA-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dMA. +It is primarily written in C/C++ and C++ and centers on shader work, rendering, and audio systems. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/egret-labs/egret-core/description_en.txt b/description/egret-labs/egret-core/description_en.txt new file mode 100644 index 00000000..49c06033 --- /dev/null +++ b/description/egret-labs/egret-core/description_en.txt @@ -0,0 +1,3 @@ +This project is the Egret Engine is a HTML5 game engine. +It provides modules to handle common game development tasks such as 2D and 3D rendering, GUI systems, and audio and resource management. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/ekknod/Anti-Cheat-TestBench/description_en.txt b/description/ekknod/Anti-Cheat-TestBench/description_en.txt new file mode 100644 index 00000000..b466e4a8 --- /dev/null +++ b/description/ekknod/Anti-Cheat-TestBench/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on testBench. +It is primarily written in C++ and C/C++ and centers on anti-cheat research, driver development, and hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / open source anti cheat system area. diff --git a/description/ekknod/CSGO-AC/description_en.txt b/description/ekknod/CSGO-AC/description_en.txt new file mode 100644 index 00000000..750e3261 --- /dev/null +++ b/description/ekknod/CSGO-AC/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on proof of concept Anti-Cheat plugin for CS:GO. +It is primarily written in C++ and C/C++ and centers on anti-cheat research and plugin development. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / open source anti cheat system area. diff --git a/description/ekknod/EC/description_en.txt b/description/ekknod/EC/description_en.txt new file mode 100644 index 00000000..17752ca5 --- /dev/null +++ b/description/ekknod/EC/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:csgo and centers on ec. +It is primarily written in C/C++ and C++ and centers on kernel-level work, driver development, and OpenGL. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/ekknod/EC_PRO-LAN/description_en.txt b/description/ekknod/EC_PRO-LAN/description_en.txt new file mode 100644 index 00000000..99f701e8 --- /dev/null +++ b/description/ekknod/EC_PRO-LAN/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on requirements: Windows 10 Enterprise 1607 LTSB with all updates AMD Ryzen CPU Motherboard B350-B450 (B550 client is bugged) Logitech GHUB installed ( for mouse input ). +It is primarily written in C++ and C/C++ and centers on anti-cheat research, driver development, and OpenGL. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:faceit area. diff --git a/description/ekknod/G37OBS/description_en.txt b/description/ekknod/G37OBS/description_en.txt new file mode 100644 index 00000000..eedcdf19 --- /dev/null +++ b/description/ekknod/G37OBS/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on obs-studio plugin for csgo. +It is primarily written in Lua and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/ekknod/KiSystemStartupMeme/description_en.txt b/description/ekknod/KiSystemStartupMeme/description_en.txt new file mode 100644 index 00000000..a48ed0d5 --- /dev/null +++ b/description/ekknod/KiSystemStartupMeme/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on custom KiSystemStartup. +It is primarily written in C/C++ and C and centers on kernel-level work, driver development, and graphics. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / efi driver area. diff --git a/description/ekknod/MouseClassServiceCallbackMeme/description_en.txt b/description/ekknod/MouseClassServiceCallbackMeme/description_en.txt new file mode 100644 index 00000000..32e9fbd0 --- /dev/null +++ b/description/ekknod/MouseClassServiceCallbackMeme/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / triggerbot & aimbot and centers on mouse class service callback meme. +It is primarily written in C. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/ekknod/MouseClassServiceCallbackTrick/description_en.txt b/description/ekknod/MouseClassServiceCallbackTrick/description_en.txt new file mode 100644 index 00000000..1e6fb1c3 --- /dev/null +++ b/description/ekknod/MouseClassServiceCallbackTrick/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / triggerbot & aimbot and centers on mouse class service callback trick. +It is primarily written in C. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/ekknod/Nmi/description_en.txt b/description/ekknod/Nmi/description_en.txt new file mode 100644 index 00000000..d6f7571f --- /dev/null +++ b/description/ekknod/Nmi/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on blocking NMI interrupts. +It is primarily written in C and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/ekknod/SetWindowHookEx/description_en.txt b/description/ekknod/SetWindowHookEx/description_en.txt new file mode 100644 index 00000000..e16f5599 --- /dev/null +++ b/description/ekknod/SetWindowHookEx/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on using SetWindowHookEx for preinjected DLL's. +It is primarily written in C and centers on hooking. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/ekknod/SubGetVariable/description_en.txt b/description/ekknod/SubGetVariable/description_en.txt new file mode 100644 index 00000000..9ec63b03 --- /dev/null +++ b/description/ekknod/SubGetVariable/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eFI RPM. +It is primarily written in C/C++ and C++ and centers on kernel-level work, driver development, and graphics. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rpm area. diff --git a/description/ekknod/apex_linux/description_en.txt b/description/ekknod/apex_linux/description_en.txt new file mode 100644 index 00000000..d47d0d6b --- /dev/null +++ b/description/ekknod/apex_linux/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linux. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/ekknod/csf/description_en.txt b/description/ekknod/csf/description_en.txt new file mode 100644 index 00000000..174e8378 --- /dev/null +++ b/description/ekknod/csf/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linux SDK. +It is primarily written in C/C++ and C++ and centers on SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/ekknod/csf_w/description_en.txt b/description/ekknod/csf_w/description_en.txt new file mode 100644 index 00000000..d482867d --- /dev/null +++ b/description/ekknod/csf_w/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on win SDK. +It is primarily written in C/C++ and C++ and centers on SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/ekknod/drvscan/description_en.txt b/description/ekknod/drvscan/description_en.txt new file mode 100644 index 00000000..e0dd0791 --- /dev/null +++ b/description/ekknod/drvscan/description_en.txt @@ -0,0 +1 @@ +This project is drvscan, a Windows DMA/PCIe device scanner and memory forensics tool written in C. It enumerates PCI Express devices, identifies suspicious or unknown devices that could be DMA attack hardware (FPGA boards), and scans physical memory through direct PCIe access for known cheat or rootkit signatures. The tool supports pcileech-style memory acquisition and device fingerprinting. It is aimed at anti-cheat engineers and security researchers detecting DMA-based cheating hardware and unauthorized PCIe devices. diff --git a/description/ekknod/efi-monitor/description_en.txt b/description/ekknod/efi-monitor/description_en.txt new file mode 100644 index 00000000..e6050a32 --- /dev/null +++ b/description/ekknod/efi-monitor/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hooking MmCopyMemory PG safe. +It is primarily written in C/C++ and C++ and centers on driver development, graphics, and networking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / efi driver area. diff --git a/description/ekknod/logitech-cve/description_en.txt b/description/ekknod/logitech-cve/description_en.txt new file mode 100644 index 00000000..c7372071 --- /dev/null +++ b/description/ekknod/logitech-cve/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on logitech. +It is primarily written in C and C/C++ and centers on driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/ekknod/nv_v2/description_en.txt b/description/ekknod/nv_v2/description_en.txt new file mode 100644 index 00000000..7684ef15 --- /dev/null +++ b/description/ekknod/nv_v2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sound ESP. +It is primarily written in C and C/C++ and centers on hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/ekknod/pcileech-wifi/description_en.txt b/description/ekknod/pcileech-wifi/description_en.txt new file mode 100644 index 00000000..7c71ebf2 --- /dev/null +++ b/description/ekknod/pcileech-wifi/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pcileech-fpga with wireless card emulation. +It centers on anti-cheat research. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dma area. diff --git a/description/ekknod/smm/description_en.txt b/description/ekknod/smm/description_en.txt new file mode 100644 index 00000000..31f8f448 --- /dev/null +++ b/description/ekknod/smm/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on smm cheat. +It is primarily written in C/C++ and C and centers on driver development, graphics, and networking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / efi driver area. diff --git a/description/ekknod/sumap/description_en.txt b/description/ekknod/sumap/description_en.txt new file mode 100644 index 00000000..e91d16f4 --- /dev/null +++ b/description/ekknod/sumap/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eFI Manual Map. +It is primarily written in C and C/C++ and centers on driver development and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / efi driver area. diff --git a/description/ekknod/usbsn/description_en.txt b/description/ekknod/usbsn/description_en.txt new file mode 100644 index 00000000..019e4ede --- /dev/null +++ b/description/ekknod/usbsn/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on uSB serial number changer (root only. +It is primarily written in C++ and Java. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / android area. diff --git a/description/ekknod/vm/description_en.txt b/description/ekknod/vm/description_en.txt new file mode 100644 index 00000000..c6949276 --- /dev/null +++ b/description/ekknod/vm/description_en.txt @@ -0,0 +1,3 @@ +A cross-platform C/C++ memory access library providing unified read/write/module-enumeration APIs across multiple backends: Windows kernel-mode (walking ActiveProcessLinks via EPROCESS), user-mode (ReadProcessMemory/WriteProcessMemory), Linux (/proc/pid/mem), PCILeech (via VMMDLL/LeechCore DMA), KVM (QEMU guest introspection), Proton (Linux-hosted Windows games), and EFI-variable-based kernel communication. +Each backend implements the same vm.h interface for process lookup, CR3-based page-table translation, PEB/LDR module walking, and pattern scanning, allowing cheat or analysis code to swap between kernel driver, DMA hardware, and hypervisor transports without changing game-facing logic. +It is mainly useful for game security researchers and cheat developers studying cross-platform remote process memory access patterns and DMA/KVM-based read-write primitives. diff --git a/description/electronicarts/CnC_Red_Alert/description_en.txt b/description/electronicarts/CnC_Red_Alert/description_en.txt new file mode 100644 index 00000000..eed9b9b8 --- /dev/null +++ b/description/electronicarts/CnC_Red_Alert/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on command and Conquer: Red Alert. +This release provides support to the Steam Workshop for the game. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/ellermister/MapleStory/description_en.txt b/description/ellermister/MapleStory/description_en.txt new file mode 100644 index 00000000..e028d718 --- /dev/null +++ b/description/ellermister/MapleStory/description_en.txt @@ -0,0 +1 @@ +This project is a MapleStory private server emulator implementing the game server logic for a classic version of MapleStory. It handles login, channel, and world server functionality including character management, map navigation, monster spawning, skill processing, party/guild systems, and item transactions. The codebase emulates the MapleStory network protocol and game mechanics. It is aimed at private server developers and game server researchers studying MMO server architecture. diff --git a/description/eltavine/Duck-Detector-Refactoring/description_en.txt b/description/eltavine/Duck-Detector-Refactoring/description_en.txt new file mode 100644 index 00000000..157dfb5c --- /dev/null +++ b/description/eltavine/Duck-Detector-Refactoring/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on duckDetector refactor: Android local device-integrity inspector for root tampering, runtime hooking, mount anomalies, attestation trust, and virtualization evidence. +The project combines a Jetpack Compose UI, modular Kotlin feature packages, and native C++ / assembly probes to surface detector cards with structured findings, method coverage, and scan-state summaries. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android root area. diff --git a/description/emanuele-f/PCAPdroid/description_en.txt b/description/emanuele-f/PCAPdroid/description_en.txt new file mode 100644 index 00000000..d6d1ebf9 --- /dev/null +++ b/description/emanuele-f/PCAPdroid/description_en.txt @@ -0,0 +1,3 @@ +This project is a privacy-friendly open source app which lets you track, analyze and block the connections made by the other apps in your device. +It also allows you to export a PCAP dump of the traffic, inspect HTTP, decrypt TLS traffic and much more! +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android network explorer area. diff --git a/description/emilyinure/solace-csgo/description_en.txt b/description/emilyinure/solace-csgo/description_en.txt new file mode 100644 index 00000000..18304f5e --- /dev/null +++ b/description/emilyinure/solace-csgo/description_en.txt @@ -0,0 +1 @@ +This project is Solace, a CS:GO internal cheat written in modern C++ with a polished ImGui menu interface. It provides ESP, aimbot, triggerbot, movement assistance (bunny hop, auto-strafe), skin changer, and visual modifications through Source engine SDK hooking. The clean codebase demonstrates well-structured internal cheat architecture with modular feature organization. It is aimed at game security researchers studying CS:GO cheat design patterns and anti-cheat detection surfaces. diff --git a/description/emlinhax/DbgViewEx/description_en.txt b/description/emlinhax/DbgViewEx/description_en.txt new file mode 100644 index 00000000..9ff99fed --- /dev/null +++ b/description/emlinhax/DbgViewEx/description_en.txt @@ -0,0 +1,3 @@ +This project is a tool to log ETW Events and system debug logs. +This app is being worked on from time to time and is in its very early stage. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/emlinhax/blitz/description_en.txt b/description/emlinhax/blitz/description_en.txt new file mode 100644 index 00000000..671ac9fe --- /dev/null +++ b/description/emlinhax/blitz/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / lazy importer and centers on blitz. +It is primarily written in C++ and C/C++ and centers on reverse engineering, modding, and SDK generation. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / lazy importer area. diff --git a/description/emlinhax/tableflipper/description_en.txt b/description/emlinhax/tableflipper/description_en.txt new file mode 100644 index 00000000..0d7bed07 --- /dev/null +++ b/description/emlinhax/tableflipper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on partially disable patchguard up to win11 21H2. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / patchguard-related area. diff --git a/description/emlinhax/xv/description_en.txt b/description/emlinhax/xv/description_en.txt new file mode 100644 index 00000000..a7f8ec0d --- /dev/null +++ b/description/emlinhax/xv/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / encrypt variable and centers on xv. +It is primarily written in C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / encrypt variable area. diff --git a/description/emoose/idaxex/description_en.txt b/description/emoose/idaxex/description_en.txt new file mode 100644 index 00000000..274f3740 --- /dev/null +++ b/description/emoose/idaxex/description_en.txt @@ -0,0 +1 @@ +This project is idaxex, an IDA Pro loader plugin for Xbox 360 XEX (Xenon Executable) files. It handles XEX file format parsing, PE extraction from the XEX container, import/export resolution, and Xbox 360 kernel function naming. The C++ plugin enables analysis of Xbox 360 game executables within IDA Pro with proper symbol and structure annotation. It is aimed at reverse engineers analyzing Xbox 360 game binaries and console security researchers. diff --git a/description/endgameinc/ClrGuard/description_en.txt b/description/endgameinc/ClrGuard/description_en.txt new file mode 100644 index 00000000..40497440 --- /dev/null +++ b/description/endgameinc/ClrGuard/description_en.txt @@ -0,0 +1 @@ +This project is a Windows defense tool that monitors and blocks .NET CLR (Common Language Runtime) assembly loading in processes. It uses DLL hooking through ClrHook to intercept CLR initialization, log PE metadata and hashes of loaded assemblies, and optionally run as a Windows service for persistent monitoring. It is mainly useful for defensive security researchers and blue team operators studying .NET-based attack detection and CLR loading control. diff --git a/description/enenH/pwatch-c/description_en.txt b/description/enenH/pwatch-c/description_en.txt new file mode 100644 index 00000000..011f218b --- /dev/null +++ b/description/enenH/pwatch-c/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hWBP on linux/android. +It is primarily written in C++ and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/enjoy-digital/litepcie/description_en.txt b/description/enjoy-digital/litepcie/description_en.txt new file mode 100644 index 00000000..83d4a24a --- /dev/null +++ b/description/enjoy-digital/litepcie/description_en.txt @@ -0,0 +1 @@ +This project is a lightweight Python and Migen-based PCIe core for FPGA development, providing a complete PCIe endpoint implementation with DMA engines, LTSSM tracing, and user-space driver interfaces. It supports multiple FPGA boards including Xilinx KC705, KCU105, XCU1525, and Acorn, with benchmark scripts and example configurations. It is mainly useful for FPGA developers and DMA security researchers studying PCIe endpoint design, DMA engine implementation, and hardware-level PCIe communication. diff --git a/description/erfur/linjector-rs/description_en.txt b/description/erfur/linjector-rs/description_en.txt new file mode 100644 index 00000000..aa08d5ab --- /dev/null +++ b/description/erfur/linjector-rs/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on code injection on Android without ptrace. +It is primarily written in Rust and centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:android area. diff --git a/description/ergrelet/dll-hot-reload/description_en.txt b/description/ergrelet/dll-hot-reload/description_en.txt new file mode 100644 index 00000000..2a0e4844 --- /dev/null +++ b/description/ergrelet/dll-hot-reload/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hot Reload. +This can be useful when developing and debugging DLLs which are meant to be injected ( e.g. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/ergrelet/themida-spotter-bn/description_en.txt b/description/ergrelet/themida-spotter-bn/description_en.txt new file mode 100644 index 00000000..47060be0 --- /dev/null +++ b/description/ergrelet/themida-spotter-bn/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on detect Themida/WinLicense and Code Virtualizer's obfuscated code locations. +The plugin has been tested on x86 and x86_64 executables protected with Oreans's products up to version 3.1.9 . +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/ergrelet/themida-unmutate/description_en.txt b/description/ergrelet/themida-unmutate/description_en.txt new file mode 100644 index 00000000..4119be3a --- /dev/null +++ b/description/ergrelet/themida-unmutate/description_en.txt @@ -0,0 +1,3 @@ +This project is a Python 3 tool to statically deobfuscate functions protected by Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation. +The tool has been tested on Themida up to version 3.1.9 . +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix themida area. diff --git a/description/ergrelet/triton-bn/description_en.txt b/description/ergrelet/triton-bn/description_en.txt new file mode 100644 index 00000000..49fba9e6 --- /dev/null +++ b/description/ergrelet/triton-bn/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on triton. +This plugin may also serve as a base for people that would want to play with Triton inside of Binary Ninja. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/erkkah/tigr/description_en.txt b/description/erkkah/tigr/description_en.txt new file mode 100644 index 00000000..d58dfec8 --- /dev/null +++ b/description/erkkah/tigr/description_en.txt @@ -0,0 +1,3 @@ +This project is a tiny cross-platform graphics library, providing a unified API for Windows, macOS, Linux, iOS and Android. +TIGR's core is a simple framebuffer library. +It is mainly useful for engine and tooling developers working on asset pipelines working in the image codec area. diff --git a/description/es3n1n/be-shellcode-tester/description_en.txt b/description/es3n1n/be-shellcode-tester/description_en.txt new file mode 100644 index 00000000..c270159c --- /dev/null +++ b/description/es3n1n/be-shellcode-tester/description_en.txt @@ -0,0 +1 @@ +This project is a testing environment for executing and analyzing BattlEye anti-cheat shellcode modules in a controlled sandbox. It loads dumped BattlEye scanning modules, emulates the expected runtime environment, and logs their behavior including memory scans, hash checks, and detection routines. The C++ tester helps researchers understand BattlEye's detection coverage. It is aimed at anti-cheat researchers reverse engineering BattlEye's shellcode-based scanning modules. diff --git a/description/es3n1n/ida-wakatime-py/description_en.txt b/description/es3n1n/ida-wakatime-py/description_en.txt new file mode 100644 index 00000000..b88cd3c1 --- /dev/null +++ b/description/es3n1n/ida-wakatime-py/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin that integrates WakaTime time tracking into IDA's workflow. It automatically reports time spent on reverse engineering tasks to WakaTime, tracking which binaries are being analyzed and for how long. The Python plugin runs in the background and sends heartbeat events to the WakaTime API. It is aimed at reverse engineers who use WakaTime to track their productivity across development and analysis tools. diff --git a/description/es3n1n/nvidia-overlay-renderer/description_en.txt b/description/es3n1n/nvidia-overlay-renderer/description_en.txt new file mode 100644 index 00000000..ecab3cce --- /dev/null +++ b/description/es3n1n/nvidia-overlay-renderer/description_en.txt @@ -0,0 +1 @@ +This project is a Windows overlay renderer that hijacks NVIDIA GeForce Experience's overlay window for rendering custom content. It locates the NVIDIA overlay window, obtains its rendering context, and draws ImGui menus or ESP information through the existing trusted overlay surface. This approach avoids creating new overlay windows that anti-cheat systems would detect. It is aimed at game security researchers studying overlay hijacking techniques and anti-cheat overlay detection bypass. diff --git a/description/es3n1n/obfuscator/description_en.txt b/description/es3n1n/obfuscator/description_en.txt new file mode 100644 index 00000000..07644fd8 --- /dev/null +++ b/description/es3n1n/obfuscator/description_en.txt @@ -0,0 +1 @@ +This project is a C++ PE binary obfuscator that applies multiple transformation passes to compiled x86-64 executables. It implements control flow flattening, junk code insertion, instruction mutation, import obfuscation, and anti-disassembly tricks directly on PE files without requiring source code access. The obfuscator operates at the binary level using disassembly and reassembly. It is aimed at software protection researchers studying post-compilation obfuscation techniques and binary-level code transformation. diff --git a/description/eset/DelphiHelper/description_en.txt b/description/eset/DelphiHelper/description_en.txt new file mode 100644 index 00000000..4bde839a --- /dev/null +++ b/description/eset/DelphiHelper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on help the analysis of x86/x86_64 binaries written in Delphi. +_NOTE_ : py7zr installation is required to run the setup script: pip install py7zr. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/eteran/edb-debugger/description_en.txt b/description/eteran/edb-debugger/description_en.txt new file mode 100644 index 00000000..c6f57cab --- /dev/null +++ b/description/eteran/edb-debugger/description_en.txt @@ -0,0 +1 @@ +This project is edb (Evan's Debugger), a cross-platform binary debugger for Linux inspired by OllyDbg. It provides a Qt-based GUI with disassembly view, register display, memory map browsing, stack view, breakpoint management, and plugin extensibility. The C++ debugger uses ptrace for process control and supports x86 and x86-64 binaries with features like instruction-level stepping, memory searching, and binary analysis plugins. It is aimed at Linux reverse engineers and exploit developers who need a graphical debugger with OllyDbg-style workflow. diff --git a/description/everdox/InfinityHook/description_en.txt b/description/everdox/InfinityHook/description_en.txt new file mode 100644 index 00000000..d7bc022b --- /dev/null +++ b/description/everdox/InfinityHook/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel hooking library in C that intercepts system calls by manipulating ETW (Event Tracing for Windows) internal function pointers. It patches the ETW syscall trace callback pointer inside the kernel to redirect control flow, enabling transparent syscall interception without modifying the SSDT or inline patching ntoskrnl. The technique survives PatchGuard checks since it operates through a legitimate ETW code path. It is aimed at kernel researchers studying stealthy syscall hooking, anti-cheat bypasses, and PatchGuard-compatible kernel instrumentation. diff --git a/description/everdox/ermsb-meme/description_en.txt b/description/everdox/ermsb-meme/description_en.txt new file mode 100644 index 00000000..fbaa4e1e --- /dev/null +++ b/description/everdox/ermsb-meme/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on rEP MOV based EPT detection. +It is primarily written in C. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection: hacked hypervisor area. diff --git a/description/eversinc33/1.6_C2/description_en.txt b/description/eversinc33/1.6_C2/description_en.txt new file mode 100644 index 00000000..cd1eda41 --- /dev/null +++ b/description/eversinc33/1.6_C2/description_en.txt @@ -0,0 +1 @@ +This project is a Counter-Strike 1.6 cheat written in C++ that demonstrates classic GoldSource engine game hacking techniques. It implements ESP, aimbot, and movement hacks through the HL1 client DLL interface, hooking into the engine's rendering and input systems. The codebase shows game hacking patterns specific to the Half-Life 1 / GoldSource engine era. It is aimed at game security researchers studying legacy game engine cheat implementations and historical cheat development techniques. diff --git a/description/eversinc33/drvtrace/description_en.txt b/description/eversinc33/drvtrace/description_en.txt new file mode 100644 index 00000000..cfb1ccb3 --- /dev/null +++ b/description/eversinc33/drvtrace/description_en.txt @@ -0,0 +1 @@ +This project is drvtrace, a Windows kernel driver tracing tool that logs IRP (I/O Request Packet) traffic to and from specific drivers. It attaches as a filter driver to intercept all IRP requests, logging the IRP major/minor function codes, buffer contents, and completion status. The C driver provides runtime visibility into driver communication patterns. It is aimed at reverse engineers and security researchers analyzing driver IOCTL interfaces and device communication protocols. diff --git a/description/eversinc33/unKover/description_en.txt b/description/eversinc33/unKover/description_en.txt new file mode 100644 index 00000000..cdc4c404 --- /dev/null +++ b/description/eversinc33/unKover/description_en.txt @@ -0,0 +1 @@ +This project is unKover, a Windows kernel tool for detecting hidden kernel-mode threads and rootkit artifacts. It enumerates system threads through multiple methods (scheduler lists, PspCidTable, stack scanning) and cross-references results to identify threads that are hidden from standard API enumeration. The C driver detects anti-cheat and rootkit thread hiding techniques. It is aimed at anti-cheat developers and kernel forensics researchers detecting stealth system threads. diff --git a/description/evilashz/ProxyAPICall/description_en.txt b/description/evilashz/ProxyAPICall/description_en.txt new file mode 100644 index 00000000..445828bd --- /dev/null +++ b/description/evilashz/ProxyAPICall/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on custom stack call. +It is primarily written in C++ and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/evild3ad/MemProcFS-Analyzer/description_en.txt b/description/evild3ad/MemProcFS-Analyzer/description_en.txt new file mode 100644 index 00000000..a17f93c1 --- /dev/null +++ b/description/evild3ad/MemProcFS-Analyzer/description_en.txt @@ -0,0 +1 @@ +This project is MemProcFS-Analyzer, a PowerShell-based forensic analysis framework built on top of MemProcFS for Windows memory dump investigation. It automates the extraction and analysis of processes, network connections, registry hives, event logs, browser artifacts, and malware indicators from physical memory dumps. The tool generates HTML reports with structured findings and integrates with VirusTotal and other threat intelligence sources. It is aimed at digital forensics practitioners and incident responders performing comprehensive memory forensics. diff --git a/description/evyatar9/GptHidra/description_en.txt b/description/evyatar9/GptHidra/description_en.txt new file mode 100644 index 00000000..8a69ae7c --- /dev/null +++ b/description/evyatar9/GptHidra/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on chatGPT. +An explanation of the selected function will be printed to the Ghidra console. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ghidra plugins area. diff --git a/description/ex0dus-0x/fuzzable/description_en.txt b/description/ex0dus-0x/fuzzable/description_en.txt new file mode 100644 index 00000000..41c651b8 --- /dev/null +++ b/description/ex0dus-0x/fuzzable/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fuzzer. +Fuzzable is a framework that integrates both with C/C++ source code and binaries to assist vulnerability researchers in identifying function targets that are viable for fuzzing. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/ex0dus-0x/ward/description_en.txt b/description/ex0dus-0x/ward/description_en.txt new file mode 100644 index 00000000..2c469290 --- /dev/null +++ b/description/ex0dus-0x/ward/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple ELF runtime packer for creating stealthy droppers. +It is primarily written in Go and C and centers on modding and memory analysis. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/execnone/simple-cs-16-multihack/description_en.txt b/description/execnone/simple-cs-16-multihack/description_en.txt new file mode 100644 index 00000000..4733abbb --- /dev/null +++ b/description/execnone/simple-cs-16-multihack/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:cs1.6 and centers on simple cs 16 multihack. +It is primarily written in C++ and C/C++ and centers on asset pipelines, Unity, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs1.6 area. diff --git a/description/exjam/xbox360-emu/description_en.txt b/description/exjam/xbox360-emu/description_en.txt new file mode 100644 index 00000000..f0f594c2 --- /dev/null +++ b/description/exjam/xbox360-emu/description_en.txt @@ -0,0 +1,3 @@ +This project is a xbox 360 emulator. +It is primarily written in C/C++ and C++ and centers on kernel-level work, modding, and memory analysis. +It is mainly useful for console emulator developers and Xbox researchers working in the xbox area. diff --git a/description/exploits-forsale/collateral-damage/description_en.txt b/description/exploits-forsale/collateral-damage/description_en.txt new file mode 100644 index 00000000..5ed6cbf1 --- /dev/null +++ b/description/exploits-forsale/collateral-damage/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on kernel exploit for Xbox SystemOS using CVE-2024-30088. +It targets Xbox One and Xbox Series consoles running kernel versions 25398.4478, 25398.4908, and 25398.4909. +It is mainly useful for console emulator developers and Xbox researchers working in the xbox area. diff --git a/description/extremeblackliu/IL2CPP_Resolver_External/description_en.txt b/description/extremeblackliu/IL2CPP_Resolver_External/description_en.txt new file mode 100644 index 00000000..89be93c6 --- /dev/null +++ b/description/extremeblackliu/IL2CPP_Resolver_External/description_en.txt @@ -0,0 +1 @@ +This project is an external IL2CPP runtime resolver for Unity games that reads IL2CPP metadata from outside the game process. It parses the global-metadata.dat file and IL2CPP binary structures through external memory reading to resolve class names, method addresses, field offsets, and type information without injection. The C++ library enables external cheat development for IL2CPP Unity games. It is aimed at game hackers building external cheats for IL2CPP-based Unity titles. diff --git a/description/eybisi/kavanoz/description_en.txt b/description/eybisi/kavanoz/description_en.txt new file mode 100644 index 00000000..089e9290 --- /dev/null +++ b/description/eybisi/kavanoz/description_en.txt @@ -0,0 +1 @@ +This project is Kavanoz, an automated Android DEX and resource unpacker written in Python. It detects and extracts packed or encrypted DEX files from Android applications protected by commercial packers such as Bangcle, Ijiami, Qihoo 360, and others. The tool identifies the packing scheme, locates the encrypted payload, and applies the appropriate decryption or decompression routine. It is aimed at Android malware analysts and reverse engineers who need to unpack protected APKs for static analysis. diff --git a/description/ezhangle/hlmaster/description_en.txt b/description/ezhangle/hlmaster/description_en.txt new file mode 100644 index 00000000..9344f004 --- /dev/null +++ b/description/ezhangle/hlmaster/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on half-Life Master Server. +Because the master-server protocol is not open, I had to figure it out myself. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/facebookresearch/CUTracer/description_en.txt b/description/facebookresearch/CUTracer/description_en.txt new file mode 100644 index 00000000..a9b16cb1 --- /dev/null +++ b/description/facebookresearch/CUTracer/description_en.txt @@ -0,0 +1,3 @@ +This project is a dynamic binary instrumentation tool for tracing and analyzing CUDA kernel instructions. +It cleanly separates lightweight data collection (instrumentation) from host-side processing (analysis). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dynamic binary instrumentation area. diff --git a/description/fail46/OHack/description_en.txt b/description/fail46/OHack/description_en.txt new file mode 100644 index 00000000..567f89c8 --- /dev/null +++ b/description/fail46/OHack/description_en.txt @@ -0,0 +1,3 @@ +This project is an open-source hack for World of Warcraft. +It is primarily written in C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:wow area. diff --git a/description/farazsth98/poc-CVE-2025-38352/description_en.txt b/description/farazsth98/poc-CVE-2025-38352/description_en.txt new file mode 100644 index 00000000..c1b65793 --- /dev/null +++ b/description/farazsth98/poc-CVE-2025-38352/description_en.txt @@ -0,0 +1 @@ +Proof-of-concept exploit for CVE-2025-38352, a race condition in the Linux kernel's POSIX CPU timer implementation that triggers a use-after-free of struct k_itimer when a timer fires concurrently with thread-group exit, written for LTS 6.12.33 with full preemption enabled and noted in the September 2025 Android Security Bulletin as exploited in the wild. diff --git a/description/fcancelog/EftStreamedCheat/description_en.txt b/description/fcancelog/EftStreamedCheat/description_en.txt new file mode 100644 index 00000000..08928ef0 --- /dev/null +++ b/description/fcancelog/EftStreamedCheat/description_en.txt @@ -0,0 +1 @@ +This project is an Escape from Tarkov cheat that uses a streaming/external approach to display game information outside the game window. It reads EFT's game memory externally through a driver and renders radar, player positions, loot information, and other ESP data on a separate display or overlay. The approach avoids internal injection detection. It is aimed at game security researchers studying external/streaming cheat architectures for Unity-based games with BattlEye protection. diff --git a/description/fdrechsler/mcp-server-idapro/description_en.txt b/description/fdrechsler/mcp-server-idapro/description_en.txt new file mode 100644 index 00000000..0956fee9 --- /dev/null +++ b/description/fdrechsler/mcp-server-idapro/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP for IDA pro. +This project provides a bridge between AI assistants and IDA Pro, a popular disassembler and debugger used for reverse engineering software. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/fedes1to/Zygisk-ImGui-Menu/description_en.txt b/description/fedes1to/Zygisk-ImGui-Menu/description_en.txt new file mode 100644 index 00000000..de2a24b1 --- /dev/null +++ b/description/fedes1to/Zygisk-ImGui-Menu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on imGui menu using Zygisk. +This repository also uses cURL and ImGui (duh)Remember to change module.gradle before publishing, Main code lives in hook.cpp. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/felix-pb/kfd/description_en.txt b/description/felix-pb/kfd/description_en.txt new file mode 100644 index 00000000..4e92e181 --- /dev/null +++ b/description/felix-pb/kfd/description_en.txt @@ -0,0 +1 @@ +This project is kfd, a kernel-level file descriptor exploit framework for iOS/macOS that provides arbitrary kernel read/write primitives through XNU kernel vulnerabilities. It chains multiple bugs to achieve a stable kernel memory access primitive that can be used for jailbreaking, sandbox escape, or security research. The C implementation targets specific iOS/macOS versions with known kernel vulnerabilities. It is aimed at iOS security researchers and jailbreak developers studying XNU kernel exploitation. diff --git a/description/felix-rs/guardian-rs/description_en.txt b/description/felix-rs/guardian-rs/description_en.txt new file mode 100644 index 00000000..574b0735 --- /dev/null +++ b/description/felix-rs/guardian-rs/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vM. +The project is organized into three main components. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/fiord/ADB-Debug-Detect-Checker/description_en.txt b/description/fiord/ADB-Debug-Detect-Checker/description_en.txt new file mode 100644 index 00000000..cdfb4abb --- /dev/null +++ b/description/fiord/ADB-Debug-Detect-Checker/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android. +It is primarily written in Java and centers on debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti debugging area. diff --git a/description/fiqri19102002/android_kernel_xiaomi_sweet/description_en.txt b/description/fiqri19102002/android_kernel_xiaomi_sweet/description_en.txt new file mode 100644 index 00000000..a9175e20 --- /dev/null +++ b/description/fiqri19102002/android_kernel_xiaomi_sweet/description_en.txt @@ -0,0 +1 @@ +This project is the Android kernel source for Xiaomi Sweet (Redmi Note 10 Pro) with KernelSU integration patches. It includes the full Qualcomm kernel tree with Android build system integration, KernelSU hook patches, and device-specific configurations. It is mainly useful for Android kernel developers and mobile security researchers working with KernelSU-enabled custom kernels on Qualcomm-based Xiaomi devices. diff --git a/description/fishfolk/jumpy/description_en.txt b/description/fishfolk/jumpy/description_en.txt new file mode 100644 index 00000000..2e7ae32e --- /dev/null +++ b/description/fishfolk/jumpy/description_en.txt @@ -0,0 +1 @@ +This project is a tactical 2D multiplayer shooter game built in Rust with asset-driven game design. It features cross-platform support including Cross compilation, arcade-style gameplay with effects and animations, and a modular asset system for maps, characters, and items. It is mainly useful for Rust game developers and engine researchers studying 2D multiplayer game architecture and asset pipeline design. diff --git a/description/fjqisba/VmpHelper/description_en.txt b/description/fjqisba/VmpHelper/description_en.txt new file mode 100644 index 00000000..d2509313 --- /dev/null +++ b/description/fjqisba/VmpHelper/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / fix vmp and centers on vmp helper. +It is primarily written in C++ and C/C++ and centers on networking, plugin development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix vmp area. diff --git a/description/fksvs/inject/description_en.txt b/description/fksvs/inject/description_en.txt new file mode 100644 index 00000000..5052f7ba --- /dev/null +++ b/description/fksvs/inject/description_en.txt @@ -0,0 +1,3 @@ +This project is a command line network tool for crafting, injecting, and sniffing a wide range of network protocols. +It is designed for users who need a robust tool for detailed network protocol analysis and manipulation, whether for network troubleshooting, testing, or educational purposes. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / packet sniffer&filter area. diff --git a/description/flakeforever/device_xiaomi_mondrian/description_en.txt b/description/flakeforever/device_xiaomi_mondrian/description_en.txt new file mode 100644 index 00000000..5dc5afae --- /dev/null +++ b/description/flakeforever/device_xiaomi_mondrian/description_en.txt @@ -0,0 +1 @@ +This project is an Android device tree for the Xiaomi Redmi K60 / POCO F5 Pro (mondrian) targeting the Pixel Experience Plus ROM. It includes board configuration, audio and display configs, mixer paths, media codec definitions, and vendor-specific overlay files for the Qualcomm Waipio platform. It is mainly useful for Android ROM developers and mobile security researchers working with custom builds on Xiaomi SM8475-based devices. diff --git a/description/flowxrc/csgo-xenforo-loader/description_en.txt b/description/flowxrc/csgo-xenforo-loader/description_en.txt new file mode 100644 index 00000000..4d60eaf7 --- /dev/null +++ b/description/flowxrc/csgo-xenforo-loader/description_en.txt @@ -0,0 +1 @@ +This project is a CS:GO cheat loader that authenticates users through a XenForo forum backend. It implements license verification, DLL downloading, and injection through a loader application that checks user subscription status against a XenForo-powered website. The C++ loader demonstrates the typical pay-to-cheat (P2C) distribution model with forum-based licensing. It is aimed at game security researchers studying cheat distribution infrastructure and loader authentication mechanisms. diff --git a/description/fmagin/ghidra-openai/description_en.txt b/description/fmagin/ghidra-openai/description_en.txt new file mode 100644 index 00000000..022aa087 --- /dev/null +++ b/description/fmagin/ghidra-openai/description_en.txt @@ -0,0 +1 @@ +This project is a Ghidra plugin that integrates OpenAI's GPT models for automated reverse engineering assistance. It sends decompiled function code to the OpenAI API and displays AI-generated analysis including function purpose explanation, variable renaming suggestions, and vulnerability identification directly within Ghidra's interface. The Python/Java plugin streamlines binary analysis with LLM-powered insights. It is aimed at reverse engineers using Ghidra who want AI-assisted code understanding and annotation. diff --git a/description/focus-creative-games/hybridclr/description_en.txt b/description/focus-creative-games/hybridclr/description_en.txt new file mode 100644 index 00000000..0a4346b0 --- /dev/null +++ b/description/focus-creative-games/hybridclr/description_en.txt @@ -0,0 +1,3 @@ +This project is licensed under the MIT license. +It is primarily written in C/C++ and C++ and centers on modding, Unity, and IL2CPP analysis. +It is mainly useful for live-update and patching workflow developers working in the game hot patch area. diff --git a/description/focus-creative-games/obfuz/description_en.txt b/description/focus-creative-games/obfuz/description_en.txt new file mode 100644 index 00000000..c66abf77 --- /dev/null +++ b/description/focus-creative-games/obfuz/description_en.txt @@ -0,0 +1,3 @@ +This project is an open-source, powerful, user-friendly, and reliable Unity code obfuscation and protection solution that fully meets the needs of commercial game projects. +Obfuz is under continuous development, with upcoming features including. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / game engine protection:unity area. diff --git a/description/forceinline/csgo-external-esp/description_en.txt b/description/forceinline/csgo-external-esp/description_en.txt new file mode 100644 index 00000000..aed5f2c7 --- /dev/null +++ b/description/forceinline/csgo-external-esp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +This project is licensed under the MIT License - see the LICENSE file for details. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/fortra/hw-call-stack/description_en.txt b/description/fortra/hw-call-stack/description_en.txt new file mode 100644 index 00000000..f1b93943 --- /dev/null +++ b/description/fortra/hw-call-stack/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hWBP. +It is primarily written in C/C++ and C. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/fosdickio/binary_ninja_mcp/description_en.txt b/description/fosdickio/binary_ninja_mcp/description_en.txt new file mode 100644 index 00000000..4d71e139 --- /dev/null +++ b/description/fosdickio/binary_ninja_mcp/description_en.txt @@ -0,0 +1 @@ +This project is a Model Context Protocol (MCP) server for Binary Ninja that exposes binary analysis functionality to AI assistants. It allows LLMs to query disassembly, decompilation, cross-references, function lists, and type information from Binary Ninja databases through the MCP protocol. The Python server enables AI-driven reverse engineering workflows. It is aimed at reverse engineers integrating Binary Ninja with AI-powered analysis tools and MCP-compatible clients. diff --git a/description/frank2/oxide/description_en.txt b/description/frank2/oxide/description_en.txt new file mode 100644 index 00000000..48f3f710 --- /dev/null +++ b/description/frank2/oxide/description_en.txt @@ -0,0 +1 @@ +Rust-based PE binary packer that uses the exe-rs crate to parse and rewrite Portable Executable files, embedding a compressed payload with a trampoline-based unpacking stub. The stub uses TLS callback entry points (provided as x86 and x64 NASM sources) to decompress and execute the original binary at runtime. Its architecture is intentionally extensible for adding obfuscation or anti-reversing passes beyond simple compression. diff --git a/description/frankelitoc/UE4-c-/description_en.txt b/description/frankelitoc/UE4-c-/description_en.txt new file mode 100644 index 00000000..b1456a94 --- /dev/null +++ b/description/frankelitoc/UE4-c-/description_en.txt @@ -0,0 +1 @@ +External Unreal Engine 4 cheat targeting Valorant, split into a kernel-mode driver (manual-mapped via EFI) that communicates through IOCTL dispatch hooks, and a usermode client that reads game memory through the driver interface. The client renders an ImGui overlay on a DirectX 9 window, using ToolHelp32 snapshots for process enumeration and the driver for cross-process memory reads of UE4 actor and player structures. diff --git a/description/frankie-11/eft-external/description_en.txt b/description/frankie-11/eft-external/description_en.txt new file mode 100644 index 00000000..9081d84e --- /dev/null +++ b/description/frankie-11/eft-external/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:eft and centers on eft external. +It is primarily written in C/C++ and C++ and centers on kernel-level work, modding, and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:eft area. diff --git a/description/fredakilla/GPlayEngine/description_en.txt b/description/fredakilla/GPlayEngine/description_en.txt new file mode 100644 index 00000000..69c3864e --- /dev/null +++ b/description/fredakilla/GPlayEngine/description_en.txt @@ -0,0 +1 @@ +Fork of the GamePlay 3D engine v3.0 that replaces the original OpenGL 2.x rendering backend with the BGFX cross-platform graphics abstraction, enabling support for multiple graphics APIs (DirectX, Vulkan, Metal, OpenGL). Built on SDL2, the engine provides a deferred rendering pipeline, scene graph, Bullet physics integration, particle systems, ImGui-based editor UI, and cross-platform shader compilation via BGFX's shader language. diff --git a/description/freemint/fdlibm/description_en.txt b/description/freemint/fdlibm/description_en.txt new file mode 100644 index 00000000..694f9215 --- /dev/null +++ b/description/freemint/fdlibm/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under mathematics and centers on fdlibm. +It is primarily written in C and C/C++ and centers on driver development and modding. +It is mainly useful for engine programmers and gameplay or simulation developers working in the mathematics area. diff --git a/description/freetype/freetype/description_en.txt b/description/freetype/freetype/description_en.txt new file mode 100644 index 00000000..ea93e319 --- /dev/null +++ b/description/freetype/freetype/description_en.txt @@ -0,0 +1 @@ +Portable C font rasterization library that renders high-quality glyph images from TrueType, OpenType, CFF, Type 1, and bitmap font formats. It implements bytecode hinting interpretation, anti-aliased rendering, subpixel positioning, and auto-hinting, while exposing a modular architecture with pluggable font drivers. FreeType builds on virtually every platform (including DOS, Amiga, OS/2, Symbian) via its layered build system supporting Make, CMake, and Meson. diff --git a/description/friedkiwi/netcrypt/description_en.txt b/description/friedkiwi/netcrypt/description_en.txt new file mode 100644 index 00000000..660f1ded --- /dev/null +++ b/description/friedkiwi/netcrypt/description_en.txt @@ -0,0 +1 @@ +.NET PE file packer written in C# that embeds a target managed assembly as an encrypted and compressed resource inside a loader stub executable. At runtime the stub decrypts, decompresses, and invokes the original assembly's entry point entirely within the CLR, requiring no native code and introducing near-zero unpacking delay. A companion WinForms GUI (SimplePacker) provides a drag-and-drop interface for packing assemblies. diff --git a/description/frk1/hazedumper/description_en.txt b/description/frk1/hazedumper/description_en.txt new file mode 100644 index 00000000..48514427 --- /dev/null +++ b/description/frk1/hazedumper/description_en.txt @@ -0,0 +1 @@ +Auto-updating CS:GO offset and netvar repository that publishes memory signatures and resolved offsets for engine.dll and client.dll in multiple output formats (JSON, TOML, YAML, C++ headers, C#, VB). A companion config.json defines byte-pattern signatures with relative/absolute addressing modes for structures like dwClientState, dwEntityList, dwLocalPlayer, and netvar offsets (m_iHealth, m_vecOrigin, etc.), enabling external memory-reading cheats to stay current across game patches. diff --git a/description/frkngksl/HintInject/description_en.txt b/description/frkngksl/HintInject/description_en.txt new file mode 100644 index 00000000..66af11e4 --- /dev/null +++ b/description/frkngksl/HintInject/description_en.txt @@ -0,0 +1 @@ +PE injection technique that conceals shellcode inside the Hint/Name Table entries of fabricated Import Directory entries. It splits a raw shellcode payload into chunks sized to fit each fake imported DLL's export name slots, writes them into the PE's import lookup table, and reconstructs the shellcode at load time through the loader's normal IAT resolution path. The tool parses target PE section headers, manipulates RVA-to-offset translations, and randomly selects export names from system DLLs to populate the fake entries. diff --git a/description/frkngksl/Huan/description_en.txt b/description/frkngksl/Huan/description_en.txt new file mode 100644 index 00000000..cfc64de4 --- /dev/null +++ b/description/frkngksl/Huan/description_en.txt @@ -0,0 +1,3 @@ +This project is an encrypted PE Loader Generator that I developed for learning PE file structure and PE loading processes. +It encrypts the PE file to be run with different keys each time and embeds it in a new section of the loader binary. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/frkngksl/NimicStack/description_en.txt b/description/frkngksl/NimicStack/description_en.txt new file mode 100644 index 00000000..01c4a26b --- /dev/null +++ b/description/frkngksl/NimicStack/description_en.txt @@ -0,0 +1,3 @@ +This project is the pure Nim implementation of Call Stack Spoofing technique to mimic legitimate programs. +Whole project is based on the PoC shared by WithSecure Labs. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/frkngksl/Shoggoth/description_en.txt b/description/frkngksl/Shoggoth/description_en.txt new file mode 100644 index 00000000..7e1b43c7 --- /dev/null +++ b/description/frkngksl/Shoggoth/description_en.txt @@ -0,0 +1 @@ +Polymorphic x86/x64 shellcode encoder that uses the asmjit JIT assembler to generate unique, position-independent encrypted payloads on each run. It applies two encryption layers with randomized decoder stubs, producing output that can be executed directly as shellcode. The project also bundles standalone COFF and PE reflective loaders (built as position-independent blobs) for loading Cobalt Strike BOFs or arbitrary PE executables from memory. diff --git a/description/fuqiuluo/android-wuwa/description_en.txt b/description/fuqiuluo/android-wuwa/description_en.txt new file mode 100644 index 00000000..a4092888 --- /dev/null +++ b/description/fuqiuluo/android-wuwa/description_en.txt @@ -0,0 +1 @@ +Android ARM64 loadable kernel module providing stealthy process memory access by bypassing CFI and kprobe blacklists at load time. It supports both software page-table walking and hardware address translation via the ARM64 AT instruction, direct physical memory R/W through phys_to_virt (up to 50 MB per operation), PTE-level mapping injection that bypasses VMA structures, and DMA buffer sharing between processes. Communication uses either IOCTL or a kernel-space socket protocol, with optional module and signal hiding. diff --git a/description/fuqiuluo/ovo/description_en.txt b/description/fuqiuluo/ovo/description_en.txt new file mode 100644 index 00000000..990d735b --- /dev/null +++ b/description/fuqiuluo/ovo/description_en.txt @@ -0,0 +1 @@ +Android ARM64 kernel driver module that exposes process memory read/write, MMU page-table manipulation (mmuhack), and touch input simulation through a kernel-space TCP socket server. It provides VMA traversal and address-to-PFN mapping for virtual-to-physical translation, a peekaboo module for stealth memory access, and client SDKs in C++ and Rust for userspace or cross-device communication. diff --git a/description/fuqiuluo/rnidbg/description_en.txt b/description/fuqiuluo/rnidbg/description_en.txt new file mode 100644 index 00000000..d1308280 --- /dev/null +++ b/description/fuqiuluo/rnidbg/description_en.txt @@ -0,0 +1,3 @@ +This project is an Android-ARM64 kernel emulator written in Rust. +It is primarily written in C++ and C/C++ and centers on kernel-level work, graphics, and animation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel explorer area. diff --git a/description/fuzzypickles14/BetterStringAnalyzer/description_en.txt b/description/fuzzypickles14/BetterStringAnalyzer/description_en.txt new file mode 100644 index 00000000..c788e4b2 --- /dev/null +++ b/description/fuzzypickles14/BetterStringAnalyzer/description_en.txt @@ -0,0 +1,3 @@ +This project is a better string analyzer for Ghidra. +It is primarily written in Java and centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ghidra plugins area. diff --git a/description/fynks/awesome-android-root/description_en.txt b/description/fynks/awesome-android-root/description_en.txt new file mode 100644 index 00000000..4a5635c3 --- /dev/null +++ b/description/fynks/awesome-android-root/description_en.txt @@ -0,0 +1,3 @@ +This project is a curated resource collection for android root. +For Android 14/15: Play Integrity is stricter. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android root area. diff --git a/description/g2wfw/qbdi-tracer-android/description_en.txt b/description/g2wfw/qbdi-tracer-android/description_en.txt new file mode 100644 index 00000000..78dc2eb3 --- /dev/null +++ b/description/g2wfw/qbdi-tracer-android/description_en.txt @@ -0,0 +1 @@ +Android native code tracing framework built on QBDI (QuarkslaB Dynamic binary Instrumentation) and the Dobby inline hooking library. It intercepts shared library loading through Android linker hooks, instruments target functions for per-instruction tracing with backtrace capture, and includes memory scanning and pattern-matching utilities. CMake toolchain files support cross-compilation for Android, iOS, and other ARM64 targets. diff --git a/description/g91/PalAntiCheat-poc/description_en.txt b/description/g91/PalAntiCheat-poc/description_en.txt new file mode 100644 index 00000000..1c24461f --- /dev/null +++ b/description/g91/PalAntiCheat-poc/description_en.txt @@ -0,0 +1 @@ +Proof-of-concept anti-cheat system for Palworld (Unreal Engine 5) that includes a complete dumped SDK with class definitions, function signatures, and struct layouts for the game's NPC, player, animation, audio, and AI modules. It implements property fixup routines (PropertyFixup.hpp) to validate UObject/UProperty consistency, providing a foundation for detecting memory manipulation of game state through SDK-level integrity checks. diff --git a/description/gaasedelen/microavx/description_en.txt b/description/gaasedelen/microavx/description_en.txt new file mode 100644 index 00000000..7b1061c1 --- /dev/null +++ b/description/gaasedelen/microavx/description_en.txt @@ -0,0 +1 @@ +IDA Pro plugin that extends the Hex-Rays decompiler by lifting Intel AVX (Advanced Vector Extensions) instructions into Hex-Rays microcode, enabling their decompilation in functions that would otherwise show opaque "ext" nodes. It implements a custom microcode instruction visitor that intercepts m_ext opcodes and replaces them with equivalent microcode sequences. A companion scraping script enumerates all unsupported instructions across an IDB to identify AVX coverage gaps. diff --git a/description/gabriellandau/ShadowStackWalk/description_en.txt b/description/gabriellandau/ShadowStackWalk/description_en.txt new file mode 100644 index 00000000..9de79b88 --- /dev/null +++ b/description/gabriellandau/ShadowStackWalk/description_en.txt @@ -0,0 +1,3 @@ +This project is the shadow stack provides an interesting detection opportunity. +This tool implements CaptureStackBackTrace/StackWalk64 with the shadow stack (aka CET/HSP) to catch thread stack spoofing. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:spoof stack area. diff --git a/description/galaxyhaxz/devilution/description_en.txt b/description/galaxyhaxz/devilution/description_en.txt new file mode 100644 index 00000000..f744db4f --- /dev/null +++ b/description/galaxyhaxz/devilution/description_en.txt @@ -0,0 +1 @@ +Complete reverse engineering of the original Diablo 1 retail Windows binary into compilable C/C++ source code, reconstructing all game subsystems including dungeon generation (drlg_l1–l4), rendering pipeline, spell/item/monster data tables, multiplayer networking, save/load serialization, and the Storm MPQ archive library. The project preserves the original MSVC 4.20 project structure and includes the DiabloUI and Storm DLL sources, with build support for modern compilers alongside the original DSP/DSW files. diff --git a/description/gameplay3d/gameplay/description_en.txt b/description/gameplay3d/gameplay/description_en.txt new file mode 100644 index 00000000..6e19fb25 --- /dev/null +++ b/description/gameplay3d/gameplay/description_en.txt @@ -0,0 +1 @@ +Cross-platform C++ 3D game framework providing an OpenGL ES 2.0/3.0 rendering pipeline, scene graph with material/shader system, Bullet physics integration, OpenAL audio, skeletal animation, terrain rendering, particle effects, and a form-based UI toolkit. It targets Windows, macOS, Linux, iOS, and Android from a single CMake-based codebase, with Lua scripting support and an encoder tool for converting FBX/Collada assets into the engine's binary .gpb format. diff --git a/description/gamozolabs/mempeek/description_en.txt b/description/gamozolabs/mempeek/description_en.txt new file mode 100644 index 00000000..84db8a2f --- /dev/null +++ b/description/gamozolabs/mempeek/description_en.txt @@ -0,0 +1 @@ +Linux command-line tool for live process memory inspection via /proc/pid/mem, offering Cheat Engine-style value scanning with constraint filters (equal, not-equal, changed, increased, decreased, range). It uses the libprocmem crate to parse /proc/pid/maps for readable regions, supports multi-radix expression evaluation (hex, octal, decimal), and provides a persistent rustyline-based REPL with command history across sessions. diff --git a/description/gatling/gatling/description_en.txt b/description/gatling/gatling/description_en.txt new file mode 100644 index 00000000..b6114a0d --- /dev/null +++ b/description/gatling/gatling/description_en.txt @@ -0,0 +1 @@ +Scala/JVM load testing framework with an asynchronous, non-blocking architecture built on Akka and Netty for simulating high concurrency with minimal thread overhead. It provides a Scala DSL for defining user scenarios across HTTP, WebSocket, SSE, JMS, gRPC, and MQTT protocols, with assertion-based pass/fail criteria. Test results are compiled into detailed HTML reports with percentile latency distributions, requests-per-second timelines, and error breakdowns. diff --git a/description/gavz/Jektor/description_en.txt b/description/gavz/Jektor/description_en.txt new file mode 100644 index 00000000..7fd3509c --- /dev/null +++ b/description/gavz/Jektor/description_en.txt @@ -0,0 +1 @@ +Windows shellcode injection toolkit demonstrating five execution techniques: CreateThread, CreateRemoteThread (into a hidden notepad process), QueueUserAPC with NtTestAlert APC queue flush, EnumTimeFormatsEx callback abuse, and CreateFiber scheduling. All API calls are dynamically resolved via GetProcAddress at runtime to avoid IAT entries, and payloads use XOR-encrypted msfvenom shellcode with NOP sled prepending to evade signature-based detection. diff --git a/description/gcarmix/HexWalk/description_en.txt b/description/gcarmix/HexWalk/description_en.txt new file mode 100644 index 00000000..5a3afd01 --- /dev/null +++ b/description/gcarmix/HexWalk/description_en.txt @@ -0,0 +1 @@ +Qt-based cross-platform hex editor and binary analysis workbench integrating Capstone disassembly, entropy charting, binwalk signature scanning, file diffing, byte-map visualization, string extraction, and cryptographic hashing into a single GUI. It supports YAML-based file format pattern definitions (ELF, PE, JPEG, PDF, WAV) for structured overlay highlighting, with a QHexEdit widget providing undo/redo, search, and color-tagged region annotations. diff --git a/description/geeksonsecurity/android-overlay-malware-example/description_en.txt b/description/geeksonsecurity/android-overlay-malware-example/description_en.txt new file mode 100644 index 00000000..5721edbf --- /dev/null +++ b/description/geeksonsecurity/android-overlay-malware-example/description_en.txt @@ -0,0 +1 @@ +Android proof-of-concept demonstrating the overlay credential-stealing attack pattern used by banking trojans. A background service monitors the foreground app via ActivityManager (with a /proc-based fallback for Android 5.1+), then launches a pixel-perfect phishing overlay—either as a WindowManager.addView floating view or a full startActivity screen—mimicking apps like UBS, Skype, and LinkedIn to capture user credentials. diff --git a/description/geeksonsecurity/android-overlay-protection/description_en.txt b/description/geeksonsecurity/android-overlay-protection/description_en.txt new file mode 100644 index 00000000..465f70ee --- /dev/null +++ b/description/geeksonsecurity/android-overlay-protection/description_en.txt @@ -0,0 +1 @@ +This project is an Android library for detecting and protecting against overlay attacks (tapjacking). It checks for visible overlay windows drawn on top of the application that could intercept user input or obscure UI elements, implementing Android's TYPE_APPLICATION_OVERLAY detection and filterTouchesWhenObscured flag handling. The Java library provides callback-based notification when overlays are detected. It is aimed at Android app developers and security engineers protecting sensitive UI flows from overlay-based attacks. diff --git a/description/gheja/game-design-documents/description_en.txt b/description/gheja/game-design-documents/description_en.txt new file mode 100644 index 00000000..c89fdd9c --- /dev/null +++ b/description/gheja/game-design-documents/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on game design documents. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / guide area. diff --git a/description/ghidragolf/ghidra_scripts/description_en.txt b/description/ghidragolf/ghidra_scripts/description_en.txt new file mode 100644 index 00000000..c14534ff --- /dev/null +++ b/description/ghidragolf/ghidra_scripts/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on scripts. +Competitors developed Ghidra Scripts to solve CTF challenges based on common Reverse Engineering problems in an automated fashion. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ghidra plugins area. diff --git a/description/ghostbyt3/BYOVDFinder/description_en.txt b/description/ghostbyt3/BYOVDFinder/description_en.txt new file mode 100644 index 00000000..a69ccb11 --- /dev/null +++ b/description/ghostbyt3/BYOVDFinder/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on identifies LOLDrivers that are not blocked by the active HVCI policy. +This is particularly useful for BYOVD (Bring Your Own Vulnerable Driver) attack paths where vulnerable drivers are permitted to load despite HVCI being enabled. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/giladreich/ida_migrator/description_en.txt b/description/giladreich/ida_migrator/description_en.txt new file mode 100644 index 00000000..890a3faf --- /dev/null +++ b/description/giladreich/ida_migrator/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on migrate Database. +It is primarily written in Python and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/gilboz/ida_kernelcache_ng/description_en.txt b/description/gilboz/ida_kernelcache_ng/description_en.txt new file mode 100644 index 00000000..d4c8528b --- /dev/null +++ b/description/gilboz/ida_kernelcache_ng/description_en.txt @@ -0,0 +1,3 @@ +This project is an IDA Plugin for analyzing iOS kernelcaches. +For now it is better that you install it as a pip package and then run cli.py. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/glmcdona/strings2/description_en.txt b/description/glmcdona/strings2/description_en.txt new file mode 100644 index 00000000..ea29ed2c --- /dev/null +++ b/description/glmcdona/strings2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on strings2 - Extract strings from binary files and process memory. +It is primarily written in C++ and C/C++ and centers on modding and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/gmh5225/-Modern-Warfare-Warzone-Cheat/description_en.txt b/description/gmh5225/-Modern-Warfare-Warzone-Cheat/description_en.txt new file mode 100644 index 00000000..a05b2bf0 --- /dev/null +++ b/description/gmh5225/-Modern-Warfare-Warzone-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:cod warzone and centers on modern warfare warzone cheat. +It is primarily written in C/C++ and C++ and centers on rendering, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cod warzone area. diff --git a/description/gmh5225/-Rainbow---EFI/description_en.txt b/description/gmh5225/-Rainbow---EFI/description_en.txt new file mode 100644 index 00000000..fe630262 --- /dev/null +++ b/description/gmh5225/-Rainbow---EFI/description_en.txt @@ -0,0 +1,4 @@ +This repository combines a Visual Studio and MSBuild-friendly EDK II environment with a separate `rainbow` UEFI driver project and debugger assets such as OVMF images, a UEFI shell ISO, and ROM files for local testing. +According to the archived README, the `rainbow.efi` payload hooks `ExitBootServices`, walks early Windows boot structures such as `OslLoaderBlock`, then hooks `IopLoadDriver` to apply spoofing logic before removing its own hook. +The included project structure shows both the boot-stage driver code and the supporting UEFI library layer needed to build and debug the EFI component rather than just a standalone binary drop. +It is mainly useful for firmware and Windows boot researchers who want to study how UEFI drivers are built, loaded from an EFI shell, and used to alter behavior during the transition into the Windows kernel. diff --git a/description/gmh5225/A146B-KSU/description_en.txt b/description/gmh5225/A146B-KSU/description_en.txt new file mode 100644 index 00000000..4d5fbb88 --- /dev/null +++ b/description/gmh5225/A146B-KSU/description_en.txt @@ -0,0 +1 @@ +This project is a custom Android kernel for the Samsung Galaxy A14 (A146B) with KernelSU support integrated. It provides a modified kernel source tree with KernelSU patches for root access management on this specific Samsung device. It is aimed at Android developers and custom ROM builders targeting Samsung A14 devices with KernelSU root. diff --git a/description/gmh5225/AI-FPS-b00m-h3adsh0t/description_en.txt b/description/gmh5225/AI-FPS-b00m-h3adsh0t/description_en.txt new file mode 100644 index 00000000..c5a2c826 --- /dev/null +++ b/description/gmh5225/AI-FPS-b00m-h3adsh0t/description_en.txt @@ -0,0 +1 @@ +This project is an AI-powered FPS aimbot that uses computer vision and machine learning to detect and aim at enemy players in first-person shooter games. It captures game frames, runs object detection (typically YOLO-based) to identify player models on screen, calculates target coordinates, and moves the mouse to aim at detected targets. The Python/C++ tool operates externally through screen capture. It is aimed at game security researchers studying AI/ML-based cheat detection and computer vision aimbot architectures. diff --git a/description/gmh5225/ANGRYORCHARD/description_en.txt b/description/gmh5225/ANGRYORCHARD/description_en.txt new file mode 100644 index 00000000..dfffce3c --- /dev/null +++ b/description/gmh5225/ANGRYORCHARD/description_en.txt @@ -0,0 +1,3 @@ +This project is a kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more. +It is primarily written in C/C++ and C and centers on kernel-level work and modding. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/gmh5225/AcDrv/description_en.txt b/description/gmh5225/AcDrv/description_en.txt new file mode 100644 index 00000000..0fa1eb5d --- /dev/null +++ b/description/gmh5225/AcDrv/description_en.txt @@ -0,0 +1 @@ +This project is AcDrv, a Windows kernel driver for anti-cheat or security research purposes. It implements kernel-level monitoring capabilities such as process callback registration, module load tracking, memory access interception, or system call monitoring through a custom driver interface. It is aimed at kernel security researchers building or studying anti-cheat driver components. diff --git a/description/gmh5225/AdbFileManager/description_en.txt b/description/gmh5225/AdbFileManager/description_en.txt new file mode 100644 index 00000000..ac0cfa4e --- /dev/null +++ b/description/gmh5225/AdbFileManager/description_en.txt @@ -0,0 +1 @@ +Windows GUI file manager built with C#/.NET that browses, copies, and transfers files on Android devices over the ADB protocol, offering faster transfer speeds than standard MTP with a dual-pane Explorer-style interface and multi-language support (English, German, Spanish, Japanese, Polish, Czech). diff --git a/description/gmh5225/AetherVisor/description_en.txt b/description/gmh5225/AetherVisor/description_en.txt new file mode 100644 index 00000000..ccff4c64 --- /dev/null +++ b/description/gmh5225/AetherVisor/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hacked Hypervisor Testing AMD. +Here's how AetherVisor's features are implemented. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/gmh5225/Akebi-Cheat-3.3/description_en.txt b/description/gmh5225/Akebi-Cheat-3.3/description_en.txt new file mode 100644 index 00000000..8b71f2d0 --- /dev/null +++ b/description/gmh5225/Akebi-Cheat-3.3/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cheat. +Tell us which version you are using. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:genshin impact area. diff --git a/description/gmh5225/Akebi-PacketSniffer/description_en.txt b/description/gmh5225/Akebi-PacketSniffer/description_en.txt new file mode 100644 index 00000000..94115f7c --- /dev/null +++ b/description/gmh5225/Akebi-PacketSniffer/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / packet sniffer&filter and centers on akebi packet sniffer. +It is primarily written in C++ and C/C++ and centers on driver development, DirectX, and OpenGL. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / packet sniffer&filter area. diff --git a/description/gmh5225/Alaa-8ball-pool-source-exposed/description_en.txt b/description/gmh5225/Alaa-8ball-pool-source-exposed/description_en.txt new file mode 100644 index 00000000..b99adce9 --- /dev/null +++ b/description/gmh5225/Alaa-8ball-pool-source-exposed/description_en.txt @@ -0,0 +1 @@ +This project contains exposed or leaked source code from an 8 Ball Pool game cheat. It provides aim assistance, trajectory prediction, and shot power calculation by reading game physics data and rendering guideline overlays. The source demonstrates billiard game cheat implementation patterns. It is aimed at mobile game security researchers studying physics-based game cheats. diff --git a/description/gmh5225/Alcatraz/description_en.txt b/description/gmh5225/Alcatraz/description_en.txt new file mode 100644 index 00000000..ba97de47 --- /dev/null +++ b/description/gmh5225/Alcatraz/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on alcatraz Alcatraz is a x64 binary obfuscator that is able to obfuscate various different pe files including. +(You can search by putting in the name in the searchbar at the top) 3.) Hit compile (note: obfuscating lots of functions might take some seconds) Features In the following showcase all features (besides the one being showcased) are disabled. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/gmh5225/Allocating-individual-pages/description_en.txt b/description/gmh5225/Allocating-individual-pages/description_en.txt new file mode 100644 index 00000000..0006f422 --- /dev/null +++ b/description/gmh5225/Allocating-individual-pages/description_en.txt @@ -0,0 +1 @@ +This project demonstrates techniques for allocating individual memory pages in the Windows kernel for stealthy code execution. It allocates isolated kernel pages through non-standard methods to avoid pool tag tracking and memory scanner detection. The technique is used by manually mapped drivers to reduce their memory footprint visibility. It is aimed at kernel researchers studying stealth memory allocation and anti-forensic techniques. diff --git a/description/gmh5225/Android-DLL-Injector/description_en.txt b/description/gmh5225/Android-DLL-Injector/description_en.txt new file mode 100644 index 00000000..65b0b558 --- /dev/null +++ b/description/gmh5225/Android-DLL-Injector/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on build and Installation Android Studio is required. +The library you want to Inject needs to be compiled for the target architecture, otherwise it will not work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:android area. diff --git a/description/gmh5225/Android-Emulator-Detection/description_en.txt b/description/gmh5225/Android-Emulator-Detection/description_en.txt new file mode 100644 index 00000000..6a037cee --- /dev/null +++ b/description/gmh5225/Android-Emulator-Detection/description_en.txt @@ -0,0 +1 @@ +This project is an Android library implementing multiple emulator detection techniques. It checks for emulator indicators including QEMU-specific files, Genymotion markers, BlueStacks artifacts, build property anomalies, hardware sensor absence, telephony service inconsistencies, and known emulator MAC/IMEI patterns. The Java/Kotlin library provides a scoring system combining multiple heuristics. It is aimed at mobile game developers and security engineers implementing emulator detection for anti-cheat or anti-fraud purposes. diff --git a/description/gmh5225/Android-MemoryTool/description_en.txt b/description/gmh5225/Android-MemoryTool/description_en.txt new file mode 100644 index 00000000..6a43cc3c --- /dev/null +++ b/description/gmh5225/Android-MemoryTool/description_en.txt @@ -0,0 +1 @@ +Single-header C/C++ library for reading and writing process memory on Android devices through /proc/pid/mem, providing a minimal API for runtime memory inspection and modification of target application processes without requiring ptrace attachment. diff --git a/description/gmh5225/Android-Mod-Menu-ImGui/description_en.txt b/description/gmh5225/Android-Mod-Menu-ImGui/description_en.txt new file mode 100644 index 00000000..74c5d224 --- /dev/null +++ b/description/gmh5225/Android-Mod-Menu-ImGui/description_en.txt @@ -0,0 +1 @@ +This project is an Android game mod menu template using Dear ImGui for overlay rendering. It provides a native C++ framework for injecting an ImGui-based cheat menu into Android games, with OpenGL ES integration, touch input handling, and JNI hooks for game function modification. The template includes configurable menu layouts and toggle controls. It is aimed at Android game modders building visual mod menus with ImGui. diff --git a/description/gmh5225/Android-ModGamesByInjectZygote/description_en.txt b/description/gmh5225/Android-ModGamesByInjectZygote/description_en.txt new file mode 100644 index 00000000..82c061a7 --- /dev/null +++ b/description/gmh5225/Android-ModGamesByInjectZygote/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / injection:android and centers on android mod games by inject zygote. +It is primarily written in C/C++ and C++ and centers on kernel-level work, OpenGL, and networking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:android area. diff --git a/description/gmh5225/Android-OpenGL-ES-Chams/description_en.txt b/description/gmh5225/Android-OpenGL-ES-Chams/description_en.txt new file mode 100644 index 00000000..37cf7614 --- /dev/null +++ b/description/gmh5225/Android-OpenGL-ES-Chams/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on chams. +I've included descriptive comments within the main header to provide easy insight on the code. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/gmh5225/Android-privilege-CVE-2022-20452-LeakValue/description_en.txt b/description/gmh5225/Android-privilege-CVE-2022-20452-LeakValue/description_en.txt new file mode 100644 index 00000000..d1404644 --- /dev/null +++ b/description/gmh5225/Android-privilege-CVE-2022-20452-LeakValue/description_en.txt @@ -0,0 +1 @@ +This project is a proof-of-concept exploit for CVE-2022-20452, an Android privilege escalation vulnerability. It exploits a LazyValue deserialization flaw in the Android framework to achieve privilege escalation from an unprivileged app context, potentially gaining system-level access. The Java/Kotlin exploit demonstrates the attack chain for this specific Android vulnerability. It is aimed at Android security researchers studying deserialization-based privilege escalation on Android. diff --git a/description/gmh5225/AndroidCheatTemplate/description_en.txt b/description/gmh5225/AndroidCheatTemplate/description_en.txt new file mode 100644 index 00000000..dc5a2fc4 --- /dev/null +++ b/description/gmh5225/AndroidCheatTemplate/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:sausage man and centers on android cheat template. +It is primarily written in C/C++ and C++ and centers on kernel-level work, OpenGL, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:sausage man area. diff --git a/description/gmh5225/AndroidDriveSignity/description_en.txt b/description/gmh5225/AndroidDriveSignity/description_en.txt new file mode 100644 index 00000000..fa851d60 --- /dev/null +++ b/description/gmh5225/AndroidDriveSignity/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on bypass driver signature verification in Android kernel(ARMv8.3. +This tool aims to facilitate the development and testing process by allowing developers to bypass the kernel's built-in security measures that prevent unofficial or modified drivers from being loaded. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel driver development area. diff --git a/description/gmh5225/Android_Native_Surface/description_en.txt b/description/gmh5225/Android_Native_Surface/description_en.txt new file mode 100644 index 00000000..3ce58fa4 --- /dev/null +++ b/description/gmh5225/Android_Native_Surface/description_en.txt @@ -0,0 +1 @@ +This project demonstrates creating and rendering to a native Android surface from C/C++ code for building game overlays on Android. It uses the Android NDK's ANativeWindow API or SurfaceFlinger directly to create a transparent overlay surface above other apps, rendering cheat menus or ESP information. It is aimed at Android game modders and security researchers building native rendering overlays. diff --git a/description/gmh5225/AntiCheat-chrysalis/description_en.txt b/description/gmh5225/AntiCheat-chrysalis/description_en.txt new file mode 100644 index 00000000..70b9fd29 --- /dev/null +++ b/description/gmh5225/AntiCheat-chrysalis/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / guide and centers on anti cheat chrysalis. +It is primarily written in C++ and centers on anti-cheat research, kernel-level work, and OpenGL. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / guide area. diff --git a/description/gmh5225/AntiCheat/description_en.txt b/description/gmh5225/AntiCheat/description_en.txt new file mode 100644 index 00000000..9378ebfe --- /dev/null +++ b/description/gmh5225/AntiCheat/description_en.txt @@ -0,0 +1 @@ +This project is a reference implementation of an anti-cheat system demonstrating common game protection techniques. It includes process integrity verification, module scanning, memory pattern detection, debugger detection, overlay monitoring, and driver communication for kernel-level checks. The C/C++ codebase serves as a study reference for understanding how anti-cheat systems are structured. It is aimed at anti-cheat developers and game security researchers studying protection system architecture. diff --git a/description/gmh5225/AntiDbg-AmogusPlugin/description_en.txt b/description/gmh5225/AntiDbg-AmogusPlugin/description_en.txt new file mode 100644 index 00000000..acb1c535 --- /dev/null +++ b/description/gmh5225/AntiDbg-AmogusPlugin/description_en.txt @@ -0,0 +1,3 @@ +This project provides anti dbg amogus plugin. +It is primarily written in C/C++ and C++ and centers on plugin development, hooking, and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti debugging area. diff --git a/description/gmh5225/AntiDebug-AntiVM/description_en.txt b/description/gmh5225/AntiDebug-AntiVM/description_en.txt new file mode 100644 index 00000000..e6fa604e --- /dev/null +++ b/description/gmh5225/AntiDebug-AntiVM/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vbox. +This is not intended to be compiled and ran but rather to show examples of how to implement these different methods into your existing projects. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:virtual environments area. diff --git a/description/gmh5225/AntiDebugandMemoryDump/description_en.txt b/description/gmh5225/AntiDebugandMemoryDump/description_en.txt new file mode 100644 index 00000000..cfd925b2 --- /dev/null +++ b/description/gmh5225/AntiDebugandMemoryDump/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android. +It is primarily written in Java and C/C++ and centers on memory analysis, emulation, and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti debugging area. diff --git a/description/gmh5225/AntiKernelDebug-POC/description_en.txt b/description/gmh5225/AntiKernelDebug-POC/description_en.txt new file mode 100644 index 00000000..f1f2665c --- /dev/null +++ b/description/gmh5225/AntiKernelDebug-POC/description_en.txt @@ -0,0 +1 @@ +This project is a proof of concept for detecting and preventing kernel-mode debugging on Windows. It implements detection checks for kernel debuggers like WinDbg and KD by testing debug port status, KdDebuggerEnabled flag, KUSER_SHARED_DATA fields, and interrupt-based detection techniques. The C driver demonstrates anti-kernel-debug techniques used by anti-cheat systems and protected software. It is aimed at kernel security researchers studying kernel debugger detection and anti-debug bypass methods. diff --git a/description/gmh5225/Anticheat-android-cheap-engine/description_en.txt b/description/gmh5225/Anticheat-android-cheap-engine/description_en.txt new file mode 100644 index 00000000..d502328f --- /dev/null +++ b/description/gmh5225/Anticheat-android-cheap-engine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sample implementation of anti-cheat in android. +It is primarily written in C++ and C/C++ and centers on anti-cheat research. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / open source anti cheat system area. diff --git a/description/gmh5225/Apex-ApexCheat/description_en.txt b/description/gmh5225/Apex-ApexCheat/description_en.txt new file mode 100644 index 00000000..79316dd8 --- /dev/null +++ b/description/gmh5225/Apex-ApexCheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:apex legends and centers on apex apex cheat. +It is primarily written in C/C++ and C++ and centers on hooking and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/gmh5225/Apex-ApexCheeseTest/description_en.txt b/description/gmh5225/Apex-ApexCheeseTest/description_en.txt new file mode 100644 index 00000000..5f7a395a --- /dev/null +++ b/description/gmh5225/Apex-ApexCheeseTest/description_en.txt @@ -0,0 +1,3 @@ +This project is the kernel-usermode communication got copied from an unknowncheat's user. +It is primarily written in C/C++ and C++ and centers on anti-cheat research, kernel-level work, and driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/gmh5225/Apex-CHEAT-FIXED/description_en.txt b/description/gmh5225/Apex-CHEAT-FIXED/description_en.txt new file mode 100644 index 00000000..5991d932 --- /dev/null +++ b/description/gmh5225/Apex-CHEAT-FIXED/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:apex legends and centers on apex cheat fixed. +It is primarily written in C/C++ and C++ and centers on driver development, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/gmh5225/Apex-Legends-External-Esp-Aimbot-Skinchanger/description_en.txt b/description/gmh5225/Apex-Legends-External-Esp-Aimbot-Skinchanger/description_en.txt new file mode 100644 index 00000000..b54cf4f2 --- /dev/null +++ b/description/gmh5225/Apex-Legends-External-Esp-Aimbot-Skinchanger/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:apex legends and centers on apex legends external esp aimbot skinchanger. +It is primarily written in C++ and C/C++ and centers on rendering, SDK generation, and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/gmh5225/Apex-SIMPLE-AIMBOT-GLOW-APEX/description_en.txt b/description/gmh5225/Apex-SIMPLE-AIMBOT-GLOW-APEX/description_en.txt new file mode 100644 index 00000000..50e4702c --- /dev/null +++ b/description/gmh5225/Apex-SIMPLE-AIMBOT-GLOW-APEX/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:apex legends and centers on apex simple aimbot glow apex. +It is primarily written in C/C++ and C++ and centers on driver development, hooking, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/gmh5225/Apex-Spoofer/description_en.txt b/description/gmh5225/Apex-Spoofer/description_en.txt new file mode 100644 index 00000000..62e07940 --- /dev/null +++ b/description/gmh5225/Apex-Spoofer/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / hwid and centers on apex spoofer. +It centers on anti-cheat research, kernel-level work, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/gmh5225/Apex_ESP_Old_Project/description_en.txt b/description/gmh5225/Apex_ESP_Old_Project/description_en.txt new file mode 100644 index 00000000..af513e42 --- /dev/null +++ b/description/gmh5225/Apex_ESP_Old_Project/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:apex legends and centers on apex esp old project. +It is primarily written in C/C++ and C++ and centers on rendering, SDK generation, and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/gmh5225/Apple-Lite-Fortnite-Cheat/description_en.txt b/description/gmh5225/Apple-Lite-Fortnite-Cheat/description_en.txt new file mode 100644 index 00000000..1b5eba36 --- /dev/null +++ b/description/gmh5225/Apple-Lite-Fortnite-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on apple-Lite-Fortnite-Cheat This is the Apple Lite Fortnite Cheat leak and remake by Police. +It is primarily written in C/C++ and C++ and centers on kernel-level work, shader work, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/gmh5225/Ark/description_en.txt b/description/gmh5225/Ark/description_en.txt new file mode 100644 index 00000000..ae93c8bc --- /dev/null +++ b/description/gmh5225/Ark/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on tool. +ARK is a deep learning framework especially designed for highly optimized performance over distributed GPUs. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/gmh5225/AsIO-Exploit/description_en.txt b/description/gmh5225/AsIO-Exploit/description_en.txt new file mode 100644 index 00000000..75eb0530 --- /dev/null +++ b/description/gmh5225/AsIO-Exploit/description_en.txt @@ -0,0 +1,4 @@ +This project is a local privilege escalation proof of concept for the ASUS AsIO3.sys driver that abuses both its authorization model and its privileged IOCTL surface. +The archive shows direct use of ASIO_RDMSR_IOCTL and ASIO_WRMSR_IOCTL for MSR access, plus an ASIO_ADDPID request that is sent after querying the inherited parent PID to satisfy or bypass the driver's trust logic. +Its exploit code manually resolves NTDLL exports, opens \Device\Asusgio3 with native syscalls, and issues the control requests through NtDeviceIoControlFile, so it reads like shellcode-oriented exploit code rather than a developer utility. +It is mainly useful for Windows security researchers studying native-syscall LPE chains, AsIO3 authorization bypasses, and the security impact of exposing MSR and process-based control IOCTLs. diff --git a/description/gmh5225/AssaultCubeCheat/description_en.txt b/description/gmh5225/AssaultCubeCheat/description_en.txt new file mode 100644 index 00000000..fa9282b4 --- /dev/null +++ b/description/gmh5225/AssaultCubeCheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:assault cube and centers on assault cube cheat. +It is primarily written in C++ and centers on modding and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:assault cube area. diff --git a/description/gmh5225/Astra/description_en.txt b/description/gmh5225/Astra/description_en.txt new file mode 100644 index 00000000..94539ec3 --- /dev/null +++ b/description/gmh5225/Astra/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C/C++ and C++ and centers on rendering, modding, and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/gmh5225/AsusDrv/description_en.txt b/description/gmh5225/AsusDrv/description_en.txt new file mode 100644 index 00000000..3c6632b6 --- /dev/null +++ b/description/gmh5225/AsusDrv/description_en.txt @@ -0,0 +1 @@ +This project exploits ASUS's kernel driver for arbitrary kernel memory access. ASUS motherboard utility drivers provide IOCTLs for hardware monitoring that can be abused for reading/writing physical memory, providing a BYOVD primitive. This tool wraps the vulnerable ASUS driver interface for kernel exploitation. It is aimed at BYOVD researchers studying ASUS driver vulnerabilities. diff --git a/description/gmh5225/AtomPePacker/description_en.txt b/description/gmh5225/AtomPePacker/description_en.txt new file mode 100644 index 00000000..683d5826 --- /dev/null +++ b/description/gmh5225/AtomPePacker/description_en.txt @@ -0,0 +1 @@ +This project is AtomPePacker, a Windows PE executable packer that compresses and encrypts PE files with a runtime unpacking stub. It packs the original PE sections, encrypts them, and prepends a decompression loader that restores the original binary in memory at runtime. The packer handles imports, relocations, and TLS callbacks during unpacking. It is aimed at software protection researchers studying PE packing techniques. diff --git a/description/gmh5225/Aurora/description_en.txt b/description/gmh5225/Aurora/description_en.txt new file mode 100644 index 00000000..ad4e30b3 --- /dev/null +++ b/description/gmh5225/Aurora/description_en.txt @@ -0,0 +1 @@ +This project is Aurora, a CS2 (Counter-Strike 2) cheat providing ESP, aimbot, and visual modification features. It interacts with the Source 2 engine through schema system access and entity enumeration to extract player data and render overlays. It is aimed at game security researchers studying CS2 cheat implementations. diff --git a/description/gmh5225/AurumRE/description_en.txt b/description/gmh5225/AurumRE/description_en.txt new file mode 100644 index 00000000..59125409 --- /dev/null +++ b/description/gmh5225/AurumRE/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / explore anticheat system:ricochet and centers on aurum re. +It centers on anti-cheat research, reverse engineering, and driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:ricochet area. diff --git a/description/gmh5225/AutoGunfireReborn/description_en.txt b/description/gmh5225/AutoGunfireReborn/description_en.txt new file mode 100644 index 00000000..1b47a8ae --- /dev/null +++ b/description/gmh5225/AutoGunfireReborn/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this project shows how to inject Unity modules during runtime into il2cpp Unity games. +It is primarily written in C# and centers on modding, Unity, and IL2CPP analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:gunfire reborn area. diff --git a/description/gmh5225/AutoOpenCAK/description_en.txt b/description/gmh5225/AutoOpenCAK/description_en.txt new file mode 100644 index 00000000..678ededc --- /dev/null +++ b/description/gmh5225/AutoOpenCAK/description_en.txt @@ -0,0 +1 @@ +This project is an automation tool for opening or extracting CAK (compressed archive) files used in specific game or software distributions. It automates the extraction process for files using the CAK format, handling decompression and file organization. It is aimed at game modders and researchers who work with CAK archive formats in game data files. diff --git a/description/gmh5225/Auto_Simulated_Universe/description_en.txt b/description/gmh5225/Auto_Simulated_Universe/description_en.txt new file mode 100644 index 00000000..8359cc0c --- /dev/null +++ b/description/gmh5225/Auto_Simulated_Universe/description_en.txt @@ -0,0 +1 @@ +This project is an automation bot for Honkai: Star Rail's Simulated Universe game mode. It automates the repetitive gameplay loop of navigating the Simulated Universe dungeon, selecting blessings, fighting battles, and collecting rewards using screen recognition, automated input, and decision-making logic. The tool handles pathfinding, combat rotation, and blessing selection strategies. It is aimed at Honkai: Star Rail players automating farming content and game automation researchers. diff --git a/description/gmh5225/AvastHV/description_en.txt b/description/gmh5225/AvastHV/description_en.txt new file mode 100644 index 00000000..9a1e95c1 --- /dev/null +++ b/description/gmh5225/AvastHV/description_en.txt @@ -0,0 +1 @@ +This project documents or exploits Avast antivirus's hypervisor component for kernel-level operations. It demonstrates using Avast's signed hypervisor driver to gain elevated privileges or execute arbitrary code in hypervisor context, leveraging Avast's trusted driver status to bypass DSE and anti-cheat protections. It is aimed at kernel security researchers studying BYOVD opportunities in antivirus hypervisor components. diff --git a/description/gmh5225/AzureV316/description_en.txt b/description/gmh5225/AzureV316/description_en.txt new file mode 100644 index 00000000..4b542bd8 --- /dev/null +++ b/description/gmh5225/AzureV316/description_en.txt @@ -0,0 +1 @@ +This project is AzureV316, a MapleStory v316 private server emulator implementing the game server logic for the v316 version. It handles login authentication, character data persistence, map instances, monster spawning, skill processing, quest progression, and the party/guild systems specific to this MapleStory version. It is aimed at MapleStory private server developers and researchers studying MMO server implementations. diff --git a/description/gmh5225/BE-BattlEye_shellcode/description_en.txt b/description/gmh5225/BE-BattlEye_shellcode/description_en.txt new file mode 100644 index 00000000..861dadd0 --- /dev/null +++ b/description/gmh5225/BE-BattlEye_shellcode/description_en.txt @@ -0,0 +1,4 @@ +This project reimplements recent BattlEye shellcode behavior as a DLL that mimics the anti-cheat's user-mode scan stages. +Its worker thread runs hidden system thread checks, KiUserExceptionDispatcher hook detection, module and function integrity checks, signature scanning, and thread scanning in the same sequence shown by the sample shellcode wrapper. +The vectored exception handler setup also registers Win32 and CRT targets such as GetAsyncKeyState, NtUserPeekMessage, NtSetEvent, and sqrtf so the shellcode-style control flow can recover after guarded calls. +It is best described as a study scaffold for reproducing BattlEye shellcode scanning logic rather than a generic shellcode placeholder. diff --git a/description/gmh5225/BE-Emulator/description_en.txt b/description/gmh5225/BE-Emulator/description_en.txt new file mode 100644 index 00000000..606a5b85 --- /dev/null +++ b/description/gmh5225/BE-Emulator/description_en.txt @@ -0,0 +1 @@ +This project is a BattlEye anti-cheat emulator that simulates BattlEye's client-side behavior without the actual anti-cheat running. It emulates the BattlEye communication protocol, heartbeat responses, and module loading interface, allowing games to run without BattlEye protection active. The tool is used for analyzing how games interact with BattlEye. It is aimed at anti-cheat researchers studying BattlEye's protocol and integration mechanisms. diff --git a/description/gmh5225/BE-Forcer-Fortnite/description_en.txt b/description/gmh5225/BE-Forcer-Fortnite/description_en.txt new file mode 100644 index 00000000..91616e19 --- /dev/null +++ b/description/gmh5225/BE-Forcer-Fortnite/description_en.txt @@ -0,0 +1 @@ +This project is a BattlEye bypass tool specifically targeting Fortnite's anti-cheat implementation. It forces or manipulates BattlEye's initialization process to disable specific detection checks, allowing cheat injection or memory access that would normally be blocked. It is aimed at anti-cheat researchers studying BattlEye's Fortnite-specific protection mechanisms and bypass techniques. diff --git a/description/gmh5225/BF1-ESP-AND-AIMBOT/description_en.txt b/description/gmh5225/BF1-ESP-AND-AIMBOT/description_en.txt new file mode 100644 index 00000000..d139721a --- /dev/null +++ b/description/gmh5225/BF1-ESP-AND-AIMBOT/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:battlefield 1 and centers on bf1 esp and aimbot. +It is primarily written in C/C++ and C++ and centers on DirectX, rendering, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:battlefield 1 area. diff --git a/description/gmh5225/BF4-Internal-overlay/description_en.txt b/description/gmh5225/BF4-Internal-overlay/description_en.txt new file mode 100644 index 00000000..0486776e --- /dev/null +++ b/description/gmh5225/BF4-Internal-overlay/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:battlefield 4 and centers on bf4 internal overlay. +It is primarily written in C/C++ and C++ and centers on DirectX, rendering, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:battlefield 4 area. diff --git a/description/gmh5225/BLOCKPOST-Cheat/description_en.txt b/description/gmh5225/BLOCKPOST-Cheat/description_en.txt new file mode 100644 index 00000000..2d4a7300 --- /dev/null +++ b/description/gmh5225/BLOCKPOST-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:blockpost and centers on blockpost cheat. +It is primarily written in C++ and C/C++ and centers on Unity, IL2CPP analysis, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:blockpost area. diff --git a/description/gmh5225/BT_ModularGameFeatures/description_en.txt b/description/gmh5225/BT_ModularGameFeatures/description_en.txt new file mode 100644 index 00000000..3c1b29ee --- /dev/null +++ b/description/gmh5225/BT_ModularGameFeatures/description_en.txt @@ -0,0 +1,3 @@ +This project is a quick implementation of modular game features for the 'BTS' test. +It is primarily written in C/C++ and C++ and centers on audio systems, physics, and animation. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unreal area. diff --git a/description/gmh5225/BYOVD/description_en.txt b/description/gmh5225/BYOVD/description_en.txt new file mode 100644 index 00000000..8d3e8c2a --- /dev/null +++ b/description/gmh5225/BYOVD/description_en.txt @@ -0,0 +1,4 @@ +This project is a curated collection of proof-of-concepts showing how multiple signed vulnerable drivers can be abused to terminate or disable AV and EDR components. +The top-level README frames it as an educational BYOVD lab, and the included subprojects target drivers such as viragt64.sys, TfSysMon, ksapi64, BdApiUtil, and wsftprm with dedicated kill routines. +The Viragt64 branch also explains that the PoC was published after similar driver abuse started appearing in real-world campaigns, which gives the repository useful operational context beyond isolated driver samples. +It is mainly useful for Windows security researchers studying BYOVD tradecraft, process-kill abuse of signed drivers, and how public PoCs map to drivers later seen in the wild. diff --git a/description/gmh5225/BadEye/description_en.txt b/description/gmh5225/BadEye/description_en.txt new file mode 100644 index 00000000..86fef701 --- /dev/null +++ b/description/gmh5225/BadEye/description_en.txt @@ -0,0 +1,3 @@ +This project is the reason this works is two fold, firstly BattlEye assumes that the handle already has this access, secondly BattlEye only uses the handle to get the EPROCESS so they can call MmCopyVirtualMemory. +It is primarily written in C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:be area. diff --git a/description/gmh5225/BadRentdrv2/description_en.txt b/description/gmh5225/BadRentdrv2/description_en.txt new file mode 100644 index 00000000..dfa5f062 --- /dev/null +++ b/description/gmh5225/BadRentdrv2/description_en.txt @@ -0,0 +1 @@ +This project exploits the Rentdrv2.sys vulnerable signed driver for kernel memory access on Windows. It uses Rentdrv2's insecure IOCTL interface to achieve arbitrary physical memory read/write for driver mapping, kernel patching, or anti-cheat bypass. It is aimed at BYOVD researchers studying Rentdrv2 driver exploitation. diff --git a/description/gmh5225/Basic_Anti-Cheat/description_en.txt b/description/gmh5225/Basic_Anti-Cheat/description_en.txt new file mode 100644 index 00000000..740594c5 --- /dev/null +++ b/description/gmh5225/Basic_Anti-Cheat/description_en.txt @@ -0,0 +1 @@ +This project is a basic anti-cheat implementation demonstrating fundamental game protection techniques. It includes process integrity checking, known cheat signature scanning, debugger detection, suspicious module enumeration, and memory region validation. The simple C/C++ implementation serves as a learning resource for understanding core anti-cheat concepts. It is aimed at game security beginners learning anti-cheat fundamentals. diff --git a/description/gmh5225/BattleriteBot/description_en.txt b/description/gmh5225/BattleriteBot/description_en.txt new file mode 100644 index 00000000..9a5707c7 --- /dev/null +++ b/description/gmh5225/BattleriteBot/description_en.txt @@ -0,0 +1 @@ +This project is a game automation bot for Battlerite, a team arena brawler. It reads game state through memory access or screen recognition and automates gameplay actions including ability casting, targeting, and movement. It is aimed at game automation researchers studying bot development for arena combat games. diff --git a/description/gmh5225/BepInEx-IL2CPPBase/description_en.txt b/description/gmh5225/BepInEx-IL2CPPBase/description_en.txt new file mode 100644 index 00000000..aa02f815 --- /dev/null +++ b/description/gmh5225/BepInEx-IL2CPPBase/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iL2CPP Menu. +It is primarily written in C# and centers on rendering, audio systems, and physics. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/gmh5225/BetterHI3Launcher/description_en.txt b/description/gmh5225/BetterHI3Launcher/description_en.txt new file mode 100644 index 00000000..5bfce093 --- /dev/null +++ b/description/gmh5225/BetterHI3Launcher/description_en.txt @@ -0,0 +1 @@ +This project is an improved launcher for Honkai Impact 3rd that provides features beyond the official launcher. It may include download management, version switching, server selection, game file verification, and configuration options not available in the standard launcher. It is aimed at Honkai Impact 3rd players wanting enhanced launcher functionality and game management. diff --git a/description/gmh5225/BigBaseV2/description_en.txt b/description/gmh5225/BigBaseV2/description_en.txt new file mode 100644 index 00000000..8cf9629d --- /dev/null +++ b/description/gmh5225/BigBaseV2/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:gta5 and centers on big base v2. +It is primarily written in C++ and Lua and centers on rendering, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:gta5 area. diff --git a/description/gmh5225/BlackSignatureDriver/description_en.txt b/description/gmh5225/BlackSignatureDriver/description_en.txt new file mode 100644 index 00000000..cd7ccb45 --- /dev/null +++ b/description/gmh5225/BlackSignatureDriver/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / black signature and centers on black signature driver. +It centers on driver development and networking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / black signature area. diff --git a/description/gmh5225/Blackout/description_en.txt b/description/gmh5225/Blackout/description_en.txt new file mode 100644 index 00000000..28851b87 --- /dev/null +++ b/description/gmh5225/Blackout/description_en.txt @@ -0,0 +1,4 @@ +A kernel-mode tool leveraging the gmer driver (sourced from loldrivers.io) to disable or terminate EDR and AV processes. +Operates by loading a signed vulnerable driver and issuing IOCTL calls to kill target security product processes by PID. +Supports Windows Defender with continuous suppression to prevent the service from restarting. + diff --git a/description/gmh5225/Bypassing-EasyAntiCheat-Integrity-check/description_en.txt b/description/gmh5225/Bypassing-EasyAntiCheat-Integrity-check/description_en.txt new file mode 100644 index 00000000..3d02e4cb --- /dev/null +++ b/description/gmh5225/Bypassing-EasyAntiCheat-Integrity-check/description_en.txt @@ -0,0 +1,4 @@ +A technical analysis and bypass for EasyAntiCheat's kernel-mode driver integrity checks. +Demonstrates how EAC validates its driver sections using CreateProcess and LoadImage notification routines, and provides a Capstone-based deobfuscation tool that strips garbage instructions to reveal the underlying integrity check logic. +Includes reconstructed C++ code of the integrity check function showing section-by-section comparison against a stored driver copy. + diff --git a/description/gmh5225/CE-remap-plugin/description_en.txt b/description/gmh5225/CE-remap-plugin/description_en.txt new file mode 100644 index 00000000..4ef9cc76 --- /dev/null +++ b/description/gmh5225/CE-remap-plugin/description_en.txt @@ -0,0 +1,4 @@ +A Cheat Engine plugin written in Delphi that remaps disassembler memory pages for analysis. +Hooks into the Cheat Engine plugin SDK to remap the page of a disassembler address, enabling viewing of code that would otherwise be hidden or obfuscated. +Tested on Cheat Engine 7.4. + diff --git a/description/gmh5225/CET-win10/description_en.txt b/description/gmh5225/CET-win10/description_en.txt new file mode 100644 index 00000000..0825c1a5 --- /dev/null +++ b/description/gmh5225/CET-win10/description_en.txt @@ -0,0 +1,3 @@ +A research project exploring Intel Control-flow Enforcement Technology (CET) support on Windows 10. +Investigates shadow stack and indirect branch tracking mechanisms as implemented by the Windows kernel for forward-edge and backward-edge CFI protection. + diff --git a/description/gmh5225/COD-boiii/description_en.txt b/description/gmh5225/COD-boiii/description_en.txt new file mode 100644 index 00000000..9ba76a2c --- /dev/null +++ b/description/gmh5225/COD-boiii/description_en.txt @@ -0,0 +1,3 @@ +A Call of Duty: Black Ops III (BOIII) client modification and research project. +Provides game client patches, SDK structures, and tooling for analyzing and modifying the BOIII game engine at runtime. + diff --git a/description/gmh5225/CODM-ESP-Aimbot-Mod-Menu/description_en.txt b/description/gmh5225/CODM-ESP-Aimbot-Mod-Menu/description_en.txt new file mode 100644 index 00000000..7786e099 --- /dev/null +++ b/description/gmh5225/CODM-ESP-Aimbot-Mod-Menu/description_en.txt @@ -0,0 +1,3 @@ +An internal mod menu for Call of Duty Mobile featuring ESP (wallhack), aimbot, and additional gameplay modifications. +Built as an injectable library targeting the mobile game client with overlay rendering for visual cheats. + diff --git a/description/gmh5225/CReadMemory/description_en.txt b/description/gmh5225/CReadMemory/description_en.txt new file mode 100644 index 00000000..b42f9ebc --- /dev/null +++ b/description/gmh5225/CReadMemory/description_en.txt @@ -0,0 +1,3 @@ +A memory reading library providing cross-process memory access primitives for game hacking. +Implements various methods for reading remote process memory from user mode, serving as a base for building external game cheats. + diff --git a/description/gmh5225/CS2-Cheat-Base/description_en.txt b/description/gmh5225/CS2-Cheat-Base/description_en.txt new file mode 100644 index 00000000..b8ccf04b --- /dev/null +++ b/description/gmh5225/CS2-Cheat-Base/description_en.txt @@ -0,0 +1,3 @@ +A base framework for building Counter-Strike 2 cheats, providing core SDK structures and hook infrastructure. +Includes offset definitions, entity class wrappers, and rendering setup for developing CS2 game modifications. + diff --git a/description/gmh5225/CS2-Cheat/description_en.txt b/description/gmh5225/CS2-Cheat/description_en.txt new file mode 100644 index 00000000..fa262965 --- /dev/null +++ b/description/gmh5225/CS2-Cheat/description_en.txt @@ -0,0 +1,3 @@ +An internal cheat implementation for Counter-Strike 2 with gameplay modification features. +Provides ESP, aimbot, and miscellaneous hack functionality built on top of the Source 2 engine SDK. + diff --git a/description/gmh5225/CS2-Dma-Radar/description_en.txt b/description/gmh5225/CS2-Dma-Radar/description_en.txt new file mode 100644 index 00000000..057b4025 --- /dev/null +++ b/description/gmh5225/CS2-Dma-Radar/description_en.txt @@ -0,0 +1,3 @@ +A DMA-based radar hack for Counter-Strike 2 that reads game memory via PCIe DMA hardware. +Extracts player positions and game state through direct memory access without running any software on the target machine, displaying a real-time radar overlay. + diff --git a/description/gmh5225/CS2-External-1/description_en.txt b/description/gmh5225/CS2-External-1/description_en.txt new file mode 100644 index 00000000..91a6b3fd --- /dev/null +++ b/description/gmh5225/CS2-External-1/description_en.txt @@ -0,0 +1,3 @@ +An external cheat for Counter-Strike 2 featuring aimbot, ESP visuals, and miscellaneous hacks. +Built with ImGui for overlay rendering using DirectX 11, reads game memory externally to provide box ESP, skeleton rendering, snaplines, and configurable aimbot targeting. + diff --git a/description/gmh5225/CS2-SDK-Source2Gen/description_en.txt b/description/gmh5225/CS2-SDK-Source2Gen/description_en.txt new file mode 100644 index 00000000..17f4942b --- /dev/null +++ b/description/gmh5225/CS2-SDK-Source2Gen/description_en.txt @@ -0,0 +1,3 @@ +A generated SDK dump of Counter-Strike 2's Source 2 engine classes and enums. +Contains auto-generated C++ header files for animation system, client, engine2, network system, scene system, schema system, and other Source 2 modules produced by source2gen. + diff --git a/description/gmh5225/CSGO-Alphen/description_en.txt b/description/gmh5225/CSGO-Alphen/description_en.txt new file mode 100644 index 00000000..8e547e2c --- /dev/null +++ b/description/gmh5225/CSGO-Alphen/description_en.txt @@ -0,0 +1,3 @@ +An internal cheat for Counter-Strike: Global Offensive with ImGui-based menu rendering. +Features a full SDK with entity structures, weapon data, and rendering primitives for implementing ESP, aimbot, and visual modifications. + diff --git a/description/gmh5225/CSGO-Loader/description_en.txt b/description/gmh5225/CSGO-Loader/description_en.txt new file mode 100644 index 00000000..dd18bbc8 --- /dev/null +++ b/description/gmh5225/CSGO-Loader/description_en.txt @@ -0,0 +1,3 @@ +A C++ cheat loader with PHP-based authentication backend for CSGO cheats. +Includes HWID checking, time-based license validation, and a web panel for managing user access to injected cheat DLLs. + diff --git a/description/gmh5225/CSGO-NIXWARE-CSGO/description_en.txt b/description/gmh5225/CSGO-NIXWARE-CSGO/description_en.txt new file mode 100644 index 00000000..4b0c43a6 --- /dev/null +++ b/description/gmh5225/CSGO-NIXWARE-CSGO/description_en.txt @@ -0,0 +1,3 @@ +A leaked source of the Nixware CSGO cheat client featuring comprehensive game manipulation capabilities. +Includes aimbot, ESP, movement hacks, and skin changer functionality built on a full CSGO SDK with ImGui overlay rendering. + diff --git a/description/gmh5225/CSGO-aw-v5.1.13/description_en.txt b/description/gmh5225/CSGO-aw-v5.1.13/description_en.txt new file mode 100644 index 00000000..e0f50b64 --- /dev/null +++ b/description/gmh5225/CSGO-aw-v5.1.13/description_en.txt @@ -0,0 +1,3 @@ +A leaked version (v5.1.13) of the AW (AimWare) CSGO cheat source code. +Contains a full-featured CSGO hack implementation including aimbot, visuals, movement, and anti-aim modules with an internal hooking framework. + diff --git a/description/gmh5225/CSHackCreator-2-Demo/description_en.txt b/description/gmh5225/CSHackCreator-2-Demo/description_en.txt new file mode 100644 index 00000000..2afe6cd4 --- /dev/null +++ b/description/gmh5225/CSHackCreator-2-Demo/description_en.txt @@ -0,0 +1,3 @@ +This project is a tool which generates custom cheats based on user input, for the old Counter-Strike game without coding a single line of code. +It is primarily written in C/C++ and C++ and centers on OpenGL, Vulkan, and rendering. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs1.6 area. diff --git a/description/gmh5225/CVE-2015-2291/description_en.txt b/description/gmh5225/CVE-2015-2291/description_en.txt new file mode 100644 index 00000000..bb25d89c --- /dev/null +++ b/description/gmh5225/CVE-2015-2291/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploit for CVE-2015-2291, a vulnerability in the Intel ethernet diagnostics driver (iqvw64e.sys). +Demonstrates IOCTL-based arbitrary kernel memory read/write through the vulnerable Nal driver, using NtQuerySystemInformation to leak kernel base addresses for privilege escalation. + diff --git a/description/gmh5225/CVE-2017-9769/description_en.txt b/description/gmh5225/CVE-2017-9769/description_en.txt new file mode 100644 index 00000000..85eaa2d7 --- /dev/null +++ b/description/gmh5225/CVE-2017-9769/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploit for CVE-2017-9769 in the Razer Synapse rzpnk.sys driver (version 2.20.15.1104). +Exploits a specially crafted IOCTL that forwards to ZwOpenProcess, allowing an unprivileged user to obtain a handle to any arbitrary process. + diff --git a/description/gmh5225/CVE-2018-19320-LPE/description_en.txt b/description/gmh5225/CVE-2018-19320-LPE/description_en.txt new file mode 100644 index 00000000..0de6bfe0 --- /dev/null +++ b/description/gmh5225/CVE-2018-19320-LPE/description_en.txt @@ -0,0 +1,3 @@ +A local privilege escalation exploit for CVE-2018-19320 targeting the Gigabyte gdrv.sys driver. +Uses exposed functions for arbitrary memory allocation and writes to escalate privileges to SYSTEM, tested on Windows 10 x64 21H1. + diff --git a/description/gmh5225/CVE-2018-19320/description_en.txt b/description/gmh5225/CVE-2018-19320/description_en.txt new file mode 100644 index 00000000..8b2064c7 --- /dev/null +++ b/description/gmh5225/CVE-2018-19320/description_en.txt @@ -0,0 +1,3 @@ +An exploit for CVE-2018-19320 that abuses ring-0 memcpy-like functionality in the Gigabyte gdrv.sys driver. +Demonstrates disabling Driver Signature Enforcement (DSE) by leaking CI!g_CiOptions and toggling it through the driver's arbitrary kernel memory read/write primitives. + diff --git a/description/gmh5225/CVE-2020-14974/description_en.txt b/description/gmh5225/CVE-2020-14974/description_en.txt new file mode 100644 index 00000000..6d675c5c --- /dev/null +++ b/description/gmh5225/CVE-2020-14974/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept for CVE-2020-14974, a vulnerability in IObitUnlocker 1.1.2's kernel driver (IObitUnlocker.sys). +Exploits IOCTL codes to unlock, delete, rename, copy, and move files in use, enabling low-privileged users to manipulate locked files. + diff --git a/description/gmh5225/CVE-2020-36603/description_en.txt b/description/gmh5225/CVE-2020-36603/description_en.txt new file mode 100644 index 00000000..c4d01ef1 --- /dev/null +++ b/description/gmh5225/CVE-2020-36603/description_en.txt @@ -0,0 +1,3 @@ +A CVE tracking repository for CVE-2020-36603, documenting the mhyprot2.sys anti-cheat driver vulnerability in Genshin Impact. +The HoYoVerse mhyprot2.sys 1.0.0.0 driver fails to restrict unprivileged function calls, allowing local users to execute arbitrary code with SYSTEM privileges on Windows. + diff --git a/description/gmh5225/CVE-2021-21551-POC/description_en.txt b/description/gmh5225/CVE-2021-21551-POC/description_en.txt new file mode 100644 index 00000000..84c4145e --- /dev/null +++ b/description/gmh5225/CVE-2021-21551-POC/description_en.txt @@ -0,0 +1,4 @@ +This repository extends the Dell dbutil_2_3.sys exploit into a reusable kernel-memory toolkit instead of a one-off token-stealing sample. +Its Memory class opens \\.\dbutil_2_3 and wraps separate virtual and physical read and write packet formats for IOCTLs 0x9B0C1EC4, 0x9B0C1EC8, 0x9B0C1F40, and 0x9B0C1F44. +The demo code uses those primitives to resolve the ntoskrnl base, recover an EPROCESS pointer for explorer.exe, inspect DirectoryTableBase, and test physical reads through the process page tables. +In practice it serves as a cleaner exploitation scaffold for CVE-2021-21551 research and post-exploitation memory work built on Dell's vulnerable driver. diff --git a/description/gmh5225/CVE-2021-21551/description_en.txt b/description/gmh5225/CVE-2021-21551/description_en.txt new file mode 100644 index 00000000..d27b871a --- /dev/null +++ b/description/gmh5225/CVE-2021-21551/description_en.txt @@ -0,0 +1,4 @@ +This project is a local privilege escalation PoC for Dell's signed dbutil_2_3.sys vulnerability rather than a generic vulnerable-driver note. +Its user-mode code opens \\.\DBUtil_2_3, uses IOCTL 0x9b0c1ec4 and 0x9b0c1ec8 as arbitrary kernel read and write primitives, resolves PsInitialSystemProcess, and walks ActiveProcessLinks. +The exploit steals the SYSTEM token from the system EPROCESS and overwrites the current process token so the caller can launch an elevated command shell. +The README also documents the broader exposed IOCTL surface, including physical memory access and contiguous-memory helper calls that break the Windows security model. diff --git a/description/gmh5225/CVE-2022-3699/description_en.txt b/description/gmh5225/CVE-2022-3699/description_en.txt new file mode 100644 index 00000000..7d8495a9 --- /dev/null +++ b/description/gmh5225/CVE-2022-3699/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploit for CVE-2022-3699, a vulnerability in a signed kernel driver. +Demonstrates arbitrary kernel memory access through improper IOCTL validation, enabling privilege escalation from user mode. + diff --git a/description/gmh5225/CVE-2022-42045/description_en.txt b/description/gmh5225/CVE-2022-42045/description_en.txt new file mode 100644 index 00000000..72f47b89 --- /dev/null +++ b/description/gmh5225/CVE-2022-42045/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof of concept for CVE-2022-42045 in Zemana's amsdk.sys, where user input can plant executable code into a driver section and later trigger it in kernel mode. +The archived README identifies a vulnerable path at offset 0xBF60 and explains that IOCTL 0x80002044 fills a stub in the .hook section with attacker-controlled bytes, while follow-up IOCTL 0x80002014 transfers execution to that stub. +Rather than demonstrating a simple read-write primitive, the repository focuses on arbitrary code injection into the driver's own image and the resulting jump from administrator context to kernel-mode execution. +It is mainly useful for Windows kernel researchers studying vulnerable security drivers, in-driver code stubs, and how kernel code injection bugs can be chained into unsigned-driver loading or DSE bypass scenarios. diff --git a/description/gmh5225/CVE-2022-42046/description_en.txt b/description/gmh5225/CVE-2022-42046/description_en.txt new file mode 100644 index 00000000..a40946e8 --- /dev/null +++ b/description/gmh5225/CVE-2022-42046/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploit for CVE-2022-42046, a local privilege escalation vulnerability in a Windows kernel driver. +Exploits improper access control in IOCTL handling to achieve elevation of privileges to SYSTEM. + diff --git a/description/gmh5225/CVE-2024-21338/description_en.txt b/description/gmh5225/CVE-2024-21338/description_en.txt new file mode 100644 index 00000000..14643341 --- /dev/null +++ b/description/gmh5225/CVE-2024-21338/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploit for CVE-2024-21338, a Windows kernel elevation of privilege vulnerability. +Targets Windows 11 22H2 Build 22621, developed for the XSS PWN-Day contest demonstrating local privilege escalation through kernel IOCTL exploitation. + diff --git a/description/gmh5225/CVE-2024-26229/description_en.txt b/description/gmh5225/CVE-2024-26229/description_en.txt new file mode 100644 index 00000000..133cedb3 --- /dev/null +++ b/description/gmh5225/CVE-2024-26229/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploit for CVE-2024-26229, a CWE-781 improper address validation vulnerability in the Windows csc.sys driver. +Exploits METHOD_NEITHER I/O control code handling to achieve local privilege escalation on Windows 11 22H2. + diff --git a/description/gmh5225/CVE-2024-35250/description_en.txt b/description/gmh5225/CVE-2024-35250/description_en.txt new file mode 100644 index 00000000..77420540 --- /dev/null +++ b/description/gmh5225/CVE-2024-35250/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploit for CVE-2024-35250, an untrusted pointer dereference (CWE-822) in the Windows ks.sys kernel streaming driver. +Targets Windows 10/11 via KSPROPERTY requests to achieve local privilege escalation, based on Devcore's research into kernel streaming proxy vulnerabilities. + diff --git a/description/gmh5225/CVE-2025-21333-POC/description_en.txt b/description/gmh5225/CVE-2025-21333-POC/description_en.txt new file mode 100644 index 00000000..03c62c64 --- /dev/null +++ b/description/gmh5225/CVE-2025-21333-POC/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploit for CVE-2025-21333, a heap-based buffer overflow in the Windows vkrnlintvsp.sys driver. +Targets Windows 11 23H2 for local privilege escalation, exploiting a vulnerability that was detected as actively exploited in the wild by threat actors. + diff --git a/description/gmh5225/CYBERSEC2023-BYOVD-Demo/description_en.txt b/description/gmh5225/CYBERSEC2023-BYOVD-Demo/description_en.txt new file mode 100644 index 00000000..cf1d097a --- /dev/null +++ b/description/gmh5225/CYBERSEC2023-BYOVD-Demo/description_en.txt @@ -0,0 +1,3 @@ +A Bring Your Own Vulnerable Driver (BYOVD) demonstration from CYBERSEC 2023 Taiwan. +Abuses MSI's RTCore64.sys to nullify the DSE flag and load an unsigned malicious driver, then disables 360 Total Security's ObRegisterCallbacks and notify callbacks to enable arbitrary process manipulation. + diff --git a/description/gmh5225/Call-Of-Duty-Vanguard-Hack-Esp-AImbot-Unlock-All/description_en.txt b/description/gmh5225/Call-Of-Duty-Vanguard-Hack-Esp-AImbot-Unlock-All/description_en.txt new file mode 100644 index 00000000..2438454d --- /dev/null +++ b/description/gmh5225/Call-Of-Duty-Vanguard-Hack-Esp-AImbot-Unlock-All/description_en.txt @@ -0,0 +1,3 @@ +An external cheat for Call of Duty Vanguard/Warzone with ESP, aimbot, and unlock-all features. +Uses Win32 API calls (ReadProcessMemory, OpenProcess) for external memory access with a DirectX overlay for rendering visual hack elements. + diff --git a/description/gmh5225/Call-Of-Duty-Warzone-Hack-Esp-Slient-Aimbot-Internal-Unlock-ALL/description_en.txt b/description/gmh5225/Call-Of-Duty-Warzone-Hack-Esp-Slient-Aimbot-Internal-Unlock-ALL/description_en.txt new file mode 100644 index 00000000..ac30d71a --- /dev/null +++ b/description/gmh5225/Call-Of-Duty-Warzone-Hack-Esp-Slient-Aimbot-Internal-Unlock-ALL/description_en.txt @@ -0,0 +1,3 @@ +An external cheat for Call of Duty Warzone featuring ESP, silent aimbot, and full unlock capabilities. +Built in C# using P/Invoke for kernel32 and user32 functions to read process memory and render overlay visuals. + diff --git a/description/gmh5225/CallMeWin32kDriver/description_en.txt b/description/gmh5225/CallMeWin32kDriver/description_en.txt new file mode 100644 index 00000000..bbae0f96 --- /dev/null +++ b/description/gmh5225/CallMeWin32kDriver/description_en.txt @@ -0,0 +1,3 @@ +A driver loader that loads unsigned kernel drivers using the win32k.sys session driver loading mechanism. +Originally analyzed from a PUBG cheat driver, provides protection against direct memory dumps by anti-rootkit tools and bypasses MmCopyMemory-based detection. + diff --git a/description/gmh5225/CallStackSpoofer-2/description_en.txt b/description/gmh5225/CallStackSpoofer-2/description_en.txt new file mode 100644 index 00000000..4c22e8a1 --- /dev/null +++ b/description/gmh5225/CallStackSpoofer-2/description_en.txt @@ -0,0 +1,3 @@ +An x64 call stack spoofing implementation using custom assembly trampolines to forge return addresses. +Manipulates stack frames to present a clean call stack that evades EDR and anti-cheat stack walking analysis, with inline ASM support for MSVC. + diff --git a/description/gmh5225/CapcomDKOM/description_en.txt b/description/gmh5225/CapcomDKOM/description_en.txt new file mode 100644 index 00000000..3daf89ff --- /dev/null +++ b/description/gmh5225/CapcomDKOM/description_en.txt @@ -0,0 +1,3 @@ +A Direct Kernel Object Manipulation (DKOM) tool leveraging the Capcom.sys driver's ring-0 code execution. +Uses the Capcom IOCTL (0xAA013044) to execute shellcode payloads in kernel mode via MmGetSystemRoutineAddress for resolving kernel APIs. + diff --git a/description/gmh5225/CapcomLib/description_en.txt b/description/gmh5225/CapcomLib/description_en.txt new file mode 100644 index 00000000..ad919d25 --- /dev/null +++ b/description/gmh5225/CapcomLib/description_en.txt @@ -0,0 +1,3 @@ +A reflexive kernel driver loader that bypasses Windows Driver Signature Enforcement (DSE) using a custom PE loader. +Exploits the Capcom.sys rootkit by default to load unsigned drivers, with a modular architecture supporting other known exploitable signed drivers. + diff --git a/description/gmh5225/CheatIt/description_en.txt b/description/gmh5225/CheatIt/description_en.txt new file mode 100644 index 00000000..d1dd8a6f --- /dev/null +++ b/description/gmh5225/CheatIt/description_en.txt @@ -0,0 +1,3 @@ +An Unreal Engine-based game cheat targeting "Witch It" and "POLYGON" multiplayer games. +Uses signature scanning to locate UObject arrays and engine structures, providing in-game modifications with configurable pattern matching for different game targets. + diff --git a/description/gmh5225/Classy/description_en.txt b/description/gmh5225/Classy/description_en.txt new file mode 100644 index 00000000..4cc6d9d1 --- /dev/null +++ b/description/gmh5225/Classy/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro plugin for managing C++ classes, vtables, and function signatures during reverse engineering. +Features vtable generation from selected ranges, function-to-class assignment, Itanium name mangling, IDA struct mapping, and C header generation with a PyQt5 GUI. + diff --git a/description/gmh5225/ClickPic/description_en.txt b/description/gmh5225/ClickPic/description_en.txt new file mode 100644 index 00000000..d070f8aa --- /dev/null +++ b/description/gmh5225/ClickPic/description_en.txt @@ -0,0 +1,3 @@ +A screen pixel color detection and auto-click tool for game automation. +Monitors specified screen regions for target pixel colors and triggers automated mouse input when matches are found. + diff --git a/description/gmh5225/Comm-Data-Pointer-Swap/description_en.txt b/description/gmh5225/Comm-Data-Pointer-Swap/description_en.txt new file mode 100644 index 00000000..2b822935 --- /dev/null +++ b/description/gmh5225/Comm-Data-Pointer-Swap/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof-of-concept kernel communication method built around swapping an internal data pointer in a win32k path instead of exposing a normal device interface. +The archived driver finds a pattern in win32kbase.sys, resolves the target qword pointer, attaches to explorer.exe, and uses InterlockedExchangePointer to replace that pointer with its own handler. +The user-mode side resolves NtDCompositionSetChildRootVisual from win32u.dll to trigger the path, so the repository is really a compact example of pointer-swap communication through a GUI syscall rather than a full framework. +It is mainly useful for Windows kernel researchers studying covert driver communication, pointer redirection inside GUI subsystems, and the tradeoffs of obvious one-off hook placement. diff --git a/description/gmh5225/Comm-ImMiraclela/description_en.txt b/description/gmh5225/Comm-ImMiraclela/description_en.txt new file mode 100644 index 00000000..df35c87f --- /dev/null +++ b/description/gmh5225/Comm-ImMiraclela/description_en.txt @@ -0,0 +1,4 @@ +This project is a paired user-mode and kernel-mode Escape From Tarkov overlay framework that communicates through a hook on dxgkrnl's NtDxgkGetTrackedWorkloadStatistics. +The kernel component patches the export with a small jump stub, handles requests for module-base lookup and process memory reads or writes, and also resolves win32k drawing exports so it can render boxes and text from kernel space. +The user-mode side wraps the same syscall from win32u.dll, sends request structures into the hooked path, and layers an ImGui-based overlay and game-specific visuals on top of that communication channel. +It is mainly useful for reverse engineers studying dxgkrnl-based driver communication, kernel-assisted drawing paths, and mixed user or kernel overlay designs for Tarkov-style tooling. diff --git a/description/gmh5225/Comm-NekoSwap/description_en.txt b/description/gmh5225/Comm-NekoSwap/description_en.txt new file mode 100644 index 00000000..9bdbff4b --- /dev/null +++ b/description/gmh5225/Comm-NekoSwap/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode communication driver using swap-based memory operations for stealthy data exchange. +Implements a covert channel between user-mode and kernel-mode components by leveraging memory page swapping to avoid detection by anti-cheat systems. + diff --git a/description/gmh5225/Comm-data-ptr-driver/description_en.txt b/description/gmh5225/Comm-data-ptr-driver/description_en.txt new file mode 100644 index 00000000..9cdabaed --- /dev/null +++ b/description/gmh5225/Comm-data-ptr-driver/description_en.txt @@ -0,0 +1,3 @@ +A kernel driver implementing data-pointer-based communication for stealthy user-kernel interaction. +Uses shared data pointers rather than traditional IOCTLs to exchange memory read/write requests between a user-mode cheat and kernel-mode driver, evading IOCTL-based detection. + diff --git a/description/gmh5225/Common-Registry-Jmp-RCX/description_en.txt b/description/gmh5225/Common-Registry-Jmp-RCX/description_en.txt new file mode 100644 index 00000000..804e7ed6 --- /dev/null +++ b/description/gmh5225/Common-Registry-Jmp-RCX/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode communication technique using the CmRegisterCallback registry callback with a JMP RCX gadget. +Locates a JMP RCX instruction in nvraid.sys and registers it as a registry callback, hijacking the callback mechanism to redirect execution to a custom handler for covert kernel communication. + diff --git a/description/gmh5225/Cunthook/description_en.txt b/description/gmh5225/Cunthook/description_en.txt new file mode 100644 index 00000000..51755f8a --- /dev/null +++ b/description/gmh5225/Cunthook/description_en.txt @@ -0,0 +1,3 @@ +An open-source game hacking framework for Team Fortress 2 and other Source engine games. +Includes a full SDK with hooks, ESP, aimbot, and various gameplay modifications using the Source engine's internal interfaces and Boost libraries. + diff --git a/description/gmh5225/CyberAntLoader/description_en.txt b/description/gmh5225/CyberAntLoader/description_en.txt new file mode 100644 index 00000000..a84934f6 --- /dev/null +++ b/description/gmh5225/CyberAntLoader/description_en.txt @@ -0,0 +1,3 @@ +A cheat loader with authentication and anti-detection features for injecting game hack DLLs. +Provides a managed loading pipeline with HWID binding, license verification, and injection support for multiple anti-cheat-protected games. + diff --git a/description/gmh5225/DDMA-1/description_en.txt b/description/gmh5225/DDMA-1/description_en.txt new file mode 100644 index 00000000..4150c0bd --- /dev/null +++ b/description/gmh5225/DDMA-1/description_en.txt @@ -0,0 +1,3 @@ +A DMA-based game cheating framework using PCIe hardware devices for direct memory access. +Reads and writes game process memory through DMA without any software footprint on the target system, bypassing kernel-level anti-cheat detection. + diff --git a/description/gmh5225/DLL-Hijack-ExportDumper/description_en.txt b/description/gmh5225/DLL-Hijack-ExportDumper/description_en.txt new file mode 100644 index 00000000..a56a2738 --- /dev/null +++ b/description/gmh5225/DLL-Hijack-ExportDumper/description_en.txt @@ -0,0 +1,3 @@ +A tool that dumps DLL export tables to generate proxy DLL source code for DLL hijacking attacks. +Automates the creation of export forwarding stubs, enabling side-loading of malicious code through legitimate DLL search order exploitation. + diff --git a/description/gmh5225/DMA-PCIE-BOARD-75T/description_en.txt b/description/gmh5225/DMA-PCIE-BOARD-75T/description_en.txt new file mode 100644 index 00000000..e01f9063 --- /dev/null +++ b/description/gmh5225/DMA-PCIE-BOARD-75T/description_en.txt @@ -0,0 +1,3 @@ +A PCIe DMA board design based on the Xilinx Artix-7 75T FPGA for hardware-level memory access. +Provides firmware and HDL sources for a custom PCIe device capable of performing DMA reads and writes to host system memory, targeting game security research and testing. + diff --git a/description/gmh5225/DSEDodge-Signed-Kernel-Driver/description_en.txt b/description/gmh5225/DSEDodge-Signed-Kernel-Driver/description_en.txt new file mode 100644 index 00000000..32480470 --- /dev/null +++ b/description/gmh5225/DSEDodge-Signed-Kernel-Driver/description_en.txt @@ -0,0 +1,3 @@ +A signed kernel driver project designed to bypass Windows Driver Signature Enforcement (DSE). +Leverages a legitimately signed driver certificate to load kernel code without triggering DSE validation failures. + diff --git a/description/gmh5225/DVRT/description_en.txt b/description/gmh5225/DVRT/description_en.txt new file mode 100644 index 00000000..0750a776 --- /dev/null +++ b/description/gmh5225/DVRT/description_en.txt @@ -0,0 +1,3 @@ +A dynamic value resolution table implementation for runtime address resolution in game hacking. +Provides a framework for maintaining and updating memory offsets dynamically as game modules are loaded or relocated. + diff --git a/description/gmh5225/DWM-DwmDraw/description_en.txt b/description/gmh5225/DWM-DwmDraw/description_en.txt new file mode 100644 index 00000000..414517ff --- /dev/null +++ b/description/gmh5225/DWM-DwmDraw/description_en.txt @@ -0,0 +1,3 @@ +A technique for rendering overlays through the Desktop Window Manager (DWM) drawing pipeline. +Hooks into DwmDraw functions to render ESP and visual hack elements directly through the Windows compositor, making overlays invisible to screenshot-based detection. + diff --git a/description/gmh5225/DataPtrSwap-driver/description_en.txt b/description/gmh5225/DataPtrSwap-driver/description_en.txt new file mode 100644 index 00000000..3aafc72d --- /dev/null +++ b/description/gmh5225/DataPtrSwap-driver/description_en.txt @@ -0,0 +1,4 @@ +This project is an older cheat-driver example that uses a data-pointer swap in win32kbase for communication rather than exposing a conventional device interface. +The driver scans win32kbase for the target pointer, attaches to explorer.exe, swaps it with a custom NtSetCompositionSurfaceAnalogExclusive handler through InterlockedExchangePointer, and routes requests through structures sent from user mode. +Beyond the communication primitive, the code also bundles cleanup utilities for traces such as MmUnloadedDrivers and related loader residue, which makes the repository part comms demo and part anti-forensics helper. +It is mainly useful for Windows kernel researchers studying data-pointer-swap communication, win32k-based hook placement, and cleanup logic used alongside manually mapped cheat drivers. diff --git a/description/gmh5225/DayZ-Cheat/description_en.txt b/description/gmh5225/DayZ-Cheat/description_en.txt new file mode 100644 index 00000000..7febdb13 --- /dev/null +++ b/description/gmh5225/DayZ-Cheat/description_en.txt @@ -0,0 +1,3 @@ +An external cheat for DayZ featuring ESP, aimbot, and item ESP functionality. +Reads game memory externally to extract player positions, loot locations, and entity data for rendering visual overlays. + diff --git a/description/gmh5225/Detect-Hypervisor_detect_ring_0/description_en.txt b/description/gmh5225/Detect-Hypervisor_detect_ring_0/description_en.txt new file mode 100644 index 00000000..a861ab3d --- /dev/null +++ b/description/gmh5225/Detect-Hypervisor_detect_ring_0/description_en.txt @@ -0,0 +1,4 @@ +This project is a ring-0 hypervisor detection test driver written for manual-mapped kernel deployment. +Its checks combine the CPUID hypervisor bit, comparisons between invalid and hypervisor CPUID leaves, timing attacks around VM-exit behavior using the TSC, APERF, and MPERF MSRs, and Intel LBR or DEBUGCTL consistency checks. +The README credits Secret Club's hypervisor-detection research, and the driver simply prints each heuristic result from DriverEntry instead of building a larger enforcement pipeline. +It is mainly useful for anti-cheat and low-level security researchers comparing multiple kernel-mode heuristics for spotting emulation or custom hypervisors. diff --git a/description/gmh5225/Detection-CheatEngine-Ring0/description_en.txt b/description/gmh5225/Detection-CheatEngine-Ring0/description_en.txt new file mode 100644 index 00000000..091c0a20 --- /dev/null +++ b/description/gmh5225/Detection-CheatEngine-Ring0/description_en.txt @@ -0,0 +1,4 @@ +This project is a tiny kernel proof of concept that tries to notice Cheat Engine or DBVM-related activity through the kernel debug print callback path. +The only real logic registers a DbgSetDebugPrintCallback handler, copies incoming debug strings, and checks for the literal dbvm-mode before leaving a TODO report path. +Because the README labels it as just a meme and the code is minimal, it should be treated as an experiment around one narrow kernel-side signal rather than a complete detection framework. +It is mainly useful for anti-cheat researchers exploring whether kernel debug output can expose Cheat Engine or DBVM state in test environments. diff --git a/description/gmh5225/Detection-CheatEngine/description_en.txt b/description/gmh5225/Detection-CheatEngine/description_en.txt new file mode 100644 index 00000000..33b57457 --- /dev/null +++ b/description/gmh5225/Detection-CheatEngine/description_en.txt @@ -0,0 +1,4 @@ +This project is a small user-mode detector for Cheat Engine artifacts built on top of ReadDirectoryChangesW directory monitoring. +The sample watches the user's profile and C:\ for file creation, rename, and write events, then flags filenames containing markers such as ADDRESSES.FIRST and MEMORY.FIRST defined in CEInfo.h. +Rather than scanning memory or processes, it focuses on a lightweight filesystem-based heuristic that can be extended with additional detection strings and directory watches. +It is mainly useful for anti-cheat engineers studying simple user-mode Cheat Engine detection strategies based on table and artifact creation behavior. diff --git a/description/gmh5225/Detection-Hyper-v/description_en.txt b/description/gmh5225/Detection-Hyper-v/description_en.txt new file mode 100644 index 00000000..3072fa0a --- /dev/null +++ b/description/gmh5225/Detection-Hyper-v/description_en.txt @@ -0,0 +1,4 @@ +This project is a minimal kernel-mode Hyper-V detection driver that reads hypervisor state directly from KPCR or KPRCB structures. +The implementation targets Windows 10 build 17763 headers, calls KeGetPcr, walks to CurrentPrcb, and inspects PowerState.Hypervisor plus PowerState.HvTargetState to decide whether the machine is running as a Hyper-V guest. +The driver then reports the result with debug prints and exits with STATUS_VIRUS_INFECTED, making it closer to a focused kernel experiment than a reusable anti-cheat module. +It is mainly useful for defensive researchers studying build-specific kernel structure checks for Hyper-V presence without relying solely on user-mode CPUID probes. diff --git a/description/gmh5225/DevourClient/description_en.txt b/description/gmh5225/DevourClient/description_en.txt new file mode 100644 index 00000000..2e67eda8 --- /dev/null +++ b/description/gmh5225/DevourClient/description_en.txt @@ -0,0 +1,3 @@ +A game client modification for the horror game Devour with gameplay enhancement features. +Provides quality-of-life modifications and cheat functionality through memory manipulation of the Unity-based game client. + diff --git a/description/gmh5225/DevourMenu/description_en.txt b/description/gmh5225/DevourMenu/description_en.txt new file mode 100644 index 00000000..c35e0101 --- /dev/null +++ b/description/gmh5225/DevourMenu/description_en.txt @@ -0,0 +1,3 @@ +An in-game mod menu for the co-op horror game Devour built with Unity IL2CPP hooks. +Provides toggleable gameplay modifications through an ImGui-style overlay menu injected into the game process. + diff --git a/description/gmh5225/Disable-Windows-Defender-/description_en.txt b/description/gmh5225/Disable-Windows-Defender-/description_en.txt new file mode 100644 index 00000000..62e4ea16 --- /dev/null +++ b/description/gmh5225/Disable-Windows-Defender-/description_en.txt @@ -0,0 +1,3 @@ +A tool that disables Windows Defender with integrated UAC bypass and SYSTEM privilege escalation. +Manipulates privilege tokens and leverages COM-based UAC bypass techniques to gain elevated access, then disables real-time protection and tamper protection services. + diff --git a/description/gmh5225/Disable-nmi-callbacks/description_en.txt b/description/gmh5225/Disable-nmi-callbacks/description_en.txt new file mode 100644 index 00000000..036949c1 --- /dev/null +++ b/description/gmh5225/Disable-nmi-callbacks/description_en.txt @@ -0,0 +1,3 @@ +A kernel driver that disables NMI (Non-Maskable Interrupt) callbacks in the Windows kernel. +Uses pattern scanning to locate KiNmiInterruptStart-related variables in ntoskrnl.exe and patches processor affinity and NMI state to prevent anti-cheat NMI-based stack walking detections. + diff --git a/description/gmh5225/DisableDSE/description_en.txt b/description/gmh5225/DisableDSE/description_en.txt new file mode 100644 index 00000000..b875bb2c --- /dev/null +++ b/description/gmh5225/DisableDSE/description_en.txt @@ -0,0 +1,3 @@ +A tool that disables Windows Driver Signature Enforcement (DSE) by patching the kernel validation chain. +Targets the SeValidateImageHeader call path through MiValidateSectionCreate and MiValidateSectionSigningPolicy to allow loading of unsigned kernel drivers. + diff --git a/description/gmh5225/Disabling-Hyper-V/description_en.txt b/description/gmh5225/Disabling-Hyper-V/description_en.txt new file mode 100644 index 00000000..e29177c6 --- /dev/null +++ b/description/gmh5225/Disabling-Hyper-V/description_en.txt @@ -0,0 +1,3 @@ +A guide for completely disabling Hyper-V on Windows 10, including Device Guard and Credential Guard. +Documents the use of Microsoft's Device Guard and Credential Guard hardware readiness tool to disable HVCI and other virtualization-based security features that prevent Hyper-V from being fully disabled. + diff --git a/description/gmh5225/Dota2-Overlay-OffsetUpdater/description_en.txt b/description/gmh5225/Dota2-Overlay-OffsetUpdater/description_en.txt new file mode 100644 index 00000000..8b6b2acf --- /dev/null +++ b/description/gmh5225/Dota2-Overlay-OffsetUpdater/description_en.txt @@ -0,0 +1,3 @@ +An offset update utility for a Dota 2 overlay cheat that fetches current memory offsets from a remote server. +Automatically downloads and applies updated offsets as Dota 2 patches change internal data structures, keeping the overlay functional across game updates. + diff --git a/description/gmh5225/Dota2Cheat/description_en.txt b/description/gmh5225/Dota2Cheat/description_en.txt new file mode 100644 index 00000000..f790afed --- /dev/null +++ b/description/gmh5225/Dota2Cheat/description_en.txt @@ -0,0 +1,3 @@ +An internal cheat DLL for Dota 2 built on the Source 2 engine SDK with subhook-based function hooking. +Provides gameplay modifications through VMT hooking and pattern scanning against Dota 2's client and engine modules. + diff --git a/description/gmh5225/Driver-Communication-List/description_en.txt b/description/gmh5225/Driver-Communication-List/description_en.txt new file mode 100644 index 00000000..0789674d --- /dev/null +++ b/description/gmh5225/Driver-Communication-List/description_en.txt @@ -0,0 +1,4 @@ +This repository is a compact reference list of user-mode to kernel-mode call paths that can be used to study how Windows graphics and UI entry points flow into lower-level kernel components. +Its archived README focuses on concrete examples such as `win32u.dll` calls resolving through `win32k.sys` and `win32base.sys` before reaching targets in `dxgkrnl.sys`, making it more of a mapping notebook than a traditional code project. +The value of the repo is in the call-chain examples themselves, which provide quick breadcrumbs for tracing communication paths that can later be analyzed in the debugger or disassembler. +It is mainly useful for Windows kernel and reverse-engineering researchers who want a starting point for investigating syscall paths and driver communication surfaces. diff --git a/description/gmh5225/Driver-Detect-nullshit/description_en.txt b/description/gmh5225/Driver-Detect-nullshit/description_en.txt new file mode 100644 index 00000000..83796a4e --- /dev/null +++ b/description/gmh5225/Driver-Detect-nullshit/description_en.txt @@ -0,0 +1,4 @@ +This project is a compact detector for a specific style of manually mapped driver hook that replaces exported kernel routines with simple absolute jump stubs. +Its archived README calls it a simple Null driver detector, and the code walks export tables of modules such as `win32kfull.sys`, `win32kbase.sys`, `dxgkrnl.sys`, and `ntoskrnl.exe` looking for `mov rax, imm64 ; jmp rax` style patches whose targets fall outside the owning image. +Rather than providing a full integrity framework, it focuses on one common inline-hook signature often used to redirect syscall-related functions during driver mapping or communication setup. +It is mainly useful for anti-cheat and defensive kernel researchers studying lightweight detection of crude export-hook trampolines in core Windows modules. diff --git a/description/gmh5225/Driver-DriverNoImage/description_en.txt b/description/gmh5225/Driver-DriverNoImage/description_en.txt new file mode 100644 index 00000000..f069dcd0 --- /dev/null +++ b/description/gmh5225/Driver-DriverNoImage/description_en.txt @@ -0,0 +1,4 @@ +This project is a kernel-driver proof of concept built around executing custom shellcode through other drivers in order to avoid exposing a normal standalone driver image path. +The archived README states that it was designed to inject shellcode into another driver to bypass signature-related constraints, and the source tree includes dedicated shellcode files, inline hook helpers, and patch modules rather than a conventional device interface only. +Its implementation patches existing dispatch routines such as NTFS driver handlers, temporarily disables write protection to install inline jumps, and preserves trampolines so the original path can still be called or restored on unload. +It is mainly useful for Windows kernel researchers studying driver dispatch hijacking, shellcode-based execution inside existing drivers, and techniques for reducing the visibility of custom kernel payloads. diff --git a/description/gmh5225/Driver-HWID-btbd-modified/description_en.txt b/description/gmh5225/Driver-HWID-btbd-modified/description_en.txt new file mode 100644 index 00000000..8800c6f6 --- /dev/null +++ b/description/gmh5225/Driver-HWID-btbd-modified/description_en.txt @@ -0,0 +1,4 @@ +This project is a modified version of the BTBD hardware identifier spoofer adjusted for manual mapping on Windows 1909-era systems. +Its code hooks disk and partition control paths, rewrites serial-related data returned by storage IOCTLs, clears GPT identifiers, updates disk properties, disables SMART failure prediction, and also walks storahci raid units to overwrite serial strings deeper in the storage stack. +The result is not just a single serial patch but a broader storage-identity spoofing pipeline that tries to keep multiple disk-related query surfaces consistent after the driver is loaded. +It is mainly useful for Windows kernel researchers analyzing storage-stack HWID spoofing techniques, especially those derived from BTBD-style manually mapped drivers. diff --git a/description/gmh5225/Driver-HideKernelThread-IoCancelIrp/description_en.txt b/description/gmh5225/Driver-HideKernelThread-IoCancelIrp/description_en.txt new file mode 100644 index 00000000..4c114cc5 --- /dev/null +++ b/description/gmh5225/Driver-HideKernelThread-IoCancelIrp/description_en.txt @@ -0,0 +1,4 @@ +This repository is a small proof of concept for disguising a custom kernel thread by making its visible start routine look like `IoCancelIrp`. +The archived README explains the trick directly: create an IRP, set a custom cancel routine, then start the system thread at `IoCancelIrp` so the real payload executes later through the IRP cancellation path instead of appearing as the thread's nominal entry point. +Its single source file demonstrates the full flow, including IRP allocation, cancel-routine wiring, context handoff through `UserBuffer` and `MdlAddress`, and notes about detection strategies such as checking for `IoCancelIrp` thread starts or walking system-thread stacks with APCs. +It is mainly useful for Windows kernel researchers studying concealed thread startup techniques and the defensive heuristics that can still expose them. diff --git a/description/gmh5225/Driver-HypercallPageHook/description_en.txt b/description/gmh5225/Driver-HypercallPageHook/description_en.txt new file mode 100644 index 00000000..3f9fb97a --- /dev/null +++ b/description/gmh5225/Driver-HypercallPageHook/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof of concept for hooking `nt!HvcallCodeVa`, the hypercall page pointer used by Hyper-V-related kernel hypercall transitions. +The driver locates the hypercall page reference near `HvlInvokeHypercall`, replaces it with a custom dispatcher, and flips the `HvlEnlightenments` flag so context-switch related hypercalls such as `HvlSwitchVirtualAddressSpace` are routed through the hook. +Its implementation is split between a C++ driver entry layer and an assembly dispatcher that inspects the hypercall input code, forwards targeted operations to custom callbacks, and falls back to the original hypercall page for everything else. +It is mainly useful for low-level Windows and virtualization researchers who want to study how Hyper-V hypercall dispatch can be intercepted inside the kernel for tracing or experimentation. diff --git a/description/gmh5225/Driver-KDtour/description_en.txt b/description/gmh5225/Driver-KDtour/description_en.txt new file mode 100644 index 00000000..d29a3743 --- /dev/null +++ b/description/gmh5225/Driver-KDtour/description_en.txt @@ -0,0 +1,4 @@ +This project is a small kernel detour library for patching exported Windows kernel routines without pulling in external dependencies. +Its archived README explicitly presents it as an old but simple hooking library for functions such as `MmCopyMemory` and `MmCopyVirtualMemory`, and the implementation centers on a `c_detour` class that saves stolen bytes, builds a custom absolute jump stub, and writes patches through MDL-backed writable mappings. +The sample entry point shows the library being used to hook `KeAttachProcess`, while the detour helper is written to avoid more obvious page-guard style tricks and keep installation and removal self-contained. +It is mainly useful for Windows kernel researchers who want a compact reference for inline detours, custom trampoline stubs, and low-friction kernel hook experiments. diff --git a/description/gmh5225/Driver-RPM-DirectPageManipulation/description_en.txt b/description/gmh5225/Driver-RPM-DirectPageManipulation/description_en.txt new file mode 100644 index 00000000..7aa62321 --- /dev/null +++ b/description/gmh5225/Driver-RPM-DirectPageManipulation/description_en.txt @@ -0,0 +1,4 @@ +This project is a minimal Windows kernel example showing how to read and write another process's memory by directly manipulating paging structures. +Its README frames the code as a bare-minimum demonstration, and the implementation does exactly that by allocating a contiguous page, locating its own PTE, overwriting the page-frame number to remap arbitrary physical pages, and then using manual virtual-to-physical translation to implement process memory copy routines. +The sample driver entry uses the technique against a target process to read module data without relying on the standard documented copy helpers, while explicitly leaving out paged-out memory handling and multithreading concerns to keep the logic simple. +It is mainly useful for Windows kernel researchers who want a compact reference for PTE rewriting, manual address translation, and page-table-based process memory access. diff --git a/description/gmh5225/Driver-SessionMapper/description_en.txt b/description/gmh5225/Driver-SessionMapper/description_en.txt new file mode 100644 index 00000000..c68100fc --- /dev/null +++ b/description/gmh5225/Driver-SessionMapper/description_en.txt @@ -0,0 +1,4 @@ +This project is a session-space driver mapper that manually loads a driver image into session memory instead of using the normal kernel module loading path. +The archived README describes it as mapping drivers into session space, and the solution pairs a kernel component with a client that passes raw image data for import fixing, section copying, relocation, and entry-point execution. +Its main hook replaces an internal `ntoskrnl` callback path, allocates session-space memory for the target image, resolves imports and relocations, then clears parts of the loader metadata on unload to reduce the mapped driver's visibility. +It is mainly useful for Windows kernel researchers studying manual mapping into session space, alternative driver loading flows, and techniques for hiding mapped modules from ordinary loader structures. diff --git a/description/gmh5225/Driver-SoulExtraction/description_en.txt b/description/gmh5225/Driver-SoulExtraction/description_en.txt new file mode 100644 index 00000000..1656b097 --- /dev/null +++ b/description/gmh5225/Driver-SoulExtraction/description_en.txt @@ -0,0 +1,4 @@ +This project is a kernel-oriented certificate extraction toolkit that parses PE Authenticode data and pulls out the main signing certificate's subject and validity window. +Its archive is split into a driver project and a reusable `Lib-SoulExtraction` library, with the library embedding adapted Linux PKCS#7, ASN.1, and X.509 parsing code alongside Windows-specific wrappers for kernel file access and string conversion. +The core routine walks the PE signature directory, parses the PKCS#7 message, chooses the likely primary certificate, and returns fields such as the signer name and validity timestamps rather than merely checking whether a file is signed. +It is mainly useful for Windows kernel developers and reverse engineers who need in-kernel certificate metadata extraction from PE files for telemetry, trust analysis, or triage tooling. diff --git a/description/gmh5225/Driver-Systemthread-from-PspCidTable-src/description_en.txt b/description/gmh5225/Driver-Systemthread-from-PspCidTable-src/description_en.txt new file mode 100644 index 00000000..5b0755c7 --- /dev/null +++ b/description/gmh5225/Driver-Systemthread-from-PspCidTable-src/description_en.txt @@ -0,0 +1,4 @@ +This repository contains the source code accompanying a tutorial on removing a system thread or related process handles from `PspCidTable`. +The implementation covers two linked approaches: removing a target process handle table via `ExRemoveHandleTable` and destroying process or thread handles from `PspCidTable` while also zeroing selected CID fields to avoid immediate bug checks. +It includes a large set of build-specific offsets for `EPROCESS`, `ETHREAD`, `PspCidTable`, and related routines, which makes the project more of an offset-driven research reference than a generic reusable library. +It is mainly useful for Windows kernel researchers studying handle-table and CID-table manipulation techniques for hiding processes or system threads across specific kernel builds. diff --git a/description/gmh5225/Driver-WatchOwl/description_en.txt b/description/gmh5225/Driver-WatchOwl/description_en.txt new file mode 100644 index 00000000..8d78edb5 --- /dev/null +++ b/description/gmh5225/Driver-WatchOwl/description_en.txt @@ -0,0 +1,4 @@ +This project is a defensive Windows driver that watches user-mode image loads and thread creation to identify suspicious mapping activity through stack-trace inspection. +Its implementation registers `PsSetLoadImageNotifyRoutine` and `PsSetCreateThreadNotifyRoutine` callbacks, resolves expected user-mode frames such as `NtMapViewOfSection` and `RtlUserThreadStart` from `csrss.exe`, and then validates whether image-load callbacks originated from legitimate module text ranges. +When the observed stack does not match the expected mapping path, the driver logs the event and highlights lower-signing-level images, making the project a compact example of callback-based injection detection rather than an offensive hook set. +It is mainly useful for anti-cheat engineers and defensive kernel researchers studying stack-based validation of image mapping and suspicious user-mode code injection paths. diff --git a/description/gmh5225/Driver-efi-bootkit/description_en.txt b/description/gmh5225/Driver-efi-bootkit/description_en.txt new file mode 100644 index 00000000..cd0adfff --- /dev/null +++ b/description/gmh5225/Driver-efi-bootkit/description_en.txt @@ -0,0 +1,5 @@ +This project is a UEFI boot-stage implant framework that transfers execution from an infected EFI application into the Windows kernel through a staged payload chain. +Its C code hooks ExitBootServices and SetVirtualAddressMap, tracks the image's runtime virtual address, then patches OslArchTransferToKernel so it can modify a target driver before the operating system fully starts. +The kernel-side stage locates a chosen driver image, repurposes its .rsrc section as executable space, maps an additional payload with MmMapIoSpace, updates the driver's entry point, and finally restores the original entry path to reduce boot instability. +The repository also includes Python tooling to extract the flat shellcode blob, calculate hashed identifiers, and inject the BOOTDOOR payload into an EFI binary while optionally patching bootmgfw integrity checks. +It is mainly useful for low-level Windows boot, firmware, and kernel researchers who need to study how EFI hooks, loader interception, and pre-OS driver patching are implemented in practice. diff --git a/description/gmh5225/Driver-intel-PEBs-LoopHPCs/description_en.txt b/description/gmh5225/Driver-intel-PEBs-LoopHPCs/description_en.txt new file mode 100644 index 00000000..ece334c8 --- /dev/null +++ b/description/gmh5225/Driver-intel-PEBs-LoopHPCs/description_en.txt @@ -0,0 +1,4 @@ +This project is a Windows driver framework for loop-centric profiling based on Intel hardware performance features, specifically Last Branch Records and PEBS sampling. +Its archived README describes LoopHPCs as a profiling framework for finding hot loops in running binaries, especially unpacking-oriented malware, and the source tree combines PEBS helpers, branch-record processing, and loop-tracking logic inside a filter-driver style project. +The core code consumes PEBS records, correlates eventing IPs, next IPs, and data addresses with LBR-derived control-flow context, then builds loop-oriented telemetry instead of only collecting raw counter values. +It is mainly useful for low-level Windows and reverse-engineering researchers studying hardware-assisted runtime profiling of tight loops and unpacking behavior. diff --git a/description/gmh5225/Driver-kaldereta/description_en.txt b/description/gmh5225/Driver-kaldereta/description_en.txt new file mode 100644 index 00000000..b179306b --- /dev/null +++ b/description/gmh5225/Driver-kaldereta/description_en.txt @@ -0,0 +1,4 @@ +This project is an unsigned kernel driver paired with a user-mode sample that exposes a broad memory-manipulation and input-simulation feature set through a custom communication hook. +The archived README lists process lookup, module-base discovery, virtual memory allocation and protection changes, read and write primitives, input simulation, pattern scanning, and even manual DLL mapping, while the sample wrapper sends `KALDERETA_MEMORY` requests through a hooked Win32 call path instead of a conventional public device interface. +Its structure makes the repository useful as both a feature-rich cheat-driver skeleton and a reference for pairing kernel memory operations with a higher-level user-mode helper library. +It is mainly useful for Windows kernel and reverse-engineering researchers studying driver communication hooks, memory tooling primitives, and integrated user/kernel manual-mapping workflows. diff --git a/description/gmh5225/Driver-read_write/description_en.txt b/description/gmh5225/Driver-read_write/description_en.txt new file mode 100644 index 00000000..a0a7a360 --- /dev/null +++ b/description/gmh5225/Driver-read_write/description_en.txt @@ -0,0 +1,4 @@ +This project is a manually mapped kernel read/write driver that hijacks `Beep.sys` device-control handling to expose memory copy and module-base queries. +Its control path swaps `IRP_MJ_DEVICE_CONTROL` on `\Driver\Beep`, validates user requests, attaches to target processes for direct memory access, and reuses the hooked driver object so the mapped payload can masquerade as a more legitimate kernel module. +The repository also includes cleanup logic for `PiDDBCacheTable` and `MmUnloadedDrivers`, so it doubles as both a communication example and a trace-reduction reference for vulnerable-driver-based mapping workflows. +It is mainly useful for Windows kernel researchers studying IRP hijacking, basic process memory primitives, and post-mapping artifact cleanup in unsigned driver loaders. diff --git a/description/gmh5225/DriverBuddyReloaded/description_en.txt b/description/gmh5225/DriverBuddyReloaded/description_en.txt new file mode 100644 index 00000000..d6032d5c --- /dev/null +++ b/description/gmh5225/DriverBuddyReloaded/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro plugin that assists in reverse engineering Windows kernel drivers. +Automates identification of IOCTL dispatch routines, IRP handler functions, known vulnerable driver patterns, and provides annotations for common Windows driver development structures. + diff --git a/description/gmh5225/Dse-Patcher-2/description_en.txt b/description/gmh5225/Dse-Patcher-2/description_en.txt new file mode 100644 index 00000000..fd3f3d14 --- /dev/null +++ b/description/gmh5225/Dse-Patcher-2/description_en.txt @@ -0,0 +1,3 @@ +A tool that patches Driver Signature Enforcement (DSE) in the Windows kernel to allow loading unsigned drivers. +Locates and modifies ci.dll's g_CiOptions variable to disable code integrity validation for kernel-mode driver images. + diff --git a/description/gmh5225/DummyDlls_NARAKA_1_9_21/description_en.txt b/description/gmh5225/DummyDlls_NARAKA_1_9_21/description_en.txt new file mode 100644 index 00000000..4c464d9c --- /dev/null +++ b/description/gmh5225/DummyDlls_NARAKA_1_9_21/description_en.txt @@ -0,0 +1,3 @@ +A collection of IL2CPP dummy DLLs extracted from NARAKA: BLADEPOINT (version 1.9.21). +Provides C# class and method stubs generated from the game's IL2CPP metadata for use in modding, research, and cheat development. + diff --git a/description/gmh5225/Dump-val-exception-handler/description_en.txt b/description/gmh5225/Dump-val-exception-handler/description_en.txt new file mode 100644 index 00000000..d4f9deda --- /dev/null +++ b/description/gmh5225/Dump-val-exception-handler/description_en.txt @@ -0,0 +1,3 @@ +A tool that dumps Valorant's exception handler registration and vectored exception handler chains. +Extracts and logs the anti-cheat's custom exception handling setup for reverse engineering Vanguard's runtime protection mechanisms. + diff --git a/description/gmh5225/Dynsec/description_en.txt b/description/gmh5225/Dynsec/description_en.txt new file mode 100644 index 00000000..fa5c563e --- /dev/null +++ b/description/gmh5225/Dynsec/description_en.txt @@ -0,0 +1,3 @@ +A dynamic security analysis framework for studying runtime protection mechanisms in games and applications. +Provides instrumentation and monitoring capabilities for analyzing anti-tamper, anti-debug, and integrity check implementations. + diff --git a/description/gmh5225/EAC-Driver-UD-for-now/description_en.txt b/description/gmh5225/EAC-Driver-UD-for-now/description_en.txt new file mode 100644 index 00000000..670b8b03 --- /dev/null +++ b/description/gmh5225/EAC-Driver-UD-for-now/description_en.txt @@ -0,0 +1,3 @@ +A kernel driver designed to remain undetected by EasyAntiCheat's driver scanning. +Implements memory read/write operations through a communication channel that avoids EAC's known detection vectors for kernel-mode cheats. + diff --git a/description/gmh5225/EAC-EasyAntiCheat-Src-1/description_en.txt b/description/gmh5225/EAC-EasyAntiCheat-Src-1/description_en.txt new file mode 100644 index 00000000..e9db6206 --- /dev/null +++ b/description/gmh5225/EAC-EasyAntiCheat-Src-1/description_en.txt @@ -0,0 +1,3 @@ +A reconstructed or leaked source representation of EasyAntiCheat components for security research. +Contains internal detection routines, driver communication protocols, and client-side integrity validation logic used by EAC. + diff --git a/description/gmh5225/EAC-EasyAntiCheatMemorySig/description_en.txt b/description/gmh5225/EAC-EasyAntiCheatMemorySig/description_en.txt new file mode 100644 index 00000000..2a6e2d57 --- /dev/null +++ b/description/gmh5225/EAC-EasyAntiCheatMemorySig/description_en.txt @@ -0,0 +1,3 @@ +A documented collection of memory signatures that EasyAntiCheat scans for when detecting cheat tools. +Lists byte patterns EAC uses to identify known cheat frameworks, injectors, and hack modules in process memory. + diff --git a/description/gmh5225/EAC-HydraHook/description_en.txt b/description/gmh5225/EAC-HydraHook/description_en.txt new file mode 100644 index 00000000..657559e3 --- /dev/null +++ b/description/gmh5225/EAC-HydraHook/description_en.txt @@ -0,0 +1,3 @@ +A hooking framework targeting EasyAntiCheat's Hydra kernel-to-usermode communication channel. +Intercepts and suppresses EAC detection reports transmitted through the Hydra protocol to prevent ban reports from reaching the anti-cheat backend. + diff --git a/description/gmh5225/EAC-Kernel-Packet-Fucker/description_en.txt b/description/gmh5225/EAC-Kernel-Packet-Fucker/description_en.txt new file mode 100644 index 00000000..fd8fddaa --- /dev/null +++ b/description/gmh5225/EAC-Kernel-Packet-Fucker/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode bypass that prevents EasyAntiCheat from sending detection packets to its backend servers. +Hijacks EAC's dynamically imported ExAllocatePoolWithTag by modifying a writable section pointer, causing kernel-mode violation reports (size 33096 bytes) to silently fail allocation and be discarded. + diff --git a/description/gmh5225/EAC-Runtime-Extractor/description_en.txt b/description/gmh5225/EAC-Runtime-Extractor/description_en.txt new file mode 100644 index 00000000..2d9d7e74 --- /dev/null +++ b/description/gmh5225/EAC-Runtime-Extractor/description_en.txt @@ -0,0 +1,3 @@ +A DLL that extracts EasyAntiCheat's kernel driver at runtime before it touches disk. +Uses MinHook to intercept file I/O and driver loading functions, capturing the EAC driver binary as it is loaded into memory for offline analysis. + diff --git a/description/gmh5225/EAC-VmCheck.asm/description_en.txt b/description/gmh5225/EAC-VmCheck.asm/description_en.txt new file mode 100644 index 00000000..61dad367 --- /dev/null +++ b/description/gmh5225/EAC-VmCheck.asm/description_en.txt @@ -0,0 +1,4 @@ +This project is a tiny extraction of the virtual machine detection assembly from easyanticheat.sys. +The archived README says it was pulled from the driver's vm directory, and the included vmCheck.asm shows a CheckVM routine calling a small ExecVMREAD helper that issues VMREAD and branches on the result. +Because the repository is just the recovered assembly file rather than a full framework, its value is in preserving the exact low-level control flow of EAC's VM detection logic for reanalysis. +It is mainly useful for reverse engineers studying Easy Anti-Cheat virtualization checks, VMREAD-based probing, and how EAC distinguishes VM-found and VM-not-found paths. diff --git a/description/gmh5225/EAC-shellcode-1/description_en.txt b/description/gmh5225/EAC-shellcode-1/description_en.txt new file mode 100644 index 00000000..5866a724 --- /dev/null +++ b/description/gmh5225/EAC-shellcode-1/description_en.txt @@ -0,0 +1,4 @@ +This repository is an archived dump of shellcode recovered from an Easy Anti-Cheat protected game around March 2023. +The archive only contains a raw memory image named shellcode_size0x82C000.mem and a short README identifying it as anti-cheat shellcode from a protected game dumper. +That README records two execution entry points exposed through the protected game's inline hook at base+0x79204 and base+0x79304. +It is best understood as sample material for reverse engineering EAC shellcode layout and hook-driven execution flow rather than a reusable implementation. diff --git a/description/gmh5225/EAC/description_en.txt b/description/gmh5225/EAC/description_en.txt new file mode 100644 index 00000000..f0c79b40 --- /dev/null +++ b/description/gmh5225/EAC/description_en.txt @@ -0,0 +1,4 @@ +This archive is a mixed Easy Anti-Cheat reference bundle containing both reversed easyanticheat.sys code and an accompanying EAC or EOS SDK drop. +The reversed source focuses on kernel callback logic such as driver dispatch validation, Process Hacker driver detection, blacklisted driver checks, ntoskrnl patch scanning, and driver hashing routines. +Alongside that, the EAC_SDK tree includes SDK binaries, headers, and tools such as EOS_FileDecryptionTool, so the repository serves more as a study pack for EAC internals and integration artifacts than as a single executable project. +It is mainly useful for reverse engineers studying Easy Anti-Cheat kernel heuristics, driver integrity monitoring, and the surrounding SDK surface used by EAC and EOS deployments. diff --git a/description/gmh5225/EASY-HWID-SPOOFER/description_en.txt b/description/gmh5225/EASY-HWID-SPOOFER/description_en.txt new file mode 100644 index 00000000..b8526463 --- /dev/null +++ b/description/gmh5225/EASY-HWID-SPOOFER/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode hardware ID spoofer that modifies disk, NIC, GPU, and SMBIOS serial identifiers. +Works by hooking driver dispatch functions and directly patching physical memory to alter hardware fingerprints reported to anti-cheat systems, tested on Windows 10. + diff --git a/description/gmh5225/EFT-MonoEFT/description_en.txt b/description/gmh5225/EFT-MonoEFT/description_en.txt new file mode 100644 index 00000000..2516915a --- /dev/null +++ b/description/gmh5225/EFT-MonoEFT/description_en.txt @@ -0,0 +1,3 @@ +A Mono-based internal cheat for Escape From Tarkov written in C# that hooks into the Unity/Mono runtime to provide ESP (box, name, distance, health bars), silent aim, no-recoil, speed hacks, infinite stamina, and loot ESP through method hooking and direct game object manipulation. +The cheat walks EFT's GameWorld.RegisteredPlayers list to enumerate players, reads PlayerBones for skeleton-based world-to-screen projection via Camera.WorldToScreenPoint, hooks methods like CreateShot/ApplyShot/BulletMovement for bullet manipulation, and renders overlays using Unity's OnGUI/GUI.DrawTexture with a custom ImGui-style menu system. +It is mainly useful for game security researchers studying Mono/.NET injection techniques, Unity game object introspection, and method-hooking attack surfaces in Escape From Tarkov. diff --git a/description/gmh5225/EFT-NewTarkovCheatProject/description_en.txt b/description/gmh5225/EFT-NewTarkovCheatProject/description_en.txt new file mode 100644 index 00000000..5b848bbd --- /dev/null +++ b/description/gmh5225/EFT-NewTarkovCheatProject/description_en.txt @@ -0,0 +1,3 @@ +A cheat project for Escape from Tarkov providing ESP, aimbot, and loot visualization. +Reads Unity game memory to extract player positions, item data, and ballistic information for rendering overlay visuals in the EFT client. + diff --git a/description/gmh5225/EFT-Veil-EFT/description_en.txt b/description/gmh5225/EFT-Veil-EFT/description_en.txt new file mode 100644 index 00000000..0ab76d89 --- /dev/null +++ b/description/gmh5225/EFT-Veil-EFT/description_en.txt @@ -0,0 +1,3 @@ +An Escape from Tarkov cheat framework codenamed Veil providing comprehensive gameplay modifications. +Implements ESP, aimbot, and radar functionality through memory access to the EFT Unity game client. + diff --git a/description/gmh5225/ETWHOOK-InfinityHookClass/description_en.txt b/description/gmh5225/ETWHOOK-InfinityHookClass/description_en.txt new file mode 100644 index 00000000..0e1e180b --- /dev/null +++ b/description/gmh5225/ETWHOOK-InfinityHookClass/description_en.txt @@ -0,0 +1,3 @@ +A C++ wrapper class for the InfinityHook ETW-based system call hooking technique. +Provides a clean object-oriented interface for intercepting Windows syscalls by manipulating the ETW tracing infrastructure without modifying the SSDT. + diff --git a/description/gmh5225/Eac-Injector-Driver/description_en.txt b/description/gmh5225/Eac-Injector-Driver/description_en.txt new file mode 100644 index 00000000..d8da1a72 --- /dev/null +++ b/description/gmh5225/Eac-Injector-Driver/description_en.txt @@ -0,0 +1,4 @@ +This project combines a user client and manually mapped kernel driver that repurpose NtQueryIntervalProfile as a control channel for toggling Easy Anti-Cheat state. +The driver replaces HalDispatchTable entries so calls routed through NtQueryIntervalProfile reach a custom handler, then locates EasyAntiCheat.sys threads, suspends or resumes them, and temporarily disables object callbacks at the tracked altitude before restoring them later. +The user-side code builds a small shellcode stub, resolves NtQueryIntervalProfile from ntdll, and sends CODE_DISABLE or CODE_RESTORE requests while also handling DLL-loading workflow around the target process. +It is mainly useful for reverse engineers studying syscall-backed driver communication, HalDispatchTable abuse, and callback or thread manipulation against Easy Anti-Cheat. diff --git a/description/gmh5225/EasyAntiCheat-Reversing/description_en.txt b/description/gmh5225/EasyAntiCheat-Reversing/description_en.txt new file mode 100644 index 00000000..3ed7f3ea --- /dev/null +++ b/description/gmh5225/EasyAntiCheat-Reversing/description_en.txt @@ -0,0 +1,4 @@ +This project is a straight reversing dump of EasyAntiCheat.sys prepared in IDA Pro 7.7 rather than a cleaned or rebuilt codebase. +The archive mostly consists of decompiled C-like output for the driver, preserving names, constants, registry strings, and policy-related routines in a form that can be searched without reopening the original IDB. +Since there is almost no wrapper logic beyond the decompilation itself, the repository is best treated as a searchable reference snapshot for EAC reverse engineering work. +It is mainly useful for reverse engineers who want a text-searchable copy of Easy Anti-Cheat driver logic, policy paths, and decompiled control flow outside of IDA. diff --git a/description/gmh5225/EasyPeasy-GC/description_en.txt b/description/gmh5225/EasyPeasy-GC/description_en.txt new file mode 100644 index 00000000..f4ff38b6 --- /dev/null +++ b/description/gmh5225/EasyPeasy-GC/description_en.txt @@ -0,0 +1,3 @@ +A Genshin Impact cheat client based on the Grasscutter custom server framework. +Provides client-side modifications and custom server interaction for gameplay alterations in the miHoYo action RPG. + diff --git a/description/gmh5225/EasyRe/description_en.txt b/description/gmh5225/EasyRe/description_en.txt new file mode 100644 index 00000000..fa477924 --- /dev/null +++ b/description/gmh5225/EasyRe/description_en.txt @@ -0,0 +1,3 @@ +A reverse engineering toolkit providing streamlined utilities for binary analysis tasks. +Includes helpers for pattern scanning, memory dumping, structure reconstruction, and other common RE operations. + diff --git a/description/gmh5225/EazyAntiCheatSRC/description_en.txt b/description/gmh5225/EazyAntiCheatSRC/description_en.txt new file mode 100644 index 00000000..c3f55600 --- /dev/null +++ b/description/gmh5225/EazyAntiCheatSRC/description_en.txt @@ -0,0 +1,3 @@ +A reverse-engineered source representation of EasyAntiCheat for security research purposes. +Contains reimplemented detection routines, driver communication code, and integrity validation logic derived from analysis of EAC binaries. + diff --git a/description/gmh5225/EfiDump/description_en.txt b/description/gmh5225/EfiDump/description_en.txt new file mode 100644 index 00000000..cc137e95 --- /dev/null +++ b/description/gmh5225/EfiDump/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof-of-concept EFI runtime driver paired with a Windows client for direct process memory read and write operations after the operating system has booted. +The archived README describes it as a minimal example of an EFI-based process dumper, and the source tree includes both the `driver` runtime component and a separate `client` application that communicates with it. +Its build and usage flow centers on compiling `driver.efi` with `gnu-efi`, loading it from an EDK2 shell on a FAT32 USB device, then using the client side after Windows starts, with the author explicitly calling out its lack of hardening and memory safety checks. +It is mainly useful for low-level Windows and firmware researchers studying how runtime EFI drivers can survive into the OS and expose memory access primitives to a companion user-mode tool. diff --git a/description/gmh5225/Elden-Ring-Debug-Tool/description_en.txt b/description/gmh5225/Elden-Ring-Debug-Tool/description_en.txt new file mode 100644 index 00000000..13b9f7e0 --- /dev/null +++ b/description/gmh5225/Elden-Ring-Debug-Tool/description_en.txt @@ -0,0 +1,3 @@ +A debug and cheat tool for Elden Ring providing access to hidden game parameters and developer features. +Enables stat editing, item spawning, teleportation, no-clip, and other debug functionalities in the FromSoftware open-world action RPG. + diff --git a/description/gmh5225/EldenRingLauncher/description_en.txt b/description/gmh5225/EldenRingLauncher/description_en.txt new file mode 100644 index 00000000..ca38a2f4 --- /dev/null +++ b/description/gmh5225/EldenRingLauncher/description_en.txt @@ -0,0 +1,3 @@ +A custom Elden Ring launcher built with ImGui (rendered via SDL2) that provides a graphical interface for configuring and launching the game with modified settings, including anti-cheat bypass options and mod loading capabilities. +The application bundles the full ImGui library with SDL2 renderer backend, uses a Resources library for embedded assets, and presents a user-friendly window for toggling launch parameters before starting the game executable. +It is mainly useful for Elden Ring modders and game security researchers studying custom launcher implementations that interface with or bypass Easy Anti-Cheat. diff --git a/description/gmh5225/EloBuddy-Addons/description_en.txt b/description/gmh5225/EloBuddy-Addons/description_en.txt new file mode 100644 index 00000000..bcfdf10d --- /dev/null +++ b/description/gmh5225/EloBuddy-Addons/description_en.txt @@ -0,0 +1,3 @@ +A collection of addon scripts for the EloBuddy League of Legends scripting framework. +Provides champion automation, orbwalker logic, skill-shot prediction, and utility modules for automated LoL gameplay. + diff --git a/description/gmh5225/EntropyReducer/description_en.txt b/description/gmh5225/EntropyReducer/description_en.txt new file mode 100644 index 00000000..45114cb4 --- /dev/null +++ b/description/gmh5225/EntropyReducer/description_en.txt @@ -0,0 +1,3 @@ +A tool that lowers PE binary entropy to evade heuristic detection by AV and anti-cheat scanners. +Manipulates section padding and data distribution to reduce Shannon entropy scores that would otherwise flag packed or encrypted executables. + diff --git a/description/gmh5225/EtherealEngine/description_en.txt b/description/gmh5225/EtherealEngine/description_en.txt new file mode 100644 index 00000000..76135869 --- /dev/null +++ b/description/gmh5225/EtherealEngine/description_en.txt @@ -0,0 +1,3 @@ +A cross-platform C++ game engine with modular architecture and physically-based rendering. +Features entity-component system, PBR renderer, asset management pipeline, and editor tools for 3D game and interactive application development. + diff --git a/description/gmh5225/EvilKaspersky/description_en.txt b/description/gmh5225/EvilKaspersky/description_en.txt new file mode 100644 index 00000000..65b80a69 --- /dev/null +++ b/description/gmh5225/EvilKaspersky/description_en.txt @@ -0,0 +1,3 @@ +A tool abusing Kaspersky's signed kernel-mode drivers for unauthorized privileged operations. +Leverages trusted Kaspersky driver capabilities to execute kernel code while appearing as legitimate antivirus activity to security software. + diff --git a/description/gmh5225/ExtendedCameraSettings/description_en.txt b/description/gmh5225/ExtendedCameraSettings/description_en.txt new file mode 100644 index 00000000..eed5682f --- /dev/null +++ b/description/gmh5225/ExtendedCameraSettings/description_en.txt @@ -0,0 +1,3 @@ +A game modification extending camera control beyond default engine limits. +Provides adjustable FOV, camera distance, rotation freedom, and additional viewpoint parameters for enhanced gameplay or cinematic creation. + diff --git a/description/gmh5225/External-Dayz-Cheat/description_en.txt b/description/gmh5225/External-Dayz-Cheat/description_en.txt new file mode 100644 index 00000000..ce4181f9 --- /dev/null +++ b/description/gmh5225/External-Dayz-Cheat/description_en.txt @@ -0,0 +1,3 @@ +An external DayZ ESP cheat that creates a transparent DirectX 9 overlay window positioned on top of the game, reads game entity data through a kernel driver (via Driver.h/Imports.h), and renders player positions, names, health bars, and distance using D3DXFont and D3DXLine drawing primitives. +The overlay continuously tracks the target window via FindWindow/GetWindowRect, uses Direct3DCreate9Ex for the transparent rendering surface, and walks the game's entity list through SDK-defined offsets to extract world-to-screen projected coordinates for each player and item. +It is mainly useful for game security researchers studying external overlay-based ESP implementations and driver-backed memory reading patterns in DayZ/Enfusion engine titles. diff --git a/description/gmh5225/External-ImGui-Android/description_en.txt b/description/gmh5225/External-ImGui-Android/description_en.txt new file mode 100644 index 00000000..6a9dfe85 --- /dev/null +++ b/description/gmh5225/External-ImGui-Android/description_en.txt @@ -0,0 +1,3 @@ +An external ImGui-based mod menu for Android games using OpenGL ES 3.0 rendering. +Provides Unreal Engine memory tools, math structures, and an overlay service that draws outside the game process via Android's SurfaceView and NDK JNI integration. + diff --git a/description/gmh5225/External-R6S-Cheat/description_en.txt b/description/gmh5225/External-R6S-Cheat/description_en.txt new file mode 100644 index 00000000..6538f08a --- /dev/null +++ b/description/gmh5225/External-R6S-Cheat/description_en.txt @@ -0,0 +1,3 @@ +An external cheat for Rainbow Six Siege using shared memory communication with a kernel driver. +Reads game entities, player positions, and rendering data externally through a mapped memory section for ESP and aimbot features. + diff --git a/description/gmh5225/External-imgui-Cheat-Menu-Example-2023/description_en.txt b/description/gmh5225/External-imgui-Cheat-Menu-Example-2023/description_en.txt new file mode 100644 index 00000000..652ad46f --- /dev/null +++ b/description/gmh5225/External-imgui-Cheat-Menu-Example-2023/description_en.txt @@ -0,0 +1,3 @@ +A template for building external cheat menus using ImGui with SDL and OpenGL backends. +Demonstrates hooking SDL_GL_SwapWindow for overlay rendering with proper GL context management to avoid flickering artifacts. + diff --git a/description/gmh5225/FakeEnclave/description_en.txt b/description/gmh5225/FakeEnclave/description_en.txt new file mode 100644 index 00000000..a186181b --- /dev/null +++ b/description/gmh5225/FakeEnclave/description_en.txt @@ -0,0 +1,3 @@ +This project is a poc that abuses Enclave. +It is primarily written in C++ and C/C++. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring0 area. diff --git a/description/gmh5225/FakePDB/description_en.txt b/description/gmh5225/FakePDB/description_en.txt new file mode 100644 index 00000000..abdf9db8 --- /dev/null +++ b/description/gmh5225/FakePDB/description_en.txt @@ -0,0 +1,3 @@ +A tool that generates fake PDB (Program Database) files for executables lacking debug symbols. +Creates synthetic symbol information from IDA analysis results, enabling source-level debugging and symbol resolution in tools that consume PDB files. + diff --git a/description/gmh5225/FakeSign/description_en.txt b/description/gmh5225/FakeSign/description_en.txt new file mode 100644 index 00000000..5c486cb5 --- /dev/null +++ b/description/gmh5225/FakeSign/description_en.txt @@ -0,0 +1,3 @@ +A tool that applies fake Authenticode signatures to PE binaries to bypass signature verification checks. +Crafts certificate data structures that pass superficial validation while not being cryptographically valid, useful for evading signature-presence checks. + diff --git a/description/gmh5225/FakerAndroid/description_en.txt b/description/gmh5225/FakerAndroid/description_en.txt new file mode 100644 index 00000000..69590f0e --- /dev/null +++ b/description/gmh5225/FakerAndroid/description_en.txt @@ -0,0 +1,3 @@ +This project is a tool translate a apk file to common android project and support so hook include il2cpp c++ scaffolding. +Secondary development course 1、Open the project 2、Debug or run the project 3、Advanced With the help of javaScaffoding write your java code to call original class in app moudle(app/src/main/java) Write java code in moudle app(app/src/main/java),keep the class name and package name corresponding same as the original class When there is a smali files mod,there is a least files builing With the help of fakeCpp api use jni hook the so method With the help of il2cpp Scaffolding and fakeCpp api,use jni have a modification of il2cpp game script. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/gmh5225/FallGuys/description_en.txt b/description/gmh5225/FallGuys/description_en.txt new file mode 100644 index 00000000..34d596ee --- /dev/null +++ b/description/gmh5225/FallGuys/description_en.txt @@ -0,0 +1,3 @@ +A cheat for Fall Guys: Ultimate Knockout providing movement and gameplay modifications. +Uses kernel-mode driver communication and memory manipulation to implement speed hacks, fly hacks, and other physics-based exploits in the Unity game. + diff --git a/description/gmh5225/FallGuysSharp/description_en.txt b/description/gmh5225/FallGuysSharp/description_en.txt new file mode 100644 index 00000000..5e83cb7e --- /dev/null +++ b/description/gmh5225/FallGuysSharp/description_en.txt @@ -0,0 +1,3 @@ +A C# cheat for Fall Guys: Ultimate Knockout targeting the Unity/IL2CPP game runtime. +Provides movement hacks and gameplay modifications through managed code injection into the IL2CPP runtime environment. + diff --git a/description/gmh5225/Far-Cry-1-Source-Full/description_en.txt b/description/gmh5225/Far-Cry-1-Source-Full/description_en.txt new file mode 100644 index 00000000..c127e77f --- /dev/null +++ b/description/gmh5225/Far-Cry-1-Source-Full/description_en.txt @@ -0,0 +1,3 @@ +A full source code archive of the original Far Cry 1 game by Crytek. +Contains the complete CryEngine 1 source including renderer, physics, AI, game logic, and editor code for the 2004 FPS title. + diff --git a/description/gmh5225/FarCry/description_en.txt b/description/gmh5225/FarCry/description_en.txt new file mode 100644 index 00000000..f1f7bb1c --- /dev/null +++ b/description/gmh5225/FarCry/description_en.txt @@ -0,0 +1,3 @@ +A source code repository of the Far Cry game engine and game logic components. +Includes CryEngine source code with rendering pipeline, entity system, script bindings, and level design tools. + diff --git a/description/gmh5225/Fedoraware/description_en.txt b/description/gmh5225/Fedoraware/description_en.txt new file mode 100644 index 00000000..532ca69b --- /dev/null +++ b/description/gmh5225/Fedoraware/description_en.txt @@ -0,0 +1,3 @@ +This project is a free and open-source training software for Team Fortress 2, based on SE-Owned. +It is primarily written in C/C++ and C++ and centers on rendering, networking, and animation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:team fortress 2 area. diff --git a/description/gmh5225/Fenrir/description_en.txt b/description/gmh5225/Fenrir/description_en.txt new file mode 100644 index 00000000..64319dc9 --- /dev/null +++ b/description/gmh5225/Fenrir/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode rootkit or driver framework named Fenrir for system-level operations. +Provides low-level system manipulation capabilities including process hiding, memory access, and callback management for research purposes. + diff --git a/description/gmh5225/FindFunc/description_en.txt b/description/gmh5225/FindFunc/description_en.txt new file mode 100644 index 00000000..37af8393 --- /dev/null +++ b/description/gmh5225/FindFunc/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro plugin that searches for functions matching specific byte pattern criteria or characteristics. +Allows filtering functions by instruction sequences, operand types, cross-references, and other properties to quickly locate target functions during reverse engineering. + diff --git a/description/gmh5225/Flying-Guys-fully-modified/description_en.txt b/description/gmh5225/Flying-Guys-fully-modified/description_en.txt new file mode 100644 index 00000000..46a6b474 --- /dev/null +++ b/description/gmh5225/Flying-Guys-fully-modified/description_en.txt @@ -0,0 +1,3 @@ +A fully modified Fall Guys cheat suite with kernel driver, mapper, and user-mode components. +Uses KdMapper for driver loading and ImGui for overlay rendering, providing fly hacks and movement modifications through kernel-level memory access. + diff --git a/description/gmh5225/FlyingGuys/description_en.txt b/description/gmh5225/FlyingGuys/description_en.txt new file mode 100644 index 00000000..9c5ae587 --- /dev/null +++ b/description/gmh5225/FlyingGuys/description_en.txt @@ -0,0 +1,3 @@ +A Fall Guys game cheat with kernel driver support and ImGui-based overlay rendering. +Includes a custom kernel driver for memory operations, KdMapper-based loader, and user-mode client with zlib compression for network data manipulation. + diff --git a/description/gmh5225/Fortnite-3.5/description_en.txt b/description/gmh5225/Fortnite-3.5/description_en.txt new file mode 100644 index 00000000..1e1c07fa --- /dev/null +++ b/description/gmh5225/Fortnite-3.5/description_en.txt @@ -0,0 +1,3 @@ +An internal cheat for Fortnite version 3.50 built as an injectable DLL. +Features memory aimbot, ESP visuals, and a zgui-based in-game menu, requiring a user-generated Unreal Engine SDK placed alongside the source. + diff --git a/description/gmh5225/Fortnite-EFI-External/description_en.txt b/description/gmh5225/Fortnite-EFI-External/description_en.txt new file mode 100644 index 00000000..b376d8f7 --- /dev/null +++ b/description/gmh5225/Fortnite-EFI-External/description_en.txt @@ -0,0 +1,3 @@ +An external Fortnite cheat using EFI (UEFI) runtime services for stealthy memory access. +Communicates with a UEFI driver through NtSetSystemEnvironmentValueEx to read game memory without loading any Windows kernel driver, bypassing anti-cheat driver detection. + diff --git a/description/gmh5225/Fortnite-Esp-Aimbot-Exploits-Hwid-Spoofer-Cleaner-Hack-Cheat/description_en.txt b/description/gmh5225/Fortnite-Esp-Aimbot-Exploits-Hwid-Spoofer-Cleaner-Hack-Cheat/description_en.txt new file mode 100644 index 00000000..69106230 --- /dev/null +++ b/description/gmh5225/Fortnite-Esp-Aimbot-Exploits-Hwid-Spoofer-Cleaner-Hack-Cheat/description_en.txt @@ -0,0 +1,3 @@ +An external Fortnite cheat with ESP, aimbot, HWID spoofer, and Discord overlay hooking. +Hijacks DiscordHook64.dll's hook creation functions via pattern scanning to render cheat visuals through Discord's overlay pipeline. + diff --git a/description/gmh5225/Fortnite-Evo.cc-Source-External-Cheat/description_en.txt b/description/gmh5225/Fortnite-Evo.cc-Source-External-Cheat/description_en.txt new file mode 100644 index 00000000..d2b53b4b --- /dev/null +++ b/description/gmh5225/Fortnite-Evo.cc-Source-External-Cheat/description_en.txt @@ -0,0 +1,3 @@ +A leaked external Fortnite cheat source from Evo.cc featuring DirectX 9 overlay rendering. +Includes world-to-screen projection, player ESP, and aimbot functionality using standard Win32 memory reading APIs. + diff --git a/description/gmh5225/Fortnite-External-4/description_en.txt b/description/gmh5225/Fortnite-External-4/description_en.txt new file mode 100644 index 00000000..150df6c5 --- /dev/null +++ b/description/gmh5225/Fortnite-External-4/description_en.txt @@ -0,0 +1,3 @@ +An external Fortnite cheat using a socket-based kernel driver for memory access. +Originally created circa 2019, features ESP and aimbot with a Capcom.sys-based driver mapper for loading the communication driver. + diff --git a/description/gmh5225/Fortnite-External-5/description_en.txt b/description/gmh5225/Fortnite-External-5/description_en.txt new file mode 100644 index 00000000..dceb5bf6 --- /dev/null +++ b/description/gmh5225/Fortnite-External-5/description_en.txt @@ -0,0 +1,3 @@ +An external Fortnite cheat with integrated HWID spoofer using FNV-1a hashing for string obfuscation. +Includes ImGui overlay rendering, disk serial spoofing from a kernel driver, and game memory reading for ESP and aimbot features. + diff --git a/description/gmh5225/Fortnite-External-Cheat-Source-Code/description_en.txt b/description/gmh5225/Fortnite-External-Cheat-Source-Code/description_en.txt new file mode 100644 index 00000000..287db962 --- /dev/null +++ b/description/gmh5225/Fortnite-External-Cheat-Source-Code/description_en.txt @@ -0,0 +1,3 @@ +An external Fortnite cheat source code with DirectX 9 rendering and ImGui menu. +Based on Vaselinikives' code with world-to-screen projection, ESP drawing, and basic aimbot functionality using external memory reading. + diff --git a/description/gmh5225/Fortnite-External-Cheat-WinSense-Leak/description_en.txt b/description/gmh5225/Fortnite-External-Cheat-WinSense-Leak/description_en.txt new file mode 100644 index 00000000..ac5245ea --- /dev/null +++ b/description/gmh5225/Fortnite-External-Cheat-WinSense-Leak/description_en.txt @@ -0,0 +1,3 @@ +A leaked and updated version of the WinSense Fortnite external cheat. +Features KeyAuth-based license authentication, ImGui DirectX 9 overlay, kernel driver communication, and encrypted API calls using CryptoPP for anti-tamper protection. + diff --git a/description/gmh5225/Fortnite-External/description_en.txt b/description/gmh5225/Fortnite-External/description_en.txt new file mode 100644 index 00000000..f4167977 --- /dev/null +++ b/description/gmh5225/Fortnite-External/description_en.txt @@ -0,0 +1,3 @@ +An external Fortnite cheat requiring a custom kernel driver for memory access. +Includes DirectX 9 rendering setup, game offset definitions, and utility functions for reading Unreal Engine data structures externally. + diff --git a/description/gmh5225/Fortnite-Internal-Cheat-Fixed-and-Updated/description_en.txt b/description/gmh5225/Fortnite-Internal-Cheat-Fixed-and-Updated/description_en.txt new file mode 100644 index 00000000..beca1e82 --- /dev/null +++ b/description/gmh5225/Fortnite-Internal-Cheat-Fixed-and-Updated/description_en.txt @@ -0,0 +1,3 @@ +An internal Fortnite cheat DLL featuring memory aimbot, silent aimbot, and comprehensive ESP. +Includes box ESP, skeleton rendering, distance display, snaplines, FOV circle, chest and ammo box ESP with DirectX 11 ImGui overlay rendering. + diff --git a/description/gmh5225/Fortnite-Leak5/description_en.txt b/description/gmh5225/Fortnite-Leak5/description_en.txt new file mode 100644 index 00000000..2e3209c9 --- /dev/null +++ b/description/gmh5225/Fortnite-Leak5/description_en.txt @@ -0,0 +1,3 @@ +This project is the basic source that INFARCTED.CC uses. +It is primarily written in C++ and C/C++ and centers on Unity, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/gmh5225/Fortnite-Masterpasta-ihack-Source-Leak/description_en.txt b/description/gmh5225/Fortnite-Masterpasta-ihack-Source-Leak/description_en.txt new file mode 100644 index 00000000..833ecb4c --- /dev/null +++ b/description/gmh5225/Fortnite-Masterpasta-ihack-Source-Leak/description_en.txt @@ -0,0 +1,3 @@ +A leaked source of the Masterpasta/iHack Fortnite internal cheat with engine-rendered visuals. +Uses Microsoft Detours for hooking, direct UObject array access, bone matrix projection, and GetViewpoint for camera-space calculations. + diff --git a/description/gmh5225/Fortnite-Offset-dumper/description_en.txt b/description/gmh5225/Fortnite-Offset-dumper/description_en.txt new file mode 100644 index 00000000..8c013bd6 --- /dev/null +++ b/description/gmh5225/Fortnite-Offset-dumper/description_en.txt @@ -0,0 +1,3 @@ +A Fortnite offset dumper that extracts current memory offsets and class layouts from the running game. +Generates structured offset data with regex-cleaned class names and hierarchical offset definitions for use in external and internal cheats. + diff --git a/description/gmh5225/Fortnite-SigsUpdatedEveryUpdate/description_en.txt b/description/gmh5225/Fortnite-SigsUpdatedEveryUpdate/description_en.txt new file mode 100644 index 00000000..ba5fbbb2 --- /dev/null +++ b/description/gmh5225/Fortnite-SigsUpdatedEveryUpdate/description_en.txt @@ -0,0 +1,3 @@ +A regularly updated collection of Fortnite memory signatures for Season 2 Chapter 3. +Includes byte patterns for UWorld, GObjects, FnFree, GetNameByIndex, and other critical Unreal Engine structures used in cheat development. + diff --git a/description/gmh5225/Fortnite-UD-External/description_en.txt b/description/gmh5225/Fortnite-UD-External/description_en.txt new file mode 100644 index 00000000..b28e8ec0 --- /dev/null +++ b/description/gmh5225/Fortnite-UD-External/description_en.txt @@ -0,0 +1,3 @@ +An undetected external Fortnite cheat with anti-cheat bypass capabilities. +Implements stealthy memory reading techniques designed to evade BattlEye and EasyAntiCheat detection while providing ESP and aimbot features. + diff --git a/description/gmh5225/Fortnite-VoyagerTF/description_en.txt b/description/gmh5225/Fortnite-VoyagerTF/description_en.txt new file mode 100644 index 00000000..504f71a4 --- /dev/null +++ b/description/gmh5225/Fortnite-VoyagerTF/description_en.txt @@ -0,0 +1,3 @@ +A Fortnite cheat project codenamed VoyagerTF with external memory access capabilities. +Provides ESP, aimbot, and game state reading through external process memory manipulation of the Unreal Engine game client. + diff --git a/description/gmh5225/FortniteSigsUpdatedEveryUpdate/description_en.txt b/description/gmh5225/FortniteSigsUpdatedEveryUpdate/description_en.txt new file mode 100644 index 00000000..c3909605 --- /dev/null +++ b/description/gmh5225/FortniteSigsUpdatedEveryUpdate/description_en.txt @@ -0,0 +1,3 @@ +A maintained repository of Fortnite byte-pattern signatures updated with each game patch. +Contains signatures for UWorld, GObjects, FnFree, GetNameByIndex, and other Unreal Engine internals with pattern mask notation for cheat offset resolution. + diff --git a/description/gmh5225/FridaScript/description_en.txt b/description/gmh5225/FridaScript/description_en.txt new file mode 100644 index 00000000..7f091c4e --- /dev/null +++ b/description/gmh5225/FridaScript/description_en.txt @@ -0,0 +1,3 @@ +A collection of Frida instrumentation scripts for dynamic analysis of games and applications. +Provides JavaScript-based hooks for intercepting function calls, tracing API usage, and modifying runtime behavior on Android, iOS, and desktop platforms. + diff --git a/description/gmh5225/Full-Hwid-Spoofer-V6/description_en.txt b/description/gmh5225/Full-Hwid-Spoofer-V6/description_en.txt new file mode 100644 index 00000000..6c800809 --- /dev/null +++ b/description/gmh5225/Full-Hwid-Spoofer-V6/description_en.txt @@ -0,0 +1,3 @@ +A comprehensive HWID spoofer (version 6) supporting disk, NIC, GPU, SMBIOS, and registry-based hardware ID modification. +Uses a kernel driver loaded via KdMapper with an ImGui GUI for one-click permanent hardware ID spoofing across AMD and Intel platforms on Windows 10/11. + diff --git a/description/gmh5225/GTA-5-SIGS-1.59/description_en.txt b/description/gmh5225/GTA-5-SIGS-1.59/description_en.txt new file mode 100644 index 00000000..35b717f3 --- /dev/null +++ b/description/gmh5225/GTA-5-SIGS-1.59/description_en.txt @@ -0,0 +1,3 @@ +A collection of byte-pattern signatures for Grand Theft Auto V version 1.59. +Includes patterns for World, ReplayInterface, Viewport, Ammo, and Clip game structures used in GTA V cheat and mod development. + diff --git a/description/gmh5225/GTAIII-DE-GoldHook/description_en.txt b/description/gmh5225/GTAIII-DE-GoldHook/description_en.txt new file mode 100644 index 00000000..7522db6b --- /dev/null +++ b/description/gmh5225/GTAIII-DE-GoldHook/description_en.txt @@ -0,0 +1,3 @@ +An internal hook-based cheat for Grand Theft Auto III: The Definitive Edition. +Features ImGui overlay rendering with DirectX hooking for implementing gameplay modifications and visual enhancements in the remastered GTA III. + diff --git a/description/gmh5225/GTAV_DragResize/description_en.txt b/description/gmh5225/GTAV_DragResize/description_en.txt new file mode 100644 index 00000000..f42874cd --- /dev/null +++ b/description/gmh5225/GTAV_DragResize/description_en.txt @@ -0,0 +1,3 @@ +A GTA V mod that enables drag-to-resize functionality for in-game UI windows and elements. +Modifies the game's rendering and input handling to allow resizing of overlay windows and HUD components. + diff --git a/description/gmh5225/Game-GTA-re3/description_en.txt b/description/gmh5225/Game-GTA-re3/description_en.txt new file mode 100644 index 00000000..53df0227 --- /dev/null +++ b/description/gmh5225/Game-GTA-re3/description_en.txt @@ -0,0 +1,3 @@ +A reverse-engineered reimplementation of the GTA III and Vice City game engines (re3/reVC). +Provides fully decompiled and portable C++ source code of the classic GTA titles with cross-platform support including PS Vita builds via CMake. + diff --git a/description/gmh5225/GameEngine-CRYENGINE/description_en.txt b/description/gmh5225/GameEngine-CRYENGINE/description_en.txt new file mode 100644 index 00000000..1e79f69f --- /dev/null +++ b/description/gmh5225/GameEngine-CRYENGINE/description_en.txt @@ -0,0 +1,3 @@ +A mirror or fork of the CRYENGINE game engine source code by Crytek. +Contains the full engine source including renderer, physics, audio, AI, animation, and editor components for AAA game development. + diff --git a/description/gmh5225/GameEngine-CX3D/description_en.txt b/description/gmh5225/GameEngine-CX3D/description_en.txt new file mode 100644 index 00000000..0dc5620e --- /dev/null +++ b/description/gmh5225/GameEngine-CX3D/description_en.txt @@ -0,0 +1,3 @@ +This project is an easy to use C++ 3D Game Framework. +The CX3D Framework is an easy to use Game Framework for the development of 3D Games in C++. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/gmh5225/GameEngine-MapleEngine/description_en.txt b/description/gmh5225/GameEngine-MapleEngine/description_en.txt new file mode 100644 index 00000000..e35bd7d1 --- /dev/null +++ b/description/gmh5225/GameEngine-MapleEngine/description_en.txt @@ -0,0 +1,3 @@ +A custom game engine implementation inspired by MapleStory's client architecture. +Provides rendering, networking, and game logic systems designed for 2D side-scrolling MMORPG development. + diff --git a/description/gmh5225/Genshin-Akebi-GC/description_en.txt b/description/gmh5225/Genshin-Akebi-GC/description_en.txt new file mode 100644 index 00000000..ff25c1c6 --- /dev/null +++ b/description/gmh5225/Genshin-Akebi-GC/description_en.txt @@ -0,0 +1,3 @@ +A Genshin Impact cheat client based on the Akebi framework with Grasscutter server support. +Provides teleportation, god mode, speed hacks, and auto-play features by manipulating the Unity game client and custom server communication. + diff --git a/description/gmh5225/Genshin-Cheetos/description_en.txt b/description/gmh5225/Genshin-Cheetos/description_en.txt new file mode 100644 index 00000000..3c461759 --- /dev/null +++ b/description/gmh5225/Genshin-Cheetos/description_en.txt @@ -0,0 +1,3 @@ +A Genshin Impact cheat tool codenamed Cheetos with client-side gameplay modifications. +Implements speed hacks, teleportation, infinite stamina, and other exploits through memory manipulation of the miHoYo Unity game client. + diff --git a/description/gmh5225/Genshin-EasyPeasy-Bypass/description_en.txt b/description/gmh5225/Genshin-EasyPeasy-Bypass/description_en.txt new file mode 100644 index 00000000..28e41d75 --- /dev/null +++ b/description/gmh5225/Genshin-EasyPeasy-Bypass/description_en.txt @@ -0,0 +1,3 @@ +A bypass for Genshin Impact's anti-cheat protection system (EasyPeasy/mhyprot2). +Disables or circumvents the mhyprot2.sys kernel driver's integrity checks and detection mechanisms to allow running modified game clients. + diff --git a/description/gmh5225/Genshin-GenshinData/description_en.txt b/description/gmh5225/Genshin-GenshinData/description_en.txt new file mode 100644 index 00000000..56861c55 --- /dev/null +++ b/description/gmh5225/Genshin-GenshinData/description_en.txt @@ -0,0 +1,3 @@ +A data repository containing extracted game data from Genshin Impact. +Includes character stats, weapon data, artifact information, and other game configuration files extracted from the client for research and private server use. + diff --git a/description/gmh5225/GenshinDebuggerBypass/description_en.txt b/description/gmh5225/GenshinDebuggerBypass/description_en.txt new file mode 100644 index 00000000..0cf484b9 --- /dev/null +++ b/description/gmh5225/GenshinDebuggerBypass/description_en.txt @@ -0,0 +1,3 @@ +A DLL-based bypass for Genshin Impact's anti-debugging protections that hooks critical Windows APIs using Microsoft Detours (detours-x64.lib) to neutralize mhyprot2.sys kernel driver checks and allow attaching a debugger to the game process. +The project includes a CloseMhyprot2 module that terminates or unloads the mhyprot2 anti-cheat kernel driver, combined with API hooks in DebuggerBypass.cpp that intercept NtQueryInformationProcess, IsDebuggerPresent, and related anti-debug calls to hide debugger presence from the game's integrity checks. +It is mainly useful for game security researchers studying anti-debug bypass techniques against miHoYo/HoYoverse's mhyprot2 kernel-level protection system. diff --git a/description/gmh5225/GenshinImpact-Base/description_en.txt b/description/gmh5225/GenshinImpact-Base/description_en.txt new file mode 100644 index 00000000..efd36e06 --- /dev/null +++ b/description/gmh5225/GenshinImpact-Base/description_en.txt @@ -0,0 +1,3 @@ +A base framework for building Genshin Impact cheats and modifications. +Provides core memory access patterns, SDK structures, and hook templates targeting the miHoYo Unity/IL2CPP game runtime. + diff --git a/description/gmh5225/GhidraDec/description_en.txt b/description/gmh5225/GhidraDec/description_en.txt new file mode 100644 index 00000000..36451e88 --- /dev/null +++ b/description/gmh5225/GhidraDec/description_en.txt @@ -0,0 +1,3 @@ +A Ghidra decompiler integration or standalone decompilation tool based on Ghidra's analysis engine. +Provides programmatic access to Ghidra's decompilation capabilities for automated binary analysis and reverse engineering workflows. + diff --git a/description/gmh5225/Go-Detection-Hyper-v/description_en.txt b/description/gmh5225/Go-Detection-Hyper-v/description_en.txt new file mode 100644 index 00000000..78e70547 --- /dev/null +++ b/description/gmh5225/Go-Detection-Hyper-v/description_en.txt @@ -0,0 +1,3 @@ +A Go-based tool for detecting Hyper-V virtualization environments. +Implements CPU feature checks, timing-based detection, and hypervisor presence verification to identify whether code is running inside a Hyper-V virtual machine. + diff --git a/description/gmh5225/GoldSourceRebuild/description_en.txt b/description/gmh5225/GoldSourceRebuild/description_en.txt new file mode 100644 index 00000000..1fdf6511 --- /dev/null +++ b/description/gmh5225/GoldSourceRebuild/description_en.txt @@ -0,0 +1,3 @@ +A rebuilt implementation of Valve's GoldSource engine (Half-Life 1 engine). +Provides decompiled and reconstructed source code of the GoldSource rendering, networking, and game systems for modding and research purposes. + diff --git a/description/gmh5225/Goose_Goose_Duck_Hack/description_en.txt b/description/gmh5225/Goose_Goose_Duck_Hack/description_en.txt new file mode 100644 index 00000000..70042802 --- /dev/null +++ b/description/gmh5225/Goose_Goose_Duck_Hack/description_en.txt @@ -0,0 +1,3 @@ +An internal cheat for Goose Goose Duck using IL2CPP runtime manipulation with ImGui overlay. +Includes dumped Unity Assembly-CSharp DLLs and Anti-Cheat Toolkit bypasses for implementing ESP, role reveal, and gameplay modifications. + diff --git a/description/gmh5225/Grand-Theft-Auto-Modding-Source/description_en.txt b/description/gmh5225/Grand-Theft-Auto-Modding-Source/description_en.txt new file mode 100644 index 00000000..8da54d68 --- /dev/null +++ b/description/gmh5225/Grand-Theft-Auto-Modding-Source/description_en.txt @@ -0,0 +1,3 @@ +A collection of Grand Theft Auto modding source code including re3 and reVC engine reimplementations. +Contains reverse-engineered GTA III and Vice City source with platform ports, DirectX/OpenGL rendering, and mod support infrastructure. + diff --git a/description/gmh5225/GrandTheftAutoV-Cheat/description_en.txt b/description/gmh5225/GrandTheftAutoV-Cheat/description_en.txt new file mode 100644 index 00000000..81a967cf --- /dev/null +++ b/description/gmh5225/GrandTheftAutoV-Cheat/description_en.txt @@ -0,0 +1,3 @@ +A cheat implementation for Grand Theft Auto V with mod menu and gameplay modifications. +Provides money hacks, vehicle spawning, teleportation, and player modifications through GTA V's scripting and memory manipulation. + diff --git a/description/gmh5225/HI3-ACE-B/description_en.txt b/description/gmh5225/HI3-ACE-B/description_en.txt new file mode 100644 index 00000000..672424b4 --- /dev/null +++ b/description/gmh5225/HI3-ACE-B/description_en.txt @@ -0,0 +1,3 @@ +A bypass tool for Honkai Impact 3rd's ACE (Anti-Cheat Engine) protection system. +Circumvents the game's integrity checks and detection mechanisms to allow running modified clients or third-party tools. + diff --git a/description/gmh5225/HITCON-2023-Demo-CVE-2023-20562/description_en.txt b/description/gmh5225/HITCON-2023-Demo-CVE-2023-20562/description_en.txt new file mode 100644 index 00000000..620083d8 --- /dev/null +++ b/description/gmh5225/HITCON-2023-Demo-CVE-2023-20562/description_en.txt @@ -0,0 +1,3 @@ +A HITCON 2023 conference demonstration of CVE-2023-20562, an AMD driver vulnerability. +Showcases exploitation of the AMD GPU driver for local privilege escalation or arbitrary kernel code execution. + diff --git a/description/gmh5225/HPHardwareDiagnostics-PoC/description_en.txt b/description/gmh5225/HPHardwareDiagnostics-PoC/description_en.txt new file mode 100644 index 00000000..2e4006a4 --- /dev/null +++ b/description/gmh5225/HPHardwareDiagnostics-PoC/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploit targeting vulnerabilities in HP Hardware Diagnostics driver. +Demonstrates exploitation of the HP diagnostics kernel driver's IOCTL interface for achieving elevated privileges on HP systems. + diff --git a/description/gmh5225/HWID-EclipsedSpoofer-EAC-BE/description_en.txt b/description/gmh5225/HWID-EclipsedSpoofer-EAC-BE/description_en.txt new file mode 100644 index 00000000..1b01a040 --- /dev/null +++ b/description/gmh5225/HWID-EclipsedSpoofer-EAC-BE/description_en.txt @@ -0,0 +1,3 @@ +A hardware ID spoofer named Eclipsed targeting EasyAntiCheat and BattlEye protected games. +Modifies disk serials, NIC addresses, and other hardware identifiers at the kernel level to circumvent HWID-based game bans. + diff --git a/description/gmh5225/HWID-Kernel-Spoofer/description_en.txt b/description/gmh5225/HWID-Kernel-Spoofer/description_en.txt new file mode 100644 index 00000000..8ea9de25 --- /dev/null +++ b/description/gmh5225/HWID-Kernel-Spoofer/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode HWID spoofer that modifies hardware identifiers through driver dispatch hook interception. +Spoofs disk serial numbers, MAC addresses, SMBIOS data, and GPU identifiers by hooking IRP_MJ_DEVICE_CONTROL handlers of storage and network drivers. + diff --git a/description/gmh5225/HWID-Pasted-Hwid-Spoofer/description_en.txt b/description/gmh5225/HWID-Pasted-Hwid-Spoofer/description_en.txt new file mode 100644 index 00000000..31fc8c57 --- /dev/null +++ b/description/gmh5225/HWID-Pasted-Hwid-Spoofer/description_en.txt @@ -0,0 +1,3 @@ +A compiled HWID spoofer assembled from publicly available spoofing code snippets. +Modifies common hardware identifiers including disk serials and network adapter addresses to evade hardware-based game bans. + diff --git a/description/gmh5225/HWID-Permanent-HWID-Spoofer/description_en.txt b/description/gmh5225/HWID-Permanent-HWID-Spoofer/description_en.txt new file mode 100644 index 00000000..07188e07 --- /dev/null +++ b/description/gmh5225/HWID-Permanent-HWID-Spoofer/description_en.txt @@ -0,0 +1,3 @@ +A permanent hardware ID spoofer that persists spoofed identifiers across system reboots. +Modifies firmware-level hardware identifiers through kernel driver or registry manipulation, maintaining spoofed values without requiring re-execution. + diff --git a/description/gmh5225/HWID-Spoofer-UD-Fortnite-WarZone-Apex-Rust-Escape-From-Tarkov-and-all-EAC-BE-Games-IMGUI-Loader-Base/description_en.txt b/description/gmh5225/HWID-Spoofer-UD-Fortnite-WarZone-Apex-Rust-Escape-From-Tarkov-and-all-EAC-BE-Games-IMGUI-Loader-Base/description_en.txt new file mode 100644 index 00000000..0f824ad8 --- /dev/null +++ b/description/gmh5225/HWID-Spoofer-UD-Fortnite-WarZone-Apex-Rust-Escape-From-Tarkov-and-all-EAC-BE-Games-IMGUI-Loader-Base/description_en.txt @@ -0,0 +1,3 @@ +A universal HWID spoofer with ImGui loader interface targeting EAC and BattlEye protected games. +Supports Fortnite, Warzone, Apex Legends, Rust, and Escape from Tarkov with disk, NIC, SMBIOS, and GPU serial spoofing through kernel-mode operations. + diff --git a/description/gmh5225/HWID-SteamSpywareTerminator/description_en.txt b/description/gmh5225/HWID-SteamSpywareTerminator/description_en.txt new file mode 100644 index 00000000..3cfef9c4 --- /dev/null +++ b/description/gmh5225/HWID-SteamSpywareTerminator/description_en.txt @@ -0,0 +1,3 @@ +A tool that removes or blocks Steam's hardware fingerprinting and telemetry collection. +Targets Steam's HWID tracking mechanisms to prevent hardware identification data from being transmitted to Valve's servers. + diff --git a/description/gmh5225/Handle-Ripper/description_en.txt b/description/gmh5225/Handle-Ripper/description_en.txt new file mode 100644 index 00000000..f24d30aa --- /dev/null +++ b/description/gmh5225/Handle-Ripper/description_en.txt @@ -0,0 +1,4 @@ +This project is a small user-mode demonstration of handle hijacking by enumerating system handles and duplicating a target handle out of another process. +The sample calls NtQuerySystemInformation with SystemHandleInformation, scans the returned table for a chosen object pointer, opens the owning process with PROCESS_DUP_HANDLE, and uses DuplicateHandle to copy that handle into the current process. +Its README spends most of its space explaining the attack model and the DuplicateHandle parameters, so the code is best read as a minimal proof of concept for stolen handle reuse rather than a general-purpose framework. +It is mainly useful for Windows security researchers who want a compact example of handle-table enumeration, cross-process handle duplication, and the practical mechanics behind handle hijacking. diff --git a/description/gmh5225/HappyIDA/description_en.txt b/description/gmh5225/HappyIDA/description_en.txt new file mode 100644 index 00000000..abca103f --- /dev/null +++ b/description/gmh5225/HappyIDA/description_en.txt @@ -0,0 +1,3 @@ +An IDAPython plugin suite adding convenience utilities to the Hex-Rays decompiler. +Features Swift-style parameter labeling, clipboard name/type helpers, SEH try/catch reconstruction and highlighting, vtable-based function navigation, and Rust string prettification in pseudocode. + diff --git a/description/gmh5225/Hidden-Thread-Finder/description_en.txt b/description/gmh5225/Hidden-Thread-Finder/description_en.txt new file mode 100644 index 00000000..dfdaceda --- /dev/null +++ b/description/gmh5225/Hidden-Thread-Finder/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof-of-concept detector for manipulated or hidden system threads, built around comparing what APC and NMI callbacks can still recover after key KTHREAD fields are tampered with. +The demo creates a system thread, deliberately clears fields such as SystemThread, ApcQueueable, StackBase, and InitialStack on a Windows 20H2-specific KTHREAD layout, and then inspects the thread through both a queued APC callback and a registered NMI callback. +Its logging code shows whether each mechanism can still observe stack metadata or system-thread state, so the archive reads more like an experiment in what thread-hiding tricks break simple inspection than a polished scanner. +It is mainly useful for anti-cheat and kernel researchers studying hidden-thread detection, KTHREAD field spoofing, and the limits of APC- versus NMI-based validation. diff --git a/description/gmh5225/HideDriverTesting/description_en.txt b/description/gmh5225/HideDriverTesting/description_en.txt new file mode 100644 index 00000000..8b981b72 --- /dev/null +++ b/description/gmh5225/HideDriverTesting/description_en.txt @@ -0,0 +1,3 @@ +A kernel driver hiding implementation that removes traces from MmUnloadedDrivers, PsLoadedModuleList, PiDDBCacheTable, and driver object lists. +Designed for Windows 11 21H2 stress testing, erases driver loading artifacts from multiple kernel data structures used by anti-rootkit tools for detection. + diff --git a/description/gmh5225/Hook-HvlSwitchVirtualAddressSpace/description_en.txt b/description/gmh5225/Hook-HvlSwitchVirtualAddressSpace/description_en.txt new file mode 100644 index 00000000..bc3f3aad --- /dev/null +++ b/description/gmh5225/Hook-HvlSwitchVirtualAddressSpace/description_en.txt @@ -0,0 +1,3 @@ +A technique for hooking HvlSwitchVirtualAddressSpace to intercept virtual address space switches in the Windows kernel. +Manipulates CR3 register transitions to hide memory pages from process memory scanning by anti-cheat systems during address space context switches. + diff --git a/description/gmh5225/Hook-KdTrap/description_en.txt b/description/gmh5225/Hook-KdTrap/description_en.txt new file mode 100644 index 00000000..27adec53 --- /dev/null +++ b/description/gmh5225/Hook-KdTrap/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode hook for KdTrap, the Windows global exception handler invoked first when any exception occurs. +Modifies HalpStallCounter and related variables to hijack control flow, enabling a custom exception handler that safely intercepts null pointer dereferences and reserved CR3 bit faults. + diff --git a/description/gmh5225/Hwid-Spoofer-EAC-BE/description_en.txt b/description/gmh5225/Hwid-Spoofer-EAC-BE/description_en.txt new file mode 100644 index 00000000..f75b20be --- /dev/null +++ b/description/gmh5225/Hwid-Spoofer-EAC-BE/description_en.txt @@ -0,0 +1,3 @@ +A hardware ID spoofer specifically targeting EasyAntiCheat and BattlEye anti-cheat systems. +Spoofs disk serials, NIC MAC addresses, and SMBIOS identifiers through kernel-mode driver hooks to evade HWID-based bans in protected games. + diff --git a/description/gmh5225/IDA-KallsymsSymbolRenamer/description_en.txt b/description/gmh5225/IDA-KallsymsSymbolRenamer/description_en.txt new file mode 100644 index 00000000..7e12f1ce --- /dev/null +++ b/description/gmh5225/IDA-KallsymsSymbolRenamer/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro plugin that imports Linux kernel symbols from /proc/kallsyms into an IDA database. +Automatically renames functions and data labels in kernel binary analysis using the kallsyms symbol table for faster reverse engineering of Linux kernel modules. + diff --git a/description/gmh5225/IDA-MapSymbolParser/description_en.txt b/description/gmh5225/IDA-MapSymbolParser/description_en.txt new file mode 100644 index 00000000..67cb45ad --- /dev/null +++ b/description/gmh5225/IDA-MapSymbolParser/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro plugin that parses MAP files and applies symbol names to the current IDA database. +Imports function names, global variables, and segment information from linker MAP files to annotate stripped binaries. + diff --git a/description/gmh5225/IDA-Pro-SigMaker/description_en.txt b/description/gmh5225/IDA-Pro-SigMaker/description_en.txt new file mode 100644 index 00000000..6e76166e --- /dev/null +++ b/description/gmh5225/IDA-Pro-SigMaker/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro plugin for generating byte-pattern signatures from selected code regions. +Creates wildcard-masked signature patterns suitable for runtime pattern scanning in game hacking and binary analysis tools. + diff --git a/description/gmh5225/IDA2Obj/description_en.txt b/description/gmh5225/IDA2Obj/description_en.txt new file mode 100644 index 00000000..ad3aa6c5 --- /dev/null +++ b/description/gmh5225/IDA2Obj/description_en.txt @@ -0,0 +1,3 @@ +A tool that converts IDA Pro database content back into linkable object files. +Reconstructs COFF/ELF object files from IDA analysis data including relocations, symbols, and section content for binary patching and recompilation workflows. + diff --git a/description/gmh5225/IDASkins/description_en.txt b/description/gmh5225/IDASkins/description_en.txt new file mode 100644 index 00000000..7b3bf6c1 --- /dev/null +++ b/description/gmh5225/IDASkins/description_en.txt @@ -0,0 +1,3 @@ +A plugin that adds custom theme and skin support to IDA Pro's user interface. +Enables CSS-like styling of IDA's Qt-based GUI elements including disassembly views, hex editor, and output windows for personalized appearance. + diff --git a/description/gmh5225/IL22CPP/description_en.txt b/description/gmh5225/IL22CPP/description_en.txt new file mode 100644 index 00000000..48a7753a --- /dev/null +++ b/description/gmh5225/IL22CPP/description_en.txt @@ -0,0 +1,3 @@ +A research tool for analyzing and manipulating Unity IL2CPP runtime binaries. +Provides utilities for resolving IL2CPP metadata, reconstructing managed type information, and interfacing with the IL2CPP virtual machine for game modding. + diff --git a/description/gmh5225/IOS-jailbreak--Fugu15/description_en.txt b/description/gmh5225/IOS-jailbreak--Fugu15/description_en.txt new file mode 100644 index 00000000..8e4c0731 --- /dev/null +++ b/description/gmh5225/IOS-jailbreak--Fugu15/description_en.txt @@ -0,0 +1,3 @@ +A jailbreak implementation for iOS 15 (Fugu15) exploiting kernel vulnerabilities. +Provides untethered root access on iOS 15 devices through kernel exploit chains, enabling code signing bypass and arbitrary code execution with full system privileges. + diff --git a/description/gmh5225/IdaThemer/description_en.txt b/description/gmh5225/IdaThemer/description_en.txt new file mode 100644 index 00000000..447401d4 --- /dev/null +++ b/description/gmh5225/IdaThemer/description_en.txt @@ -0,0 +1,3 @@ +This project is a tool for converting Visual Studio Code (VsCode) themes into compatible themes for IDA Pro. +This utility leverages a modified version of the Long Night project with Celestial as a basetheme and then remaps the colors defined in the VsCode theme JSON file to create a visually appealing and functional theme for IDA Pro. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida themes area. diff --git a/description/gmh5225/Il2Cpp-HookScripts/description_en.txt b/description/gmh5225/Il2Cpp-HookScripts/description_en.txt new file mode 100644 index 00000000..feda1964 --- /dev/null +++ b/description/gmh5225/Il2Cpp-HookScripts/description_en.txt @@ -0,0 +1,3 @@ +A collection of hooking scripts targeting Unity IL2CPP game runtimes on Android. +Provides Frida and native hook templates for intercepting IL2CPP method calls, modifying game logic, and extracting runtime data from IL2CPP-compiled Unity games. + diff --git a/description/gmh5225/ImGui-Unity-Android/description_en.txt b/description/gmh5225/ImGui-Unity-Android/description_en.txt new file mode 100644 index 00000000..f991b0e1 --- /dev/null +++ b/description/gmh5225/ImGui-Unity-Android/description_en.txt @@ -0,0 +1,3 @@ +An ImGui integration for Unity games on Android providing in-game overlay menus. +Renders Dear ImGui interfaces through OpenGL ES within Unity's rendering pipeline for building mod menus and debug interfaces on Android. + diff --git a/description/gmh5225/Interep-Driver-Leak/description_en.txt b/description/gmh5225/Interep-Driver-Leak/description_en.txt new file mode 100644 index 00000000..a7226e67 --- /dev/null +++ b/description/gmh5225/Interep-Driver-Leak/description_en.txt @@ -0,0 +1,3 @@ +A leaked kernel driver used for game cheating with memory read/write communication. +Provides a kernel-mode component for stealthy process memory access, designed to evade anti-cheat driver detection through covert communication channels. + diff --git a/description/gmh5225/Internal-Valorant-Cheat/description_en.txt b/description/gmh5225/Internal-Valorant-Cheat/description_en.txt new file mode 100644 index 00000000..86be49e3 --- /dev/null +++ b/description/gmh5225/Internal-Valorant-Cheat/description_en.txt @@ -0,0 +1,3 @@ +An internal cheat for Valorant providing aimbot and ESP features through in-process hooks. +Injects into the Valorant game process to hook rendering and game logic functions, bypassing Vanguard anti-cheat's user-mode protections. + diff --git a/description/gmh5225/JMSv186/description_en.txt b/description/gmh5225/JMSv186/description_en.txt new file mode 100644 index 00000000..e238a48c --- /dev/null +++ b/description/gmh5225/JMSv186/description_en.txt @@ -0,0 +1,3 @@ +A MapleStory v186 (JMS - Japanese MapleStory) server emulator. +Implements game server logic including character management, quest systems, combat mechanics, and world simulation for hosting private MapleStory servers. + diff --git a/description/gmh5225/KBotExt/description_en.txt b/description/gmh5225/KBotExt/description_en.txt new file mode 100644 index 00000000..b4fbd91a --- /dev/null +++ b/description/gmh5225/KBotExt/description_en.txt @@ -0,0 +1,3 @@ +A Telegram bot extension framework with automated scripting and control capabilities. +Provides a programmable bot interface for managing automated tasks, message handling, and remote control operations through the Telegram API. + diff --git a/description/gmh5225/KDP-compatible-driver-loader/description_en.txt b/description/gmh5225/KDP-compatible-driver-loader/description_en.txt new file mode 100644 index 00000000..d013222e --- /dev/null +++ b/description/gmh5225/KDP-compatible-driver-loader/description_en.txt @@ -0,0 +1,3 @@ +A kernel unsigned driver loader compatible with Kernel Data Protection (KDP) on Windows 10. +Leverages gdrv.sys write primitives to bypass Driver Signature Enforcement by patching SeCiCallbacks, which is initialized by CiInitialize and used by SeValidateImageHeader to call CiValidateImageHeader. + diff --git a/description/gmh5225/KExecDD/description_en.txt b/description/gmh5225/KExecDD/description_en.txt new file mode 100644 index 00000000..d3f96e48 --- /dev/null +++ b/description/gmh5225/KExecDD/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept exploiting the Kernel Security Support Provider Interface (KSecDD.sys) for arbitrary kernel code execution. +Injects a DLL into LSASS to use IOCTL_KSEC_IPC_SET_FUNCTION_RETURN, which allows executing arbitrary kernel addresses, then disables DSE by overwriting ci.dll!g_CiOptions. + diff --git a/description/gmh5225/KasperskyHook/description_en.txt b/description/gmh5225/KasperskyHook/description_en.txt new file mode 100644 index 00000000..1e96ffb8 --- /dev/null +++ b/description/gmh5225/KasperskyHook/description_en.txt @@ -0,0 +1,3 @@ +A system call hooking framework that leverages Kaspersky's hypervisor (klhk.sys) to intercept syscalls. +Exploits Kaspersky's IA32_LSTAR modification mechanism which redirects system calls through its own dispatch table, loading klhk.sys and a custom driver to subvert the syscall handler. + diff --git a/description/gmh5225/Kernel-Cactus/description_en.txt b/description/gmh5225/Kernel-Cactus/description_en.txt new file mode 100644 index 00000000..b08711f1 --- /dev/null +++ b/description/gmh5225/Kernel-Cactus/description_en.txt @@ -0,0 +1,4 @@ +Kernel Cactus is a user-mode offensive toolkit that rides Dell's vulnerable dbutil_2_3.sys driver as its kernel read and write backend. +KernelOps.cpp opens \\.\DBUtil_2_3 and builds primitives on IOCTLs 0x9B0C1EC4 and 0x9B0C1EC8, then layers higher-level actions such as ETW disabling, PPL toggling, protected-process termination, token copying, and file deletion on top. +Its command set also includes shellcode-based remote thread injection and thread hijacking paths aimed at processes that are normally blocked from ordinary user-mode tooling. +The repo is therefore better described as a multifunction BYOVD post-exploitation console than as a simple prerequisite note about dbutil_2_3.sys. diff --git a/description/gmh5225/Kernel-Cheat-for-directx3D/description_en.txt b/description/gmh5225/Kernel-Cheat-for-directx3D/description_en.txt new file mode 100644 index 00000000..c1c891f9 --- /dev/null +++ b/description/gmh5225/Kernel-Cheat-for-directx3D/description_en.txt @@ -0,0 +1,4 @@ +This project is a kernel and user-mode communication sample that hijacks NtDxgkGetTrackedWorkloadStatistics in dxgkrnl and then uses the same channel for simple memory and drawing operations. +The driver overwrites the dxgkrnl export with a small absolute jump stub, exposes read and write helpers built on MmCopyVirtualMemory and KeStackAttachProcess, and resolves win32k GDI routines such as NtUserGetDC, NtGdiPatBlt, and NtGdiCreateSolidBrush for drawing boxes from kernel context. +The user-mode client calls NtDxgkGetTrackedWorkloadStatistics through win32u.dll, passes a NULL_MEMORY structure that can request module bases or draw rectangles, and treats the hooked graphics syscall as its command dispatcher. +It is mainly useful for Windows kernel researchers studying graphics-adjacent communication hooks, ad hoc read-write services, and kernel-assisted overlay rendering through win32k exports. diff --git a/description/gmh5225/Kernel-Special-APC-ReadProcessMemory/description_en.txt b/description/gmh5225/Kernel-Special-APC-ReadProcessMemory/description_en.txt new file mode 100644 index 00000000..d4f27f9b --- /dev/null +++ b/description/gmh5225/Kernel-Special-APC-ReadProcessMemory/description_en.txt @@ -0,0 +1,4 @@ +This project is a teaching example for reading another process from the kernel by queueing a special kernel APC into a runnable thread of the target process. +The code stores KeInitializeApc and KeInsertQueueApc, searches for a thread whose APC delivery is still enabled, allocates a nonpaged staging buffer, and lets the APC callback memcpy the target address into kernel memory before copying the result back to user space. +The archived test program compares this APC path against ordinary ReadProcessMemory, and the README explicitly frames the memory read as a demo for special APC insertion mechanics rather than the only purpose of the repository. +It is mainly useful for Windows kernel researchers who want a concrete reference for special APC insertion, thread selection constraints, and kernel-mediated memory collection. diff --git a/description/gmh5225/Kernel-VAD-Injector/description_en.txt b/description/gmh5225/Kernel-VAD-Injector/description_en.txt new file mode 100644 index 00000000..57b3cee6 --- /dev/null +++ b/description/gmh5225/Kernel-VAD-Injector/description_en.txt @@ -0,0 +1,4 @@ +This project is an unsigned-driver-assisted DLL injector that tries to hide its staging region by manipulating VADs and PTEs instead of relying on ordinary user-mode allocations alone. +The archived README says the driver communicates through a PatchGuard-safe xKdEnumerateDebuggingDevices hook, then traps a user thread in kernel and runs a command loop for read, write, allocate memory, spoof PTE, allocate VAD, and remove VAD requests. +Internally it pattern-finds MiAllocateVad, MiInsertVad, and MiInsertVadCharges inside ntoskrnl, uses KeStackAttachProcess around memory operations, and removes the VAD node again after mapping so the injected region is less visible to NtQueryVirtualMemory and similar checks. +It is mainly useful for Windows kernel researchers studying manual mapping with VAD tree abuse, executable-page concealment, and driver-based post-injection cleanup. diff --git a/description/gmh5225/KernelSU-4.4/description_en.txt b/description/gmh5225/KernelSU-4.4/description_en.txt new file mode 100644 index 00000000..46cc115c --- /dev/null +++ b/description/gmh5225/KernelSU-4.4/description_en.txt @@ -0,0 +1,3 @@ +A backport of KernelSU to Android Linux kernel 4.4 for kernel-based root access management. +Provides su and root access control at the kernel level, integrating with SELinux policy modification and APK signature verification, compiled with Google GCC 4.9. + diff --git a/description/gmh5225/KernelSnippets/description_en.txt b/description/gmh5225/KernelSnippets/description_en.txt new file mode 100644 index 00000000..a87d3b15 --- /dev/null +++ b/description/gmh5225/KernelSnippets/description_en.txt @@ -0,0 +1,3 @@ +A collection of Windows kernel-mode code snippets for common driver development tasks. +Provides reusable code patterns for callback registration, memory operations, process manipulation, and other kernel programming techniques. + diff --git a/description/gmh5225/Kernel_Anti-Cheat/description_en.txt b/description/gmh5225/Kernel_Anti-Cheat/description_en.txt new file mode 100644 index 00000000..88192666 --- /dev/null +++ b/description/gmh5225/Kernel_Anti-Cheat/description_en.txt @@ -0,0 +1,4 @@ +This project is an experimental kernel anti-cheat driver that combines several telemetry ideas instead of focusing on a single detection path. +Its main components include NMI-based stack walking with HalSendNMI and RtlCaptureStackBackTrace, system-thread start-address scanning, big-pool inspection, boot UUID collection, simple hypervisor checks, and PiDDBCacheTable enumeration for kdmapper or drvmap timestamps. +The code is explicit about possible false positives and reads like a research sandbox, with separate source files for NMI capture, thread scanning, pool analysis, hypervisor detection, and trace artifacts. +It is mainly useful for defensive researchers studying how kernel anti-cheat prototypes can combine stack forensics, module-range validation, and mapper residue checks in one driver. diff --git a/description/gmh5225/KexecDDPlus/description_en.txt b/description/gmh5225/KexecDDPlus/description_en.txt new file mode 100644 index 00000000..7ca6593c --- /dev/null +++ b/description/gmh5225/KexecDDPlus/description_en.txt @@ -0,0 +1,3 @@ +An enhanced version of KExecDD that extends the LSASS-based kernel code execution technique. +Improves upon the KSecDD.sys IOCTL exploitation method with additional capabilities for DSE bypass and arbitrary kernel memory manipulation. + diff --git a/description/gmh5225/Killer-Exercice/description_en.txt b/description/gmh5225/Killer-Exercice/description_en.txt new file mode 100644 index 00000000..d1e4a9a6 --- /dev/null +++ b/description/gmh5225/Killer-Exercice/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode process termination exercise demonstrating various methods to kill protected processes. +Implements multiple process killing techniques including handle table manipulation, APC injection, and direct EPROCESS modification. + diff --git a/description/gmh5225/Killer/description_en.txt b/description/gmh5225/Killer/description_en.txt new file mode 100644 index 00000000..014fd7e5 --- /dev/null +++ b/description/gmh5225/Killer/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode tool for terminating processes that resist normal termination methods. +Uses kernel driver capabilities to forcefully end protected or anti-cheat-guarded processes by manipulating kernel process structures. + diff --git a/description/gmh5225/KitsuPE/description_en.txt b/description/gmh5225/KitsuPE/description_en.txt new file mode 100644 index 00000000..50b15ddf --- /dev/null +++ b/description/gmh5225/KitsuPE/description_en.txt @@ -0,0 +1,3 @@ +A PE (Portable Executable) file parser and editor for Windows binary analysis. +Provides detailed parsing of PE headers, sections, imports, exports, relocations, and resources with editing capabilities for binary patching. + diff --git a/description/gmh5225/KittyMemory-IOS/description_en.txt b/description/gmh5225/KittyMemory-IOS/description_en.txt new file mode 100644 index 00000000..3b759534 --- /dev/null +++ b/description/gmh5225/KittyMemory-IOS/description_en.txt @@ -0,0 +1,3 @@ +A runtime memory editing library for iOS game hacking and modification. +Provides memory patching, function hooking, and pattern scanning APIs for modifying iOS application behavior at runtime without jailbreak dependency. + diff --git a/description/gmh5225/L-Assemblies/description_en.txt b/description/gmh5225/L-Assemblies/description_en.txt new file mode 100644 index 00000000..48103854 --- /dev/null +++ b/description/gmh5225/L-Assemblies/description_en.txt @@ -0,0 +1,3 @@ +A collection of C# assemblies (plugins) for the LeagueSharp scripting platform targeting League of Legends, providing automated champion scripts for Annie, Cassiopeia, Cho'Gath, Darius, Evelynn, and Katarina, plus a ward/summoner spell cooldown tracker with minimap overlay. +Each champion module implements combo logic, spell casting sequences, and target selection using the LeagueSharp SDK's Orbwalker, TargetSelector, and Spell prediction APIs, while the tracker draws cooldown indicators and ward positions on the HUD using Drawing.OnDraw callbacks. +It is mainly useful for game security researchers studying scripting platform plugin architectures and automated gameplay logic in League of Legends. diff --git a/description/gmh5225/L4D2-Cheat/description_en.txt b/description/gmh5225/L4D2-Cheat/description_en.txt new file mode 100644 index 00000000..5e9cb667 --- /dev/null +++ b/description/gmh5225/L4D2-Cheat/description_en.txt @@ -0,0 +1,3 @@ +An internal cheat for Left 4 Dead 2 built on the Source engine SDK. +Provides ESP, aimbot, and gameplay modifications through VMT hooking and engine interface exploitation in the Valve Source engine. + diff --git a/description/gmh5225/L4D2Basic/description_en.txt b/description/gmh5225/L4D2Basic/description_en.txt new file mode 100644 index 00000000..8c0ffca5 --- /dev/null +++ b/description/gmh5225/L4D2Basic/description_en.txt @@ -0,0 +1,3 @@ +A basic cheat framework for Left 4 Dead 2 providing foundational Source engine hook structures. +Implements core hooking mechanisms, engine interface resolution, and basic cheat features as a starting template for Source engine game hacking. + diff --git a/description/gmh5225/LOST-ARK-SDK/description_en.txt b/description/gmh5225/LOST-ARK-SDK/description_en.txt new file mode 100644 index 00000000..c8f5a826 --- /dev/null +++ b/description/gmh5225/LOST-ARK-SDK/description_en.txt @@ -0,0 +1,3 @@ +An SDK dump of Lost Ark's game client containing class definitions and memory offsets. +Provides reverse-engineered data structures, entity hierarchies, and game state definitions for building Lost Ark analysis tools and modifications. + diff --git a/description/gmh5225/LSASS-DumpThatLSASS/description_en.txt b/description/gmh5225/LSASS-DumpThatLSASS/description_en.txt new file mode 100644 index 00000000..9e239785 --- /dev/null +++ b/description/gmh5225/LSASS-DumpThatLSASS/description_en.txt @@ -0,0 +1,4 @@ +This project is a user-mode LSASS dumping proof of concept that combines handle theft with an unhooked copy of DbgHelp and a lightly obfuscated dumping path. +The archived README describes the approach as duplicating an existing LSASS process handle from another process, then calling MiniDumpWriteDump through a fresh DbgHelp.dll copy loaded from disk instead of relying on possibly hooked exports. +Its code enumerates SystemHandleInformation, duplicates candidate process handles, filters them by full image path containing lsass.exe, writes the dump to a temp file, and then encrypts the resulting file on disk. +It is mainly useful for Windows security researchers studying handle-based dump acquisition, user-mode hook evasion around MiniDumpWriteDump, and the tradeoffs of recycled privileged handles. diff --git a/description/gmh5225/LViewLoL/description_en.txt b/description/gmh5225/LViewLoL/description_en.txt new file mode 100644 index 00000000..7055aebf --- /dev/null +++ b/description/gmh5225/LViewLoL/description_en.txt @@ -0,0 +1,3 @@ +An external League of Legends viewing tool providing real-time game state visualization. +Reads LoL game memory externally to display minimap information, player positions, cooldown tracking, and other game data in a separate overlay. + diff --git a/description/gmh5225/LastIslandOfSurvival-iOSCheat-Source/description_en.txt b/description/gmh5225/LastIslandOfSurvival-iOSCheat-Source/description_en.txt new file mode 100644 index 00000000..fb00b554 --- /dev/null +++ b/description/gmh5225/LastIslandOfSurvival-iOSCheat-Source/description_en.txt @@ -0,0 +1,3 @@ +An iOS cheat source for Last Island of Survival (Last Day Rules) mobile game. +Implements gameplay modifications through Objective-C runtime manipulation targeting the iOS game client. + diff --git a/description/gmh5225/LazyIDA/description_en.txt b/description/gmh5225/LazyIDA/description_en.txt new file mode 100644 index 00000000..58dfa7ad --- /dev/null +++ b/description/gmh5225/LazyIDA/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro productivity plugin adding convenience features for reverse engineering workflows. +Provides auto-relocation jumping during debugging, memory dumping to file, ASCII/HEX/BASE64 paste to memory, RVA copying, and jump-to-address without rebasing the IDB. + diff --git a/description/gmh5225/Lazysight/description_en.txt b/description/gmh5225/Lazysight/description_en.txt new file mode 100644 index 00000000..13bba166 --- /dev/null +++ b/description/gmh5225/Lazysight/description_en.txt @@ -0,0 +1,3 @@ +An internal multihack for the Ironsight FPS game with ESP, aimbot, and miscellaneous features. +Hooks DirectX rendering for overlay drawing and accesses game SDK structures including entity lists, weapon managers, and world-to-screen transformations. + diff --git a/description/gmh5225/League-DirectX11-Internal/description_en.txt b/description/gmh5225/League-DirectX11-Internal/description_en.txt new file mode 100644 index 00000000..e865a69a --- /dev/null +++ b/description/gmh5225/League-DirectX11-Internal/description_en.txt @@ -0,0 +1,3 @@ +An internal cheat for League of Legends using DirectX 11 rendering hooks. +Features spell database generation, champion data parsing, ImGui overlay with custom font rendering, and named pipe communication for external tool integration. + diff --git a/description/gmh5225/League-Unpacker/description_en.txt b/description/gmh5225/League-Unpacker/description_en.txt new file mode 100644 index 00000000..009e4812 --- /dev/null +++ b/description/gmh5225/League-Unpacker/description_en.txt @@ -0,0 +1,3 @@ +A DLL injection tool that decrypts League of Legends' protected .text code section. +Dumps the decrypted executable code to enable static analysis in disassemblers like IDA Pro, requiring manual base address input for proper disassembly. + diff --git a/description/gmh5225/LeagueDumper/description_en.txt b/description/gmh5225/LeagueDumper/description_en.txt new file mode 100644 index 00000000..70418ef3 --- /dev/null +++ b/description/gmh5225/LeagueDumper/description_en.txt @@ -0,0 +1,3 @@ +A process memory dumper adapted for League of Legends' anti-cheat protections. +Based on Process Dump with modifications to handle LoL's code encryption, supporting hidden module discovery, loose code chunk extraction, and import reconstruction with clean-hash filtering. + diff --git a/description/gmh5225/LeagueSharp.Loader/description_en.txt b/description/gmh5225/LeagueSharp.Loader/description_en.txt new file mode 100644 index 00000000..a9895b84 --- /dev/null +++ b/description/gmh5225/LeagueSharp.Loader/description_en.txt @@ -0,0 +1,3 @@ +This project is a loader for LeagueSharp. +It is primarily written in C# and centers on DirectX and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:lol area. diff --git a/description/gmh5225/LeagueSharp/description_en.txt b/description/gmh5225/LeagueSharp/description_en.txt new file mode 100644 index 00000000..9aea41f0 --- /dev/null +++ b/description/gmh5225/LeagueSharp/description_en.txt @@ -0,0 +1,3 @@ +A League of Legends scripting and modding platform with multiple tool modules. +Includes JungleTimerHax for spectator-based jungle timers, SkinHax for in-game skin changes, and champion resize utilities using LoL's internal APIs. + diff --git a/description/gmh5225/LeagueSkinChanger/description_en.txt b/description/gmh5225/LeagueSkinChanger/description_en.txt new file mode 100644 index 00000000..cedaa291 --- /dev/null +++ b/description/gmh5225/LeagueSkinChanger/description_en.txt @@ -0,0 +1,3 @@ +An internal skin changer for League of Legends with automatic skin database updates. +Modifies champion, minion, and jungle mob skins at runtime through DirectX 9/11 hooks with an ImGui configuration menu supporting unlimited skin swaps per game. + diff --git a/description/gmh5225/LetMeGG/description_en.txt b/description/gmh5225/LetMeGG/description_en.txt new file mode 100644 index 00000000..c7fa254c --- /dev/null +++ b/description/gmh5225/LetMeGG/description_en.txt @@ -0,0 +1,3 @@ +This project is a POC about how to prevent windbg break. +It is primarily written in C++. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring0 area. diff --git a/description/gmh5225/LibreMaple-Client/description_en.txt b/description/gmh5225/LibreMaple-Client/description_en.txt new file mode 100644 index 00000000..4ef2d313 --- /dev/null +++ b/description/gmh5225/LibreMaple-Client/description_en.txt @@ -0,0 +1,3 @@ +A custom C++17 game client for MapleStory GMS v83 forked from JourneyClient. +Provides a from-scratch client implementation using modern C++ with Roboto fonts, supporting the classic MapleStory protocol and game mechanics. + diff --git a/description/gmh5225/LoLClient/description_en.txt b/description/gmh5225/LoLClient/description_en.txt new file mode 100644 index 00000000..315585e2 --- /dev/null +++ b/description/gmh5225/LoLClient/description_en.txt @@ -0,0 +1,3 @@ +A custom or modified League of Legends client implementation for research purposes. +Provides alternative client functionality or protocol implementation for analyzing LoL's client-server communication and game state management. + diff --git a/description/gmh5225/LostArk/description_en.txt b/description/gmh5225/LostArk/description_en.txt new file mode 100644 index 00000000..3e604c5f --- /dev/null +++ b/description/gmh5225/LostArk/description_en.txt @@ -0,0 +1,3 @@ +A cheat or modding tool for the Lost Ark MMORPG. +Provides gameplay modifications, ESP, or automation features through memory manipulation of the Lost Ark game client. + diff --git a/description/gmh5225/LostArkDumper/description_en.txt b/description/gmh5225/LostArkDumper/description_en.txt new file mode 100644 index 00000000..d7905295 --- /dev/null +++ b/description/gmh5225/LostArkDumper/description_en.txt @@ -0,0 +1,3 @@ +A memory dumper for the Lost Ark game client extracting SDK structures and offsets. +Scans and dumps game classes, entity definitions, and memory layouts for reverse engineering the Unreal Engine-based MMORPG client. + diff --git a/description/gmh5225/LostArkLogger/description_en.txt b/description/gmh5225/LostArkLogger/description_en.txt new file mode 100644 index 00000000..72c21465 --- /dev/null +++ b/description/gmh5225/LostArkLogger/description_en.txt @@ -0,0 +1,3 @@ +A network packet logger for Lost Ark that captures and decodes game protocol traffic. +Intercepts client-server communication to log game events, item transactions, combat data, and other protocol messages for analysis. + diff --git a/description/gmh5225/MMFCodeInjection/description_en.txt b/description/gmh5225/MMFCodeInjection/description_en.txt new file mode 100644 index 00000000..f58ccbf6 --- /dev/null +++ b/description/gmh5225/MMFCodeInjection/description_en.txt @@ -0,0 +1,3 @@ +A code injection technique using Memory Mapped Files (MMF) for stealthy DLL loading. +Maps executable code into target process address space through shared file mappings, avoiding conventional DLL injection detection methods. + diff --git a/description/gmh5225/MS-Vulnerable-Driver-List/description_en.txt b/description/gmh5225/MS-Vulnerable-Driver-List/description_en.txt new file mode 100644 index 00000000..4170de1c --- /dev/null +++ b/description/gmh5225/MS-Vulnerable-Driver-List/description_en.txt @@ -0,0 +1,3 @@ +A curated list of Microsoft-acknowledged vulnerable kernel drivers for BYOVD research. +Documents signed Windows drivers with known exploitable vulnerabilities in their IOCTL interfaces, useful for driver exploitation and Bring Your Own Vulnerable Driver attack research. + diff --git a/description/gmh5225/MSSymbolsCollection/description_en.txt b/description/gmh5225/MSSymbolsCollection/description_en.txt new file mode 100644 index 00000000..6a3799b5 --- /dev/null +++ b/description/gmh5225/MSSymbolsCollection/description_en.txt @@ -0,0 +1,3 @@ +A collection of Microsoft debug symbols (PDB files) for Windows system components. +Provides pre-downloaded symbol files for ntoskrnl, CI.dll, and other kernel-mode binaries used in kernel reverse engineering and driver development. + diff --git a/description/gmh5225/MagiskHide/description_en.txt b/description/gmh5225/MagiskHide/description_en.txt new file mode 100644 index 00000000..04fca0c8 --- /dev/null +++ b/description/gmh5225/MagiskHide/description_en.txt @@ -0,0 +1,3 @@ +A portable ptrace-based MagiskHide module for Magisk v24.0+ where built-in MagiskHide was removed. +Uses DenyList as hidelist without requiring Zygisk enablement, providing root detection bypass through process trace interception for Android 11+ devices. + diff --git a/description/gmh5225/Malicious-code-detection-bugu/description_en.txt b/description/gmh5225/Malicious-code-detection-bugu/description_en.txt new file mode 100644 index 00000000..56a01489 --- /dev/null +++ b/description/gmh5225/Malicious-code-detection-bugu/description_en.txt @@ -0,0 +1,3 @@ +A malicious code detection platform (Bugu) built with Go and gRPC microservices. +Provides file upload, hash verification, and automated malware analysis through a Protobuf-defined API with both gRPC and HTTP endpoints for malware scanning. + diff --git a/description/gmh5225/Mandragora/description_en.txt b/description/gmh5225/Mandragora/description_en.txt new file mode 100644 index 00000000..995da084 --- /dev/null +++ b/description/gmh5225/Mandragora/description_en.txt @@ -0,0 +1,3 @@ +An educational usermode anti-cheat operating in ring-3 context designed for learning reverse engineering. +Purposefully weak in difficulty to serve as a follow-up challenge after Assault Cube hacking, with unobfuscated source code suitable for practice reversing. + diff --git a/description/gmh5225/Map-file-in-system-space/description_en.txt b/description/gmh5225/Map-file-in-system-space/description_en.txt new file mode 100644 index 00000000..12a22cc8 --- /dev/null +++ b/description/gmh5225/Map-file-in-system-space/description_en.txt @@ -0,0 +1,3 @@ +A kernel-mode technique for mapping files directly into system address space using internal NT functions. +Demonstrates using MmCreateSection and other undocumented APIs to map file contents into kernel memory without standard file I/O, useful for stealthy driver loading. + diff --git a/description/gmh5225/MapleNecrocer/description_en.txt b/description/gmh5225/MapleNecrocer/description_en.txt new file mode 100644 index 00000000..1c5091fb --- /dev/null +++ b/description/gmh5225/MapleNecrocer/description_en.txt @@ -0,0 +1,3 @@ +A C# MapleStory GM (Game Master) client replacing the older Delphi 32-bit version. +Features 64-bit support, _Canvas WZ file parsing, skeleton animation and particle systems, auto-detection of WZ region versions, and improved WZ library compatibility. + diff --git a/description/gmh5225/MapleServerAndroid/description_en.txt b/description/gmh5225/MapleServerAndroid/description_en.txt new file mode 100644 index 00000000..8022bf54 --- /dev/null +++ b/description/gmh5225/MapleServerAndroid/description_en.txt @@ -0,0 +1,3 @@ +A MapleStory private server implementation designed to run on Android devices. +Provides server-side game logic, character management, and world simulation for hosting MapleStory gameplay on mobile platforms. + diff --git a/description/gmh5225/MapleStory-CMS95-Client-Address/description_en.txt b/description/gmh5225/MapleStory-CMS95-Client-Address/description_en.txt new file mode 100644 index 00000000..45c435fc --- /dev/null +++ b/description/gmh5225/MapleStory-CMS95-Client-Address/description_en.txt @@ -0,0 +1,3 @@ +A collection of memory addresses and offsets for the Chinese MapleStory (CMS) version 95 client. +Documents client-side function pointers, structure offsets, and hook points for CMS v95 modding and private server development. + diff --git a/description/gmh5225/MapleStory-Client/description_en.txt b/description/gmh5225/MapleStory-Client/description_en.txt new file mode 100644 index 00000000..fb2ccb09 --- /dev/null +++ b/description/gmh5225/MapleStory-Client/description_en.txt @@ -0,0 +1,3 @@ +A custom or modified MapleStory game client implementation. +Provides client-side game rendering, network protocol handling, and user interface for connecting to MapleStory private servers. + diff --git a/description/gmh5225/MapleStory-GM-Client/description_en.txt b/description/gmh5225/MapleStory-GM-Client/description_en.txt new file mode 100644 index 00000000..60e9b3d9 --- /dev/null +++ b/description/gmh5225/MapleStory-GM-Client/description_en.txt @@ -0,0 +1,3 @@ +A MapleStory Game Master client with admin-level functionality for private servers. +Provides map editing, NPC spawning, item creation, and other GM commands through a specialized client interface for server administration. + diff --git a/description/gmh5225/MapleStory-HeavenClient/description_en.txt b/description/gmh5225/MapleStory-HeavenClient/description_en.txt new file mode 100644 index 00000000..ed9e0fb3 --- /dev/null +++ b/description/gmh5225/MapleStory-HeavenClient/description_en.txt @@ -0,0 +1,3 @@ +A custom MapleStory client (HeavenClient) built from scratch for private server connectivity. +Implements the MapleStory game protocol, rendering engine, and UI system as an open-source alternative to the official client. + diff --git a/description/gmh5225/MapleStory-Server/description_en.txt b/description/gmh5225/MapleStory-Server/description_en.txt new file mode 100644 index 00000000..1216d3a3 --- /dev/null +++ b/description/gmh5225/MapleStory-Server/description_en.txt @@ -0,0 +1,3 @@ +A MapleStory private server emulator implementing game server functionality. +Handles player authentication, character progression, quest management, party systems, and world simulation for hosting custom MapleStory gameplay. + diff --git a/description/gmh5225/MapleStory-v113-Server-Eimulator/description_en.txt b/description/gmh5225/MapleStory-v113-Server-Eimulator/description_en.txt new file mode 100644 index 00000000..f9d56e73 --- /dev/null +++ b/description/gmh5225/MapleStory-v113-Server-Eimulator/description_en.txt @@ -0,0 +1,3 @@ +A MapleStory version 113 server emulator for hosting private game servers. +Implements the v113 game protocol, NPC scripting, mob AI, skill mechanics, and economy systems for faithful recreation of the classic MapleStory experience. + diff --git a/description/gmh5225/MapleStoryAutoLevelUp/description_en.txt b/description/gmh5225/MapleStoryAutoLevelUp/description_en.txt new file mode 100644 index 00000000..efe2712c --- /dev/null +++ b/description/gmh5225/MapleStoryAutoLevelUp/description_en.txt @@ -0,0 +1,3 @@ +This project is an auto level up script for Maple Story Artale. +It is primarily written in Python and centers on animation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:maplestory area. diff --git a/description/gmh5225/MapleStoryDetectionSampleGenerator/description_en.txt b/description/gmh5225/MapleStoryDetectionSampleGenerator/description_en.txt new file mode 100644 index 00000000..1a0d8724 --- /dev/null +++ b/description/gmh5225/MapleStoryDetectionSampleGenerator/description_en.txt @@ -0,0 +1,3 @@ +A sample generator for MapleStory cheat detection testing and anti-cheat development. +Creates synthetic detection samples simulating common MapleStory hacking patterns for training and validating anti-cheat detection algorithms. + diff --git a/description/gmh5225/MatScan/description_en.txt b/description/gmh5225/MatScan/description_en.txt new file mode 100644 index 00000000..6474284e --- /dev/null +++ b/description/gmh5225/MatScan/description_en.txt @@ -0,0 +1,3 @@ +This project is a multi-threaded rust material scanner. +It is primarily written in C++ and C/C++ and centers on IL2CPP analysis and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/gmh5225/MemTools/description_en.txt b/description/gmh5225/MemTools/description_en.txt new file mode 100644 index 00000000..4c426fef --- /dev/null +++ b/description/gmh5225/MemTools/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on windows/Linux DMA testing tools. +It is primarily written in C++ and C/C++ and centers on driver development, plugin development, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dma area. diff --git a/description/gmh5225/MemWars/description_en.txt b/description/gmh5225/MemWars/description_en.txt new file mode 100644 index 00000000..c8b7a254 --- /dev/null +++ b/description/gmh5225/MemWars/description_en.txt @@ -0,0 +1 @@ +This project is MemWars, a Windows memory analysis and process manipulation framework for game hacking. It provides memory scanning, pattern searching, module enumeration, process injection, and memory editing capabilities in a library format that cheat developers can build upon. The C++ framework abstracts common game hacking operations. It is aimed at game hacking tool developers and security researchers studying memory manipulation frameworks. diff --git a/description/gmh5225/MemoryGuard/description_en.txt b/description/gmh5225/MemoryGuard/description_en.txt new file mode 100644 index 00000000..c3c4b67a --- /dev/null +++ b/description/gmh5225/MemoryGuard/description_en.txt @@ -0,0 +1 @@ +This project is MemoryGuard, a Windows memory protection library that detects and prevents unauthorized memory modifications. It uses page guards, VEH handlers, or periodic integrity checks to monitor critical memory regions for tampering, alerting or reverting changes made by cheats or debuggers. It is aimed at anti-cheat developers and software protection engineers implementing runtime memory integrity monitoring. diff --git a/description/gmh5225/Mhyprot2DrvControl/description_en.txt b/description/gmh5225/Mhyprot2DrvControl/description_en.txt new file mode 100644 index 00000000..c6ba28f1 --- /dev/null +++ b/description/gmh5225/Mhyprot2DrvControl/description_en.txt @@ -0,0 +1 @@ +This project is a control library for miHoYo's mhyprot2.sys anti-cheat driver, providing a convenient API for exploiting its vulnerable IOCTL interface. It wraps mhyprot2's kernel operations including process memory read/write, module enumeration, and process termination into a user-friendly C++ interface for BYOVD exploitation. It is aimed at BYOVD researchers using mhyprot2 as a kernel access primitive. diff --git a/description/gmh5225/NMI-EnumNmiCallback/description_en.txt b/description/gmh5225/NMI-EnumNmiCallback/description_en.txt new file mode 100644 index 00000000..c1df8a3c --- /dev/null +++ b/description/gmh5225/NMI-EnumNmiCallback/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on enumerate NMI. +It is primarily written in C++ and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/gmh5225/NMI-nmi_callback/description_en.txt b/description/gmh5225/NMI-nmi_callback/description_en.txt new file mode 100644 index 00000000..3cd193a2 --- /dev/null +++ b/description/gmh5225/NMI-nmi_callback/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel proof of concept for registering and using Non-Maskable Interrupt (NMI) callbacks. NMI callbacks execute on all cores simultaneously and are used by anti-cheat systems to inspect thread contexts and detect hidden threads or code. This tool demonstrates NMI callback registration and context inspection. It is aimed at kernel researchers studying NMI-based detection used by anti-cheat systems like BattlEye. diff --git a/description/gmh5225/NMICallbackBlocker2/description_en.txt b/description/gmh5225/NMICallbackBlocker2/description_en.txt new file mode 100644 index 00000000..3d0b717a --- /dev/null +++ b/description/gmh5225/NMICallbackBlocker2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on disable NMI. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/gmh5225/NVDrv/description_en.txt b/description/gmh5225/NVDrv/description_en.txt new file mode 100644 index 00000000..cea9e0c3 --- /dev/null +++ b/description/gmh5225/NVDrv/description_en.txt @@ -0,0 +1 @@ +This project is a library for exploiting NVIDIA's kernel driver (nvoclock/nvlddmkm) to gain arbitrary physical memory read/write from user mode. It sends crafted IOCTLs to the NVIDIA driver to read and write physical memory, providing a BYOVD primitive that can be used for driver mapping, kernel patching, or anti-cheat bypass without loading a custom driver. The C++ library wraps the vulnerable IOCTL interface. It is aimed at kernel security researchers studying NVIDIA driver vulnerabilities and BYOVD exploitation. diff --git a/description/gmh5225/NVIDIA-OVERLAY/description_en.txt b/description/gmh5225/NVIDIA-OVERLAY/description_en.txt new file mode 100644 index 00000000..38fbaba6 --- /dev/null +++ b/description/gmh5225/NVIDIA-OVERLAY/description_en.txt @@ -0,0 +1 @@ +This project demonstrates hijacking the NVIDIA GeForce Experience overlay window for rendering custom game overlays. It locates the NVIDIA overlay's rendering surface and injects custom DirectX draw calls through it, creating overlays that appear through a trusted system process and avoid anti-cheat overlay detection. It is aimed at game security researchers studying NVIDIA overlay hijacking as an anti-cheat bypass technique. diff --git a/description/gmh5225/Nathans-Tarkov-Radar-Public/description_en.txt b/description/gmh5225/Nathans-Tarkov-Radar-Public/description_en.txt new file mode 100644 index 00000000..9c8a09c9 --- /dev/null +++ b/description/gmh5225/Nathans-Tarkov-Radar-Public/description_en.txt @@ -0,0 +1 @@ +This project is a public radar cheat for Escape from Tarkov that displays player positions, loot, and map information on a secondary display. It reads EFT's Unity game memory to extract entity coordinates and game state, rendering a top-down radar view showing players, scavs, loot, and extractions. The tool operates externally or through DMA hardware. It is aimed at game security researchers studying radar cheat architecture for BattlEye-protected games. diff --git a/description/gmh5225/NeacSafe-Analysis/description_en.txt b/description/gmh5225/NeacSafe-Analysis/description_en.txt new file mode 100644 index 00000000..f23bd6bf --- /dev/null +++ b/description/gmh5225/NeacSafe-Analysis/description_en.txt @@ -0,0 +1,4 @@ +This project is a small user-mode probe plus saved notes for analyzing NetEase's NeacSafe anti-cheat communication interface. +The C++ sample defines a 0x28-byte NeacSafeConnectContext, connects to \NeacSafePort with FilterConnectCommunicationPort, and then sends encoded request buffers to query data through the minifilter communication channel. +The archive also includes a saved Pediy forum article on NeacSafe interface analysis, so the repository acts as a practical reproduction of the port protocol alongside the original writeup material. +It is mainly useful for reverse engineers studying NeacSafe client-driver IPC, filter-manager communication ports, and the buffer encoding used around its command messages. diff --git a/description/gmh5225/NlsCodeInjectionThroughRegistry/description_en.txt b/description/gmh5225/NlsCodeInjectionThroughRegistry/description_en.txt new file mode 100644 index 00000000..8353740d --- /dev/null +++ b/description/gmh5225/NlsCodeInjectionThroughRegistry/description_en.txt @@ -0,0 +1 @@ +This project demonstrates code injection through Windows NLS (National Language Support) registry keys. It modifies NLS-related registry entries to redirect the loading of NLS code page translation DLLs, causing custom DLLs to be loaded into processes that initialize the NLS subsystem. This persistence technique loads code early in process initialization. It is aimed at red team researchers studying NLS-based code injection and persistence techniques. diff --git a/description/gmh5225/NtRays/description_en.txt b/description/gmh5225/NtRays/description_en.txt new file mode 100644 index 00000000..e2f55328 --- /dev/null +++ b/description/gmh5225/NtRays/description_en.txt @@ -0,0 +1 @@ +This project is NtRays, an IDA Pro plugin that enhances Hex-Rays decompiler output for Windows kernel code by resolving NT kernel type definitions and structure references. It annotates NTSTATUS codes, IOCTL definitions, kernel object types, and EPROCESS/ETHREAD field accesses with proper names and types. It is aimed at reverse engineers analyzing Windows kernel drivers and ntoskrnl code in IDA Pro. diff --git a/description/gmh5225/NtUserInjectMouseInput-syscall/description_en.txt b/description/gmh5225/NtUserInjectMouseInput-syscall/description_en.txt new file mode 100644 index 00000000..ba0c214c --- /dev/null +++ b/description/gmh5225/NtUserInjectMouseInput-syscall/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on ntUserInjectMouseInput SYSCALL. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/gmh5225/NullDriverCheat/description_en.txt b/description/gmh5225/NullDriverCheat/description_en.txt new file mode 100644 index 00000000..7b291ecc --- /dev/null +++ b/description/gmh5225/NullDriverCheat/description_en.txt @@ -0,0 +1,4 @@ +This project is a Windows 11 adaptation of Null's driver-cheat pattern that hooks NtOpenCompositionSurfaceSectionInfo inside dxgkrnl to create a covert kernel communication path. +Its hook installer writes a small jump stub into the export, and the handler accepts structured requests for module-base lookup, process memory read and write operations, and optional GDI drawing helpers sourced from win32k exports. +The archived README explicitly frames it as a modified reimplementation with a different pool tag and the syscall choice intended to reduce immediate detection compared with simpler device-based approaches. +It is mainly useful for reverse engineers studying dxgkrnl export hooks, structured user-kernel messaging, and GDI-assisted overlay or memory helpers in cheat drivers. diff --git a/description/gmh5225/OBS-Hook/description_en.txt b/description/gmh5225/OBS-Hook/description_en.txt new file mode 100644 index 00000000..d329f411 --- /dev/null +++ b/description/gmh5225/OBS-Hook/description_en.txt @@ -0,0 +1 @@ +This project demonstrates hooking into OBS Studio's graphics capture system to render custom overlays through OBS's trusted rendering pipeline. By hijacking OBS's game capture hook DLL, custom draw calls can be injected into the captured game's frame without creating a separate overlay window. This technique exploits OBS's whitelisted status in anti-cheat systems. It is aimed at game security researchers studying overlay rendering through trusted application hijacking. diff --git a/description/gmh5225/OBS-graphics-hook32-Hook/description_en.txt b/description/gmh5225/OBS-graphics-hook32-Hook/description_en.txt new file mode 100644 index 00000000..0f9facf4 --- /dev/null +++ b/description/gmh5225/OBS-graphics-hook32-Hook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on oBS Hook. +After that, all you have to do is replace the pointer ( the old way ). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / overlay area. diff --git a/description/gmh5225/OW-Aeternum/description_en.txt b/description/gmh5225/OW-Aeternum/description_en.txt new file mode 100644 index 00000000..7a93cbf1 --- /dev/null +++ b/description/gmh5225/OW-Aeternum/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sorry for bad coding styles it is just poc. +It is primarily written in C++ and C/C++ and centers on anti-cheat research, rendering, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:overwatch area. diff --git a/description/gmh5225/OW2-wardenrekter/description_en.txt b/description/gmh5225/OW2-wardenrekter/description_en.txt new file mode 100644 index 00000000..2962d537 --- /dev/null +++ b/description/gmh5225/OW2-wardenrekter/description_en.txt @@ -0,0 +1,3 @@ +A DLL that disables Overwatch 2's Warden anti-cheat protections by patching multiple detection vectors at DLL_PROCESS_ATTACH: it overwrites KiUserExceptionDispatcher with a RET (0xC3) to kill Warden's VEH-based INT3 hook monitoring, NOPs DbgBreakPoint/DbgUserBreakPoint integrity checks, zeroes PEB.BeingDebugged and NtGlobalFlag to hide debugger presence, stubs GetTickCount64 to defeat timing checks, and patches NtQuerySystemInformation to block system information queries. +It also sets hardware debug register DR0 via SetThreadContext to demonstrate debug register manipulation against Warden's hardware breakpoint detection. +It is mainly useful for game security researchers studying Warden anti-cheat bypass techniques including VEH hook removal, PEB spoofing, and API patching in Overwatch 2. diff --git a/description/gmh5225/OfflineCrashDumpUefi/description_en.txt b/description/gmh5225/OfflineCrashDumpUefi/description_en.txt new file mode 100644 index 00000000..57581db5 --- /dev/null +++ b/description/gmh5225/OfflineCrashDumpUefi/description_en.txt @@ -0,0 +1,4 @@ +This project is a Microsoft EDK2 package for implementing Offline Crash Dump support, where firmware writes a memory dump before or instead of the operating system. +The repository includes shared headers for dump-related GUIDs and structures, `OfflineDumpLib` helpers for locating dump partitions and reading Windows-defined UEFI variables, and `OfflineDumpWriterLib` code for generating dumps with buffering, encryption, and redaction support. +It also ships redistributable and sample UEFI applications such as `OfflineDumpWrite.efi`, benchmark and test components, and a full package layout intended to run in a UEFI DXE environment while still serving as a reference for other firmware stacks. +The archived README makes clear that the code is meant for bring-up, debugging, and device stabilization scenarios rather than retail deployments, so it is most useful for firmware and platform engineers studying how pre-OS crash collection is structured on Windows-capable systems. diff --git a/description/gmh5225/OffsetStreaming/description_en.txt b/description/gmh5225/OffsetStreaming/description_en.txt new file mode 100644 index 00000000..3883acf5 --- /dev/null +++ b/description/gmh5225/OffsetStreaming/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple program to stream offsets for your game cheat. +It is primarily written in C++ and C/C++. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/gmh5225/OpenCV-SmartAimBot/description_en.txt b/description/gmh5225/OpenCV-SmartAimBot/description_en.txt new file mode 100644 index 00000000..7b48650b --- /dev/null +++ b/description/gmh5225/OpenCV-SmartAimBot/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on openCV + Triggerbot. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/gmh5225/OpenHardwareMonitor-PoC/description_en.txt b/description/gmh5225/OpenHardwareMonitor-PoC/description_en.txt new file mode 100644 index 00000000..3be9286b --- /dev/null +++ b/description/gmh5225/OpenHardwareMonitor-PoC/description_en.txt @@ -0,0 +1,4 @@ +This project is a minimal proof of concept for a vulnerability in OpenHardwareMonitorLib.sys that exposes direct model-specific register access to user mode. +The code opens the device and wraps two IOCTLs, 0x9C402084 and 0x9C402088, to read and write arbitrary MSRs through simple read_msr and write_msr helper functions. +Because the repository is intentionally small and centered on the driver interaction itself, it works more like a focused demonstration of the exposed primitive than a larger exploitation framework. +It is mainly useful for Windows security researchers studying vulnerable hardware-monitoring drivers, MSR exposure bugs, and the risk of user-mode access to privileged CPU controls. diff --git a/description/gmh5225/Overwatch-1-cheat-source/description_en.txt b/description/gmh5225/Overwatch-1-cheat-source/description_en.txt new file mode 100644 index 00000000..c90e35d3 --- /dev/null +++ b/description/gmh5225/Overwatch-1-cheat-source/description_en.txt @@ -0,0 +1,3 @@ +An internal Overwatch 1 cheat DLL that hooks DirectX 11 Present via Microsoft Detours to render an ImGui overlay with ESP, aimbot, skin changer (with per-hero cosmetic selection), and a full menu system, protected by VMProtect SDK. +The cheat uses return-address spoofing (Spoofcall.masm) to evade Warden stack checks, implements hardware breakpoint-based hooking (BreakPoint.h), reads game entities through SDK offsets (SKD.hpp), simulates mouse input via SendInput, and includes curl-based authentication for loader/license validation. +It is mainly useful for game security researchers studying internal DX11 hook-based cheats with VMProtect integration, return-address spoofing, and Warden anti-cheat evasion in Overwatch. diff --git a/description/gmh5225/Overwatch-2-Cheat-Aimbot-Esp/description_en.txt b/description/gmh5225/Overwatch-2-Cheat-Aimbot-Esp/description_en.txt new file mode 100644 index 00000000..1108a1f6 --- /dev/null +++ b/description/gmh5225/Overwatch-2-Cheat-Aimbot-Esp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on it can be used with an ahk script just make sure to not cover outlines of the skins with the esp. +It is primarily written in C/C++ and C++ and centers on rendering, hooking, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:overwatch2 area. diff --git a/description/gmh5225/Overwatch2-colorbot-Cheats/description_en.txt b/description/gmh5225/Overwatch2-colorbot-Cheats/description_en.txt new file mode 100644 index 00000000..aee5d41b --- /dev/null +++ b/description/gmh5225/Overwatch2-colorbot-Cheats/description_en.txt @@ -0,0 +1,3 @@ +A Python-based Overwatch 2 colorbot that uses screen pixel color detection to identify enemy outlines (set to purple in-game settings), then calculates aim deltas and sends mouse movement commands to an Arduino Leonardo via serial communication at 115200 baud to bypass mouse input detection. +The Arduino firmware implements HID Mouse.move() calls with chunked 127-unit increments for large movements, and supports shoot/silent-aim/reset commands received over the serial link, making the input indistinguishable from legitimate hardware mouse events. +It is mainly useful for game security researchers studying hardware-based input spoofing via Arduino HID and pixel-based color aimbot techniques. diff --git a/description/gmh5225/Ow-Outlines/description_en.txt b/description/gmh5225/Ow-Outlines/description_en.txt new file mode 100644 index 00000000..d60ca268 --- /dev/null +++ b/description/gmh5225/Ow-Outlines/description_en.txt @@ -0,0 +1,3 @@ +An internal Overwatch DLL that enables enemy glow/outline ESP by patching a specific memory offset (GlowESP at 0xE22510) relative to the Overwatch.exe base address, injected into the game process as a DLL. +The module resolves the base address via GetModuleHandleA("Overwatch.exe"), uses a VEH (Vectored Exception Handler) mechanism defined in USEVEH.h, and writes glow configuration values directly to the game's outline rendering data structures. +It is mainly useful for game security researchers studying internal game memory manipulation for visual ESP features and outline rendering exploitation in Overwatch. diff --git a/description/gmh5225/PAGE_NO_ACCESS-not-byfron/description_en.txt b/description/gmh5225/PAGE_NO_ACCESS-not-byfron/description_en.txt new file mode 100644 index 00000000..9f24c63d --- /dev/null +++ b/description/gmh5225/PAGE_NO_ACCESS-not-byfron/description_en.txt @@ -0,0 +1,3 @@ +A proof-of-concept DLL (not-byfron) that demonstrates PAGE_NO_ACCESS memory protection techniques as an anti-tampering mechanism, loaded via a tester executable that calls LoadLibrary on the DLL. +The DLL's entry point sets up memory page protections and exception handling to detect or prevent memory scanning and code patching, simulating aspects of Byfron (Hyperion) anti-cheat behavior in a controlled test environment. +It is mainly useful for game security researchers studying PAGE_NO_ACCESS-based code protection patterns and anti-cheat memory guarding strategies. diff --git a/description/gmh5225/PCIE-Detector/description_en.txt b/description/gmh5225/PCIE-Detector/description_en.txt new file mode 100644 index 00000000..d2741603 --- /dev/null +++ b/description/gmh5225/PCIE-Detector/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on config Space. +It is primarily written in C++ and centers on kernel-level work and driver development. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:dma area. diff --git a/description/gmh5225/PDF-PMC-X86/description_en.txt b/description/gmh5225/PDF-PMC-X86/description_en.txt new file mode 100644 index 00000000..672a9cc7 --- /dev/null +++ b/description/gmh5225/PDF-PMC-X86/description_en.txt @@ -0,0 +1,3 @@ +This project is a Study on PMI in x86-Architecture. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/gmh5225/PMI-hpc/description_en.txt b/description/gmh5225/PMI-hpc/description_en.txt new file mode 100644 index 00000000..ebd4e005 --- /dev/null +++ b/description/gmh5225/PMI-hpc/description_en.txt @@ -0,0 +1 @@ +This project demonstrates using Performance Monitoring Interrupts (PMI) and hardware performance counters (HPC) for security monitoring on Windows. It configures CPU performance counters to generate interrupts on specific events like branch mispredictions or cache misses, enabling detection of anomalous execution patterns that may indicate code injection or ROP attacks. It is aimed at security researchers exploring hardware-assisted detection techniques. diff --git a/description/gmh5225/POLYGON_UE5/description_en.txt b/description/gmh5225/POLYGON_UE5/description_en.txt new file mode 100644 index 00000000..4ce4da23 --- /dev/null +++ b/description/gmh5225/POLYGON_UE5/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:polygon [ue5] and centers on polygon ue5. +It is primarily written in C/C++ and C++ and centers on graphics, Unreal Engine, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:polygon [ue5] area. diff --git a/description/gmh5225/PPLKiller/description_en.txt b/description/gmh5225/PPLKiller/description_en.txt new file mode 100644 index 00000000..62c67c72 --- /dev/null +++ b/description/gmh5225/PPLKiller/description_en.txt @@ -0,0 +1 @@ +This project is PPLKiller, a tool for disabling Windows Protected Process Light (PPL) protection on processes. It exploits a vulnerable signed driver or kernel access primitive to modify the EPROCESS protection level field, downgrading PPL-protected processes (like antimalware services) to unprotected status for debugging or termination. It is aimed at kernel researchers studying PPL protection and its bypass methods. diff --git a/description/gmh5225/PTFakeTouch/description_en.txt b/description/gmh5225/PTFakeTouch/description_en.txt new file mode 100644 index 00000000..cee24570 --- /dev/null +++ b/description/gmh5225/PTFakeTouch/description_en.txt @@ -0,0 +1 @@ +This project is PTFakeTouch, an iOS library for simulating touch events programmatically without user interaction. It uses private IOKit APIs or UIKit internals to inject synthetic touch events into the iOS event pipeline, enabling automated UI interaction and game input simulation. It is aimed at iOS automation developers and game bot builders simulating touch input on iOS devices. diff --git a/description/gmh5225/PUBG-DX/description_en.txt b/description/gmh5225/PUBG-DX/description_en.txt new file mode 100644 index 00000000..ea857254 --- /dev/null +++ b/description/gmh5225/PUBG-DX/description_en.txt @@ -0,0 +1,3 @@ +An internal PUBG cheat DLL that hooks DirectX 11 to render an ImGui-based overlay menu with ESP (player boxes, weapon icons for every in-game weapon as embedded PNG textures), aimbot, and item ESP, protected by VMProtect SDK integration. +The DLL uses kernel driver communication (drive.h) for memory reads, decrypts PUBG's Xenuine-protected pointers (decrypt.h), resolves UE4 GObjects/GWorld/FNameEntry arrays, and implements return-address spoofing (SpoofCall.asm) to hide call origins from anti-cheat stack-walking. +It is mainly useful for game security researchers studying internal DX11 hook-based cheat rendering, Xenuine pointer decryption, and VMProtect integration in UE4 game cheats. diff --git a/description/gmh5225/PUBGM-PUBGPatcher/description_en.txt b/description/gmh5225/PUBGM-PUBGPatcher/description_en.txt new file mode 100644 index 00000000..5f682ae5 --- /dev/null +++ b/description/gmh5225/PUBGM-PUBGPatcher/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:pubgm and centers on pubgm pubgpatcher. +It is primarily written in C/C++ and Java and centers on networking, asset pipelines, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:pubgm area. diff --git a/description/gmh5225/PUBGM1.6-DeadGame/description_en.txt b/description/gmh5225/PUBGM1.6-DeadGame/description_en.txt new file mode 100644 index 00000000..c3189ca8 --- /dev/null +++ b/description/gmh5225/PUBGM1.6-DeadGame/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:pubgm and centers on pubgm1.6 dead game. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:pubgm area. diff --git a/description/gmh5225/PUBGSTAR/description_en.txt b/description/gmh5225/PUBGSTAR/description_en.txt new file mode 100644 index 00000000..6fe9728a --- /dev/null +++ b/description/gmh5225/PUBGSTAR/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:pubg and centers on pubgstar. +It is primarily written in C/C++ and C++ and centers on hooking and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:pubg area. diff --git a/description/gmh5225/PUBG_Internal/description_en.txt b/description/gmh5225/PUBG_Internal/description_en.txt new file mode 100644 index 00000000..cd293bbd --- /dev/null +++ b/description/gmh5225/PUBG_Internal/description_en.txt @@ -0,0 +1,3 @@ +An internal PUBG cheat DLL that hooks the DirectX 11 Present function using MinHook to render an in-game overlay with text rendering via FW1FontWrapper (a DirectWrite-based D3D11 text library). +The DLL is injected into the PUBG process, intercepts IDXGISwapChain::Present to insert custom draw calls, and uses the FW1FontWrapper library for high-quality GPU-accelerated text rendering of ESP information directly in the game's rendering pipeline. +It is mainly useful for game security researchers studying internal D3D11 Present-hook cheat architectures with MinHook-based function interception and DirectWrite overlay rendering. diff --git a/description/gmh5225/PalWorld-NetCrack/description_en.txt b/description/gmh5225/PalWorld-NetCrack/description_en.txt new file mode 100644 index 00000000..47f8027d --- /dev/null +++ b/description/gmh5225/PalWorld-NetCrack/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:palworld [ue5] and centers on pal world net crack. +It is primarily written in C++ and C/C++ and centers on shader work, rendering, and audio systems. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:palworld [ue5] area. diff --git a/description/gmh5225/PalWorld-ServerInjector/description_en.txt b/description/gmh5225/PalWorld-ServerInjector/description_en.txt new file mode 100644 index 00000000..6bd6378c --- /dev/null +++ b/description/gmh5225/PalWorld-ServerInjector/description_en.txt @@ -0,0 +1,3 @@ +This project provides pal world server injector. +It is primarily written in Lua and C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:palworld [ue5] area. diff --git a/description/gmh5225/Paladins-internal-Cheat/description_en.txt b/description/gmh5225/Paladins-internal-Cheat/description_en.txt new file mode 100644 index 00000000..a5d243bc --- /dev/null +++ b/description/gmh5225/Paladins-internal-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on i made a private hack for paladins that I then converted to use Mhyprot instead, you do not have to use your own driver, but it is recommended. +The overlay is from and is for borderless windows, it does not work in fullscreen. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:paladins area. diff --git a/description/gmh5225/Palworld-SDK-Dump/description_en.txt b/description/gmh5225/Palworld-SDK-Dump/description_en.txt new file mode 100644 index 00000000..ce8356a0 --- /dev/null +++ b/description/gmh5225/Palworld-SDK-Dump/description_en.txt @@ -0,0 +1,3 @@ +This project provides palworld sdk dump. +It centers on SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:palworld [ue5] area. diff --git a/description/gmh5225/Palworld-Server-Modding/description_en.txt b/description/gmh5225/Palworld-Server-Modding/description_en.txt new file mode 100644 index 00000000..1f4f7224 --- /dev/null +++ b/description/gmh5225/Palworld-Server-Modding/description_en.txt @@ -0,0 +1,3 @@ +This project is an example mod for 100% rare pal provided. +It is primarily written in Lua and C++ and centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:palworld [ue5] area. diff --git a/description/gmh5225/Patchguard-2023/description_en.txt b/description/gmh5225/Patchguard-2023/description_en.txt new file mode 100644 index 00000000..db694641 --- /dev/null +++ b/description/gmh5225/Patchguard-2023/description_en.txt @@ -0,0 +1 @@ +This project is research on Windows PatchGuard (Kernel Patch Protection) as of 2023, documenting its internal workings, trigger mechanisms, and potential bypass techniques. It analyzes PatchGuard's timer-based verification, context encryption, protected structure list, and recovery routines. It is aimed at Windows kernel researchers studying PatchGuard's evolving protection mechanisms and bypass methods. diff --git a/description/gmh5225/Pcileech-DMA-NVMe-VMD/description_en.txt b/description/gmh5225/Pcileech-DMA-NVMe-VMD/description_en.txt new file mode 100644 index 00000000..00c58f53 --- /dev/null +++ b/description/gmh5225/Pcileech-DMA-NVMe-VMD/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on firmware real camouflage through motherboard VMD function.(Pcileech-DMA). +A Windows reinstall may be required for proper driver initialization and device recognition. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dma area. diff --git a/description/gmh5225/PokemonGoDumper/description_en.txt b/description/gmh5225/PokemonGoDumper/description_en.txt new file mode 100644 index 00000000..a206e0a0 --- /dev/null +++ b/description/gmh5225/PokemonGoDumper/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:pokemongo and centers on pokemon go dumper. +It is primarily written in C# and C/C++ and centers on Unity and IL2CPP analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:pokemongo area. diff --git a/description/gmh5225/Pom-Pom/description_en.txt b/description/gmh5225/Pom-Pom/description_en.txt new file mode 100644 index 00000000..f52e9de9 --- /dev/null +++ b/description/gmh5225/Pom-Pom/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this repository provides code for a simple cheat for the game Honkai Star Rail. +It is primarily written in C/C++ and C++ and centers on hooking and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:honkai star rail area. diff --git a/description/gmh5225/Ponce/description_en.txt b/description/gmh5225/Ponce/description_en.txt new file mode 100644 index 00000000..c1649399 --- /dev/null +++ b/description/gmh5225/Ponce/description_en.txt @@ -0,0 +1 @@ +This project is Ponce, an IDA Pro plugin for symbolic and taint execution. It integrates the Triton dynamic binary analysis framework into IDA, enabling symbolic execution from within the disassembler to solve path constraints, track tainted data flow, and generate inputs that reach specific code paths. It is aimed at vulnerability researchers and reverse engineers using symbolic execution for automated analysis in IDA Pro. diff --git a/description/gmh5225/Practical-Reverse-Engineering-Solutions/description_en.txt b/description/gmh5225/Practical-Reverse-Engineering-Solutions/description_en.txt new file mode 100644 index 00000000..9ad3d60e --- /dev/null +++ b/description/gmh5225/Practical-Reverse-Engineering-Solutions/description_en.txt @@ -0,0 +1 @@ +This project is a solutions repository for exercises in the book "Practical Reverse Engineering" by Bruce Dang et al. It provides worked solutions for the book's x86/x64 disassembly exercises, ARM assembly problems, Windows kernel analysis questions, and rootkit analysis challenges. The solutions include annotated assembly code and analysis explanations. It is aimed at reverse engineering students working through the Practical Reverse Engineering textbook. diff --git a/description/gmh5225/PrecisionSpoofer-CPP/description_en.txt b/description/gmh5225/PrecisionSpoofer-CPP/description_en.txt new file mode 100644 index 00000000..940cac16 --- /dev/null +++ b/description/gmh5225/PrecisionSpoofer-CPP/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / hwid and centers on precision spoofer cpp. +It is primarily written in C++ and C/C++ and centers on driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/gmh5225/PreventVAC/description_en.txt b/description/gmh5225/PreventVAC/description_en.txt new file mode 100644 index 00000000..5fa3da6f --- /dev/null +++ b/description/gmh5225/PreventVAC/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on it achieves its goal by hooking different steamserver.dll and winapi functions to make the anticheat think there's been an error in return. +Important vac_monitor_manager function is very important and may cause unwanted side effect in lowering the trust factor because it completely prevents VAC from monitoring the game. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:vac area. diff --git a/description/gmh5225/ProcessKiller-BYOVD/description_en.txt b/description/gmh5225/ProcessKiller-BYOVD/description_en.txt new file mode 100644 index 00000000..b21961be --- /dev/null +++ b/description/gmh5225/ProcessKiller-BYOVD/description_en.txt @@ -0,0 +1 @@ +This project is a Windows tool that terminates protected processes by exploiting a vulnerable signed driver (BYOVD). It loads a vulnerable driver to gain kernel-level access and uses it to forcefully terminate processes that are otherwise protected from user-mode termination, such as anti-cheat services, EDR agents, or antivirus processes. It is aimed at red team operators and security researchers studying BYOVD-based process termination. diff --git a/description/gmh5225/PsNotifRoutineUnloader/description_en.txt b/description/gmh5225/PsNotifRoutineUnloader/description_en.txt new file mode 100644 index 00000000..4b09667e --- /dev/null +++ b/description/gmh5225/PsNotifRoutineUnloader/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel tool that removes process, thread, and image load notification callbacks registered by anti-cheat and security drivers. It enumerates the PsSetCreateProcessNotifyRoutine callback array and selectively removes entries belonging to specific drivers, effectively blinding those drivers to process creation events. It is aimed at kernel researchers studying callback manipulation for anti-cheat evasion and defensive callback protection. diff --git a/description/gmh5225/Pubg-Lite-ESP/description_en.txt b/description/gmh5225/Pubg-Lite-ESP/description_en.txt new file mode 100644 index 00000000..e7231783 --- /dev/null +++ b/description/gmh5225/Pubg-Lite-ESP/description_en.txt @@ -0,0 +1,3 @@ +An external PUBG Lite ESP cheat that uses a Direct2D overlay (via Coltonon's D2DOverlay library) to render player boxes, names, health bars, and distance indicators on a transparent window positioned over the game. +The tool reads game memory externally through RPM, resolves UE4 engine structures (GWorld, GameInstance, PlayerController, AcknowledgedPawn) using hardcoded offsets, performs world-to-screen projection via the camera view matrix, and includes configurable settings for render distance, bone ESP, and a hotkey-driven menu system. +It is mainly useful for game security researchers studying external overlay-based ESP implementations with Direct2D rendering and UE4 offset-based entity enumeration. diff --git a/description/gmh5225/QQTang/description_en.txt b/description/gmh5225/QQTang/description_en.txt new file mode 100644 index 00000000..34b75b4c --- /dev/null +++ b/description/gmh5225/QQTang/description_en.txt @@ -0,0 +1 @@ +This project is related to QQ Tang (QQ堂), a Tencent casual game. It may include a game client analysis, private server emulator, or cheating tools for QQ Tang, documenting the game's network protocol, memory structures, or anti-cheat mechanisms. It is aimed at game security researchers studying Tencent's casual game protections. diff --git a/description/gmh5225/QQTangCheatEngine/description_en.txt b/description/gmh5225/QQTangCheatEngine/description_en.txt new file mode 100644 index 00000000..7edaf795 --- /dev/null +++ b/description/gmh5225/QQTangCheatEngine/description_en.txt @@ -0,0 +1,3 @@ +This project provides qqtang cheat engine. +It is primarily written in C++ and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:qqtang area. diff --git a/description/gmh5225/QueryShadowStack/description_en.txt b/description/gmh5225/QueryShadowStack/description_en.txt new file mode 100644 index 00000000..2ef22067 --- /dev/null +++ b/description/gmh5225/QueryShadowStack/description_en.txt @@ -0,0 +1 @@ +This project is a Windows proof of concept for querying and interacting with Intel CET (Control-flow Enforcement Technology) shadow stack data. It demonstrates reading shadow stack contents, detecting shadow stack mismatches, and exploring how CET's shadow stack mechanism affects return address integrity checking. It is aimed at kernel security researchers studying CET shadow stack internals and their impact on exploitation techniques. diff --git a/description/gmh5225/QuickPGTrigger/description_en.txt b/description/gmh5225/QuickPGTrigger/description_en.txt new file mode 100644 index 00000000..85f52176 --- /dev/null +++ b/description/gmh5225/QuickPGTrigger/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on stress Testing. +It is primarily written in C++ and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / patchguard-related area. diff --git a/description/gmh5225/R3nzSkinTFT/description_en.txt b/description/gmh5225/R3nzSkinTFT/description_en.txt new file mode 100644 index 00000000..0c39eed2 --- /dev/null +++ b/description/gmh5225/R3nzSkinTFT/description_en.txt @@ -0,0 +1 @@ +This project is a skin changer for Teamfight Tactics (TFT) and League of Legends that modifies champion skin IDs in memory to display alternative skins client-side. It reads and patches the game's champion skin data structures to swap skin appearances without server-side detection. The C++ tool demonstrates client-side cosmetic modification techniques. It is aimed at game security researchers studying cosmetic manipulation in Riot Games titles. diff --git a/description/gmh5225/R6-Cheat-Dumper/description_en.txt b/description/gmh5225/R6-Cheat-Dumper/description_en.txt new file mode 100644 index 00000000..f8c39b20 --- /dev/null +++ b/description/gmh5225/R6-Cheat-Dumper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C++ and C/C++ and centers on driver development, rendering, and animation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:r6 area. diff --git a/description/gmh5225/R6S-External-V2/description_en.txt b/description/gmh5225/R6S-External-V2/description_en.txt new file mode 100644 index 00000000..decb88d7 --- /dev/null +++ b/description/gmh5225/R6S-External-V2/description_en.txt @@ -0,0 +1 @@ +This project is an external cheat for Rainbow Six Siege (R6S) version 2 that operates outside the game process. It reads game memory through external methods (kernel driver or handle elevation) to provide ESP showing player positions, health, and operator information, along with aimbot functionality. The C++ cheat avoids injection into the BattlEye-protected game process. It is aimed at game security researchers studying external cheat patterns for BattlEye-protected UE4 titles. diff --git a/description/gmh5225/R6S-internal-Cheat/description_en.txt b/description/gmh5225/R6S-internal-Cheat/description_en.txt new file mode 100644 index 00000000..fcf464a3 --- /dev/null +++ b/description/gmh5225/R6S-internal-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:r6 and centers on r6 s internal cheat. +It is primarily written in C++ and C/C++ and centers on modding, overlays, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:r6 area. diff --git a/description/gmh5225/RTCore64_Vulnerability/description_en.txt b/description/gmh5225/RTCore64_Vulnerability/description_en.txt new file mode 100644 index 00000000..1e876672 --- /dev/null +++ b/description/gmh5225/RTCore64_Vulnerability/description_en.txt @@ -0,0 +1,4 @@ +This project adapts the white-signed RTCore64.sys driver into a manual mapping chain by combining arbitrary memory access with a data-pointer hook. +The archived README describes the idea as using RTCore64 to read kernel memory and then leveraging a data-ptr communication technique to invoke the code needed for driver mapping. +Its support code wraps RTCore64 read-write primitives and searches the kernel for routines such as MmAllocateIndependentPagesEx, so the repository goes beyond a bare vulnerability demo and toward a practical mapper built on MSI Afterburner tooling. +It is mainly useful for Windows kernel researchers studying white-signed driver abuse, RTCore64-based manual mapping, and the combination of arbitrary memory access with pointer-hook dispatch. diff --git a/description/gmh5225/RToolZ/description_en.txt b/description/gmh5225/RToolZ/description_en.txt new file mode 100644 index 00000000..9e02dc56 --- /dev/null +++ b/description/gmh5225/RToolZ/description_en.txt @@ -0,0 +1 @@ +This project is RToolZ, a Windows system utility providing rootkit-like capabilities for process, module, and callback management. It can hide/unhide processes, enumerate kernel callbacks, remove notification routines, and manipulate process protection levels through a driver backend. It is aimed at kernel researchers studying system manipulation tools and rootkit techniques. diff --git a/description/gmh5225/Rainbow-6-Siege-Cheat/description_en.txt b/description/gmh5225/Rainbow-6-Siege-Cheat/description_en.txt new file mode 100644 index 00000000..8893f099 --- /dev/null +++ b/description/gmh5225/Rainbow-6-Siege-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:r6 and centers on rainbow 6 siege cheat. +It is primarily written in C/C++ and C++ and centers on rendering and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:r6 area. diff --git a/description/gmh5225/Rainbow-Six-Siege-Rs6-External-Esp-Aimbot-Hack-Cheat/description_en.txt b/description/gmh5225/Rainbow-Six-Siege-Rs6-External-Esp-Aimbot-Hack-Cheat/description_en.txt new file mode 100644 index 00000000..4440bc9c --- /dev/null +++ b/description/gmh5225/Rainbow-Six-Siege-Rs6-External-Esp-Aimbot-Hack-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is the source codes of the cheat have been leaked. +The cheat is currently undetected, but I am not responsible if it is detected later and you are banned from the game Scavs (White), PMCs (White,Pink)), ScavBoss (Green) Avoiding the use of any sort of detected vectors by only hooking WndProc, which is called whenever mouse movement /key stroke is given. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:r6 area. diff --git a/description/gmh5225/ReClass-DMA/description_en.txt b/description/gmh5225/ReClass-DMA/description_en.txt new file mode 100644 index 00000000..f417d123 --- /dev/null +++ b/description/gmh5225/ReClass-DMA/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on reClass DMA. +It is primarily written in C/C++ and C++ and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/gmh5225/Rebirth/description_en.txt b/description/gmh5225/Rebirth/description_en.txt new file mode 100644 index 00000000..5abce20a --- /dev/null +++ b/description/gmh5225/Rebirth/description_en.txt @@ -0,0 +1 @@ +This project is Rebirth, a MapleStory private server emulator for a specific game version. It implements the server-side game logic including login authentication, character progression, map instances, monster AI, skill processing, questing, and party/guild management. The codebase emulates the MapleStory client-server protocol. It is aimed at MapleStory private server developers and game server architecture researchers. diff --git a/description/gmh5225/RemnantESP/description_en.txt b/description/gmh5225/RemnantESP/description_en.txt new file mode 100644 index 00000000..081b7f21 --- /dev/null +++ b/description/gmh5225/RemnantESP/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:remnant and centers on remnant esp. +It is primarily written in C# and centers on modding, Unreal Engine, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:remnant area. diff --git a/description/gmh5225/Rico-Cheat-rust-external/description_en.txt b/description/gmh5225/Rico-Cheat-rust-external/description_en.txt new file mode 100644 index 00000000..e096f2f3 --- /dev/null +++ b/description/gmh5225/Rico-Cheat-rust-external/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:rust and centers on rico cheat rust external. +It is primarily written in C++ and C/C++ and centers on driver development, rendering, and Unity. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/gmh5225/Rootkit-2/description_en.txt b/description/gmh5225/Rootkit-2/description_en.txt new file mode 100644 index 00000000..111b2af9 --- /dev/null +++ b/description/gmh5225/Rootkit-2/description_en.txt @@ -0,0 +1,4 @@ +This project is a kernel proof of concept for detecting hidden processes by walking csrss-maintained data structures instead of trusting ordinary process enumeration paths. +The driver attaches to each csrss.exe instance, locates CsrExecServerThread inside csrsrv.dll, pattern-scans it to recover the CSR_PROCESS list head, and then walks that linked list to resolve every client PID back to an EPROCESS. +By printing the process IDs and image names recovered from the CSRSS list, the repository demonstrates a secondary enumeration path that can still expose processes hidden from more obvious views. +It is mainly useful for anti-cheat and kernel researchers studying hidden-process detection, CSRSS internals, and alternative enumeration strategies for rootkit triage. diff --git a/description/gmh5225/Rust-Cheat-External/description_en.txt b/description/gmh5225/Rust-Cheat-External/description_en.txt new file mode 100644 index 00000000..bd496bba --- /dev/null +++ b/description/gmh5225/Rust-Cheat-External/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:rust and centers on rust cheat external. +It is primarily written in C/C++ and C++ and centers on driver development, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/gmh5225/Rust-ExternaL-and-Driver-AlienCheats/description_en.txt b/description/gmh5225/Rust-ExternaL-and-Driver-AlienCheats/description_en.txt new file mode 100644 index 00000000..775d149b --- /dev/null +++ b/description/gmh5225/Rust-ExternaL-and-Driver-AlienCheats/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C++ and C/C++ and centers on driver development, overlays, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/gmh5225/Rust-External-Source/description_en.txt b/description/gmh5225/Rust-External-Source/description_en.txt new file mode 100644 index 00000000..dd9b4c5b --- /dev/null +++ b/description/gmh5225/Rust-External-Source/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C++ and C/C++ and centers on driver development, shader work, and audio systems. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/gmh5225/Rust-External/description_en.txt b/description/gmh5225/Rust-External/description_en.txt new file mode 100644 index 00000000..18421634 --- /dev/null +++ b/description/gmh5225/Rust-External/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:rust and centers on rust external. +It is primarily written in C++ and C/C++ and centers on rendering and networking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/gmh5225/Rust-RustInternal/description_en.txt b/description/gmh5225/Rust-RustInternal/description_en.txt new file mode 100644 index 00000000..ac52dd47 --- /dev/null +++ b/description/gmh5225/Rust-RustInternal/description_en.txt @@ -0,0 +1 @@ +This project is an internal cheat for the game Rust written in C++ that hooks into the Unity engine runtime. It provides ESP, aimbot, player and item information, no-recoil, and other gameplay modifications through Mono/IL2CPP method hooking and direct memory access. The cheat operates inside the game process with direct access to Unity game objects. It is aimed at game security researchers studying Unity-based FPS game cheat implementations and EAC-protected game exploitation. diff --git a/description/gmh5225/RustMS/description_en.txt b/description/gmh5225/RustMS/description_en.txt new file mode 100644 index 00000000..a8744c78 --- /dev/null +++ b/description/gmh5225/RustMS/description_en.txt @@ -0,0 +1 @@ +This project is a MapleStory private server emulator written in Rust. It implements server-side game logic for a MapleStory version including login, character, and channel servers with player management, NPC interaction, quest systems, and combat mechanics. The Rust implementation emphasizes memory safety and performance. It is aimed at MapleStory private server developers exploring Rust for game server development. diff --git a/description/gmh5225/S4Mapper/description_en.txt b/description/gmh5225/S4Mapper/description_en.txt new file mode 100644 index 00000000..abfff8a4 --- /dev/null +++ b/description/gmh5225/S4Mapper/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver mapper that uses Samsung's S4 vulnerable driver for loading unsigned drivers into kernel memory. It exploits S4's memory access IOCTLs to manually map a custom driver: allocating pool memory, copying sections, fixing relocations, resolving imports, and invoking the entry point. It is aimed at kernel researchers studying driver mapping through Samsung BYOVD primitives. diff --git a/description/gmh5225/STB/description_en.txt b/description/gmh5225/STB/description_en.txt new file mode 100644 index 00000000..001a5639 --- /dev/null +++ b/description/gmh5225/STB/description_en.txt @@ -0,0 +1 @@ +This project involves stack trace building or spoofing techniques for evading call stack analysis. It manipulates return addresses or constructs fake call stacks to deceive security products and anti-cheat systems that inspect thread call stacks for suspicious calling patterns. It is aimed at security researchers studying call stack spoofing and stack-based detection evasion. diff --git a/description/gmh5225/ScreenShot/description_en.txt b/description/gmh5225/ScreenShot/description_en.txt new file mode 100644 index 00000000..a45070a8 --- /dev/null +++ b/description/gmh5225/ScreenShot/description_en.txt @@ -0,0 +1 @@ +This project is a Windows screen capture utility that demonstrates various screenshot capture methods including GDI BitBlt, DXGI Desktop Duplication, PrintWindow, and DWM thumbnail capture. It compares different capture approaches for their ability to capture overlay content, handle hardware-accelerated windows, and interact with anti-cheat screenshot detection systems. It is aimed at anti-cheat developers and security researchers studying screenshot-based detection and screen capture techniques. diff --git a/description/gmh5225/SeaOfChoros/description_en.txt b/description/gmh5225/SeaOfChoros/description_en.txt new file mode 100644 index 00000000..63c21f16 --- /dev/null +++ b/description/gmh5225/SeaOfChoros/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:sea of thieves and centers on sea of choros. +It is primarily written in C/C++ and C++ and centers on modding, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:sea of thieves area. diff --git a/description/gmh5225/Serenity.gg-FN-and-Loader/description_en.txt b/description/gmh5225/Serenity.gg-FN-and-Loader/description_en.txt new file mode 100644 index 00000000..dde10b0f --- /dev/null +++ b/description/gmh5225/Serenity.gg-FN-and-Loader/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on refused to send me the loader and I told him I don't want to work with someone who will let someone sell a paste and not do anything about it, now he banned me and is having Hopesar dev for him lmfao, no hate to him we already worked something out to ruin stuff stuff 🚶‍♂️. +It is primarily written in C/C++ and C++ and centers on driver development and shader work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/gmh5225/SetWindowsHookEx-Injector/description_en.txt b/description/gmh5225/SetWindowsHookEx-Injector/description_en.txt new file mode 100644 index 00000000..62d355c0 --- /dev/null +++ b/description/gmh5225/SetWindowsHookEx-Injector/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on injection Testing:SetWindowsHookExW. +It is primarily written in C/C++ and C and centers on modding, Unreal Engine, and hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/gmh5225/SourceEngine2007/description_en.txt b/description/gmh5225/SourceEngine2007/description_en.txt new file mode 100644 index 00000000..c5d8f96a --- /dev/null +++ b/description/gmh5225/SourceEngine2007/description_en.txt @@ -0,0 +1,3 @@ +This project provides source engine2007. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/gmh5225/SpeedFan-Exploit/description_en.txt b/description/gmh5225/SpeedFan-Exploit/description_en.txt new file mode 100644 index 00000000..e0e1d0d6 --- /dev/null +++ b/description/gmh5225/SpeedFan-Exploit/description_en.txt @@ -0,0 +1 @@ +This project exploits the SpeedFan application's kernel driver for arbitrary kernel memory access. SpeedFan's signed driver provides hardware monitoring through IOCTLs that can be abused for reading/writing physical memory, making it a BYOVD target for kernel exploitation. It is aimed at BYOVD researchers studying legacy monitoring tool driver vulnerabilities. diff --git a/description/gmh5225/SpookiMystic-GTA-Leak/description_en.txt b/description/gmh5225/SpookiMystic-GTA-Leak/description_en.txt new file mode 100644 index 00000000..e1b78596 --- /dev/null +++ b/description/gmh5225/SpookiMystic-GTA-Leak/description_en.txt @@ -0,0 +1 @@ +This project is a leaked GTA V mod menu source (SpookiMystic) that provides online gameplay modifications including money drops, player teleportation, vehicle spawning, god mode, and griefing features. It hooks into GTA V's RAGE engine scripting system. It is aimed at game security researchers studying GTA V mod menu architecture and Rockstar's anti-cheat detection of online modifications. diff --git a/description/gmh5225/StackSpoofer_Macro/description_en.txt b/description/gmh5225/StackSpoofer_Macro/description_en.txt new file mode 100644 index 00000000..354c6bb4 --- /dev/null +++ b/description/gmh5225/StackSpoofer_Macro/description_en.txt @@ -0,0 +1,3 @@ +This project is an easy-to-use and powerful Macro for Stack Spoofing. +It is primarily written in C/C++ and C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/gmh5225/StarRail-ACE-B/description_en.txt b/description/gmh5225/StarRail-ACE-B/description_en.txt new file mode 100644 index 00000000..5a6e24c2 --- /dev/null +++ b/description/gmh5225/StarRail-ACE-B/description_en.txt @@ -0,0 +1 @@ +This project is a reverse engineering analysis of ACE (Anti-Cheat Expert) as used in Honkai: Star Rail. It documents ACE's protection mechanisms, detection techniques, and bypass methods specific to the Star Rail implementation. The analysis covers ACE's kernel driver behavior, integrity checks, and monitoring capabilities. It is aimed at anti-cheat researchers studying Tencent's ACE anti-cheat system in miHoYo/HoYoverse titles. diff --git a/description/gmh5225/StarRail-S-GC/description_en.txt b/description/gmh5225/StarRail-S-GC/description_en.txt new file mode 100644 index 00000000..d76d8140 --- /dev/null +++ b/description/gmh5225/StarRail-S-GC/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple cheat for Honkai Star Rail This repository provides code for a simple cheat for the game Honkai Star Rail. +It is primarily written in C/C++ and C++ and centers on Unity and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:honkai star rail area. diff --git a/description/gmh5225/StarRailCopilot/description_en.txt b/description/gmh5225/StarRailCopilot/description_en.txt new file mode 100644 index 00000000..9295ad81 --- /dev/null +++ b/description/gmh5225/StarRailCopilot/description_en.txt @@ -0,0 +1 @@ +This project is an automation copilot for Honkai: Star Rail that assists with daily tasks, resource farming, and repetitive gameplay. It uses screen recognition and automated input to navigate menus, complete daily missions, spend stamina, and manage assignments. The Python tool provides configurable automation strategies for different farming goals. It is aimed at Honkai: Star Rail players automating daily routines and game automation developers. diff --git a/description/gmh5225/StealthAPCDispatcher/description_en.txt b/description/gmh5225/StealthAPCDispatcher/description_en.txt new file mode 100644 index 00000000..ab7a9415 --- /dev/null +++ b/description/gmh5225/StealthAPCDispatcher/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel tool demonstrating stealthy APC (Asynchronous Procedure Call) dispatch techniques. It queues APCs to target threads using methods that avoid standard API-level detection, enabling code execution in arbitrary thread contexts without triggering anti-cheat APC monitoring. It is aimed at kernel researchers studying APC-based code execution and anti-cheat APC detection bypass. diff --git a/description/gmh5225/StealthSytemThreadFinderBE/description_en.txt b/description/gmh5225/StealthSytemThreadFinderBE/description_en.txt new file mode 100644 index 00000000..2c758933 --- /dev/null +++ b/description/gmh5225/StealthSytemThreadFinderBE/description_en.txt @@ -0,0 +1 @@ +This project is a tool for finding hidden system threads that BattlEye's anti-cheat cannot detect. It demonstrates advanced thread enumeration techniques beyond standard API calls to locate stealth threads created by manually mapped drivers, using approaches like PspCidTable walking, scheduler queue scanning, or cross-referencing thread lists. It is aimed at anti-cheat researchers studying thread hiding and detection techniques related to BattlEye. diff --git a/description/gmh5225/Steam-Hook-Render-PoC/description_en.txt b/description/gmh5225/Steam-Hook-Render-PoC/description_en.txt new file mode 100644 index 00000000..ea7836e9 --- /dev/null +++ b/description/gmh5225/Steam-Hook-Render-PoC/description_en.txt @@ -0,0 +1 @@ +This project is a proof of concept for hijacking Steam's overlay rendering to draw custom content within games. It hooks into Steam's GameOverlayRenderer DLL rendering pipeline to inject custom draw calls, leveraging Steam overlay's trusted status to render cheat menus or ESP without triggering overlay detection. It is aimed at game security researchers studying Steam overlay hijacking and trusted overlay abuse for anti-cheat bypass. diff --git a/description/gmh5225/Stockfish/description_en.txt b/description/gmh5225/Stockfish/description_en.txt new file mode 100644 index 00000000..1883b3f9 --- /dev/null +++ b/description/gmh5225/Stockfish/description_en.txt @@ -0,0 +1 @@ +This project is Stockfish, the strongest open-source chess engine, using advanced search algorithms (alpha-beta with NNUE evaluation). It combines classical chess search techniques with efficiently updatable neural network evaluation for superhuman-level play. The C++ engine supports UCI protocol and runs on all major platforms. It is aimed at chess engine developers, AI researchers, and competitive chess players. diff --git a/description/gmh5225/Super-People-Esp-Aimbot-Magic-Hack/description_en.txt b/description/gmh5225/Super-People-Esp-Aimbot-Magic-Hack/description_en.txt new file mode 100644 index 00000000..135721cd --- /dev/null +++ b/description/gmh5225/Super-People-Esp-Aimbot-Magic-Hack/description_en.txt @@ -0,0 +1 @@ +This project is a cheat for Super People (battle royale game) providing ESP, aimbot, and gameplay modification features. It reads game entity data from the Unreal Engine-based process to display player positions, health, and distance, with aimbot targeting and other combat advantages. The C++ cheat interacts with the game's UE4 SDK structures. It is aimed at game security researchers studying UE4-based battle royale cheat implementations. diff --git a/description/gmh5225/TFT-OCR-BOT/description_en.txt b/description/gmh5225/TFT-OCR-BOT/description_en.txt new file mode 100644 index 00000000..a90a536b --- /dev/null +++ b/description/gmh5225/TFT-OCR-BOT/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on tFT. +It is primarily written in Python and centers on asset pipelines and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:lol area. diff --git a/description/gmh5225/TS-Fucker/description_en.txt b/description/gmh5225/TS-Fucker/description_en.txt new file mode 100644 index 00000000..fc6d1a30 --- /dev/null +++ b/description/gmh5225/TS-Fucker/description_en.txt @@ -0,0 +1,4 @@ +This project is a proof of concept for toggling Windows TestSigning mode at runtime by abusing the Dell dbutil_2_3.sys vulnerable driver for kernel read-write access. +The archived README emphasizes that it changes the machine's test-signing state without a reboot, downloads symbol files for the current Windows build to locate the required fields, and expects the vulnerable driver to already be loaded. +As a result, the repository is less a generic BYOVD toolkit and more a focused utility showing how a kernel memory primitive can live-patch security-relevant system state. +It is mainly useful for Windows kernel researchers studying runtime test-signing manipulation, symbol-assisted offset discovery, and the practical impact of dbutil_2_3.sys. diff --git a/description/gmh5225/TWMS-Hacking-Data/description_en.txt b/description/gmh5225/TWMS-Hacking-Data/description_en.txt new file mode 100644 index 00000000..aff8dbac --- /dev/null +++ b/description/gmh5225/TWMS-Hacking-Data/description_en.txt @@ -0,0 +1 @@ +This project is a collection of Taiwan MapleStory (TWMS) hacking data including memory offsets, packet structures, encryption keys, and bypass techniques for the game's anti-cheat protection. It documents client-server protocol details, memory addresses for game state manipulation, and methods for circumventing GameGuard or similar protections used by TWMS. It is aimed at MapleStory security researchers studying regional game client protection differences and packet-level game manipulation. diff --git a/description/gmh5225/Tenet-IDA9.0/description_en.txt b/description/gmh5225/Tenet-IDA9.0/description_en.txt new file mode 100644 index 00000000..c6b2d3cd --- /dev/null +++ b/description/gmh5225/Tenet-IDA9.0/description_en.txt @@ -0,0 +1 @@ +This project is a port of the Tenet execution trace explorer plugin updated for IDA Pro 9.0 compatibility. It provides the same trace timeline visualization and forward/backward execution stepping as the original Tenet but with API updates for the IDA 9.0 SDK. It is aimed at reverse engineers using IDA Pro 9.0 who need execution trace analysis capabilities. diff --git a/description/gmh5225/Terminator/description_en.txt b/description/gmh5225/Terminator/description_en.txt new file mode 100644 index 00000000..84e1649b --- /dev/null +++ b/description/gmh5225/Terminator/description_en.txt @@ -0,0 +1 @@ +This project is Terminator, a Windows tool that terminates protected processes (antivirus, EDR, anti-cheat) using a vulnerable signed driver (BYOVD). It exploits the Zemana anti-malware driver's arbitrary process termination IOCTL to kill processes that cannot be terminated through standard APIs due to kernel-level protections. It is aimed at red team operators and security researchers studying BYOVD-based security product termination. diff --git a/description/gmh5225/Tool-DIYSystemMemoryDump/description_en.txt b/description/gmh5225/Tool-DIYSystemMemoryDump/description_en.txt new file mode 100644 index 00000000..e4c4459b --- /dev/null +++ b/description/gmh5225/Tool-DIYSystemMemoryDump/description_en.txt @@ -0,0 +1 @@ +This project is a tool for creating Windows system memory dumps (similar to crash dumps) from a live running system. It captures physical memory contents into a dump file format compatible with WinDbg and Volatility for offline forensic analysis. It is aimed at incident responders and forensic analysts who need to create memory dumps from live Windows systems for investigation. diff --git a/description/gmh5225/U3D_MiniDNF/description_en.txt b/description/gmh5225/U3D_MiniDNF/description_en.txt new file mode 100644 index 00000000..f284e221 --- /dev/null +++ b/description/gmh5225/U3D_MiniDNF/description_en.txt @@ -0,0 +1 @@ +This project is a mini Dungeon & Fighter (DNF/DFO) clone built with Unity 3D. It recreates core gameplay mechanics of the side-scrolling action RPG including character movement, combo attacks, skill systems, monster AI, and dungeon progression in Unity. It is aimed at Unity game developers studying action RPG implementation and DNF-style game mechanics. diff --git a/description/gmh5225/UCFoxi-Shared-FlushFileBuffers-Communication-Update/description_en.txt b/description/gmh5225/UCFoxi-Shared-FlushFileBuffers-Communication-Update/description_en.txt new file mode 100644 index 00000000..be249330 --- /dev/null +++ b/description/gmh5225/UCFoxi-Shared-FlushFileBuffers-Communication-Update/description_en.txt @@ -0,0 +1,4 @@ +This project is a kernel and user communication sample that repurposes IRP_MJ_FLUSH_BUFFERS on \Driver\PEAUTH as the trigger while the real request data lives in a shared user buffer. +Its driver entry resolves the target driver object, swaps MajorFunction[IRP_MJ_FLUSH_BUFFERS] with InterlockedExchangePointer, and reloads the shared buffer pointer and client PID from registry values under \Registry\Machine\SOFTWARE\ucflash. +The hook copies a REQUEST_DATA block with MmCopyVirtualMemory, rotates a magic value to keep the session synchronized, and dispatches read, write, protect, alloc, free, module, and main-base operations through helper callbacks backed by physical-memory access code. +It is mainly useful for Windows kernel researchers comparing alternative driver communication channels based on hijacked IRP paths, registry-seeded shared buffers, and lightweight kernel memory services. diff --git a/description/gmh5225/UCMapper/description_en.txt b/description/gmh5225/UCMapper/description_en.txt new file mode 100644 index 00000000..fbefa440 --- /dev/null +++ b/description/gmh5225/UCMapper/description_en.txt @@ -0,0 +1,4 @@ +This project is a kernel driver manual mapper that abuses nvaudio.sys as the vulnerable transport and includes both the user-mode loader and the in-memory mapping logic. +The loader enables SeLoadDriverPrivilege, installs and starts the vulnerable driver, opens its device, loads nvaudio.sys into user space to reuse an internal EncodePayLoad routine, and then removes the driver's runtime-list entry so the helper is less visible after use. +Its mapper code also contains explicit relocation, import-resolution, and image-loading routines, so the archive is not just a thin wrapper around an existing mapper but a fairly complete manual-map implementation adapted to the nvaudio path. +It is mainly useful for Windows kernel researchers studying BYOVD-based driver mapping, reuse of vendor helper routines, and post-load cleanup around runtime lists. diff --git a/description/gmh5225/UE-Plugin-SCUE4-Plugin/description_en.txt b/description/gmh5225/UE-Plugin-SCUE4-Plugin/description_en.txt new file mode 100644 index 00000000..e76fcc1c --- /dev/null +++ b/description/gmh5225/UE-Plugin-SCUE4-Plugin/description_en.txt @@ -0,0 +1 @@ +This project is SCUE4, an Unreal Engine 4 plugin that adds anti-cheat and security features to UE4 games. It provides runtime integrity checks, memory protection for sensitive game variables, encryption for network packets, and tamper detection for game binaries. The C++ plugin integrates into UE4's build system as a game module. It is aimed at UE4 game developers adding anti-cheat protection and game security researchers studying engine-level security plugins. diff --git a/description/gmh5225/UE-UnrealEngineSDK/description_en.txt b/description/gmh5225/UE-UnrealEngineSDK/description_en.txt new file mode 100644 index 00000000..a4b1ffb8 --- /dev/null +++ b/description/gmh5225/UE-UnrealEngineSDK/description_en.txt @@ -0,0 +1 @@ +This project is a reverse-engineered Unreal Engine SDK providing C++ class definitions, struct layouts, and function signatures for UE4/UE5 game internals. It includes UObject hierarchy definitions, UWorld/ULevel structures, player controller classes, actor component layouts, and engine globals needed for game hacking and modding. The SDK enables direct interaction with UE game objects from injected code. It is aimed at UE game hackers and modders who need SDK headers for internal cheat or mod development. diff --git a/description/gmh5225/UE4-Apk-Dumper/description_en.txt b/description/gmh5225/UE4-Apk-Dumper/description_en.txt new file mode 100644 index 00000000..680bc3cf --- /dev/null +++ b/description/gmh5225/UE4-Apk-Dumper/description_en.txt @@ -0,0 +1 @@ +This project is a tool for dumping Unreal Engine 4 SDK data from Android APK games. It extracts UObject class hierarchies, property offsets, and function pointers from UE4 mobile game processes on Android for use in mobile game cheat development. It is aimed at mobile game reverse engineers generating UE4 SDKs from Android game packages. diff --git a/description/gmh5225/UE4Dumper_Emulator/description_en.txt b/description/gmh5225/UE4Dumper_Emulator/description_en.txt new file mode 100644 index 00000000..4da7bc10 --- /dev/null +++ b/description/gmh5225/UE4Dumper_Emulator/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK Dump For Android. +It is primarily written in C/C++ and C++ and centers on modding, SDK generation, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unreal area. diff --git a/description/gmh5225/UE5-FPS-CryptRaider/description_en.txt b/description/gmh5225/UE5-FPS-CryptRaider/description_en.txt new file mode 100644 index 00000000..2f087f8b --- /dev/null +++ b/description/gmh5225/UE5-FPS-CryptRaider/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on uE5 FPS Game. +It is primarily written in C++ and C/C++ and centers on editor tooling and modding. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/gmh5225/UE5MultiplayerProject/description_en.txt b/description/gmh5225/UE5MultiplayerProject/description_en.txt new file mode 100644 index 00000000..9a1c9bc1 --- /dev/null +++ b/description/gmh5225/UE5MultiplayerProject/description_en.txt @@ -0,0 +1 @@ +This project is a multiplayer game template built with Unreal Engine 5 demonstrating networked gameplay implementation. It covers UE5's replication system, player session management, dedicated server setup, gameplay ability system integration, and multiplayer UI widgets. It is aimed at UE5 developers learning multiplayer game implementation patterns. diff --git a/description/gmh5225/UltraDriver-Game-Cheat/description_en.txt b/description/gmh5225/UltraDriver-Game-Cheat/description_en.txt new file mode 100644 index 00000000..78d5e59c --- /dev/null +++ b/description/gmh5225/UltraDriver-Game-Cheat/description_en.txt @@ -0,0 +1 @@ +This project is a kernel driver-based game cheat framework that uses a custom Windows driver for privileged memory access to game processes. It implements memory reading/writing through physical address translation or MDL mapping, bypassing anti-cheat handle protections. The driver provides a user-mode communication interface for cheat applications to access game memory. It is aimed at kernel researchers studying driver-based cheat architectures and anti-cheat kernel-level detection. diff --git a/description/gmh5225/Uncloaking-RAID0-HWID-Serials/description_en.txt b/description/gmh5225/Uncloaking-RAID0-HWID-Serials/description_en.txt new file mode 100644 index 00000000..7be2c80b --- /dev/null +++ b/description/gmh5225/Uncloaking-RAID0-HWID-Serials/description_en.txt @@ -0,0 +1 @@ +This project demonstrates techniques for uncloaking or reading RAID0 disk serial numbers and hardware IDs that HWID spoofers attempt to hide. It shows how anti-cheat systems can retrieve true hardware identifiers from RAID configurations even when spoofing tools attempt to modify them. It is aimed at anti-cheat developers building HWID detection systems and researchers studying HWID spoofing limitations. diff --git a/description/gmh5225/Unreal-Engine-5-PDB/description_en.txt b/description/gmh5225/Unreal-Engine-5-PDB/description_en.txt new file mode 100644 index 00000000..3fce5db5 --- /dev/null +++ b/description/gmh5225/Unreal-Engine-5-PDB/description_en.txt @@ -0,0 +1 @@ +This project is a collection or mirror of Unreal Engine 5 PDB (Program Database) symbol files. These debug symbol files contain function names, type definitions, struct layouts, and variable information for UE5 binaries, enabling detailed reverse engineering and debugging of UE5 games with full symbol information in tools like IDA Pro or x64dbg. It is aimed at UE5 game reverse engineers and cheat developers who need symbol data for analyzing UE5 binaries. diff --git a/description/gmh5225/UnrealEngine-Protection/description_en.txt b/description/gmh5225/UnrealEngine-Protection/description_en.txt new file mode 100644 index 00000000..1a9a1c3c --- /dev/null +++ b/description/gmh5225/UnrealEngine-Protection/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this will activate the anti-cheat system for your game. +FAQs: ° What is the performance impact in game when using SC Safe Types in Blueprint graphs? +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / game engine protection:unreal area. diff --git a/description/gmh5225/UnrealEngine5-UltimateStreetFighters/description_en.txt b/description/gmh5225/UnrealEngine5-UltimateStreetFighters/description_en.txt new file mode 100644 index 00000000..08359de4 --- /dev/null +++ b/description/gmh5225/UnrealEngine5-UltimateStreetFighters/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on uE5 StreetFighters Game. +It is primarily written in C# and C++ and centers on audio systems, physics, and animation. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/gmh5225/VACDumper/description_en.txt b/description/gmh5225/VACDumper/description_en.txt new file mode 100644 index 00000000..1f95d428 --- /dev/null +++ b/description/gmh5225/VACDumper/description_en.txt @@ -0,0 +1,4 @@ +This project is a DLL-based VAC3 dumping utility that is injected into steam.exe so it can intercept the routine Steam uses to load VAC modules. +The archived README explains the workflow around starting Steam as administrator, injecting before the game launches, and writing recovered modules to C:\Modules for offline analysis. +The code locates the steamservice.dll routine responsible for loading VAC modules, hooks it with MinHook, and captures the module content at load time instead of trying to reconstruct it afterward. +It is mainly useful for reverse engineers studying Valve Anti-Cheat module loading, Steam-side interception points, and simple live-dump workflows for VAC analysis. diff --git a/description/gmh5225/VALORANT-HACK-ESP-AIMBOT-SKINCHANGER-SOURCE/description_en.txt b/description/gmh5225/VALORANT-HACK-ESP-AIMBOT-SKINCHANGER-SOURCE/description_en.txt new file mode 100644 index 00000000..3e82a3e9 --- /dev/null +++ b/description/gmh5225/VALORANT-HACK-ESP-AIMBOT-SKINCHANGER-SOURCE/description_en.txt @@ -0,0 +1 @@ +This project is a Valorant cheat source providing ESP, aimbot, and skin changer features. It reads UE4 game state through kernel driver memory access to display player information, automate aiming, and modify weapon skin IDs client-side. The C++ codebase demonstrates typical Valorant cheat architecture including Vanguard bypass techniques. It is aimed at anti-cheat researchers studying Valorant cheat implementations and Vanguard kernel protection bypass. diff --git a/description/gmh5225/VALORANT-HACK-ESP-AIMBOT-SKINCHANGER/description_en.txt b/description/gmh5225/VALORANT-HACK-ESP-AIMBOT-SKINCHANGER/description_en.txt new file mode 100644 index 00000000..08d392e6 --- /dev/null +++ b/description/gmh5225/VALORANT-HACK-ESP-AIMBOT-SKINCHANGER/description_en.txt @@ -0,0 +1 @@ +This project is a Valorant cheat providing ESP (player outlines, health, distance), aimbot (auto-aim with smoothing), and skin changer (client-side weapon skin modification) features. It accesses game memory through a kernel driver to bypass Vanguard's user-mode protections and reads UE4 entity data for rendering overlays. It is aimed at anti-cheat researchers studying Valorant cheat feature implementations and Vanguard bypass patterns. diff --git a/description/gmh5225/VMAttack/description_en.txt b/description/gmh5225/VMAttack/description_en.txt new file mode 100644 index 00000000..ff9447cb --- /dev/null +++ b/description/gmh5225/VMAttack/description_en.txt @@ -0,0 +1 @@ +This project is VMAttack, an IDA Pro plugin for analyzing and attacking VM-based code obfuscation. It identifies virtual machine dispatcher loops, extracts virtual opcode handler tables, traces virtual instruction execution, and assists in devirtualizing VM-protected code. The Python plugin provides automated analysis of custom VM architectures found in protected binaries. It is aimed at reverse engineers deobfuscating VM-protected malware and commercially protected software. diff --git a/description/gmh5225/VMP-Vmp3_64bit_disasm-prerelease-/description_en.txt b/description/gmh5225/VMP-Vmp3_64bit_disasm-prerelease-/description_en.txt new file mode 100644 index 00000000..9ed3b023 --- /dev/null +++ b/description/gmh5225/VMP-Vmp3_64bit_disasm-prerelease-/description_en.txt @@ -0,0 +1 @@ +This project is a VMProtect 3 x64 disassembler that analyzes and disassembles VMProtect 3's virtual machine bytecode. It decodes VMP3's custom instruction set, identifies virtual opcode handlers, and reconstructs the original instruction flow from the virtualized code. The tool targets the 64-bit variant of VMProtect's virtual machine. It is aimed at reverse engineers working on deobfuscating VMProtect 3-protected 64-bit binaries. diff --git a/description/gmh5225/VMProtect/description_en.txt b/description/gmh5225/VMProtect/description_en.txt new file mode 100644 index 00000000..7b740ef6 --- /dev/null +++ b/description/gmh5225/VMProtect/description_en.txt @@ -0,0 +1,3 @@ +This project is a code obfuscation method using virtual machines to protect programs. +A virtual machine that simulates a CPU along with a few other hardware components, allows to perform arithmetic operations, reads and writes to memory and interacts with I/O devices. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix vmp area. diff --git a/description/gmh5225/VOLTO-EXTERNAL-SPOWAR-UD-EAC-BE-FORTNITE-EXTERNAL-CHEAT/description_en.txt b/description/gmh5225/VOLTO-EXTERNAL-SPOWAR-UD-EAC-BE-FORTNITE-EXTERNAL-CHEAT/description_en.txt new file mode 100644 index 00000000..56c149ed --- /dev/null +++ b/description/gmh5225/VOLTO-EXTERNAL-SPOWAR-UD-EAC-BE-FORTNITE-EXTERNAL-CHEAT/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:fortnite and centers on volto external spowar ud eac be fortnite external cheat. +It is primarily written in C/C++ and C++ and centers on driver development and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/gmh5225/Vac-Emulator/description_en.txt b/description/gmh5225/Vac-Emulator/description_en.txt new file mode 100644 index 00000000..3ef734c3 --- /dev/null +++ b/description/gmh5225/Vac-Emulator/description_en.txt @@ -0,0 +1 @@ +This project is a Valve Anti-Cheat (VAC) module emulator that loads and executes VAC scanning modules in a sandboxed environment for analysis. It emulates the VAC module interface, provides controlled memory environments for scanning, and logs detection checks and signature patterns that VAC modules search for. It is aimed at anti-cheat researchers studying VAC's scanning methodology and detection signatures. diff --git a/description/gmh5225/Valorant-Aimbot-Bypass/description_en.txt b/description/gmh5225/Valorant-Aimbot-Bypass/description_en.txt new file mode 100644 index 00000000..122f948e --- /dev/null +++ b/description/gmh5225/Valorant-Aimbot-Bypass/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this is my aimbot that I coded for the game Valorant. +It has aimbot functionality with human aim. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/Valorant-Cheat/description_en.txt b/description/gmh5225/Valorant-Cheat/description_en.txt new file mode 100644 index 00000000..f6b8c2ff --- /dev/null +++ b/description/gmh5225/Valorant-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a Valorant Internal Cheat by StuzziKLL's source and given some small adjustments by me. +It is primarily written in C/C++ and C++ and centers on anti-cheat research and driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/Valorant-CheatExternal/description_en.txt b/description/gmh5225/Valorant-CheatExternal/description_en.txt new file mode 100644 index 00000000..9f2a5d81 --- /dev/null +++ b/description/gmh5225/Valorant-CheatExternal/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:valorant and centers on valorant cheat external. +It is primarily written in C/C++ and C++ and centers on driver development, shader work, and rendering. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/Valorant-Dumper-Tool/description_en.txt b/description/gmh5225/Valorant-Dumper-Tool/description_en.txt new file mode 100644 index 00000000..1e64c100 --- /dev/null +++ b/description/gmh5225/Valorant-Dumper-Tool/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dump. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/Valorant-Esp-Aimbot-Cheat-Hack/description_en.txt b/description/gmh5225/Valorant-Esp-Aimbot-Cheat-Hack/description_en.txt new file mode 100644 index 00000000..e7da0976 --- /dev/null +++ b/description/gmh5225/Valorant-Esp-Aimbot-Cheat-Hack/description_en.txt @@ -0,0 +1 @@ +This project is a Valorant cheat providing ESP and aimbot features through external or internal memory access. It reads player entity data from Valorant's UE4 game state to display player outlines, health, and distance information, with aimbot auto-targeting. It is aimed at anti-cheat researchers studying Valorant cheat patterns and Vanguard detection capabilities. diff --git a/description/gmh5225/Valorant-Esp-Aimbot-Hack/description_en.txt b/description/gmh5225/Valorant-Esp-Aimbot-Hack/description_en.txt new file mode 100644 index 00000000..22ebbd90 --- /dev/null +++ b/description/gmh5225/Valorant-Esp-Aimbot-Hack/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on status: your time is up to you Update Time: 08/03/2565. +Eduty is a fully featured internal hack for Valorant written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/Valorant-External-1/description_en.txt b/description/gmh5225/Valorant-External-1/description_en.txt new file mode 100644 index 00000000..88ca904c --- /dev/null +++ b/description/gmh5225/Valorant-External-1/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:valorant and centers on valorant external 1. +It is primarily written in C/C++ and C++ and centers on OpenGL. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/Valorant-External-P2C-Leaked/description_en.txt b/description/gmh5225/Valorant-External-P2C-Leaked/description_en.txt new file mode 100644 index 00000000..905f081e --- /dev/null +++ b/description/gmh5225/Valorant-External-P2C-Leaked/description_en.txt @@ -0,0 +1 @@ +This project is a leaked Valorant external pay-to-cheat (P2C) source that operates outside the game process using a kernel driver for memory access. It implements ESP, aimbot, and triggerbot features by reading Unreal Engine game state through external memory access while Vanguard anti-cheat is running. The C++ codebase demonstrates the typical architecture of commercial external Valorant cheats. It is aimed at anti-cheat researchers studying P2C cheat design patterns and Vanguard bypass techniques. diff --git a/description/gmh5225/Valorant-External-Source/description_en.txt b/description/gmh5225/Valorant-External-Source/description_en.txt new file mode 100644 index 00000000..b2e86b91 --- /dev/null +++ b/description/gmh5225/Valorant-External-Source/description_en.txt @@ -0,0 +1 @@ +This project is an external Valorant cheat source providing ESP, aimbot, and player information features through external memory reading. It uses a kernel driver to read Valorant's UE4 game state without injecting into the Vanguard-protected process, rendering overlays through a separate window or hijacked overlay. It is aimed at anti-cheat researchers studying Valorant external cheat architectures and Vanguard kernel protection effectiveness. diff --git a/description/gmh5225/Valorant-cheat-internal/description_en.txt b/description/gmh5225/Valorant-cheat-internal/description_en.txt new file mode 100644 index 00000000..6065082c --- /dev/null +++ b/description/gmh5225/Valorant-cheat-internal/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +Open - Close Menu The default is [Insert] , but you can manually switch to the button you want. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/Valorant.External/description_en.txt b/description/gmh5225/Valorant.External/description_en.txt new file mode 100644 index 00000000..0ce67305 --- /dev/null +++ b/description/gmh5225/Valorant.External/description_en.txt @@ -0,0 +1,3 @@ +This project is the latest version of Valorant Cheat with enhanced security. +A website that I created to introduce myself from start to finish. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/ValorantCheatExternal/description_en.txt b/description/gmh5225/ValorantCheatExternal/description_en.txt new file mode 100644 index 00000000..64204dd7 --- /dev/null +++ b/description/gmh5225/ValorantCheatExternal/description_en.txt @@ -0,0 +1 @@ +This project is an external Valorant cheat that reads game memory through a kernel driver without injecting into the game process. It provides ESP and aimbot features by externally reading UE4 entity data while bypassing Vanguard's injection detection. It is aimed at anti-cheat researchers studying external Valorant cheat architecture. diff --git a/description/gmh5225/VanderLeague/description_en.txt b/description/gmh5225/VanderLeague/description_en.txt new file mode 100644 index 00000000..f8c19729 --- /dev/null +++ b/description/gmh5225/VanderLeague/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hypervisor-assisted. +It is primarily written in C/C++ and C++ and centers on kernel-level work, driver development, and rendering. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:lol area. diff --git a/description/gmh5225/VanguardImportResolver/description_en.txt b/description/gmh5225/VanguardImportResolver/description_en.txt new file mode 100644 index 00000000..53aaf20a --- /dev/null +++ b/description/gmh5225/VanguardImportResolver/description_en.txt @@ -0,0 +1 @@ +This project is a tool for resolving import function addresses that Vanguard (Riot's anti-cheat) uses internally. It documents Vanguard's kernel driver's import resolution mechanism and provides utilities to analyze which kernel functions Vanguard's driver calls. It is aimed at anti-cheat researchers reverse engineering Vanguard's kernel driver internals and import protection mechanisms. diff --git a/description/gmh5225/Vmp3_utils/description_en.txt b/description/gmh5225/Vmp3_utils/description_en.txt new file mode 100644 index 00000000..1c3d1080 --- /dev/null +++ b/description/gmh5225/Vmp3_utils/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / fix vmp and centers on vmp3 utils. +It is primarily written in Python and centers on editor tooling. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix vmp area. diff --git a/description/gmh5225/Voyager/description_en.txt b/description/gmh5225/Voyager/description_en.txt new file mode 100644 index 00000000..2ca76318 --- /dev/null +++ b/description/gmh5225/Voyager/description_en.txt @@ -0,0 +1,3 @@ +This project is a Hyper-V Hacking Framework For Windows 10 x64 (AMD & Intel. +This project works on all versions of Windows 10-x64 (2004-1507). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/gmh5225/Vulkan-Hook/description_en.txt b/description/gmh5225/Vulkan-Hook/description_en.txt new file mode 100644 index 00000000..860be058 --- /dev/null +++ b/description/gmh5225/Vulkan-Hook/description_en.txt @@ -0,0 +1 @@ +This project is a Vulkan API hooking framework that intercepts Vulkan rendering calls for overlay rendering inside Vulkan-based games. It hooks vkQueuePresentKHR and other Vulkan functions to inject custom rendering commands, enabling ImGui overlay menus and ESP drawing within Vulkan games. The C++ implementation demonstrates Vulkan-specific hooking patterns distinct from DirectX approaches. It is aimed at game security researchers studying Vulkan rendering pipeline hooking and overlay techniques. diff --git a/description/gmh5225/VulnerableKernel_Driver/description_en.txt b/description/gmh5225/VulnerableKernel_Driver/description_en.txt new file mode 100644 index 00000000..49cbb51b --- /dev/null +++ b/description/gmh5225/VulnerableKernel_Driver/description_en.txt @@ -0,0 +1 @@ +This project is a deliberately vulnerable Windows kernel driver created for educational purposes. It exposes intentionally insecure IOCTL handlers demonstrating common driver vulnerabilities including arbitrary memory read/write, buffer overflow, use-after-free, and race conditions. The driver serves as a learning target for kernel exploitation practice. It is aimed at kernel exploitation students and security trainers teaching driver vulnerability classes. diff --git a/description/gmh5225/VulnerablePatchGuardExploit/description_en.txt b/description/gmh5225/VulnerablePatchGuardExploit/description_en.txt new file mode 100644 index 00000000..03b3d06f --- /dev/null +++ b/description/gmh5225/VulnerablePatchGuardExploit/description_en.txt @@ -0,0 +1,3 @@ +This project is a Vulnerable PatchGuard Exploit that can be used to disable PatchGuard on Runtime. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / patchguard-related area. diff --git a/description/gmh5225/WOW-WowAutoFishing/description_en.txt b/description/gmh5225/WOW-WowAutoFishing/description_en.txt new file mode 100644 index 00000000..582a3e64 --- /dev/null +++ b/description/gmh5225/WOW-WowAutoFishing/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on auto Fishing. +It is primarily written in C/C++ and C++ and centers on rendering, audio systems, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:wow area. diff --git a/description/gmh5225/Warzone-internal-Cheat/description_en.txt b/description/gmh5225/Warzone-internal-Cheat/description_en.txt new file mode 100644 index 00000000..939c1339 --- /dev/null +++ b/description/gmh5225/Warzone-internal-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:cod warzone and centers on warzone internal cheat. +It is primarily written in C/C++ and C++ and centers on rendering, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cod warzone area. diff --git a/description/gmh5225/WatchDogKiller/description_en.txt b/description/gmh5225/WatchDogKiller/description_en.txt new file mode 100644 index 00000000..c16eb551 --- /dev/null +++ b/description/gmh5225/WatchDogKiller/description_en.txt @@ -0,0 +1,4 @@ +WatchDogKiller is a PoC for weaponizing the WatchDog Anti-Malware amsdk.sys or wamsdk.sys BYOVD flaw to terminate protected security products. +The program opens either \\.\amsdk or the guard device GUID, optionally bypasses authorization by first registering its own PID with IOCTL_REGISTER_PROCESS (0x80002010), and then submits IOCTL_TERMINATE_PROCESS (0x80002048) requests containing a PID and wait flag. +The README ties the technique to research on Silver Fox tradecraft and states that the tested WatchDog build was still absent from common vulnerable-driver and HVCI blocklists at the time of publication. +In practice the repository is a focused EDR and AV terminator PoC, not just a vague description of another signed driver issue. diff --git a/description/gmh5225/WeirdAntiCheatIdeas/description_en.txt b/description/gmh5225/WeirdAntiCheatIdeas/description_en.txt new file mode 100644 index 00000000..ffef97a2 --- /dev/null +++ b/description/gmh5225/WeirdAntiCheatIdeas/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / guide and centers on weird anti cheat ideas. +It centers on anti-cheat research, networking, and modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / guide area. diff --git a/description/gmh5225/Win-Driver-EXP/description_en.txt b/description/gmh5225/Win-Driver-EXP/description_en.txt new file mode 100644 index 00000000..aabc8f74 --- /dev/null +++ b/description/gmh5225/Win-Driver-EXP/description_en.txt @@ -0,0 +1 @@ +This project is a collection of Windows driver exploits targeting various vulnerable signed drivers for kernel-level access. It provides exploit code for multiple vulnerable drivers, demonstrating arbitrary kernel read/write, code execution, and process manipulation through their insecure IOCTL interfaces. It is aimed at BYOVD researchers and red team operators studying the landscape of exploitable Windows kernel drivers. diff --git a/description/gmh5225/WinAPI_MapleStory/description_en.txt b/description/gmh5225/WinAPI_MapleStory/description_en.txt new file mode 100644 index 00000000..28278237 --- /dev/null +++ b/description/gmh5225/WinAPI_MapleStory/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on winAPI MapleStory. +It is primarily written in C++ and C/C++ and centers on rendering, animation, and asset pipelines. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/gmh5225/WindowProtect/description_en.txt b/description/gmh5225/WindowProtect/description_en.txt new file mode 100644 index 00000000..8bcdf706 --- /dev/null +++ b/description/gmh5225/WindowProtect/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hide Window. +It is primarily written in C/C++ and C++ and centers on driver development, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hide area. diff --git a/description/gmh5225/Windows-10-22H2-Vulnerable-driver-communication/description_en.txt b/description/gmh5225/Windows-10-22H2-Vulnerable-driver-communication/description_en.txt new file mode 100644 index 00000000..aed4b62e --- /dev/null +++ b/description/gmh5225/Windows-10-22H2-Vulnerable-driver-communication/description_en.txt @@ -0,0 +1,4 @@ +This project is a user-mode wrapper around asromgdrv.sys that demonstrates using a still-loadable vulnerable driver on Windows 10 22H2 and Windows 11 for kernel-side services. +The archived README highlights contiguous kernel memory allocation and control-register read-write as the main exposed primitives, and the communication layer opens \\.\AsrOmgDrv and drives the vendor IOCTLs directly through DeviceIoControl. +Its communication.cpp implements helpers for allocating and freeing contiguous memory plus reading and writing control registers, so the repository is essentially a concise reversed interface for a vulnerable signed driver. +It is mainly useful for Windows kernel researchers studying BYOVD communication, control-register abuse, and how small reversed IOCTL wrappers can become the foundation for more advanced kernel tooling. diff --git a/description/gmh5225/Wizard-Loader/description_en.txt b/description/gmh5225/Wizard-Loader/description_en.txt new file mode 100644 index 00000000..72d138cc --- /dev/null +++ b/description/gmh5225/Wizard-Loader/description_en.txt @@ -0,0 +1 @@ +This project is a Windows PE loader/injector that implements manual mapping of DLLs into target processes with various anti-detection features. It handles PE section mapping, import resolution, relocation fixups, TLS callbacks, and exception handler registration while implementing measures to avoid detection by anti-cheat systems such as PE header erasure and thread hiding. It is aimed at kernel and game security researchers studying advanced DLL loading and injection detection evasion. diff --git a/description/gmh5225/WzComparerR2/description_en.txt b/description/gmh5225/WzComparerR2/description_en.txt new file mode 100644 index 00000000..72c1638e --- /dev/null +++ b/description/gmh5225/WzComparerR2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on maplestory online Extractor. +It is primarily written in C# and Lua and centers on rendering, graphics, and networking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:maplestory area. diff --git a/description/gmh5225/X64DBG-MapLdr/description_en.txt b/description/gmh5225/X64DBG-MapLdr/description_en.txt new file mode 100644 index 00000000..681ab49f --- /dev/null +++ b/description/gmh5225/X64DBG-MapLdr/description_en.txt @@ -0,0 +1 @@ +This project is an x64dbg plugin that loads MAP files (linker map output) to apply symbol names and addresses to the debugged binary. It parses MAP files generated by MSVC, Borland, or other linkers and imports function names, global variable names, and segment information into x64dbg's symbol database. The C++ plugin bridges compile-time symbol information with runtime debugging. It is aimed at reverse engineers using x64dbg who have access to MAP files for the target binary. diff --git a/description/gmh5225/X64DBG-ViewDllNotification/description_en.txt b/description/gmh5225/X64DBG-ViewDllNotification/description_en.txt new file mode 100644 index 00000000..1c26ef59 --- /dev/null +++ b/description/gmh5225/X64DBG-ViewDllNotification/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / x64dbg plugins and centers on x64 dbg view dll notification. +It is primarily written in C++ and C/C++ and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/gmh5225/XignCode-Dump/description_en.txt b/description/gmh5225/XignCode-Dump/description_en.txt new file mode 100644 index 00000000..1f39a45b --- /dev/null +++ b/description/gmh5225/XignCode-Dump/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / explore anticheat system:xigncode and centers on xign code dump. +It centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:xigncode area. diff --git a/description/gmh5225/XignCode3-bypass-alternative/description_en.txt b/description/gmh5225/XignCode3-bypass-alternative/description_en.txt new file mode 100644 index 00000000..71ff3937 --- /dev/null +++ b/description/gmh5225/XignCode3-bypass-alternative/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / explore anticheat system:xigncode and centers on xign code3 bypass alternative. +It is primarily written in C++ and centers on hooking and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:xigncode area. diff --git a/description/gmh5225/XignCode3-bypass/description_en.txt b/description/gmh5225/XignCode3-bypass/description_en.txt new file mode 100644 index 00000000..a396c5df --- /dev/null +++ b/description/gmh5225/XignCode3-bypass/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / explore anticheat system:xigncode and centers on xign code3 bypass. +It is primarily written in C++ and centers on hooking and emulation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:xigncode area. diff --git a/description/gmh5225/YaeAchievement/description_en.txt b/description/gmh5225/YaeAchievement/description_en.txt new file mode 100644 index 00000000..635c09f3 --- /dev/null +++ b/description/gmh5225/YaeAchievement/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:genshin impact and centers on yae achievement. +It is primarily written in C# and C/C++ and centers on modding, Unity, and IL2CPP analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:genshin impact area. diff --git a/description/gmh5225/ZeroGui-Fortnite-Internal/description_en.txt b/description/gmh5225/ZeroGui-Fortnite-Internal/description_en.txt new file mode 100644 index 00000000..a559aba8 --- /dev/null +++ b/description/gmh5225/ZeroGui-Fortnite-Internal/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +All that is currently enabled is visuals as seen in the image.png file inside the repository, there is aimbot and exploits etc but they are disabled. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/gmh5225/ZeroHVCI/description_en.txt b/description/gmh5225/ZeroHVCI/description_en.txt new file mode 100644 index 00000000..107eb5a1 --- /dev/null +++ b/description/gmh5225/ZeroHVCI/description_en.txt @@ -0,0 +1 @@ +This project is a proof of concept for bypassing Windows HVCI (Hypervisor-Protected Code Integrity) to execute unsigned kernel code. HVCI normally prevents loading unsigned drivers by using Hyper-V to enforce code integrity at the hypervisor level. This tool demonstrates techniques to circumvent HVCI protection, such as exploiting edge cases in the HVCI policy or leveraging vulnerable signed drivers. It is aimed at kernel security researchers studying HVCI bypass methods and Windows virtualization-based security limitations. diff --git a/description/gmh5225/alt-V-Anticheat-Guide/description_en.txt b/description/gmh5225/alt-V-Anticheat-Guide/description_en.txt new file mode 100644 index 00000000..83642822 --- /dev/null +++ b/description/gmh5225/alt-V-Anticheat-Guide/description_en.txt @@ -0,0 +1 @@ +This project is a guide for implementing anti-cheat protection in alt:V Multiplayer, a GTA V multiplayer modification framework. It documents techniques for detecting cheats, validating client integrity, monitoring player behavior, and securing server-side game logic in alt:V servers. It is aimed at alt:V server developers implementing anti-cheat measures for their GTA V multiplayer communities. diff --git a/description/gmh5225/amd-ryzen-master-driver-v17-exploit/description_en.txt b/description/gmh5225/amd-ryzen-master-driver-v17-exploit/description_en.txt new file mode 100644 index 00000000..a9e133cd --- /dev/null +++ b/description/gmh5225/amd-ryzen-master-driver-v17-exploit/description_en.txt @@ -0,0 +1 @@ +This project exploits a vulnerability in AMD Ryzen Master's kernel driver (v17) for arbitrary physical memory read/write on Windows. The AMD driver's IOCTL interface allows unprivileged access to physical memory, providing a BYOVD primitive for kernel exploitation, driver mapping, or anti-cheat bypass. It is aimed at BYOVD researchers studying AMD driver vulnerabilities for kernel access. diff --git a/description/gmh5225/ampa.sys-exp/description_en.txt b/description/gmh5225/ampa.sys-exp/description_en.txt new file mode 100644 index 00000000..c10234ba --- /dev/null +++ b/description/gmh5225/ampa.sys-exp/description_en.txt @@ -0,0 +1 @@ +This project is an exploit for the ampa.sys vulnerable Windows kernel driver. It demonstrates how the driver's insecure IOCTL interface can be abused to gain arbitrary kernel read/write or code execution, enabling unsigned driver loading, process privilege escalation, or anti-cheat bypass. The C/C++ exploit automates the vulnerability trigger. It is aimed at BYOVD researchers studying vulnerable driver exploitation for kernel-level access. diff --git a/description/gmh5225/android-kernel-driver-template/description_en.txt b/description/gmh5225/android-kernel-driver-template/description_en.txt new file mode 100644 index 00000000..7e7be97d --- /dev/null +++ b/description/gmh5225/android-kernel-driver-template/description_en.txt @@ -0,0 +1,3 @@ +This project is a GKI Android kernel driver(AArch64) template. +A product kernel, also known as a device kernel or OEM kernel, is the kernel that you ship on your device. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel driver development area. diff --git a/description/gmh5225/android_ebpf/description_en.txt b/description/gmh5225/android_ebpf/description_en.txt new file mode 100644 index 00000000..93f4169c --- /dev/null +++ b/description/gmh5225/android_ebpf/description_en.txt @@ -0,0 +1 @@ +This project demonstrates eBPF (extended Berkeley Packet Filter) usage on Android for kernel-level tracing and monitoring. It provides examples of writing and loading eBPF programs on Android devices for tracing system calls, monitoring network traffic, tracking process activity, and collecting kernel-level performance data. It is aimed at Android kernel developers and security researchers using eBPF for runtime system analysis on Android. diff --git a/description/gmh5225/android_kernel_huawei_hi6250-8_Exp/description_en.txt b/description/gmh5225/android_kernel_huawei_hi6250-8_Exp/description_en.txt new file mode 100644 index 00000000..a031a3b6 --- /dev/null +++ b/description/gmh5225/android_kernel_huawei_hi6250-8_Exp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on kernelSU for huawei. +It centers on kernel-level work. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / android area. diff --git a/description/gmh5225/android_touch/description_en.txt b/description/gmh5225/android_touch/description_en.txt new file mode 100644 index 00000000..ff376a06 --- /dev/null +++ b/description/gmh5225/android_touch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on for Android. +It is primarily written in C and C/C++ and centers on driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/gmh5225/anti-cheat/description_en.txt b/description/gmh5225/anti-cheat/description_en.txt new file mode 100644 index 00000000..9a6637de --- /dev/null +++ b/description/gmh5225/anti-cheat/description_en.txt @@ -0,0 +1 @@ +This project is an anti-cheat system implementation providing game protection features including memory scanning, code integrity verification, process monitoring, debugger detection, and network packet validation. It demonstrates a complete anti-cheat pipeline from detection to response. It is aimed at game security developers building anti-cheat solutions and researchers studying protection system design patterns. diff --git a/description/gmh5225/antidbg-Baka/description_en.txt b/description/gmh5225/antidbg-Baka/description_en.txt new file mode 100644 index 00000000..eaf9f53f --- /dev/null +++ b/description/gmh5225/antidbg-Baka/description_en.txt @@ -0,0 +1 @@ +This project is Baka, a Windows anti-debugging library that implements multiple debugger detection techniques. It checks for debugger presence through PEB flags, NtQueryInformationProcess calls, hardware breakpoint detection, timing checks, exception-based detection, and parent process validation. The C/C++ library provides a collection of anti-debug primitives that can be integrated into applications. It is aimed at software protection developers and security researchers studying anti-debugging techniques and their bypass methods. diff --git a/description/gmh5225/apex_legends_sdk/description_en.txt b/description/gmh5225/apex_legends_sdk/description_en.txt new file mode 100644 index 00000000..b9cecd12 --- /dev/null +++ b/description/gmh5225/apex_legends_sdk/description_en.txt @@ -0,0 +1,3 @@ +This project provides apex legends sdk. +It is primarily written in C++ and centers on rendering and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/gmh5225/augur-riot/description_en.txt b/description/gmh5225/augur-riot/description_en.txt new file mode 100644 index 00000000..487732ea --- /dev/null +++ b/description/gmh5225/augur-riot/description_en.txt @@ -0,0 +1 @@ +This project is a research tool for analyzing Riot Games' Vanguard anti-cheat system. It documents Vanguard's kernel driver behavior, detection mechanisms, and system-level protections through reverse engineering analysis. The tool may include utilities for monitoring Vanguard's driver activity, enumerating its callbacks, or logging its kernel operations. It is aimed at anti-cheat researchers studying Vanguard's kernel-level protection architecture and detection methodology. diff --git a/description/gmh5225/autismware/description_en.txt b/description/gmh5225/autismware/description_en.txt new file mode 100644 index 00000000..b608464c --- /dev/null +++ b/description/gmh5225/autismware/description_en.txt @@ -0,0 +1 @@ +This project is a CS:GO internal cheat written in C++ providing ESP, aimbot, backtrack, skin changer, and miscellaneous gameplay modifications. It hooks into the Source engine through interface capture and VMT hooking, with an ImGui-based configuration menu. The codebase follows standard CS:GO internal cheat patterns. It is aimed at game security researchers studying Source engine cheat feature implementation. diff --git a/description/gmh5225/avhook/description_en.txt b/description/gmh5225/avhook/description_en.txt new file mode 100644 index 00000000..ae435397 --- /dev/null +++ b/description/gmh5225/avhook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on aVhook AVhook is a training software designed for Counter-Strike: Global Offensive for Windows. +AVhook includes some joke features like. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/gmh5225/awesome-executable-packing/description_en.txt b/description/gmh5225/awesome-executable-packing/description_en.txt new file mode 100644 index 00000000..1889925d --- /dev/null +++ b/description/gmh5225/awesome-executable-packing/description_en.txt @@ -0,0 +1 @@ +This project is an awesome-list style curated collection of resources about executable packing, unpacking, and binary protection. It catalogs packers, protectors, unpackers, analysis tools, research papers, and tutorials covering PE, ELF, and Mach-O binary protection techniques. It is aimed at malware analysts, reverse engineers, and software protection researchers exploring the executable packing landscape. diff --git a/description/gmh5225/ayaya-league-external/description_en.txt b/description/gmh5225/ayaya-league-external/description_en.txt new file mode 100644 index 00000000..09a5c468 --- /dev/null +++ b/description/gmh5225/ayaya-league-external/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on nodejs based scripting platform. +AyayaLeague is an external script platform written in nodejs that supports custom user scripts. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:lol area. diff --git a/description/gmh5225/ayypex/description_en.txt b/description/gmh5225/ayypex/description_en.txt new file mode 100644 index 00000000..f7560209 --- /dev/null +++ b/description/gmh5225/ayypex/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linux. +It is internal, using a Vulkan layer to render directly on the game's window, like how MangoHud does it. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/gmh5225/be_shellcode_dump/description_en.txt b/description/gmh5225/be_shellcode_dump/description_en.txt new file mode 100644 index 00000000..707f7305 --- /dev/null +++ b/description/gmh5225/be_shellcode_dump/description_en.txt @@ -0,0 +1 @@ +This project is a tool for dumping BattlEye's runtime shellcode scanning modules from protected game processes. It intercepts the shellcode payloads that BattlEye streams and executes within game processes for cheat detection, saving them for offline reverse engineering analysis. The dumped modules reveal BattlEye's detection signatures and scanning logic. It is aimed at anti-cheat researchers reverse engineering BattlEye's detection methodology. diff --git a/description/gmh5225/bedaisy-bypass/description_en.txt b/description/gmh5225/bedaisy-bypass/description_en.txt new file mode 100644 index 00000000..aa8a3ab7 --- /dev/null +++ b/description/gmh5225/bedaisy-bypass/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on bEDaisy.sys report bypass. +This ensures that no reports are sent back to the service, while still allowing for a response to be transmitted. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:be area. diff --git a/description/gmh5225/binsync/description_en.txt b/description/gmh5225/binsync/description_en.txt new file mode 100644 index 00000000..d3f94e79 --- /dev/null +++ b/description/gmh5225/binsync/description_en.txt @@ -0,0 +1 @@ +This project is BinSync, a collaborative reverse engineering platform that synchronizes analysis data (function names, comments, types, structs) across multiple users and disassemblers. It supports IDA Pro, Ghidra, Binary Ninja, and angr, storing shared analysis in a Git repository. Team members can push and pull annotations, merge analysis contributions, and track change history. It is aimed at reverse engineering teams collaborating on large binary analysis projects across different tools. diff --git a/description/gmh5225/blood-hunt/description_en.txt b/description/gmh5225/blood-hunt/description_en.txt new file mode 100644 index 00000000..da298ad7 --- /dev/null +++ b/description/gmh5225/blood-hunt/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:bloodhunt and centers on blood hunt. +It is primarily written in C++ and C/C++ and centers on driver development, rendering, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:bloodhunt area. diff --git a/description/gmh5225/bootlicker/description_en.txt b/description/gmh5225/bootlicker/description_en.txt new file mode 100644 index 00000000..f4c856ae --- /dev/null +++ b/description/gmh5225/bootlicker/description_en.txt @@ -0,0 +1 @@ +This project is bootlicker, a UEFI bootkit proof of concept that loads malicious code during the Windows boot process before the OS kernel initializes. It patches the Windows Boot Manager or OS loader to inject kernel-mode code that executes with full system privileges, bypassing DSE, PatchGuard, and all OS-level security measures. It is aimed at boot security researchers studying UEFI bootkit techniques and Secure Boot bypass. diff --git a/description/gmh5225/byfron-bypass/description_en.txt b/description/gmh5225/byfron-bypass/description_en.txt new file mode 100644 index 00000000..673fd004 --- /dev/null +++ b/description/gmh5225/byfron-bypass/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / explore anticheat system:byfron and centers on byfron bypass. +It is primarily written in C++ and centers on asset pipelines and editor tooling. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:byfron area. diff --git a/description/gmh5225/bytecode-viewer/description_en.txt b/description/gmh5225/bytecode-viewer/description_en.txt new file mode 100644 index 00000000..1e37e497 --- /dev/null +++ b/description/gmh5225/bytecode-viewer/description_en.txt @@ -0,0 +1 @@ +This project is Bytecode Viewer, a Java/Android APK reverse engineering suite that integrates multiple decompilers (CFR, Procyon, FernFlower, JD-GUI, Krakatau) into a single tabbed interface. It supports viewing Java bytecode, decompiled source, and Smali simultaneously for JAR, class, DEX, and APK files. The tool includes search, string extraction, and plugin support. It is aimed at Java and Android reverse engineers who want to compare decompiler outputs and analyze bytecode in a unified environment. diff --git a/description/gmh5225/cartmanv2/description_en.txt b/description/gmh5225/cartmanv2/description_en.txt new file mode 100644 index 00000000..ddab70d5 --- /dev/null +++ b/description/gmh5225/cartmanv2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +It is primarily written in C/C++ and C++ and centers on rendering, networking, and editor tooling. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/gmh5225/ce-EasyAntiCheat-Bypass/description_en.txt b/description/gmh5225/ce-EasyAntiCheat-Bypass/description_en.txt new file mode 100644 index 00000000..64e30201 --- /dev/null +++ b/description/gmh5225/ce-EasyAntiCheat-Bypass/description_en.txt @@ -0,0 +1 @@ +This project is a Cheat Engine bypass for EasyAntiCheat that enables using Cheat Engine on EAC-protected games. It patches or circumvents EAC's detection of Cheat Engine's process, window class, driver, and memory access patterns to allow memory scanning and editing. It is aimed at game security researchers studying EAC's tool detection mechanisms and bypass techniques. diff --git a/description/gmh5225/cerberus/description_en.txt b/description/gmh5225/cerberus/description_en.txt new file mode 100644 index 00000000..5782c965 --- /dev/null +++ b/description/gmh5225/cerberus/description_en.txt @@ -0,0 +1 @@ +This project is a Win32 VM-based code protection engine built around a custom x86 virtual machine called ChaosVm. It translates native x86 instructions into proprietary bytecode and executes them through a software CPU emulator, providing code virtualization for PE binaries. The C codebase includes a full x86 disassembler and assembler, a binary analyzer for procedure and instruction flow recovery, PE file parsing and patching, CRC32 integrity checking, and a Qt-based GUI frontend for applying protection. It is aimed at software protection researchers studying VM-based obfuscation engines and code virtualization techniques. diff --git a/description/gmh5225/ceserver-ios/description_en.txt b/description/gmh5225/ceserver-ios/description_en.txt new file mode 100644 index 00000000..a91b7cd2 --- /dev/null +++ b/description/gmh5225/ceserver-ios/description_en.txt @@ -0,0 +1 @@ +This project is a Cheat Engine server (ceserver) implementation for iOS that enables remote memory scanning from a desktop Cheat Engine client. It runs on jailbroken iOS devices and exposes process memory through the ceserver network protocol, allowing memory search, value editing, and pointer scanning on iOS game processes from a PC. It is aimed at iOS game security researchers using Cheat Engine for mobile game analysis. diff --git a/description/gmh5225/cfclap/description_en.txt b/description/gmh5225/cfclap/description_en.txt new file mode 100644 index 00000000..86b69c90 --- /dev/null +++ b/description/gmh5225/cfclap/description_en.txt @@ -0,0 +1 @@ +This project is a cheat or tool for CrossFire (CF), a popular FPS game. It provides gameplay modification features such as ESP, aimbot, or other combat advantages through memory manipulation of the CrossFire game client. It is aimed at game security researchers studying CrossFire's client-side protection and cheat detection mechanisms. diff --git a/description/gmh5225/chainoffools/description_en.txt b/description/gmh5225/chainoffools/description_en.txt new file mode 100644 index 00000000..56ecd3c8 --- /dev/null +++ b/description/gmh5225/chainoffools/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cVE. +It is primarily written in Python. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / sign tools area. diff --git a/description/gmh5225/cheap-engine/description_en.txt b/description/gmh5225/cheap-engine/description_en.txt new file mode 100644 index 00000000..b1f04ad8 --- /dev/null +++ b/description/gmh5225/cheap-engine/description_en.txt @@ -0,0 +1 @@ +This project is Cheap Engine, a lightweight game cheat engine or memory scanner similar to Cheat Engine but with a simplified feature set. It provides process memory scanning, value searching (exact, range, changed/unchanged), memory editing, and pointer scanning capabilities. The tool serves as a simpler alternative to Cheat Engine for basic game memory modification. It is aimed at game hacking beginners and researchers studying memory scanner implementations. diff --git a/description/gmh5225/cheat-attack-thread-slemu/description_en.txt b/description/gmh5225/cheat-attack-thread-slemu/description_en.txt new file mode 100644 index 00000000..57c1aa7c --- /dev/null +++ b/description/gmh5225/cheat-attack-thread-slemu/description_en.txt @@ -0,0 +1 @@ +This project demonstrates a thread-based attack technique for cheat execution that uses sleep emulation or thread state manipulation to evade anti-cheat thread scanning. It modifies thread context or scheduling state to hide cheat threads from enumeration by anti-cheat systems that scan for suspicious system threads. It is aimed at kernel researchers studying stealthy thread execution and anti-cheat thread detection bypass. diff --git a/description/gmh5225/cheat-engine-ceserver-pcileech/description_en.txt b/description/gmh5225/cheat-engine-ceserver-pcileech/description_en.txt new file mode 100644 index 00000000..693ba2f4 --- /dev/null +++ b/description/gmh5225/cheat-engine-ceserver-pcileech/description_en.txt @@ -0,0 +1 @@ +This project is a Cheat Engine server (ceserver) that uses PCILeech for DMA-based memory access. It implements the ceserver protocol over a PCILeech/LeechCore backend, allowing Cheat Engine to scan and edit process memory through DMA hardware on a separate machine. This makes the memory access completely invisible to the target system's anti-cheat. It is aimed at DMA security researchers using Cheat Engine through PCILeech hardware. diff --git a/description/gmh5225/compiler-binary-richprint/description_en.txt b/description/gmh5225/compiler-binary-richprint/description_en.txt new file mode 100644 index 00000000..73f97250 --- /dev/null +++ b/description/gmh5225/compiler-binary-richprint/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on print compiler information stored in Rich Header of PE executable. +The data is located between old MZ header stub (also called DOS stub) and PE header. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/gmh5225/cs16-trigger-kvm/description_en.txt b/description/gmh5225/cs16-trigger-kvm/description_en.txt new file mode 100644 index 00000000..b37ec585 --- /dev/null +++ b/description/gmh5225/cs16-trigger-kvm/description_en.txt @@ -0,0 +1 @@ +This project is a CS 1.6 triggerbot that operates from a KVM/QEMU host, reading game memory through KVM's guest memory access APIs. It detects when the crosshair is over an enemy and automatically fires by injecting input events. The KVM-based approach makes the cheat invisible to anti-cheat running inside the guest VM. It is aimed at game security researchers studying KVM/hypervisor-based cheat architectures. diff --git a/description/gmh5225/cs2-fov-changer/description_en.txt b/description/gmh5225/cs2-fov-changer/description_en.txt new file mode 100644 index 00000000..0d7be26e --- /dev/null +++ b/description/gmh5225/cs2-fov-changer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fOV changer. +It is primarily written in C/C++ and C++ and centers on asset pipelines, hooking, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/gmh5225/cs2-sdk/description_en.txt b/description/gmh5225/cs2-sdk/description_en.txt new file mode 100644 index 00000000..7656c6a5 --- /dev/null +++ b/description/gmh5225/cs2-sdk/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK. +This SDK has been written as simplified as possible and kept as close as possible to Source 2 code supporting both DirectX11 and Vulkan graphical APIs. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/gmh5225/cs2_sdk/description_en.txt b/description/gmh5225/cs2_sdk/description_en.txt new file mode 100644 index 00000000..7e67fb79 --- /dev/null +++ b/description/gmh5225/cs2_sdk/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK. +It is primarily written in C/C++ and C++ and centers on driver development, rendering, and networking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/gmh5225/cs2_things/description_en.txt b/description/gmh5225/cs2_things/description_en.txt new file mode 100644 index 00000000..57180893 --- /dev/null +++ b/description/gmh5225/cs2_things/description_en.txt @@ -0,0 +1 @@ +This project is a collection of Counter-Strike 2 research materials including reverse-engineered structures, offset dumps, SDK snippets, and analysis notes for the Source 2 engine as used in CS2. It documents entity system layouts, netvar structures, and engine interface pointers discovered through reverse engineering. It is aimed at CS2 cheat developers and Source 2 engine researchers. diff --git a/description/gmh5225/cs2_webradar/description_en.txt b/description/gmh5225/cs2_webradar/description_en.txt new file mode 100644 index 00000000..41288012 --- /dev/null +++ b/description/gmh5225/cs2_webradar/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on browser based radar cheat. +It is primarily written in C++ and JavaScript and centers on asset pipelines, modding, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/gmh5225/csgo-offsets/description_en.txt b/description/gmh5225/csgo-offsets/description_en.txt new file mode 100644 index 00000000..d6923e69 --- /dev/null +++ b/description/gmh5225/csgo-offsets/description_en.txt @@ -0,0 +1 @@ +This project is a regularly updated collection of CS:GO memory offsets including netvar dumps, interface pointers, and signature patterns. It provides the memory addresses needed for cheat development, updated after each CS:GO patch. The data includes entity field offsets, weapon data addresses, and engine global pointers. It is aimed at CS:GO cheat developers and game security researchers tracking client binary changes. diff --git a/description/gmh5225/csgo-sdk-improved/description_en.txt b/description/gmh5225/csgo-sdk-improved/description_en.txt new file mode 100644 index 00000000..a29c79e1 --- /dev/null +++ b/description/gmh5225/csgo-sdk-improved/description_en.txt @@ -0,0 +1 @@ +This project is an improved CS:GO Source engine SDK with corrected class definitions, additional interface declarations, and more complete netvar coverage compared to standard leaked SDKs. It provides refined C++ headers for CS:GO's client/engine/server interfaces, entity system, and rendering structures. It is aimed at CS:GO cheat developers and Source engine researchers needing an accurate and comprehensive SDK. diff --git a/description/gmh5225/csgo-sdk/description_en.txt b/description/gmh5225/csgo-sdk/description_en.txt new file mode 100644 index 00000000..e2b8ba25 --- /dev/null +++ b/description/gmh5225/csgo-sdk/description_en.txt @@ -0,0 +1 @@ +This project is a CS:GO Source engine SDK containing reverse-engineered class definitions, interface declarations, netvar structures, and function signatures. The C++ headers provide the foundational type system for building CS:GO cheats, including entity classes, weapon data, player info structures, and engine interface pointers. It is aimed at CS:GO cheat developers and Source engine researchers. diff --git a/description/gmh5225/csgo2-cheat/description_en.txt b/description/gmh5225/csgo2-cheat/description_en.txt new file mode 100644 index 00000000..31b493a4 --- /dev/null +++ b/description/gmh5225/csgo2-cheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +It is primarily written in C++ and C/C++ and centers on rendering, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/gmh5225/csgo_external_ahk_hack/description_en.txt b/description/gmh5225/csgo_external_ahk_hack/description_en.txt new file mode 100644 index 00000000..3172468b --- /dev/null +++ b/description/gmh5225/csgo_external_ahk_hack/description_en.txt @@ -0,0 +1 @@ +This project is a CS:GO external cheat written in AutoHotkey (AHK) that reads game memory externally to provide basic cheat features. It uses AHK's memory reading functions to access CS:GO's process memory for triggerbot, bunny hop, and basic ESP functionality. The scripting approach demonstrates low-barrier cheat development without compiled languages. It is aimed at game security researchers studying script-based external cheats and their detection characteristics. diff --git a/description/gmh5225/csgo_sdk/description_en.txt b/description/gmh5225/csgo_sdk/description_en.txt new file mode 100644 index 00000000..79972b44 --- /dev/null +++ b/description/gmh5225/csgo_sdk/description_en.txt @@ -0,0 +1,3 @@ +This project provides csgo sdk. +It is primarily written in C++ and C/C++ and centers on SDK generation and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/gmh5225/csso-src/description_en.txt b/description/gmh5225/csso-src/description_en.txt new file mode 100644 index 00000000..71ce9276 --- /dev/null +++ b/description/gmh5225/csso-src/description_en.txt @@ -0,0 +1 @@ +This project is source code or reverse-engineered materials from Counter-Strike: Source Offensive (CSSO) or a similar Source engine title. It contains client/server game logic, weapon mechanics, player movement, and engine interface code from the Source engine. The C++ codebase provides reference material for Source engine game internals. It is aimed at Source engine researchers and game security analysts studying engine architecture. diff --git a/description/gmh5225/custom-VEH/description_en.txt b/description/gmh5225/custom-VEH/description_en.txt new file mode 100644 index 00000000..e6eddee4 --- /dev/null +++ b/description/gmh5225/custom-VEH/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on register VEH by hooking RtlpCallVectoredHandlers. +This is a library allowing you to create custom vectored exception handlers that're faster than normal ones, and run before any vanilla handlers do. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / windows ring3 callback area. diff --git a/description/gmh5225/custom_data_ptr_swap_sample/description_en.txt b/description/gmh5225/custom_data_ptr_swap_sample/description_en.txt new file mode 100644 index 00000000..9176d2eb --- /dev/null +++ b/description/gmh5225/custom_data_ptr_swap_sample/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on ntQueryLicenseValue. +It is primarily written in C++ and centers on driver development and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/gmh5225/dbk64-vulnerability-driver/description_en.txt b/description/gmh5225/dbk64-vulnerability-driver/description_en.txt new file mode 100644 index 00000000..4bfd20e8 --- /dev/null +++ b/description/gmh5225/dbk64-vulnerability-driver/description_en.txt @@ -0,0 +1 @@ +This project documents or exploits Cheat Engine's dbk64.sys kernel driver vulnerabilities. The dbk64 driver, which ships with Cheat Engine for kernel-mode memory access, contains IOCTL interfaces that can be exploited for arbitrary kernel read/write, making it a BYOVD target. The tool demonstrates using dbk64 for kernel operations. It is aimed at BYOVD researchers studying vulnerabilities in debugging tool drivers. diff --git a/description/gmh5225/deobfuscator/description_en.txt b/description/gmh5225/deobfuscator/description_en.txt new file mode 100644 index 00000000..20d8b429 --- /dev/null +++ b/description/gmh5225/deobfuscator/description_en.txt @@ -0,0 +1 @@ +This project is a Java bytecode deobfuscator for reversing obfuscation applied by tools like ProGuard, Allatori, ZKM, and other Java obfuscators. It applies transformation passes to remove string encryption, restore control flow, simplify opaque predicates, rename obfuscated identifiers, and clean up dead code in Java class files. It is aimed at Java reverse engineers and malware analysts deobfuscating protected Java/Android applications. diff --git a/description/gmh5225/dolboeb-executor/description_en.txt b/description/gmh5225/dolboeb-executor/description_en.txt new file mode 100644 index 00000000..d90367af --- /dev/null +++ b/description/gmh5225/dolboeb-executor/description_en.txt @@ -0,0 +1 @@ +This project is a kernel-mode code executor that uses a vulnerable signed driver to execute arbitrary code in kernel space. It loads and exploits the vulnerable driver's IOCTL interface to run custom kernel shellcode or call arbitrary kernel functions from user mode. It is aimed at kernel exploitation researchers studying BYOVD-based kernel code execution techniques. diff --git a/description/gmh5225/dota-cheat/description_en.txt b/description/gmh5225/dota-cheat/description_en.txt new file mode 100644 index 00000000..52836029 --- /dev/null +++ b/description/gmh5225/dota-cheat/description_en.txt @@ -0,0 +1 @@ +This project is a Dota 2 cheat providing gameplay advantages through Source 2 engine interaction. It reads game entity data to display enemy positions, mana/health bars, spell cooldowns, and item information as an overlay, with additional features like auto-ability casting. The C++ cheat interacts with Dota 2's Source 2 SDK structures. It is aimed at game security researchers studying Dota 2 cheat implementations and Source 2 engine exploitation. diff --git a/description/gmh5225/dp701/description_en.txt b/description/gmh5225/dp701/description_en.txt new file mode 100644 index 00000000..6fe06ca2 --- /dev/null +++ b/description/gmh5225/dp701/description_en.txt @@ -0,0 +1 @@ +This project is dp701, an IDA Pro theme or color scheme providing a customized visual appearance for the IDA disassembly environment. It applies a distinct color palette to syntax highlighting, background colors, and UI elements for improved readability during reverse engineering sessions. It is aimed at IDA Pro users seeking alternative visual themes. diff --git a/description/gmh5225/ds4-tools/description_en.txt b/description/gmh5225/ds4-tools/description_en.txt new file mode 100644 index 00000000..127b76b6 --- /dev/null +++ b/description/gmh5225/ds4-tools/description_en.txt @@ -0,0 +1 @@ +This project provides tools for interfacing with PlayStation DualShock 4 (DS4) controllers on PC. It handles DS4 controller input reading, LED color control, touchpad data, motion sensor access, and rumble motor control through HID protocol communication. It is aimed at game developers and input device researchers working with DS4 controller features on PC platforms. diff --git a/description/gmh5225/dse_hook/description_en.txt b/description/gmh5225/dse_hook/description_en.txt new file mode 100644 index 00000000..0c74aef0 --- /dev/null +++ b/description/gmh5225/dse_hook/description_en.txt @@ -0,0 +1 @@ +This project demonstrates hooking Windows Driver Signature Enforcement (DSE) to allow loading unsigned kernel drivers. It patches CI.dll's signature verification function or the g_CiEnabled global variable to bypass code integrity checks that normally prevent unsigned driver loading. It is aimed at kernel researchers studying DSE bypass techniques. diff --git a/description/gmh5225/dumpwow/description_en.txt b/description/gmh5225/dumpwow/description_en.txt new file mode 100644 index 00000000..b508f55e --- /dev/null +++ b/description/gmh5225/dumpwow/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:wow and centers on dumpwow. +It is primarily written in C++ and Python. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:wow area. diff --git a/description/gmh5225/dwmhook/description_en.txt b/description/gmh5225/dwmhook/description_en.txt new file mode 100644 index 00000000..39d0eb6d --- /dev/null +++ b/description/gmh5225/dwmhook/description_en.txt @@ -0,0 +1 @@ +This project is a Windows Desktop Window Manager (DWM) hooking proof of concept that intercepts DWM's rendering pipeline to draw custom overlays. It hooks DWM composition functions to inject draw calls into the desktop compositor, rendering overlays that appear on top of any window without creating a separate overlay window. It is aimed at game security researchers studying DWM-based overlay rendering techniques. diff --git a/description/gmh5225/eac-bypass-1/description_en.txt b/description/gmh5225/eac-bypass-1/description_en.txt new file mode 100644 index 00000000..dab1f603 --- /dev/null +++ b/description/gmh5225/eac-bypass-1/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on ntMapVisualRelativePoints. +It is primarily written in C++ and centers on driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/gmh5225/echoac-poc/description_en.txt b/description/gmh5225/echoac-poc/description_en.txt new file mode 100644 index 00000000..64349f8e --- /dev/null +++ b/description/gmh5225/echoac-poc/description_en.txt @@ -0,0 +1,4 @@ +This project is a writeup-backed proof of concept for vulnerabilities in echo.ac's echo_driver.sys, with the bundled example focused on privilege escalation to NT AUTHORITY\SYSTEM. +The PoC uses the driver's read-memory IOCTL to leak PsInitialSystemProcess, walk ActiveProcessLinks, recover the SYSTEM token from EPROCESS, and then overwrite the token of a newly spawned cmd.exe process. +Its archive also keeps the surrounding context that echo.ac is a commercial screensharing tool used in competitive communities, so the repository doubles as a case study in how an anti-cheat-adjacent driver can become an exploitation surface. +It is mainly useful for Windows kernel researchers studying vulnerable-driver token theft, kernel read primitives, and real-world privilege escalation chains built on third-party anti-cheat software. diff --git a/description/gmh5225/efiXplorer/description_en.txt b/description/gmh5225/efiXplorer/description_en.txt new file mode 100644 index 00000000..45fe77f2 --- /dev/null +++ b/description/gmh5225/efiXplorer/description_en.txt @@ -0,0 +1 @@ +This project is efiXplorer, an IDA Pro plugin for automated analysis of UEFI firmware binaries. It identifies EFI protocols by GUID matching, annotates Boot Services and Runtime Services table calls, resolves protocol interface usage, and reconstructs PEI/DXE driver dependencies. The plugin significantly reduces manual effort in UEFI firmware reverse engineering. It is aimed at firmware security researchers analyzing UEFI BIOS implementations, bootkits, and EFI-level malware. diff --git a/description/gmh5225/eft-dma-radar-1/description_en.txt b/description/gmh5225/eft-dma-radar-1/description_en.txt new file mode 100644 index 00000000..4c386522 --- /dev/null +++ b/description/gmh5225/eft-dma-radar-1/description_en.txt @@ -0,0 +1 @@ +This project is a DMA-based radar cheat for Escape from Tarkov that reads game memory through PCILeech-compatible DMA hardware. It extracts player positions, loot locations, and map data from EFT's Unity game engine memory and displays them on a separate screen as a real-time radar overlay. The DMA approach makes the cheat invisible to BattlEye's process-level detection. It is aimed at game security researchers studying DMA-based cheat architectures for BattlEye-protected Unity games. diff --git a/description/gmh5225/eft-internal/description_en.txt b/description/gmh5225/eft-internal/description_en.txt new file mode 100644 index 00000000..679d3bd8 --- /dev/null +++ b/description/gmh5225/eft-internal/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:eft and centers on eft internal. +It is primarily written in C++ and C/C++ and centers on shader work, rendering, and asset pipelines. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:eft area. diff --git a/description/gmh5225/egui-d3d11/description_en.txt b/description/gmh5225/egui-d3d11/description_en.txt new file mode 100644 index 00000000..c4062fe2 --- /dev/null +++ b/description/gmh5225/egui-d3d11/description_en.txt @@ -0,0 +1,3 @@ +A Rust library that renders egui (an immediate-mode GUI framework) directly onto Direct3D 11 surfaces, designed for building in-game overlay menus by hooking the D3D11 Present call. +The library converts egui mesh output into D3D11 vertex/index buffers, compiles HLSL shaders for textured triangle rendering, manages texture uploads from egui's font atlas, and handles Win32 input translation (keyboard, mouse) to egui's input format, with state backup/restore to avoid corrupting the game's rendering pipeline. +It is mainly useful for game cheat developers and security researchers building or studying ImGui-style overlay menus injected into DirectX 11 games via Present hooks. diff --git a/description/gmh5225/ethersplay/description_en.txt b/description/gmh5225/ethersplay/description_en.txt new file mode 100644 index 00000000..978f7ca0 --- /dev/null +++ b/description/gmh5225/ethersplay/description_en.txt @@ -0,0 +1 @@ +This project is Ethersplay, a Binary Ninja plugin for disassembling Ethereum Virtual Machine (EVM) bytecode. It adds EVM instruction decoding, control flow graph generation, and cross-reference analysis for smart contract binaries within Binary Ninja. The plugin helps analyze compiled Solidity smart contracts. It is aimed at blockchain security auditors analyzing Ethereum smart contract bytecode. diff --git a/description/gmh5225/evil-mhyprot-cli/description_en.txt b/description/gmh5225/evil-mhyprot-cli/description_en.txt new file mode 100644 index 00000000..286e6d32 --- /dev/null +++ b/description/gmh5225/evil-mhyprot-cli/description_en.txt @@ -0,0 +1,4 @@ +This project is a command-line proof of concept for abusing the Genshin Impact mhyprot2.sys driver to perform kernel-privileged memory operations from user mode. +The archived README describes the bug as vulnerable IOCTL paths that expose MmCopyVirtualMemory and memcpy-like behavior, allowing arbitrary read and write of both kernel and user memory once the service is running. +The CLI finds a target process, initializes the vulnerable service and device in mhyprot::init, and then dispatches tests or utility operations through a small driver abstraction, making it a usable front end for experimenting with the issue rather than only a writeup. +It is mainly useful for Windows security researchers studying vulnerable anti-cheat drivers, ring3-to-ring0 memory primitives, and service-based BYOVD workflows. diff --git a/description/gmh5225/executor/description_en.txt b/description/gmh5225/executor/description_en.txt new file mode 100644 index 00000000..6c5a363b --- /dev/null +++ b/description/gmh5225/executor/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pTE.User. +It is primarily written in C++ and centers on kernel-level work, driver development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/gmh5225/external-esp-hack-assaultcube/description_en.txt b/description/gmh5225/external-esp-hack-assaultcube/description_en.txt new file mode 100644 index 00000000..31b6552a --- /dev/null +++ b/description/gmh5225/external-esp-hack-assaultcube/description_en.txt @@ -0,0 +1 @@ +This project is an external ESP hack for AssaultCube, a lightweight FPS game commonly used for learning game hacking. It reads player entity data from the game's memory externally and renders player boxes, names, and health information as an overlay. AssaultCube's simple memory layout makes it an ideal learning target for external ESP development. It is aimed at beginners learning external game hacking techniques. diff --git a/description/gmh5225/ezDrvBAK/description_en.txt b/description/gmh5225/ezDrvBAK/description_en.txt new file mode 100644 index 00000000..45938591 --- /dev/null +++ b/description/gmh5225/ezDrvBAK/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on backup & restrore the Windows-Drivers. +It centers on driver development. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / backup drivers area. diff --git a/description/gmh5225/findcrypt-yara/description_en.txt b/description/gmh5225/findcrypt-yara/description_en.txt new file mode 100644 index 00000000..cdfe0e98 --- /dev/null +++ b/description/gmh5225/findcrypt-yara/description_en.txt @@ -0,0 +1 @@ +This project is FindCrypt, an IDA Pro plugin that identifies cryptographic constants and algorithm implementations in disassembled binaries using YARA rules. It scans for known byte patterns of AES S-boxes, DES permutation tables, SHA hash constants, CRC lookup tables, and other crypto signatures, annotating identified locations with algorithm names. The Python plugin helps analysts quickly locate cryptographic code in binaries. It is aimed at malware analysts and reverse engineers identifying cryptographic implementations in unknown binaries. diff --git a/description/gmh5225/findyara-ida/description_en.txt b/description/gmh5225/findyara-ida/description_en.txt new file mode 100644 index 00000000..07878778 --- /dev/null +++ b/description/gmh5225/findyara-ida/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin that integrates YARA rule scanning into the disassembly workflow. It allows running YARA rules against the loaded binary directly from within IDA, highlighting matches in the disassembly view and providing navigation to matched locations. The plugin supports custom rule sets for identifying malware signatures, crypto constants, or packer patterns. It is aimed at malware analysts and reverse engineers using YARA-based detection within IDA Pro. diff --git a/description/gmh5225/fortnite-W2S-offset-Fortnite/description_en.txt b/description/gmh5225/fortnite-W2S-offset-Fortnite/description_en.txt new file mode 100644 index 00000000..07b2cd10 --- /dev/null +++ b/description/gmh5225/fortnite-W2S-offset-Fortnite/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on offset. +It is primarily written in C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/gmh5225/fortnite-exploits/description_en.txt b/description/gmh5225/fortnite-exploits/description_en.txt new file mode 100644 index 00000000..f9bbf5ec --- /dev/null +++ b/description/gmh5225/fortnite-exploits/description_en.txt @@ -0,0 +1 @@ +This project is a collection of Fortnite exploits and bypass techniques for the EAC (EasyAntiCheat) protection system. It documents known vulnerabilities in Fortnite's client, exploitable UE4 engine features, and methods for circumventing EAC detection for cheat injection or memory access. It is aimed at anti-cheat researchers studying Fortnite-specific exploit chains and EAC bypass techniques. diff --git a/description/gmh5225/fortnite-internal-updated-ritz/description_en.txt b/description/gmh5225/fortnite-internal-updated-ritz/description_en.txt new file mode 100644 index 00000000..35a2b71c --- /dev/null +++ b/description/gmh5225/fortnite-internal-updated-ritz/description_en.txt @@ -0,0 +1 @@ +This project is an updated internal Fortnite cheat based on the Ritz cheat source. It provides ESP, aimbot, exploits, and game manipulation features through internal UE4 engine hooking within the Fortnite game process. The C++ cheat has been updated for newer Fortnite versions with refreshed offsets and bypass techniques for EAC. It is aimed at game security researchers studying Fortnite internal cheat evolution and EAC bypass methods. diff --git a/description/gmh5225/fortnite-offsets/description_en.txt b/description/gmh5225/fortnite-offsets/description_en.txt new file mode 100644 index 00000000..0fae0151 --- /dev/null +++ b/description/gmh5225/fortnite-offsets/description_en.txt @@ -0,0 +1 @@ +This project is a collection of Fortnite memory offsets and UE4 SDK structure addresses updated for specific game versions. It provides offset tables for player entities, camera data, bone arrays, weapon information, and engine globals used in Fortnite cheat development. The data enables external and internal cheats to locate game objects in memory. It is aimed at game security researchers tracking Fortnite's memory layout changes and studying UE4 offset-based cheat patterns. diff --git a/description/gmh5225/fortnite-sigs/description_en.txt b/description/gmh5225/fortnite-sigs/description_en.txt new file mode 100644 index 00000000..9abfc59f --- /dev/null +++ b/description/gmh5225/fortnite-sigs/description_en.txt @@ -0,0 +1 @@ +This project is a collection of byte-pattern signatures for locating key functions and data structures in Fortnite's game binary. It provides IDA-style signature patterns for finding GObjects, GNames, ProcessEvent, player controller functions, and other critical engine entry points needed for cheat development. The signatures are updated for specific Fortnite versions. It is aimed at game security researchers tracking Fortnite binary changes and cheat developers maintaining offset accuracy. diff --git a/description/gmh5225/fortnite-triadz/description_en.txt b/description/gmh5225/fortnite-triadz/description_en.txt new file mode 100644 index 00000000..59203ae1 --- /dev/null +++ b/description/gmh5225/fortnite-triadz/description_en.txt @@ -0,0 +1 @@ +This project is Triadz, an internal Fortnite cheat providing ESP, aimbot, and exploitation features through UE4 engine hooking. It operates inside the Fortnite process with full access to game objects and rendering, demonstrating internal cheat architecture for EAC-protected UE4 games. It is aimed at game security researchers studying Fortnite internal cheat patterns and EAC detection surfaces. diff --git a/description/gmh5225/fortnite-virtual-offsets/description_en.txt b/description/gmh5225/fortnite-virtual-offsets/description_en.txt new file mode 100644 index 00000000..f7250294 --- /dev/null +++ b/description/gmh5225/fortnite-virtual-offsets/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on virtual Table Offsets. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/gmh5225/frank/description_en.txt b/description/gmh5225/frank/description_en.txt new file mode 100644 index 00000000..4aac6440 --- /dev/null +++ b/description/gmh5225/frank/description_en.txt @@ -0,0 +1,3 @@ +This project is a bran-new League of Legends assistant software, a replacement for WeGame. +It is primarily written in JavaScript and centers on rendering, animation, and asset pipelines. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:lol area. diff --git a/description/gmh5225/freedom/description_en.txt b/description/gmh5225/freedom/description_en.txt new file mode 100644 index 00000000..d1a3b3c1 --- /dev/null +++ b/description/gmh5225/freedom/description_en.txt @@ -0,0 +1 @@ +This project is Freedom, an Android tool for bypassing in-app purchase verification in mobile games. It intercepts Google Play billing API calls and returns fake purchase confirmation responses, allowing users to obtain premium items and currency without payment. It operates through hooking the billing service interface. It is aimed at mobile security researchers studying in-app purchase security and billing API abuse on Android. diff --git a/description/gmh5225/frida-boot/description_en.txt b/description/gmh5225/frida-boot/description_en.txt new file mode 100644 index 00000000..51d816aa --- /dev/null +++ b/description/gmh5225/frida-boot/description_en.txt @@ -0,0 +1,3 @@ +This project is a binary instrumentation workshop, with Frida, for beginners. +This workshop was streamed on YouTube here. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/gmh5225/frida-ceserver/description_en.txt b/description/gmh5225/frida-ceserver/description_en.txt new file mode 100644 index 00000000..931cd9b2 --- /dev/null +++ b/description/gmh5225/frida-ceserver/description_en.txt @@ -0,0 +1 @@ +This project is a Cheat Engine server implemented through Frida instrumentation. It uses Frida to read and write process memory on mobile and desktop platforms, exposing the ceserver network protocol so that a desktop Cheat Engine client can connect and scan memory remotely. This approach works on non-rooted Android devices where Frida can attach. It is aimed at mobile game security researchers using Cheat Engine through Frida's cross-platform instrumentation. diff --git a/description/gmh5225/frida-il2cpp-datacollector/description_en.txt b/description/gmh5225/frida-il2cpp-datacollector/description_en.txt new file mode 100644 index 00000000..dafd908f --- /dev/null +++ b/description/gmh5225/frida-il2cpp-datacollector/description_en.txt @@ -0,0 +1 @@ +This project is a Frida script for collecting IL2CPP runtime data from Unity games. It hooks into the IL2CPP runtime to enumerate classes, dump method signatures, extract field offsets, and collect type metadata at runtime through Frida instrumentation. The collected data aids in building SDKs for IL2CPP game hacking. It is aimed at mobile game reverse engineers using Frida for IL2CPP Unity game analysis. diff --git a/description/gmh5225/frida-ue4dump/description_en.txt b/description/gmh5225/frida-ue4dump/description_en.txt new file mode 100644 index 00000000..f659254c --- /dev/null +++ b/description/gmh5225/frida-ue4dump/description_en.txt @@ -0,0 +1 @@ +This project is a Frida script for dumping Unreal Engine 4 SDK information from running Android games. It hooks into UE4's reflection system through Frida instrumentation to enumerate UObject classes, extract property offsets, dump function signatures, and generate SDK headers from mobile UE4 games at runtime. It is aimed at mobile game reverse engineers dumping UE4 SDKs from Android games using Frida-based instrumentation. diff --git a/description/gmh5225/frinet/description_en.txt b/description/gmh5225/frinet/description_en.txt new file mode 100644 index 00000000..5bc60e43 --- /dev/null +++ b/description/gmh5225/frinet/description_en.txt @@ -0,0 +1 @@ +This project is Frinet, an IDA Pro plugin that bridges Frida dynamic instrumentation with IDA's static analysis. It allows running Frida scripts on a target process while navigating the corresponding code in IDA, synchronizing runtime information like memory values, function arguments, and return values back into IDA's analysis view. It is aimed at reverse engineers combining Frida's dynamic analysis with IDA's static analysis capabilities. diff --git a/description/gmh5225/gd-internal/description_en.txt b/description/gmh5225/gd-internal/description_en.txt new file mode 100644 index 00000000..35598d2e --- /dev/null +++ b/description/gmh5225/gd-internal/description_en.txt @@ -0,0 +1,3 @@ +This project is the font used in the "custom" ImGui is Comfortaa and it's loaded into memory from menu.cpp. +Signatures are stored in hookmgr.cpp (even tho, the developer won't probably update the game ever again). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:geometry dash area. diff --git a/description/gmh5225/gdriver-lib/description_en.txt b/description/gmh5225/gdriver-lib/description_en.txt new file mode 100644 index 00000000..751badab --- /dev/null +++ b/description/gmh5225/gdriver-lib/description_en.txt @@ -0,0 +1 @@ +This project is a library wrapping the GIGABYTE gdrv64.sys vulnerable driver interface for convenient kernel memory access. It provides C++ functions for reading and writing physical memory, mapping physical addresses, and performing kernel operations through gdrv's vulnerable IOCTLs. It is aimed at kernel researchers using GIGABYTE driver exploitation as a kernel access primitive. diff --git a/description/gmh5225/gdrv-loader/description_en.txt b/description/gmh5225/gdrv-loader/description_en.txt new file mode 100644 index 00000000..2b545a21 --- /dev/null +++ b/description/gmh5225/gdrv-loader/description_en.txt @@ -0,0 +1 @@ +This project is gdrv-loader, a Windows tool that loads unsigned kernel drivers by exploiting the GIGABYTE gdrv64.sys vulnerable signed driver. It uses gdrv's arbitrary memory read/write IOCTL to manually map a custom driver into kernel memory, bypassing Driver Signature Enforcement. It is aimed at kernel researchers studying GIGABYTE driver exploitation and DSE bypass through BYOVD. diff --git a/description/gmh5225/genshin-cheat/description_en.txt b/description/gmh5225/genshin-cheat/description_en.txt new file mode 100644 index 00000000..4f41064c --- /dev/null +++ b/description/gmh5225/genshin-cheat/description_en.txt @@ -0,0 +1 @@ +This project is a Genshin Impact cheat providing gameplay modifications such as god mode, infinite stamina, no cooldowns, teleportation, and speed hacks. It modifies the Unity-based game client's memory or hooks IL2CPP methods to alter game behavior. The cheat must contend with miHoYo's anti-cheat protections. It is aimed at game security researchers studying Genshin Impact's client-side protection and cheat detection mechanisms. diff --git a/description/gmh5225/genshin-remove-banner/description_en.txt b/description/gmh5225/genshin-remove-banner/description_en.txt new file mode 100644 index 00000000..22b67a02 --- /dev/null +++ b/description/gmh5225/genshin-remove-banner/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:genshin impact and centers on genshin remove banner. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:genshin impact area. diff --git a/description/gmh5225/ghidra/description_en.txt b/description/gmh5225/ghidra/description_en.txt new file mode 100644 index 00000000..890320e4 --- /dev/null +++ b/description/gmh5225/ghidra/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / decompiler and centers on ghidra. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / decompiler area. diff --git a/description/gmh5225/ghostbusters/description_en.txt b/description/gmh5225/ghostbusters/description_en.txt new file mode 100644 index 00000000..4c1ba87d --- /dev/null +++ b/description/gmh5225/ghostbusters/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on senior Design: Anit-Cheat Detection system. +It is primarily written in C++ and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / guide area. diff --git a/description/gmh5225/golang_loader_assist/description_en.txt b/description/gmh5225/golang_loader_assist/description_en.txt new file mode 100644 index 00000000..aa75cc25 --- /dev/null +++ b/description/gmh5225/golang_loader_assist/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin for improving analysis of Go (Golang) compiled binaries. It parses Go's runtime metadata to recover function names, source file references, and type information from stripped Go executables, applying symbols and type definitions that IDA's standard analysis misses. It is aimed at reverse engineers analyzing Go binaries, particularly Go-based malware. diff --git a/description/gmh5225/gta5cheat/description_en.txt b/description/gmh5225/gta5cheat/description_en.txt new file mode 100644 index 00000000..22035fc9 --- /dev/null +++ b/description/gmh5225/gta5cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:gta5 and centers on gta5cheat. +It is primarily written in Python and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:gta5 area. diff --git a/description/gmh5225/gta5cheat_qt/description_en.txt b/description/gmh5225/gta5cheat_qt/description_en.txt new file mode 100644 index 00000000..e2787d8c --- /dev/null +++ b/description/gmh5225/gta5cheat_qt/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:gta5 and centers on gta5cheat qt. +It is primarily written in C/C++ and C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:gta5 area. diff --git a/description/gmh5225/gta5view/description_en.txt b/description/gmh5225/gta5view/description_en.txt new file mode 100644 index 00000000..800de772 --- /dev/null +++ b/description/gmh5225/gta5view/description_en.txt @@ -0,0 +1 @@ +This project is gta5view, a tool for viewing and exporting Grand Theft Auto V snapmatic photos and save game data. It parses GTA V's proprietary file formats for in-game photos, save files, and profile data, allowing users to view, export, and manage their GTA V user-generated content outside the game. It is aimed at GTA V players and modders managing game save data and snapmatic photo collections. diff --git a/description/gmh5225/gtav-sourcecode-build-guide/description_en.txt b/description/gmh5225/gtav-sourcecode-build-guide/description_en.txt new file mode 100644 index 00000000..f629c8b9 --- /dev/null +++ b/description/gmh5225/gtav-sourcecode-build-guide/description_en.txt @@ -0,0 +1,3 @@ +This project provides GTA V source code build tutorial. +It is recommended to create a virtual machine for this build process, although the build process can be done on your Real PC. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / guide area. diff --git a/description/gmh5225/hex2dec-mcp/description_en.txt b/description/gmh5225/hex2dec-mcp/description_en.txt new file mode 100644 index 00000000..816b7831 --- /dev/null +++ b/description/gmh5225/hex2dec-mcp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP server that provides conversion between hexadecimal and decimal numbers. +It is primarily written in JavaScript and TypeScript. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/gmh5225/hh-lol-prophet/description_en.txt b/description/gmh5225/hh-lol-prophet/description_en.txt new file mode 100644 index 00000000..782f2c0f --- /dev/null +++ b/description/gmh5225/hh-lol-prophet/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:lol and centers on hh lol prophet. +It is primarily written in Go and centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:lol area. diff --git a/description/gmh5225/hpp-hack/description_en.txt b/description/gmh5225/hpp-hack/description_en.txt new file mode 100644 index 00000000..ca07dccb --- /dev/null +++ b/description/gmh5225/hpp-hack/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:cs1.6 and centers on hpp hack. +It is primarily written in C/C++ and C++ and centers on OpenGL, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs1.6 area. diff --git a/description/gmh5225/hv-detect/description_en.txt b/description/gmh5225/hv-detect/description_en.txt new file mode 100644 index 00000000..11f4cfb3 --- /dev/null +++ b/description/gmh5225/hv-detect/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hypervisor IDT Detections (SIDT / LIDT. +Detections are executed inside this environment and everything is restored afterward. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection: hacked hypervisor area. diff --git a/description/gmh5225/hwid-spoofer/description_en.txt b/description/gmh5225/hwid-spoofer/description_en.txt new file mode 100644 index 00000000..9b3b34b1 --- /dev/null +++ b/description/gmh5225/hwid-spoofer/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / hwid and centers on hwid spoofer. +It is primarily written in C/C++ and C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/gmh5225/ida-dark-plus/description_en.txt b/description/gmh5225/ida-dark-plus/description_en.txt new file mode 100644 index 00000000..dd8a90ae --- /dev/null +++ b/description/gmh5225/ida-dark-plus/description_en.txt @@ -0,0 +1 @@ +This project is a dark theme for IDA Pro that provides a modern dark color scheme for the disassembly view, hex view, structures, and all IDA windows. It replaces IDA's default color palette with a dark background and syntax-highlighted foreground colors for improved readability during extended analysis sessions. It is aimed at reverse engineers who prefer dark mode interfaces in IDA Pro. diff --git a/description/gmh5225/ida-find-.data-ptr/description_en.txt b/description/gmh5225/ida-find-.data-ptr/description_en.txt new file mode 100644 index 00000000..d7a55b16 --- /dev/null +++ b/description/gmh5225/ida-find-.data-ptr/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on .data ptr lookup script. +It is primarily written in Python. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/gmh5225/ida-function-string-associate/description_en.txt b/description/gmh5225/ida-function-string-associate/description_en.txt new file mode 100644 index 00000000..36e8e00f --- /dev/null +++ b/description/gmh5225/ida-function-string-associate/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin that associates string references with functions, displaying the strings used within each function in a summary view. It scans function bodies for string reference operands and creates a navigable list showing which strings each function accesses. This helps quickly understand function purpose from its string usage. It is aimed at reverse engineers using IDA Pro who want rapid function identification through string analysis. diff --git a/description/gmh5225/ida-nord-theme/description_en.txt b/description/gmh5225/ida-nord-theme/description_en.txt new file mode 100644 index 00000000..f305dffc --- /dev/null +++ b/description/gmh5225/ida-nord-theme/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro color theme inspired by the Nord color palette. It applies the Nord arctic color scheme to IDA's disassembly view, hex view, graph view, and all editor windows, providing a visually cohesive dark theme with blue-grey tones. It is aimed at IDA Pro users who prefer the Nord aesthetic for their reverse engineering environment. diff --git a/description/gmh5225/ida-plugins/description_en.txt b/description/gmh5225/ida-plugins/description_en.txt new file mode 100644 index 00000000..67b0a244 --- /dev/null +++ b/description/gmh5225/ida-plugins/description_en.txt @@ -0,0 +1,3 @@ +This project provides list of IDA plugins. +It also has extra metadata like the language the plugin is written in, when the plugin was last updated, and an attempt at putting plugins into categories. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/gmh5225/ida-sdk/description_en.txt b/description/gmh5225/ida-sdk/description_en.txt new file mode 100644 index 00000000..8dd5bfb1 --- /dev/null +++ b/description/gmh5225/ida-sdk/description_en.txt @@ -0,0 +1 @@ +This project is a mirror or collection of IDA Pro SDK files for plugin development. It provides the C++ header files, library files, and documentation needed to develop IDA Pro plugins and processor modules across multiple IDA versions. It is aimed at IDA Pro plugin developers who need SDK files for building custom analysis tools and extensions. diff --git a/description/gmh5225/ida-sigmaker/description_en.txt b/description/gmh5225/ida-sigmaker/description_en.txt new file mode 100644 index 00000000..9080e522 --- /dev/null +++ b/description/gmh5225/ida-sigmaker/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin for automatically generating byte-pattern signatures from selected code in the disassembly. It creates IDA-style and code-style signature patterns with wildcards for variable bytes, ensuring uniqueness within the binary. The generated signatures can be used for pattern scanning in cheat or mod development. It is aimed at reverse engineers creating reliable byte patterns for function identification across binary versions. diff --git a/description/gmh5225/ida_bitfields/description_en.txt b/description/gmh5225/ida_bitfields/description_en.txt new file mode 100644 index 00000000..89f306aa --- /dev/null +++ b/description/gmh5225/ida_bitfields/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin for improved handling and visualization of bitfield structures in disassembled code. It helps annotate and display individual bit flags within register values and structure fields, making it easier to understand flag-based logic in system code, driver IOCTLs, and game engine state machines. It is aimed at reverse engineers working with heavily flag-based code in IDA Pro. diff --git a/description/gmh5225/ida_bochs_windows/description_en.txt b/description/gmh5225/ida_bochs_windows/description_en.txt new file mode 100644 index 00000000..511550bc --- /dev/null +++ b/description/gmh5225/ida_bochs_windows/description_en.txt @@ -0,0 +1 @@ +This project is a configuration guide or plugin for using IDA Pro's Bochs debugger backend on Windows. It sets up IDA to debug binaries through Bochs emulation, enabling full-system debugging including kernel-mode code analysis through Bochs's software CPU emulation. It is aimed at IDA Pro users needing Bochs-based emulation debugging on Windows. diff --git a/description/gmh5225/ida_export_functions/description_en.txt b/description/gmh5225/ida_export_functions/description_en.txt new file mode 100644 index 00000000..be583da5 --- /dev/null +++ b/description/gmh5225/ida_export_functions/description_en.txt @@ -0,0 +1,3 @@ +This project provides export IDA pro function list to a specified path (Markdown format. +It is organized as documentation and reference material for the cheat / ida plugins area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/gmh5225/ida_medigate/description_en.txt b/description/gmh5225/ida_medigate/description_en.txt new file mode 100644 index 00000000..6d0ed3cd --- /dev/null +++ b/description/gmh5225/ida_medigate/description_en.txt @@ -0,0 +1,3 @@ +An IDA Pro Python plugin that reconstructs C++ class hierarchies and virtual function tables from stripped binaries by parsing GCC RTTI structures (typeinfo, vtables) and mapping virtual calls to their concrete implementations through union-based type disambiguation in the Hex-Rays decompiler. +The plugin builds IDA structs representing each class with proper inheritance chains, assigns vtable member types, and enables cross-referencing of virtual function calls across the decompiled code using the bundled ida-referee xref tracker, all within IDA's native structure/union framework so it supports any architecture IDA handles. +It is mainly useful for reverse engineers analyzing compiled C++ binaries with polymorphism, especially IoT/embedded firmware and game engine components where manual vtable reconstruction is prohibitively tedious. diff --git a/description/gmh5225/ida_names/description_en.txt b/description/gmh5225/ida_names/description_en.txt new file mode 100644 index 00000000..79071f53 --- /dev/null +++ b/description/gmh5225/ida_names/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin for managing and manipulating function and symbol names in IDA databases. It provides batch renaming, name pattern matching, prefix/suffix operations, and name import/export capabilities for organizing large disassembly databases. The Python plugin streamlines the naming workflow when working with large binaries. It is aimed at reverse engineers managing symbol names across complex IDA Pro analysis projects. diff --git a/description/gmh5225/ida_ps5_elf_plugin/description_en.txt b/description/gmh5225/ida_ps5_elf_plugin/description_en.txt new file mode 100644 index 00000000..f28ee9d4 --- /dev/null +++ b/description/gmh5225/ida_ps5_elf_plugin/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin for loading and analyzing PlayStation 5 ELF binaries. It handles the PS5-specific ELF format extensions, segment types, and dynamic linking structures used by PS5 executables, enabling disassembly and analysis of PS5 game and system binaries in IDA Pro. It is aimed at console security researchers and reverse engineers analyzing PlayStation 5 software. diff --git a/description/gmh5225/ida_vmware_windows_gdb/description_en.txt b/description/gmh5225/ida_vmware_windows_gdb/description_en.txt new file mode 100644 index 00000000..1cb9dc59 --- /dev/null +++ b/description/gmh5225/ida_vmware_windows_gdb/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro configuration and guide for kernel debugging Windows guests running in VMware using GDB protocol. It sets up IDA's GDB debugger to connect to VMware's built-in GDB stub for live Windows kernel debugging, enabling breakpoints, memory inspection, and stepping through kernel code. It is aimed at kernel researchers using IDA Pro for Windows kernel debugging through VMware. diff --git a/description/gmh5225/idacode/description_en.txt b/description/gmh5225/idacode/description_en.txt new file mode 100644 index 00000000..e4135728 --- /dev/null +++ b/description/gmh5225/idacode/description_en.txt @@ -0,0 +1,3 @@ +This project is an integration for IDA and VS Code which connects both to easily execute and debug IDAPython scripts. +IDACode is still in a very early state and bugs are to be expected. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/gmh5225/idaplugins-list/description_en.txt b/description/gmh5225/idaplugins-list/description_en.txt new file mode 100644 index 00000000..7a0bfae5 --- /dev/null +++ b/description/gmh5225/idaplugins-list/description_en.txt @@ -0,0 +1,3 @@ +This project provides list of IDA plugins. +If you can help categorize plugins based on version, it would be much appreciated. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/gmh5225/idasdk-collection/description_en.txt b/description/gmh5225/idasdk-collection/description_en.txt new file mode 100644 index 00000000..30c1eae1 --- /dev/null +++ b/description/gmh5225/idasdk-collection/description_en.txt @@ -0,0 +1 @@ +This project is a collection of IDA Pro SDKs across multiple versions, archiving SDK releases for historical reference and backward-compatible plugin development. It provides headers, libraries, and examples from different IDA SDK versions. It is aimed at IDA Pro plugin developers maintaining compatibility across IDA versions. diff --git a/description/gmh5225/idawilli/description_en.txt b/description/gmh5225/idawilli/description_en.txt new file mode 100644 index 00000000..9d9d246f --- /dev/null +++ b/description/gmh5225/idawilli/description_en.txt @@ -0,0 +1 @@ +This project is idawilli, a collection of IDA Pro scripts, plugins, and utilities by Willi Ballenthin. It includes Python scripts for common reverse engineering tasks such as function analysis, string decryption, struct annotation, cross-reference navigation, and workflow automation within IDA Pro. The scripts cover a variety of analysis scenarios from malware to firmware. It is aimed at IDA Pro users looking for ready-to-use analysis scripts and workflow enhancements. diff --git a/description/gmh5225/il2cpp-finder/description_en.txt b/description/gmh5225/il2cpp-finder/description_en.txt new file mode 100644 index 00000000..96a2e003 --- /dev/null +++ b/description/gmh5225/il2cpp-finder/description_en.txt @@ -0,0 +1 @@ +This project is a tool for locating and identifying IL2CPP metadata structures in Unity game binaries. It scans game executables and shared libraries for IL2CPP global-metadata.dat signatures, CodeRegistration, and MetadataRegistration pointers, helping locate the entry points needed for IL2CPP dumping and analysis. It is aimed at Unity game reverse engineers who need to find IL2CPP metadata in unfamiliar or obfuscated game binaries. diff --git a/description/gmh5225/immortal-rust/description_en.txt b/description/gmh5225/immortal-rust/description_en.txt new file mode 100644 index 00000000..d4a616bd --- /dev/null +++ b/description/gmh5225/immortal-rust/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:rust and centers on immortal rust. +It is primarily written in C/C++ and C++ and centers on OpenGL and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/gmh5225/imxyviMapper/description_en.txt b/description/gmh5225/imxyviMapper/description_en.txt new file mode 100644 index 00000000..a0a4f00b --- /dev/null +++ b/description/gmh5225/imxyviMapper/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver mapper that loads unsigned drivers by exploiting a specific vulnerable signed driver. It handles PE manual mapping including section copying, import resolution, relocation processing, and entry point invocation through the vulnerable driver's kernel access primitive. It is aimed at kernel researchers studying driver mapping implementations. diff --git a/description/gmh5225/injection/description_en.txt b/description/gmh5225/injection/description_en.txt new file mode 100644 index 00000000..1718acc6 --- /dev/null +++ b/description/gmh5225/injection/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on injection Testing. +Conhost ExtraBytes PROPagate Service Control Handler Print Spooler / ALPC KernelCallbackTable WordWarping, Hyphentension, AutoCourgette, Streamception, Oleum, ListPlanting, Treepoline Windows Notification Facility Windows Sockets Helper Functions Multiple Provider Router (MPR) DLL and Shell Notifications DNS Client API Breaking BaDDEr Tooltip or Common Controls KnownDlls Cache Poisoning. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/gmh5225/inline-syscall/description_en.txt b/description/gmh5225/inline-syscall/description_en.txt new file mode 100644 index 00000000..c27d13a4 --- /dev/null +++ b/description/gmh5225/inline-syscall/description_en.txt @@ -0,0 +1,3 @@ +This project is a simple direct syscall wrapper written in C++ with compatibility for x86 and x64 programs. +It is primarily written in C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/gmh5225/integrity_experiments/description_en.txt b/description/gmh5225/integrity_experiments/description_en.txt new file mode 100644 index 00000000..375a7882 --- /dev/null +++ b/description/gmh5225/integrity_experiments/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on header only. +It is primarily written in C/C++ and C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:memory integrity area. diff --git a/description/gmh5225/interactive-feedback-macos-mcp/description_en.txt b/description/gmh5225/interactive-feedback-macos-mcp/description_en.txt new file mode 100644 index 00000000..a657ef44 --- /dev/null +++ b/description/gmh5225/interactive-feedback-macos-mcp/description_en.txt @@ -0,0 +1,3 @@ +This project is a native macOS MCP server for collecting interactive user feedback with AppleScript dialogs and image support. +This is a macOS-native reimplementation of the original interactive-feedback-mcp by Fábio Ferreira (@fabiomlferreira) with the following enhancements. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/gmh5225/job_communication/description_en.txt b/description/gmh5225/job_communication/description_en.txt new file mode 100644 index 00000000..cb8d2b81 --- /dev/null +++ b/description/gmh5225/job_communication/description_en.txt @@ -0,0 +1,4 @@ +This project is a small proof of concept for undocumented ring0 to ring3 communication using NtQueryInformationJobObject. +The kernel-side notes show the idea of checking the current process Job field, resolving the job's server silo with PsGetJobServerSilo, and copying data from ServerSiloGlobals or UserSharedData into the output buffer returned to user mode. +The user-mode sample then calls NtQueryInformationJobObject with JobObjectReserved17Information and interprets the returned SILO_USER_SHARED_DATA fields as the hidden communication result. +It is mainly useful for Windows internals researchers studying obscure job-object and silo-based communication paths that bypass standard device IOCTL interfaces. diff --git a/description/gmh5225/js-debugger-bypass-script/description_en.txt b/description/gmh5225/js-debugger-bypass-script/description_en.txt new file mode 100644 index 00000000..14a1e47d --- /dev/null +++ b/description/gmh5225/js-debugger-bypass-script/description_en.txt @@ -0,0 +1 @@ +This project provides JavaScript scripts for bypassing browser-based debugger detection techniques. It neutralizes anti-debugging measures such as debugger statements, DevTools detection, console.log timing checks, and window size monitoring that web applications use to detect when browser developer tools are open. It is aimed at web security researchers and reverse engineers analyzing JavaScript-heavy web applications with anti-debugging protections. diff --git a/description/gmh5225/kernel-callback-functions-list/description_en.txt b/description/gmh5225/kernel-callback-functions-list/description_en.txt new file mode 100644 index 00000000..ac537aa0 --- /dev/null +++ b/description/gmh5225/kernel-callback-functions-list/description_en.txt @@ -0,0 +1,3 @@ +This project provides callback list. +It is organized as documentation and reference material for the anti cheat / windows ring0 callback area rather than as a single standalone runtime codebase. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / windows ring0 callback area. diff --git a/description/gmh5225/kernel_payload_comms/description_en.txt b/description/gmh5225/kernel_payload_comms/description_en.txt new file mode 100644 index 00000000..1fe0db2d --- /dev/null +++ b/description/gmh5225/kernel_payload_comms/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on shared Memory. +Bugs will be addressed as soon I've got time available if any are found, all the code in the repo was written in about a morning and an afternoon, so some oversights might be present. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/gmh5225/kli-ex/description_en.txt b/description/gmh5225/kli-ex/description_en.txt new file mode 100644 index 00000000..e349d183 --- /dev/null +++ b/description/gmh5225/kli-ex/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / lazy importer and centers on kli ex. +It is primarily written in C++ and C/C++ and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / lazy importer area. diff --git a/description/gmh5225/kur/description_en.txt b/description/gmh5225/kur/description_en.txt new file mode 100644 index 00000000..5fbc9426 --- /dev/null +++ b/description/gmh5225/kur/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel utility or driver exploit tool. It provides kernel-level operations such as memory reading/writing, process manipulation, or driver loading through a vulnerable signed driver or custom kernel interface. The C/C++ tool demonstrates kernel access primitives commonly used in game security research. It is aimed at kernel security researchers studying Windows kernel access techniques. diff --git a/description/gmh5225/kvm-csgo-cheat/description_en.txt b/description/gmh5225/kvm-csgo-cheat/description_en.txt new file mode 100644 index 00000000..68db6f27 --- /dev/null +++ b/description/gmh5225/kvm-csgo-cheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cSGO. +It is primarily written in Rust. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/gmh5225/lc0/description_en.txt b/description/gmh5225/lc0/description_en.txt new file mode 100644 index 00000000..b0fae0b6 --- /dev/null +++ b/description/gmh5225/lc0/description_en.txt @@ -0,0 +1 @@ +This project is Leela Chess Zero (Lc0), a neural network-based chess engine that uses deep reinforcement learning. It employs a Monte Carlo Tree Search guided by a neural network trained through self-play, following the approach of DeepMind's AlphaZero. The C++ engine supports CUDA, cuDNN, and OpenCL backends for GPU-accelerated neural network evaluation. It is aimed at chess engine developers, AI researchers, and competitive chess players interested in neural network-based game AI. diff --git a/description/gmh5225/league-base/description_en.txt b/description/gmh5225/league-base/description_en.txt new file mode 100644 index 00000000..9153616c --- /dev/null +++ b/description/gmh5225/league-base/description_en.txt @@ -0,0 +1 @@ +This project is a base framework for building League of Legends cheats. It provides memory reading infrastructure, game object enumeration, champion data extraction, and rendering overlay foundations for the LoL client. The C++ base handles Riot's anti-cheat (Packman/Vanguard) considerations and LoL's custom game engine structures. It is aimed at game security researchers studying LoL cheat architecture and Riot's anti-cheat protections. diff --git a/description/gmh5225/legit-csgo-cheat-menu/description_en.txt b/description/gmh5225/legit-csgo-cheat-menu/description_en.txt new file mode 100644 index 00000000..5a5a16ec --- /dev/null +++ b/description/gmh5225/legit-csgo-cheat-menu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on menu. +THIS FILE IS ONLY INTENDED FOR WINDOWS. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/gmh5225/lenovo_exec/description_en.txt b/description/gmh5225/lenovo_exec/description_en.txt new file mode 100644 index 00000000..1482161e --- /dev/null +++ b/description/gmh5225/lenovo_exec/description_en.txt @@ -0,0 +1 @@ +This project exploits a Lenovo kernel driver vulnerability for arbitrary kernel code execution. It abuses the Lenovo driver's insecure IOCTL interface to execute custom code in kernel mode, demonstrating a BYOVD exploitation chain from user-mode to kernel code execution. It is aimed at BYOVD researchers studying Lenovo driver vulnerabilities. diff --git a/description/gmh5225/lenovo_mapper/description_en.txt b/description/gmh5225/lenovo_mapper/description_en.txt new file mode 100644 index 00000000..31be57f0 --- /dev/null +++ b/description/gmh5225/lenovo_mapper/description_en.txt @@ -0,0 +1 @@ +This project is a driver mapper that uses Lenovo's vulnerable kernel driver to load unsigned drivers into kernel memory. It exploits the Lenovo driver's memory access IOCTLs for the manual mapping pipeline. It is aimed at kernel researchers studying BYOVD-based driver mapping through Lenovo driver exploitation. diff --git a/description/gmh5225/lol-offset-dumper/description_en.txt b/description/gmh5225/lol-offset-dumper/description_en.txt new file mode 100644 index 00000000..12bc7cad --- /dev/null +++ b/description/gmh5225/lol-offset-dumper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dump. +It is primarily written in C/C++ and C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:lol area. diff --git a/description/gmh5225/lol-unpackman/description_en.txt b/description/gmh5225/lol-unpackman/description_en.txt new file mode 100644 index 00000000..fc12002f --- /dev/null +++ b/description/gmh5225/lol-unpackman/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:lol and centers on lol unpackman. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:lol area. diff --git a/description/gmh5225/lol_patcher/description_en.txt b/description/gmh5225/lol_patcher/description_en.txt new file mode 100644 index 00000000..36204d57 --- /dev/null +++ b/description/gmh5225/lol_patcher/description_en.txt @@ -0,0 +1,3 @@ +This project is an old game mod designed for League of Legends. +This tool has not been updated since February 2020 and was made purely for experimentation and fun. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:lol area. diff --git a/description/gmh5225/long_night/description_en.txt b/description/gmh5225/long_night/description_en.txt new file mode 100644 index 00000000..8cc4ad6a --- /dev/null +++ b/description/gmh5225/long_night/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro color theme providing a dark visual scheme. It applies dark background colors with syntax-highlighted foreground elements for comfortable reverse engineering during extended sessions. It is aimed at IDA Pro users preferring dark theme interfaces. diff --git a/description/gmh5225/magiskboot-linux/description_en.txt b/description/gmh5225/magiskboot-linux/description_en.txt new file mode 100644 index 00000000..4109f879 --- /dev/null +++ b/description/gmh5225/magiskboot-linux/description_en.txt @@ -0,0 +1 @@ +This project provides a standalone build of Magisk's magiskboot utility for Linux systems. Magiskboot handles unpacking, repacking, and patching Android boot images including kernel extraction, ramdisk modification, DTB editing, and boot signature management. This build enables using magiskboot on Linux without the full Magisk Android installation. It is aimed at Android developers and custom ROM builders needing boot image manipulation tools on Linux. diff --git a/description/gmh5225/maniac/description_en.txt b/description/gmh5225/maniac/description_en.txt new file mode 100644 index 00000000..f61c38d6 --- /dev/null +++ b/description/gmh5225/maniac/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +(Don't use the -debug version unless you are encountering issues and want debug information.) Start osu. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:osu area. diff --git a/description/gmh5225/manipulating_token/description_en.txt b/description/gmh5225/manipulating_token/description_en.txt new file mode 100644 index 00000000..af76066e --- /dev/null +++ b/description/gmh5225/manipulating_token/description_en.txt @@ -0,0 +1 @@ +This project demonstrates Windows access token manipulation techniques for privilege escalation and impersonation. It shows how to steal, duplicate, and modify process tokens to gain elevated privileges, impersonate other users, or bypass access control checks. The C/C++ examples cover token theft, SeDebugPrivilege exploitation, and token impersonation methods. It is aimed at security researchers studying Windows privilege escalation through token manipulation. diff --git a/description/gmh5225/maplestory-artale-explab/description_en.txt b/description/gmh5225/maplestory-artale-explab/description_en.txt new file mode 100644 index 00000000..4e232053 --- /dev/null +++ b/description/gmh5225/maplestory-artale-explab/description_en.txt @@ -0,0 +1 @@ +This project is an experience calculator and leveling guide tool for MapleStory Artale, a specific MapleStory server or version. It calculates optimal training spots, experience rates, and leveling paths based on character class, level, and available content. It is aimed at MapleStory Artale players optimizing their leveling progression. diff --git a/description/gmh5225/maplestory-packer-ModPacker/description_en.txt b/description/gmh5225/maplestory-packer-ModPacker/description_en.txt new file mode 100644 index 00000000..1244c1a1 --- /dev/null +++ b/description/gmh5225/maplestory-packer-ModPacker/description_en.txt @@ -0,0 +1 @@ +This project is a packing tool for MapleStory game modification files. It packages modified game assets (sprites, maps, items, skills) into the WZ file format used by MapleStory clients, handling compression, encryption, and proper directory structure for client-side mod distribution. It is aimed at MapleStory modders packaging custom game content for private servers or client modifications. diff --git a/description/gmh5225/maplestory-v83MaplestoryCPP/description_en.txt b/description/gmh5225/maplestory-v83MaplestoryCPP/description_en.txt new file mode 100644 index 00000000..a808e241 --- /dev/null +++ b/description/gmh5225/maplestory-v83MaplestoryCPP/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on private Server-GMS-083 C++. +It is primarily written in C++ and C/C++ and centers on editor tooling, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:maplestory area. diff --git a/description/gmh5225/mcpup/description_en.txt b/description/gmh5225/mcpup/description_en.txt new file mode 100644 index 00000000..17ce44dc --- /dev/null +++ b/description/gmh5225/mcpup/description_en.txt @@ -0,0 +1 @@ +This project is mcpup, a tool for managing and deploying MCP (Model Context Protocol) servers. It provides utilities for discovering, installing, configuring, and running MCP servers that extend AI coding assistants with additional capabilities. It is aimed at developers setting up MCP server infrastructure for AI-assisted development workflows. diff --git a/description/gmh5225/memcs/description_en.txt b/description/gmh5225/memcs/description_en.txt new file mode 100644 index 00000000..69ddfe42 --- /dev/null +++ b/description/gmh5225/memcs/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in Rust and centers on modding and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/gmh5225/memory-relocalloc/description_en.txt b/description/gmh5225/memory-relocalloc/description_en.txt new file mode 100644 index 00000000..5b8333e3 --- /dev/null +++ b/description/gmh5225/memory-relocalloc/description_en.txt @@ -0,0 +1 @@ +This project demonstrates a memory relocation/allocation technique on Windows or Android for hiding memory allocations from scanning tools. It allocates memory in unconventional ways or relocates existing allocations to avoid detection by anti-cheat memory scanners that enumerate standard heap and virtual memory regions. It is aimed at game security researchers studying memory hiding techniques and anti-cheat memory scanning evasion. diff --git a/description/gmh5225/memory_server/description_en.txt b/description/gmh5225/memory_server/description_en.txt new file mode 100644 index 00000000..92326644 --- /dev/null +++ b/description/gmh5225/memory_server/description_en.txt @@ -0,0 +1 @@ +Rust-based HTTP server for jailbroken iOS devices that exposes process memory operations—enumeration, region listing, reading, pattern scanning, and result filtering—through a REST API on port 3030, enabling remote memory analysis from a connected PC using the included Python sample client. diff --git a/description/gmh5225/meowsense/description_en.txt b/description/gmh5225/meowsense/description_en.txt new file mode 100644 index 00000000..08fad192 --- /dev/null +++ b/description/gmh5225/meowsense/description_en.txt @@ -0,0 +1,3 @@ +This project is a free cheat for multiple different games. +Pull requests are welcome. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:overwatch2 area. diff --git a/description/gmh5225/mhxy/description_en.txt b/description/gmh5225/mhxy/description_en.txt new file mode 100644 index 00000000..3e5d3b72 --- /dev/null +++ b/description/gmh5225/mhxy/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:mhxy and centers on mhxy. +It is primarily written in Python and centers on driver development and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:mhxy area. diff --git a/description/gmh5225/mhxy_kernel/description_en.txt b/description/gmh5225/mhxy_kernel/description_en.txt new file mode 100644 index 00000000..07681a32 --- /dev/null +++ b/description/gmh5225/mhxy_kernel/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:mhxy and centers on mhxy kernel. +It is primarily written in C/C++ and C++ and centers on kernel-level work and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:mhxy area. diff --git a/description/gmh5225/mhydeath/description_en.txt b/description/gmh5225/mhydeath/description_en.txt new file mode 100644 index 00000000..7b328e75 --- /dev/null +++ b/description/gmh5225/mhydeath/description_en.txt @@ -0,0 +1 @@ +This project exploits miHoYo's mhyprot2.sys anti-cheat kernel driver for arbitrary kernel operations. The mhyprot2 driver, originally signed for Genshin Impact's anti-cheat, contains vulnerabilities allowing unprivileged users to read/write kernel memory and terminate processes. This BYOVD tool leverages mhyprot2 for kernel access. It is aimed at BYOVD researchers studying game anti-cheat driver vulnerabilities being weaponized for system-level access. diff --git a/description/gmh5225/mhyprot2/description_en.txt b/description/gmh5225/mhyprot2/description_en.txt new file mode 100644 index 00000000..3dd4dc7d --- /dev/null +++ b/description/gmh5225/mhyprot2/description_en.txt @@ -0,0 +1 @@ +This project documents or exploits miHoYo's mhyprot2.sys anti-cheat kernel driver used in Genshin Impact. The signed driver's IOCTL interface provides kernel read/write and process termination capabilities that can be abused as a BYOVD primitive. This tool demonstrates leveraging mhyprot2 for kernel-level operations. It is aimed at BYOVD and anti-cheat researchers studying mhyprot2's vulnerable interface. diff --git a/description/gmh5225/minecpp/description_en.txt b/description/gmh5225/minecpp/description_en.txt new file mode 100644 index 00000000..0ee16f37 --- /dev/null +++ b/description/gmh5225/minecpp/description_en.txt @@ -0,0 +1,3 @@ +This project is a minecraft server backend written in c++. +The currently supported version of Minecraft is 1.19 . +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:minecraft area. diff --git a/description/gmh5225/mnwvs196/description_en.txt b/description/gmh5225/mnwvs196/description_en.txt new file mode 100644 index 00000000..70555020 --- /dev/null +++ b/description/gmh5225/mnwvs196/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on private Server-TMS-196. +This is not a playble server but have merged many basic functions like boost::asio networking, Mysql based on Poco, high speed Wz library and the basic server has been done[Including WvsGame, WvsLogin, WvsCenter and local server communications]. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:maplestory area. diff --git a/description/gmh5225/nebulite-external/description_en.txt b/description/gmh5225/nebulite-external/description_en.txt new file mode 100644 index 00000000..bf518261 --- /dev/null +++ b/description/gmh5225/nebulite-external/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C/C++ and C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/gmh5225/neotty/description_en.txt b/description/gmh5225/neotty/description_en.txt new file mode 100644 index 00000000..76d0db4c --- /dev/null +++ b/description/gmh5225/neotty/description_en.txt @@ -0,0 +1,3 @@ +This project is a new terminal app for Android devices. +NeoTTY was started as an experimental fork of [Termux] terminal emulator project and is focused on providing full-fledged Linux system usage experience. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android terminal emulator area. diff --git a/description/gmh5225/no-access-protection-x86/description_en.txt b/description/gmh5225/no-access-protection-x86/description_en.txt new file mode 100644 index 00000000..09d91c8e --- /dev/null +++ b/description/gmh5225/no-access-protection-x86/description_en.txt @@ -0,0 +1 @@ +This project demonstrates a memory protection technique using PAGE_NOACCESS page guards on x86 Windows. It marks code pages as no-access and uses a VEH handler to temporarily restore access on demand, creating a form of on-access decryption that hinders static analysis and memory dumping. It is aimed at software protection researchers studying page-level access control for anti-tamper and anti-dump protection. diff --git a/description/gmh5225/ntminhook/description_en.txt b/description/gmh5225/ntminhook/description_en.txt new file mode 100644 index 00000000..51bd07f5 --- /dev/null +++ b/description/gmh5225/ntminhook/description_en.txt @@ -0,0 +1,3 @@ +This project is a modified version of MinHook that only uses the Windows Native API. +It is primarily written in C/C++ and C and centers on asset pipelines, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hook area. diff --git a/description/gmh5225/ntoskrnl_file_collection/description_en.txt b/description/gmh5225/ntoskrnl_file_collection/description_en.txt new file mode 100644 index 00000000..091672c4 --- /dev/null +++ b/description/gmh5225/ntoskrnl_file_collection/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on various versions of ntoskrnl files. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/gmh5225/nullmap/description_en.txt b/description/gmh5225/nullmap/description_en.txt new file mode 100644 index 00000000..36c1f70e --- /dev/null +++ b/description/gmh5225/nullmap/description_en.txt @@ -0,0 +1 @@ +This project is nullmap, a Windows driver mapper that erases traces of the mapped driver after execution. It manually maps an unsigned driver, runs its entry point, then cleans up by zeroing headers, removing pool allocations, and unlinking references, leaving minimal forensic evidence of the mapped driver. It is aimed at kernel researchers studying anti-forensic driver mapping techniques. diff --git a/description/gmh5225/nv-graphics-mesa/description_en.txt b/description/gmh5225/nv-graphics-mesa/description_en.txt new file mode 100644 index 00000000..5a04dc89 --- /dev/null +++ b/description/gmh5225/nv-graphics-mesa/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under 3d graphics and centers on nv graphics mesa. +It centers on graphics. +It is mainly useful for graphics programmers, technical artists, and engine developers working in the 3d graphics area. diff --git a/description/gmh5225/nvidia-overlay-hijack/description_en.txt b/description/gmh5225/nvidia-overlay-hijack/description_en.txt new file mode 100644 index 00000000..e8d49efe --- /dev/null +++ b/description/gmh5225/nvidia-overlay-hijack/description_en.txt @@ -0,0 +1 @@ +This project demonstrates a technique for hijacking NVIDIA's GeForce Experience overlay to render custom content without creating new windows. It takes over the rendering context of NVIDIA's existing overlay surface and draws custom ESP or menu content through it, bypassing anti-cheat systems that monitor for new overlay window creation. It is aimed at game security researchers studying overlay hijacking techniques. diff --git a/description/gmh5225/nzPerspective/description_en.txt b/description/gmh5225/nzPerspective/description_en.txt new file mode 100644 index 00000000..70b78edb --- /dev/null +++ b/description/gmh5225/nzPerspective/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on d3D9. +It is primarily written in C/C++ and C++ and centers on hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:tgame area. diff --git a/description/gmh5225/osu-aac/description_en.txt b/description/gmh5225/osu-aac/description_en.txt new file mode 100644 index 00000000..78960f42 --- /dev/null +++ b/description/gmh5225/osu-aac/description_en.txt @@ -0,0 +1 @@ +This project is an anti-cheat analysis or bypass for osu!, the rhythm game. It examines or circumvents osu!'s anti-cheat mechanisms that detect auto-play bots, input simulation, time manipulation, and memory modification in the osu! client. It is aimed at game security researchers studying osu!'s anti-cheat implementation. diff --git a/description/gmh5225/overwatch-iat-fixer/description_en.txt b/description/gmh5225/overwatch-iat-fixer/description_en.txt new file mode 100644 index 00000000..81d0cf40 --- /dev/null +++ b/description/gmh5225/overwatch-iat-fixer/description_en.txt @@ -0,0 +1 @@ +This project is an IAT (Import Address Table) fixer for Overwatch game binaries. It reconstructs the import table of Overwatch's protected executable by resolving obfuscated or encrypted import entries back to their original function names and addresses, enabling proper analysis in disassemblers. It is aimed at game reverse engineers analyzing Overwatch's binary protection and import obfuscation. diff --git a/description/gmh5225/pHake/description_en.txt b/description/gmh5225/pHake/description_en.txt new file mode 100644 index 00000000..67a575c0 --- /dev/null +++ b/description/gmh5225/pHake/description_en.txt @@ -0,0 +1 @@ +This project is pHake, a GTA V mod menu and cheat framework providing vehicle spawning, teleportation, money modifications, player ESP, god mode, and other gameplay alterations. It hooks into GTA V's RAGE engine using ScriptHookV or direct memory access to manipulate game state. The C++ codebase demonstrates open-world game cheat architecture. It is aimed at game security researchers studying GTA V modding and anti-cheat evasion in Rockstar's titles. diff --git a/description/gmh5225/packer-tutorial/description_en.txt b/description/gmh5225/packer-tutorial/description_en.txt new file mode 100644 index 00000000..48cbda4a --- /dev/null +++ b/description/gmh5225/packer-tutorial/description_en.txt @@ -0,0 +1 @@ +This project is an educational tutorial on writing PE executable packers from scratch. It covers PE file format basics, section manipulation, import table reconstruction, relocation handling, compression stub implementation, and entry point redirection. The step-by-step guide builds a complete packer with source code. It is aimed at security researchers and students learning PE packing internals and executable protection techniques. diff --git a/description/gmh5225/pmctrace/description_en.txt b/description/gmh5225/pmctrace/description_en.txt new file mode 100644 index 00000000..3d6c100d --- /dev/null +++ b/description/gmh5225/pmctrace/description_en.txt @@ -0,0 +1 @@ +This project is pmctrace, a tool for collecting hardware performance counter data using Intel PMC (Performance Monitoring Counters). It configures and reads CPU performance counters to measure cache hits/misses, branch predictions, instruction counts, and other micro-architectural events for program profiling. The C tool provides low-level access to PMC registers. It is aimed at performance engineers and security researchers using hardware performance counters for program analysis and side-channel research. diff --git a/description/gmh5225/pubg-dumper/description_en.txt b/description/gmh5225/pubg-dumper/description_en.txt new file mode 100644 index 00000000..38b983f3 --- /dev/null +++ b/description/gmh5225/pubg-dumper/description_en.txt @@ -0,0 +1 @@ +This project is a PUBG (PlayerUnknown's Battlegrounds) SDK and offset dumper that extracts class definitions, property offsets, and function addresses from the running PUBG game process. It scans PUBG's Unreal Engine structures to dump GObject/GNames arrays, entity class hierarchies, and game-specific data layouts for cheat development. It is aimed at game security researchers studying PUBG's UE4 memory layout and anti-cheat researchers analyzing cheat tooling. diff --git a/description/gmh5225/pubg-external-cheat/description_en.txt b/description/gmh5225/pubg-external-cheat/description_en.txt new file mode 100644 index 00000000..2e0bae1e --- /dev/null +++ b/description/gmh5225/pubg-external-cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:pubg and centers on pubg external cheat. +It is primarily written in C/C++ and C++ and centers on overlays and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:pubg area. diff --git a/description/gmh5225/pubg/description_en.txt b/description/gmh5225/pubg/description_en.txt new file mode 100644 index 00000000..59079c35 --- /dev/null +++ b/description/gmh5225/pubg/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:pubgm and centers on pubg. +It is primarily written in C/C++ and C and centers on OpenGL, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:pubgm area. diff --git a/description/gmh5225/pubg_dump_offset/description_en.txt b/description/gmh5225/pubg_dump_offset/description_en.txt new file mode 100644 index 00000000..6cfea0a2 --- /dev/null +++ b/description/gmh5225/pubg_dump_offset/description_en.txt @@ -0,0 +1,3 @@ +A versioned collection of dumped PUBG memory offsets covering dozens of game updates from version 19.1 through 24.2, with each header file containing hardcoded addresses for GObjects, GWorld, Xenuine decryption keys, FNameEntry, player state fields (Health, GroggyHealth, TeamNum), camera parameters, weapon data, bone indices, vehicle structures, and item/loot offsets. +Each version-specific offset file tracks changes across PUBG patches including encrypted pointer bases (XenuineDecrypt), skeletal mesh bone arrays, weapon trajectory/ballistics data, and replay/spectator detection fields, providing a historical record of how the game's UE4 memory layout evolved across updates. +It is mainly useful for game security researchers studying UE4 offset evolution, Xenuine encryption scheme changes, and PUBG's anti-cheat hardening across patch cycles. diff --git a/description/gmh5225/pubg_mobile_memory_hacking_examples/description_en.txt b/description/gmh5225/pubg_mobile_memory_hacking_examples/description_en.txt new file mode 100644 index 00000000..f4eb4893 --- /dev/null +++ b/description/gmh5225/pubg_mobile_memory_hacking_examples/description_en.txt @@ -0,0 +1 @@ +This project provides examples of PUBG Mobile memory hacking techniques on Android. It demonstrates reading game entity data, player coordinates, weapon information, and game state from PUBG Mobile's process memory using Android memory access methods. The examples cover basic memory scanning and value modification for mobile game hacking. It is aimed at mobile game security researchers studying PUBG Mobile's memory layout and protection mechanisms. diff --git a/description/gmh5225/pubgm_sdk_and_offsets/description_en.txt b/description/gmh5225/pubgm_sdk_and_offsets/description_en.txt new file mode 100644 index 00000000..57c2f08e --- /dev/null +++ b/description/gmh5225/pubgm_sdk_and_offsets/description_en.txt @@ -0,0 +1,3 @@ +A dumped SDK and offset collection for PUBG Mobile (versions 1.5 and 1.9) containing full UE4 class hierarchy definitions with member offsets, function addresses, and type information extracted from the game's reflection system. +The SDK files enumerate hundreds of UE4 classes including World, Level, PlayerController, Character, PrimitiveComponent, SkeletalMeshComponent, and weapon/vehicle types with precise byte offsets, bitmask fields, and virtual function pointers for the ARM32 mobile build, covering rendering, physics, networking, and gameplay subsystems. +It is mainly useful for mobile game security researchers studying PUBG Mobile's UE4 memory layout, building external/internal cheats, or analyzing anti-cheat coverage on Android. diff --git a/description/gmh5225/qiling-il2cpp-dump/description_en.txt b/description/gmh5225/qiling-il2cpp-dump/description_en.txt new file mode 100644 index 00000000..a27ae00e --- /dev/null +++ b/description/gmh5225/qiling-il2cpp-dump/description_en.txt @@ -0,0 +1 @@ +This project uses the Qiling emulation framework to dump IL2CPP metadata from Unity game binaries without running the actual game. It emulates the IL2CPP runtime initialization in Qiling's sandboxed environment to trigger metadata registration, then extracts class definitions, method addresses, and type information. This approach works for analyzing obfuscated or anti-tamper protected IL2CPP games. It is aimed at Unity game reverse engineers analyzing heavily protected IL2CPP binaries through emulation-based dumping. diff --git a/description/gmh5225/qsynthesis/description_en.txt b/description/gmh5225/qsynthesis/description_en.txt new file mode 100644 index 00000000..d6559b90 --- /dev/null +++ b/description/gmh5225/qsynthesis/description_en.txt @@ -0,0 +1 @@ +This project is QSynthesis, an IDA Pro plugin for synthesizing simplified expressions from complex obfuscated code using program synthesis techniques. It applies oracle-guided synthesis and SMT solving to find simpler equivalent expressions for MBA (Mixed Boolean-Arithmetic) obfuscated computations found in protected binaries. The Python plugin integrates with IDA's decompiler output. It is aimed at reverse engineers deobfuscating VM-protected or MBA-obfuscated code within IDA Pro. diff --git a/description/gmh5225/query-gpu-name-rs/description_en.txt b/description/gmh5225/query-gpu-name-rs/description_en.txt new file mode 100644 index 00000000..bdbb9482 --- /dev/null +++ b/description/gmh5225/query-gpu-name-rs/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on gPU name for windows. +It is primarily written in Rust. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hwid area. diff --git a/description/gmh5225/r0ak/description_en.txt b/description/gmh5225/r0ak/description_en.txt new file mode 100644 index 00000000..8d95025f --- /dev/null +++ b/description/gmh5225/r0ak/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on r0ak. +It is primarily written in C and C/C++ and centers on kernel-level work and modding. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/gmh5225/r69-driver/description_en.txt b/description/gmh5225/r69-driver/description_en.txt new file mode 100644 index 00000000..11c0eccd --- /dev/null +++ b/description/gmh5225/r69-driver/description_en.txt @@ -0,0 +1,4 @@ +This project is a compact kernel communication library that routes read, write, and process-query requests through HalPrivateDispatchTable hooks instead of a conventional device object. +The driver replaces HalTimerQueryAuxiliaryCounterFrequency with a handler that pulls a c_packet from the caller trap frame, decodes read_process_memory, write_process_memory, and query_process_data requests, and services them by translating target virtual addresses to physical pages from the process CR3. +A second hook on HalClearLastBranchRecordStack refreshes DirectoryTableBase from the current CR3, while the user-mode wrapper exposes the path through a c_r69 class that wraps NtQueryAuxiliaryCounterFrequency and can attach to a target process by name. +It is mainly useful for Windows kernel researchers studying syscall-adjacent communication, HalPrivateDispatchTable abuse, and physical-memory-backed process access without a standard IOCTL interface. diff --git a/description/gmh5225/rAthenaCN/description_en.txt b/description/gmh5225/rAthenaCN/description_en.txt new file mode 100644 index 00000000..e91e3e5d --- /dev/null +++ b/description/gmh5225/rAthenaCN/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:ro and centers on r athena cn. +It is primarily written in C++ and C/C++ and centers on asset pipelines, plugin development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:ro area. diff --git a/description/gmh5225/razer-rzctl/description_en.txt b/description/gmh5225/razer-rzctl/description_en.txt new file mode 100644 index 00000000..c9ee2a30 --- /dev/null +++ b/description/gmh5225/razer-rzctl/description_en.txt @@ -0,0 +1 @@ +This project exploits Razer's rzctl.sys kernel driver for input simulation or kernel access. The Razer driver provides privileged I/O operations that can be used to simulate mouse/keyboard input at the kernel level, bypassing user-mode input detection by anti-cheat systems, or for gaining kernel memory access through vulnerable IOCTLs. It is aimed at game security researchers studying Razer driver exploitation for input simulation and BYOVD. diff --git a/description/gmh5225/reGS/description_en.txt b/description/gmh5225/reGS/description_en.txt new file mode 100644 index 00000000..e6da961b --- /dev/null +++ b/description/gmh5225/reGS/description_en.txt @@ -0,0 +1 @@ +This project is a reverse-engineered reimplementation of the GoldSource engine (Half-Life 1 engine) components. It recreates core engine functionality through reverse engineering of the original binaries, providing source-level understanding of GoldSource networking, rendering, physics, and game module interfaces. It is aimed at Source engine historians and modders studying GoldSource engine internals. diff --git a/description/gmh5225/reGTA/description_en.txt b/description/gmh5225/reGTA/description_en.txt new file mode 100644 index 00000000..dff6f285 --- /dev/null +++ b/description/gmh5225/reGTA/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on reverse Engineered GTA III and GTA VC. +The project has also been ported to the Nintendo Switch, Playstation Vita and Nintendo Wii U. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/gmh5225/retdec/description_en.txt b/description/gmh5225/retdec/description_en.txt new file mode 100644 index 00000000..2fc376ce --- /dev/null +++ b/description/gmh5225/retdec/description_en.txt @@ -0,0 +1,3 @@ +This project is the RetDec project is currently in a limited maintenance mode due to a lack of resources: Pull Requests are welcomed. +They are reviewed with priority, if possible without delays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / decompiler area. diff --git a/description/gmh5225/ricochet-disabler/description_en.txt b/description/gmh5225/ricochet-disabler/description_en.txt new file mode 100644 index 00000000..89674975 --- /dev/null +++ b/description/gmh5225/ricochet-disabler/description_en.txt @@ -0,0 +1 @@ +This project is a tool for disabling or bypassing Ricochet, Activision's anti-cheat system used in Call of Duty titles. It targets Ricochet's kernel driver and user-mode components to prevent them from detecting cheats or to disable their monitoring capabilities. It is aimed at anti-cheat researchers studying Ricochet's protection architecture and bypass techniques. diff --git a/description/gmh5225/rust-dll-crab/description_en.txt b/description/gmh5225/rust-dll-crab/description_en.txt new file mode 100644 index 00000000..8ae31934 --- /dev/null +++ b/description/gmh5225/rust-dll-crab/description_en.txt @@ -0,0 +1 @@ +This project is a Rust-based DLL injector for Windows that provides DLL injection capabilities written in Rust. It implements various injection methods and demonstrates using Rust for Windows system programming tasks typically done in C/C++. It is aimed at Rust developers and security researchers exploring Rust for game hacking tool development. diff --git a/description/gmh5225/rust-external-1/description_en.txt b/description/gmh5225/rust-external-1/description_en.txt new file mode 100644 index 00000000..231f2c7d --- /dev/null +++ b/description/gmh5225/rust-external-1/description_en.txt @@ -0,0 +1 @@ +This project is an external cheat for the game Rust written in C++ that reads game memory without injection. It accesses the Rust (game) Unity process externally through kernel driver or ReadProcessMemory to extract player positions, item locations, and game state for ESP rendering on a separate overlay. It is aimed at game security researchers studying external cheat patterns for EAC-protected Unity games. diff --git a/description/gmh5225/rust-internal/description_en.txt b/description/gmh5225/rust-internal/description_en.txt new file mode 100644 index 00000000..e4decb97 --- /dev/null +++ b/description/gmh5225/rust-internal/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:rust and centers on rust internal. +It is primarily written in C++ and centers on shader work, rendering, and graphics. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/gmh5225/s4killer/description_en.txt b/description/gmh5225/s4killer/description_en.txt new file mode 100644 index 00000000..69664853 --- /dev/null +++ b/description/gmh5225/s4killer/description_en.txt @@ -0,0 +1 @@ +This project exploits the S4 (Samsung) vulnerable kernel driver to gain arbitrary kernel read/write on Windows. It sends crafted IOCTLs to the signed Samsung driver to read and write physical or virtual memory, providing a BYOVD primitive for loading unsigned drivers, patching kernel structures, or bypassing anti-cheat protections. It is aimed at BYOVD researchers studying Samsung driver vulnerabilities for kernel access. diff --git a/description/gmh5225/sapphire/description_en.txt b/description/gmh5225/sapphire/description_en.txt new file mode 100644 index 00000000..4d742647 --- /dev/null +++ b/description/gmh5225/sapphire/description_en.txt @@ -0,0 +1,3 @@ +This project is a FINAL FANTASY XIV Server Emulator currently in development. +This branch is specifically for FFXIV version 3.3. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/gmh5225/shellcode-EntropyFix/description_en.txt b/description/gmh5225/shellcode-EntropyFix/description_en.txt new file mode 100644 index 00000000..fc2b6f53 --- /dev/null +++ b/description/gmh5225/shellcode-EntropyFix/description_en.txt @@ -0,0 +1 @@ +This project is a tool for reducing the entropy of shellcode and packed binary payloads to evade entropy-based detection. High entropy is a common indicator used by AV/EDR products to flag encrypted or compressed malicious payloads. This tool applies encoding techniques such as English-word substitution or padding to lower the Shannon entropy of shellcode while preserving execution functionality. It is aimed at red team operators and security researchers studying entropy-based detection evasion. diff --git a/description/gmh5225/shootergame-Hack/description_en.txt b/description/gmh5225/shootergame-Hack/description_en.txt new file mode 100644 index 00000000..ee8cfd5c --- /dev/null +++ b/description/gmh5225/shootergame-Hack/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on shooterGame Demo. +It is primarily written in C/C++ and C++ and centers on rendering and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unreal area. diff --git a/description/gmh5225/sigmakerex/description_en.txt b/description/gmh5225/sigmakerex/description_en.txt new file mode 100644 index 00000000..4c033f10 --- /dev/null +++ b/description/gmh5225/sigmakerex/description_en.txt @@ -0,0 +1 @@ +This project is SigMakerEx, an enhanced IDA Pro signature maker plugin with additional features beyond basic sig generation. It generates code-style, IDA-style, and x64dbg-compatible signature patterns with automatic uniqueness verification, batch generation, and clipboard integration. It is aimed at reverse engineers who frequently create and manage binary signatures in IDA Pro. diff --git a/description/gmh5225/simple-rust-hack/description_en.txt b/description/gmh5225/simple-rust-hack/description_en.txt new file mode 100644 index 00000000..d9f1e26d --- /dev/null +++ b/description/gmh5225/simple-rust-hack/description_en.txt @@ -0,0 +1,3 @@ +This project is a simple rust hack source code. +It is primarily written in C++ and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/gmh5225/sk3wldbg/description_en.txt b/description/gmh5225/sk3wldbg/description_en.txt new file mode 100644 index 00000000..ad314fd9 --- /dev/null +++ b/description/gmh5225/sk3wldbg/description_en.txt @@ -0,0 +1 @@ +This project is sk3wldbg, an IDA Pro plugin that integrates the Unicorn CPU emulator for in-IDA code emulation. It allows executing selected code regions within IDA using Unicorn engine emulation, supporting x86, ARM, MIPS, and other architectures. Analysts can set up register and memory state, step through emulated code, and observe results without a live target. It is aimed at reverse engineers who need quick code emulation during static analysis in IDA Pro. diff --git a/description/gmh5225/source-sdk-orangebox/description_en.txt b/description/gmh5225/source-sdk-orangebox/description_en.txt new file mode 100644 index 00000000..320968bf --- /dev/null +++ b/description/gmh5225/source-sdk-orangebox/description_en.txt @@ -0,0 +1,3 @@ +This project provides source sdk orangebox. +It is primarily written in C/C++ and C++ and centers on driver development, shader work, and rendering. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/gmh5225/spoof-stack-SafeCall/description_en.txt b/description/gmh5225/spoof-stack-SafeCall/description_en.txt new file mode 100644 index 00000000..96e84db3 --- /dev/null +++ b/description/gmh5225/spoof-stack-SafeCall/description_en.txt @@ -0,0 +1 @@ +This project is SafeCall, a Windows return address spoofing library that manipulates the call stack before making API calls. It replaces the real return addresses on the stack with fake legitimate return addresses, preventing call stack analysis from revealing the true caller. This technique evades stack-based detection used by EDR products and anti-cheat systems. It is aimed at red team operators and game security researchers studying call stack spoofing and its detection. diff --git a/description/gmh5225/star_rail/description_en.txt b/description/gmh5225/star_rail/description_en.txt new file mode 100644 index 00000000..86ea2ef0 --- /dev/null +++ b/description/gmh5225/star_rail/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:honkai star rail and centers on star rail. +It is primarily written in C/C++ and C++ and centers on DirectX and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:honkai star rail area. diff --git a/description/gmh5225/subhook/description_en.txt b/description/gmh5225/subhook/description_en.txt new file mode 100644 index 00000000..0cc99e9f --- /dev/null +++ b/description/gmh5225/subhook/description_en.txt @@ -0,0 +1,3 @@ +This project is a super-simple hooking library for C and C++ that works on Windows, Linux and macOS. +It supports x86 only (32-bit and 64-bit). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hook area. diff --git a/description/gmh5225/superpeople-client/description_en.txt b/description/gmh5225/superpeople-client/description_en.txt new file mode 100644 index 00000000..1f8a0cf1 --- /dev/null +++ b/description/gmh5225/superpeople-client/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:super people and centers on superpeople client. +It is primarily written in C++ and C/C++ and centers on driver development, rendering, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:super people area. diff --git a/description/gmh5225/t7-linker/description_en.txt b/description/gmh5225/t7-linker/description_en.txt new file mode 100644 index 00000000..0324f277 --- /dev/null +++ b/description/gmh5225/t7-linker/description_en.txt @@ -0,0 +1 @@ +This project is a linker or tool for working with Call of Duty Black Ops III (T7 engine) game scripts and modding. It processes compiled game script files, links script modules together, and handles the T7 script bytecode format used in Black Ops III's GSC scripting system. It is aimed at Call of Duty modders and researchers working with the T7 engine's scripting infrastructure. diff --git a/description/gmh5225/teamfortress2_internal/description_en.txt b/description/gmh5225/teamfortress2_internal/description_en.txt new file mode 100644 index 00000000..f3e00df7 --- /dev/null +++ b/description/gmh5225/teamfortress2_internal/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:team fortress 2 and centers on teamfortress2 internal. +It is primarily written in C++ and C/C++ and centers on modding and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:team fortress 2 area. diff --git a/description/gmh5225/tenet/description_en.txt b/description/gmh5225/tenet/description_en.txt new file mode 100644 index 00000000..1c0935d5 --- /dev/null +++ b/description/gmh5225/tenet/description_en.txt @@ -0,0 +1 @@ +This project is Tenet, an IDA Pro plugin for exploring program execution traces. It provides a trace timeline visualization, allowing analysts to step forward and backward through recorded execution traces, inspect register and memory state at any point, and understand complex control flow through visual navigation. The plugin supports various trace formats and integrates with IDA's disassembly view. It is aimed at reverse engineers using execution traces for malware analysis and vulnerability research. diff --git a/description/gmh5225/the-finals-interior-cheat/description_en.txt b/description/gmh5225/the-finals-interior-cheat/description_en.txt new file mode 100644 index 00000000..284d9f14 --- /dev/null +++ b/description/gmh5225/the-finals-interior-cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:the finals and centers on the finals interior cheat. +It is primarily written in C/C++ and C++ and centers on rendering, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:the finals area. diff --git a/description/gmh5225/tim_apple/description_en.txt b/description/gmh5225/tim_apple/description_en.txt new file mode 100644 index 00000000..0ca47f06 --- /dev/null +++ b/description/gmh5225/tim_apple/description_en.txt @@ -0,0 +1 @@ +This project is a CS2 (Counter-Strike 2) cheat or tool named Tim Apple that interacts with the Source 2 engine. It provides game modification features through Source 2 SDK interaction, pattern scanning, or memory access techniques specific to CS2. It is aimed at game security researchers studying CS2 cheat implementations. diff --git a/description/gmh5225/titancf/description_en.txt b/description/gmh5225/titancf/description_en.txt new file mode 100644 index 00000000..bbc8371b --- /dev/null +++ b/description/gmh5225/titancf/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:crossfire and centers on titancf. +It is primarily written in C/C++ and C++ and centers on driver development, rendering, and graphics. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:crossfire area. diff --git a/description/gmh5225/ttddbg/description_en.txt b/description/gmh5225/ttddbg/description_en.txt new file mode 100644 index 00000000..45b7947f --- /dev/null +++ b/description/gmh5225/ttddbg/description_en.txt @@ -0,0 +1 @@ +This project is ttddbg, an IDA Pro plugin for debugging Time Travel Debugging (TTD) traces recorded by WinDbg. It loads Microsoft TTD trace files (.run) into IDA Pro, enabling forward and backward stepping through recorded execution without a live debugging session. The plugin replays syscalls, memory operations, and register state from the trace. It is aimed at reverse engineers and malware analysts who want IDA Pro's analysis capabilities combined with TTD's time-travel debugging. diff --git a/description/gmh5225/ue4_cheat_engine/description_en.txt b/description/gmh5225/ue4_cheat_engine/description_en.txt new file mode 100644 index 00000000..b31dd0b7 --- /dev/null +++ b/description/gmh5225/ue4_cheat_engine/description_en.txt @@ -0,0 +1 @@ +This project is a cheat engine or framework specifically designed for Unreal Engine 4 games. It provides UE4-aware memory scanning, GObject enumeration, UProperty traversal, and SDK generation capabilities optimized for finding and manipulating game objects in UE4 titles. It is aimed at UE4 game hackers and security researchers needing UE4-specific memory analysis tools. diff --git a/description/gmh5225/ue5-roll-a-ball-game/description_en.txt b/description/gmh5225/ue5-roll-a-ball-game/description_en.txt new file mode 100644 index 00000000..99ea8adf --- /dev/null +++ b/description/gmh5225/ue5-roll-a-ball-game/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on uE5 Roll a Ball Game. +It centers on asset pipelines, editor tooling, and modding. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/gmh5225/underTheHoodOfExecutables/description_en.txt b/description/gmh5225/underTheHoodOfExecutables/description_en.txt new file mode 100644 index 00000000..c1711dcb --- /dev/null +++ b/description/gmh5225/underTheHoodOfExecutables/description_en.txt @@ -0,0 +1,3 @@ +This project is an in-depth exploration of how C programs transform from source code to executable binaries. +This repository contains a comprehensive guide to understanding linking, loading, and executable formats. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / guide area. diff --git a/description/gmh5225/unispectDMAPlugin/description_en.txt b/description/gmh5225/unispectDMAPlugin/description_en.txt new file mode 100644 index 00000000..4da35639 --- /dev/null +++ b/description/gmh5225/unispectDMAPlugin/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mono Dump + DMA. +NOTE ON THIS FORK: The original Unispect branch by Razchek has a bug where Memory Plugins are not disposed after dumping. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/gmh5225/unity-vrchat-template/description_en.txt b/description/gmh5225/unity-vrchat-template/description_en.txt new file mode 100644 index 00000000..d8ba57b8 --- /dev/null +++ b/description/gmh5225/unity-vrchat-template/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on unity VRChat Template. +It centers on graphics, audio systems, and physics. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/gmh5225/valo-driver/description_en.txt b/description/gmh5225/valo-driver/description_en.txt new file mode 100644 index 00000000..31159834 --- /dev/null +++ b/description/gmh5225/valo-driver/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver designed for reading Valorant game process memory while bypassing Vanguard anti-cheat's kernel-level protections. It implements memory reading through physical address translation, CR3 manipulation, or MDL mapping to access the game process without using standard APIs that Vanguard monitors. The C driver demonstrates kernel-level anti-cheat bypass techniques specific to Vanguard. It is aimed at anti-cheat researchers studying Vanguard's kernel protection and its potential bypass vectors. diff --git a/description/gmh5225/valorant-esp-hack-with-driver/description_en.txt b/description/gmh5225/valorant-esp-hack-with-driver/description_en.txt new file mode 100644 index 00000000..705cd623 --- /dev/null +++ b/description/gmh5225/valorant-esp-hack-with-driver/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this esp exploits a vulnerability in the Vanguard driver to load it before it does. +Instructions Build and inject with any kernel injector The driver is for non pasters. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/valorant-externals/description_en.txt b/description/gmh5225/valorant-externals/description_en.txt new file mode 100644 index 00000000..5ea6dda5 --- /dev/null +++ b/description/gmh5225/valorant-externals/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on offset. +Offsets are updated overtime, not all at once. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/valorant-gui-imgui-remake/description_en.txt b/description/gmh5225/valorant-gui-imgui-remake/description_en.txt new file mode 100644 index 00000000..3741bcf4 --- /dev/null +++ b/description/gmh5225/valorant-gui-imgui-remake/description_en.txt @@ -0,0 +1 @@ +This project is a Valorant cheat GUI framework using Dear ImGui as the menu rendering system. It provides a styled ImGui interface with tabs, toggles, and sliders for controlling cheat features like ESP, aimbot, and visual modifications in Valorant. The C++ codebase demonstrates cheat menu design and UE4 game interaction patterns. It is aimed at game security researchers studying Valorant cheat UI implementations and ImGui-based cheat menu architectures. diff --git a/description/gmh5225/valorant-internal-base/description_en.txt b/description/gmh5225/valorant-internal-base/description_en.txt new file mode 100644 index 00000000..c7e90387 --- /dev/null +++ b/description/gmh5225/valorant-internal-base/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +It is primarily written in C/C++ and C++ and centers on Unreal Engine, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/valorant-internal/description_en.txt b/description/gmh5225/valorant-internal/description_en.txt new file mode 100644 index 00000000..f7cf2170 --- /dev/null +++ b/description/gmh5225/valorant-internal/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:valorant and centers on valorant internal. +It is primarily written in C++ and C/C++ and centers on SDK generation and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/gmh5225/vdk/description_en.txt b/description/gmh5225/vdk/description_en.txt new file mode 100644 index 00000000..9a056c55 --- /dev/null +++ b/description/gmh5225/vdk/description_en.txt @@ -0,0 +1 @@ +This project is VDK (Vulnerable Driver Kit), a collection of tools and libraries for exploiting vulnerable signed Windows kernel drivers. It provides a unified interface for multiple vulnerable driver backends, enabling arbitrary kernel read/write, process manipulation, and driver loading through BYOVD techniques. It is aimed at kernel security researchers and red team operators studying vulnerable driver exploitation. diff --git a/description/gmh5225/veh-printf-hook/description_en.txt b/description/gmh5225/veh-printf-hook/description_en.txt new file mode 100644 index 00000000..82568c55 --- /dev/null +++ b/description/gmh5225/veh-printf-hook/description_en.txt @@ -0,0 +1 @@ +This project demonstrates using Windows Vectored Exception Handling (VEH) to hook printf and similar output functions. It sets page guards on target function memory, catches the resulting exceptions in a VEH handler, and redirects execution to custom logging or filtering code. This non-invasive hooking technique avoids patching function bytes. It is aimed at security researchers studying VEH-based function interception techniques. diff --git a/description/gmh5225/veh_hide_memory/description_en.txt b/description/gmh5225/veh_hide_memory/description_en.txt new file mode 100644 index 00000000..15af0a25 --- /dev/null +++ b/description/gmh5225/veh_hide_memory/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vEH + PAGE_NOACCESS. +It is primarily written in C++ and C/C++ and centers on memory analysis. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / page protection area. diff --git a/description/gmh5225/vgk-illegal-pf-logger/description_en.txt b/description/gmh5225/vgk-illegal-pf-logger/description_en.txt new file mode 100644 index 00000000..5cd8ff57 --- /dev/null +++ b/description/gmh5225/vgk-illegal-pf-logger/description_en.txt @@ -0,0 +1 @@ +This project logs illegal page fault events generated by Vanguard (vgk.sys), Riot Games' anti-cheat kernel driver. It monitors and records page faults that Vanguard intentionally triggers as part of its detection mechanism, helping researchers understand how Vanguard uses memory access violations for integrity checking. It is aimed at anti-cheat researchers studying Vanguard's page fault-based detection techniques. diff --git a/description/gmh5225/vibe-blocks-mcp/description_en.txt b/description/gmh5225/vibe-blocks-mcp/description_en.txt new file mode 100644 index 00000000..d3fed910 --- /dev/null +++ b/description/gmh5225/vibe-blocks-mcp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP for Roblox Studio. +It exposes Roblox Studio actions as tools over MCP (using Server-Sent Events - SSE). +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/gmh5225/vscript_lua51/description_en.txt b/description/gmh5225/vscript_lua51/description_en.txt new file mode 100644 index 00000000..80caaa26 --- /dev/null +++ b/description/gmh5225/vscript_lua51/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vScript. +Support PRs and issues are welcomed. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/gmh5225/vt-debuger/description_en.txt b/description/gmh5225/vt-debuger/description_en.txt new file mode 100644 index 00000000..52a2bd7f --- /dev/null +++ b/description/gmh5225/vt-debuger/description_en.txt @@ -0,0 +1 @@ +This project is a hypervisor-based debugger that uses Intel VT-x virtualization to debug programs without triggering standard debugger detection. It places the target under a thin hypervisor that intercepts execution events through VM exits, providing breakpoint, single-step, and memory watch capabilities invisible to anti-debugging techniques. It is aimed at reverse engineers debugging anti-debug protected software using hardware-assisted virtualization. diff --git a/description/gmh5225/wasm-ceserver/description_en.txt b/description/gmh5225/wasm-ceserver/description_en.txt new file mode 100644 index 00000000..454fd81a --- /dev/null +++ b/description/gmh5225/wasm-ceserver/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on analyzing WebAssembly. +It is primarily written in Python and JavaScript and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / cheat engine plugins area. diff --git a/description/gmh5225/win32k_file_collection/description_en.txt b/description/gmh5225/win32k_file_collection/description_en.txt new file mode 100644 index 00000000..7f66bba6 --- /dev/null +++ b/description/gmh5225/win32k_file_collection/description_en.txt @@ -0,0 +1 @@ +This project is a collection of win32k.sys and related Windows kernel GUI subsystem binaries across multiple Windows versions. It archives win32k driver files from different Windows builds for comparative analysis, vulnerability research, and patch diffing. The collection enables studying win32k changes across updates. It is aimed at Windows kernel vulnerability researchers and exploit developers analyzing the win32k attack surface across OS versions. diff --git a/description/gmh5225/win32k_file_collection2/description_en.txt b/description/gmh5225/win32k_file_collection2/description_en.txt new file mode 100644 index 00000000..868c5242 --- /dev/null +++ b/description/gmh5225/win32k_file_collection2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on various versions of win32k files. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/gmh5225/wizard101-spoofer/description_en.txt b/description/gmh5225/wizard101-spoofer/description_en.txt new file mode 100644 index 00000000..bab0ea94 --- /dev/null +++ b/description/gmh5225/wizard101-spoofer/description_en.txt @@ -0,0 +1 @@ +This project is a hardware ID (HWID) spoofer for Wizard101 that modifies system identifiers to evade hardware bans. It changes disk serial numbers, MAC addresses, motherboard UUIDs, and other hardware fingerprints that Wizard101's ban system uses to identify banned players. It is aimed at game security researchers studying HWID-based ban systems and spoofing techniques. diff --git a/description/gmh5225/zam64-zemina/description_en.txt b/description/gmh5225/zam64-zemina/description_en.txt new file mode 100644 index 00000000..07f68571 --- /dev/null +++ b/description/gmh5225/zam64-zemina/description_en.txt @@ -0,0 +1 @@ +This project exploits the Zemana anti-malware driver (zam64.sys) for kernel operations. The Zemana driver's IOCTL interface allows process termination and memory access, making it a known BYOVD target for killing security processes. It is aimed at BYOVD researchers studying Zemana driver exploitation. diff --git a/description/gmh5225/zig-mcp-server/description_en.txt b/description/gmh5225/zig-mcp-server/description_en.txt new file mode 100644 index 00000000..d515543d --- /dev/null +++ b/description/gmh5225/zig-mcp-server/description_en.txt @@ -0,0 +1,3 @@ +This project is a high-performance implementation of the MCP protocol in Zig. +The Zig MCP Server is a memory-efficient implementation of the Model Context Protocol (MCP) specification. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/gmh5225/zygisk-imgui-modmenu/description_en.txt b/description/gmh5225/zygisk-imgui-modmenu/description_en.txt new file mode 100644 index 00000000..a0e0162f --- /dev/null +++ b/description/gmh5225/zygisk-imgui-modmenu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on imGui with Zygisk. +This project was made for fun. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/godotengine/godot-demo-projects/description_en.txt b/description/godotengine/godot-demo-projects/description_en.txt new file mode 100644 index 00000000..a4a1e961 --- /dev/null +++ b/description/godotengine/godot-demo-projects/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on demonstration and Template Projects for Godot. +Most of the demos are exported to GitHub Pages. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/godotengine/godot/description_en.txt b/description/godotengine/godot/description_en.txt new file mode 100644 index 00000000..da555fc5 --- /dev/null +++ b/description/godotengine/godot/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under game engine / source and centers on godot. +It centers on Godot. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/gogo9211/Discord-Overlay-Hook/description_en.txt b/description/gogo9211/Discord-Overlay-Hook/description_en.txt new file mode 100644 index 00000000..d77466f1 --- /dev/null +++ b/description/gogo9211/Discord-Overlay-Hook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dX11. +It is primarily written in C++ and centers on rendering, modding, and hooking. +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / hook area. diff --git a/description/google/android-classyshark/description_en.txt b/description/google/android-classyshark/description_en.txt new file mode 100644 index 00000000..399570b2 --- /dev/null +++ b/description/google/android-classyshark/description_en.txt @@ -0,0 +1 @@ +This project is ClassyShark, a standalone Android binary inspection tool from Google. It analyzes APK, DEX, AAR, and class files, displaying class hierarchies, method counts, field layouts, dependencies, and multidex structure in an interactive GUI. The Java tool provides quick triage of Android application complexity, third-party SDK usage, and native library dependencies. It is aimed at Android developers and security analysts performing rapid APK structure analysis and dependency auditing. diff --git a/description/google/android-emulator-hypervisor-driver/description_en.txt b/description/google/android-emulator-hypervisor-driver/description_en.txt new file mode 100644 index 00000000..403f7144 --- /dev/null +++ b/description/google/android-emulator-hypervisor-driver/description_en.txt @@ -0,0 +1,3 @@ +This project is a hypervisor to accelerate [Android Emulator][android-studio]. +It is made by porting KVM to Windows (Windows 8.1 or later, 64bit). +It is mainly useful for mobile platform and emulator researchers working in the android emulator area. diff --git a/description/google/binexport/description_en.txt b/description/google/binexport/description_en.txt new file mode 100644 index 00000000..a0f8b31d --- /dev/null +++ b/description/google/binexport/description_en.txt @@ -0,0 +1 @@ +This project is BinExport, a binary analysis data exporter plugin for IDA Pro, Ghidra, and Binary Ninja. It serializes disassembly data including functions, basic blocks, instructions, cross-references, and call graphs into Protocol Buffer format for use with BinDiff and other external analysis tools. The C++ plugin provides a standardized intermediate representation for binary comparison and automated analysis workflows. It is aimed at reverse engineers and vulnerability researchers performing cross-tool binary analysis and diffing. diff --git a/description/google/grr/description_en.txt b/description/google/grr/description_en.txt new file mode 100644 index 00000000..c8a127b2 --- /dev/null +++ b/description/google/grr/description_en.txt @@ -0,0 +1 @@ +This project is GRR Rapid Response, an incident response framework for remote live forensics built in Python. It consists of a server component with a web-based administrative interface and lightweight client agents deployed on endpoints that communicate over HTTP. The framework supports collecting forensic artifacts, running file searches, extracting memory, dumping registry data, and executing arbitrary Python-based analysis flows at scale across large fleets of machines. It is aimed at incident responders, forensic investigators, and security operations teams performing large-scale endpoint triage and evidence collection. diff --git a/description/google/orbit/description_en.txt b/description/google/orbit/description_en.txt new file mode 100644 index 00000000..50198537 --- /dev/null +++ b/description/google/orbit/description_en.txt @@ -0,0 +1 @@ +This project is Orbit, a standalone C++ profiler for native applications developed by Google. It instruments functions dynamically at runtime without requiring source code modifications or recompilation, providing function timing, call graphs, thread scheduling, context switch analysis, and memory tracking. The tool uses a client-server architecture supporting remote profiling on Linux while visualizing on Windows. It is aimed at game developers and system programmers profiling complex native applications and identifying performance regressions. diff --git a/description/googleprojectzero/TinyInst/description_en.txt b/description/googleprojectzero/TinyInst/description_en.txt new file mode 100644 index 00000000..7a33d961 --- /dev/null +++ b/description/googleprojectzero/TinyInst/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / dynamic binary instrumentation and centers on tiny inst. +It is primarily written in C/C++ and C++ and centers on hooking and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dynamic binary instrumentation area. diff --git a/description/googleprojectzero/winafl/description_en.txt b/description/googleprojectzero/winafl/description_en.txt new file mode 100644 index 00000000..1ff262ce --- /dev/null +++ b/description/googleprojectzero/winafl/description_en.txt @@ -0,0 +1 @@ +This project is WinAFL, a Windows port of the AFL (American Fuzzy Lop) coverage-guided fuzzer. It uses DynamoRIO or Intel PT for binary instrumentation to track code coverage during fuzzing, supports persistent mode for fast in-process fuzzing, and includes corpus minimization and crash triage utilities. The C tool can fuzz closed-source Windows binaries without source code by hooking target functions and mutating input. It is aimed at vulnerability researchers fuzzing Windows applications, drivers, and parsers for security bugs. diff --git a/description/googlesamples/android-vulkan-tutorials/description_en.txt b/description/googlesamples/android-vulkan-tutorials/description_en.txt new file mode 100644 index 00000000..0a3d63b1 --- /dev/null +++ b/description/googlesamples/android-vulkan-tutorials/description_en.txt @@ -0,0 +1,3 @@ +This project is the ASF licenses this file to you under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. +Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. +It is mainly useful for low-level graphics programmers and performance-focused engine developers working in the vulkan / guide area. diff --git a/description/gopro2027/ParadiseBO2/description_en.txt b/description/gopro2027/ParadiseBO2/description_en.txt new file mode 100644 index 00000000..59cf1f21 --- /dev/null +++ b/description/gopro2027/ParadiseBO2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this is the old Paradise SPRX BO2 soruce code. +This is actually a more recent version, probably most recently released version, because it contains the window code. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/goseungduk/CE_Tracer-IDA/description_en.txt b/description/goseungduk/CE_Tracer-IDA/description_en.txt new file mode 100644 index 00000000..38a6ae06 --- /dev/null +++ b/description/goseungduk/CE_Tracer-IDA/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cheatEngine Value Tracer of IDA. +It is primarily written in Python and centers on plugin development and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/govcert-ch/ConfuserEx_IDAPython/description_en.txt b/description/govcert-ch/ConfuserEx_IDAPython/description_en.txt new file mode 100644 index 00000000..7b855180 --- /dev/null +++ b/description/govcert-ch/ConfuserEx_IDAPython/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on deobfuscation script for ConfuserEx. +It is primarily written in Python. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/gregkh/kernel-development/description_en.txt b/description/gregkh/kernel-development/description_en.txt new file mode 100644 index 00000000..b0b7463e --- /dev/null +++ b/description/gregkh/kernel-development/description_en.txt @@ -0,0 +1 @@ +This project is a documentation and tutorial resource for Linux kernel development by Greg Kroah-Hartman. It covers the kernel development process, coding style, submitting patches, device driver development, and kernel module programming. The materials provide guidance on contributing to the upstream Linux kernel. It is aimed at aspiring Linux kernel developers and systems programmers learning kernel development workflows and conventions. diff --git a/description/greyb1t/GreyM/description_en.txt b/description/greyb1t/GreyM/description_en.txt new file mode 100644 index 00000000..5726b30d --- /dev/null +++ b/description/greyb1t/GreyM/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pE. +It is primarily written in C/C++ and C++ and centers on debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/gscept/nebula/description_en.txt b/description/gscept/nebula/description_en.txt new file mode 100644 index 00000000..b30ed76a --- /dev/null +++ b/description/gscept/nebula/description_en.txt @@ -0,0 +1,3 @@ +This project is the fastest way to setup and test nebula is to clone the Nebula-demo instead. +It contains a setup.bat which will setup dependencies and configure a solution for you to run via fips open. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/gta-reversed/gta-reversed-modern/description_en.txt b/description/gta-reversed/gta-reversed-modern/description_en.txt new file mode 100644 index 00000000..59f4506c --- /dev/null +++ b/description/gta-reversed/gta-reversed-modern/description_en.txt @@ -0,0 +1 @@ +This project is gta-reversed, a collaborative effort to reverse engineer and recreate the source code of Grand Theft Auto: San Andreas in modern C++. It replaces original game functions with decompiled and rewritten equivalents that can be compiled alongside the original binary, progressively replacing game code while maintaining compatibility. The project covers rendering, physics, vehicle handling, player control, mission scripting, and audio systems. It is aimed at game reverse engineers, modders, and researchers studying AAA game engine architecture through systematic decompilation. diff --git a/description/gtibo/Godot-Plush-Character/description_en.txt b/description/gtibo/Godot-Plush-Character/description_en.txt new file mode 100644 index 00000000..e43b5cd1 --- /dev/null +++ b/description/gtibo/Godot-Plush-Character/description_en.txt @@ -0,0 +1 @@ +This project is a Godot Engine plugin or demo implementing plush/soft body character rendering with a stylized stuffed-animal aesthetic. It demonstrates shader-based fabric texturing, soft deformation, and procedural animation techniques for creating visually appealing plush-style 3D characters in Godot. It is aimed at Godot developers and technical artists creating stylized character rendering effects. diff --git a/description/gtworek/VolatileDataCollector/description_en.txt b/description/gtworek/VolatileDataCollector/description_en.txt new file mode 100644 index 00000000..07999415 --- /dev/null +++ b/description/gtworek/VolatileDataCollector/description_en.txt @@ -0,0 +1 @@ +This project is a collection of lightweight Windows C programs for collecting volatile system data during incident response. Individual tools gather specific artifacts including handles, kernel module lists, user sessions, driver information, ICMP connections, and registry settings, each implemented as a standalone utility. It is mainly useful for forensic analysts and security researchers performing Windows system state collection and volatile data acquisition. diff --git a/description/guheng-re/unflat/description_en.txt b/description/guheng-re/unflat/description_en.txt new file mode 100644 index 00000000..34267429 --- /dev/null +++ b/description/guheng-re/unflat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on unflattener. +It is primarily written in Python and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix ollvm area. diff --git a/description/guided-hacking/GH-Entity-List-Finder/description_en.txt b/description/guided-hacking/GH-Entity-List-Finder/description_en.txt new file mode 100644 index 00000000..e438e4cd --- /dev/null +++ b/description/guided-hacking/GH-Entity-List-Finder/description_en.txt @@ -0,0 +1,3 @@ +This project provides scans game processes for most likely entity list addresses. +The tool supports both x64 and x86 games. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/guided-hacking/GH-Offset-Dumper/description_en.txt b/description/guided-hacking/GH-Offset-Dumper/description_en.txt new file mode 100644 index 00000000..c71d9668 --- /dev/null +++ b/description/guided-hacking/GH-Offset-Dumper/description_en.txt @@ -0,0 +1 @@ +This project is GH Offset Dumper, a Windows tool for automatically dumping game structure offsets and interface pointers from running game processes. It uses pattern scanning (signature scanning) to locate game-specific data structures, entity lists, client/engine interfaces, and netvars in memory, outputting the results as header files or JSON. The C++ tool is commonly used with Source engine games. It is aimed at game hackers and modders who need to automatically update memory offsets after game patches. diff --git a/description/guided-hacking/GH_D3D11_Hook/description_en.txt b/description/guided-hacking/GH_D3D11_Hook/description_en.txt new file mode 100644 index 00000000..5edb885f --- /dev/null +++ b/description/guided-hacking/GH_D3D11_Hook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dX11. +The code is heavily commented and doesn't rely on any external libraries. +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / hook area. diff --git a/description/guided-hacking/GuidedHacking-Injector/description_en.txt b/description/guided-hacking/GuidedHacking-Injector/description_en.txt new file mode 100644 index 00000000..0b355fab --- /dev/null +++ b/description/guided-hacking/GuidedHacking-Injector/description_en.txt @@ -0,0 +1 @@ +This project is a feature-rich Windows DLL injector with a C++ GUI built on Qt. It supports multiple injection methods including LoadLibrary, manual mapping, thread hijacking, NtCreateThreadEx, QueueUserAPC, and kernel-mode injection via a vulnerable driver. The tool includes options for DLL cloaking (PEB unlinking, header erasure), import resolution, TLS callback execution, and exception handler registration. It is aimed at game hacking learners and security researchers studying DLL injection techniques and their detection surface. diff --git a/description/guidoreina/minivers/description_en.txt b/description/guidoreina/minivers/description_en.txt new file mode 100644 index 00000000..cc2c10af --- /dev/null +++ b/description/guidoreina/minivers/description_en.txt @@ -0,0 +1,3 @@ +This project generates Backup Copies. +If a monitored file is about to be changed, deleted or renamed, a backup copy of the file is performed before the operation begins. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / backup file area. diff --git a/description/gupr0x4/HWID-Spoofer-for-Fortnite-and-Valorant/description_en.txt b/description/gupr0x4/HWID-Spoofer-for-Fortnite-and-Valorant/description_en.txt new file mode 100644 index 00000000..db97d996 --- /dev/null +++ b/description/gupr0x4/HWID-Spoofer-for-Fortnite-and-Valorant/description_en.txt @@ -0,0 +1,3 @@ +This project is a HWID-Spoofer made by me. +It is primarily written in C and C/C++ and centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/guttir14/UnrealDumper-4.25/description_en.txt b/description/guttir14/UnrealDumper-4.25/description_en.txt new file mode 100644 index 00000000..c4df86b8 --- /dev/null +++ b/description/guttir14/UnrealDumper-4.25/description_en.txt @@ -0,0 +1 @@ +This project is an external Unreal Engine 4.25+ SDK dumper written in C++ that extracts class definitions, property offsets, and function signatures from a running UE4 game process. It locates GObjects and GNames arrays through pattern scanning, walks the UObject hierarchy, and outputs a complete SDK with struct layouts and inheritance chains. The tool operates externally without injection, reading game memory through process handles. It is aimed at game hackers and reverse engineers generating Unreal Engine SDKs for cheat development or game analysis. diff --git a/description/gwaredd/UnityMarkdownViewer/description_en.txt b/description/gwaredd/UnityMarkdownViewer/description_en.txt new file mode 100644 index 00000000..ccd57533 --- /dev/null +++ b/description/gwaredd/UnityMarkdownViewer/description_en.txt @@ -0,0 +1,3 @@ +This project is a markdown viewer for unity. +It should _just work_ without any setup or configuration. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unity area. diff --git a/description/h4sh5/DumpIt-mirror/description_en.txt b/description/h4sh5/DumpIt-mirror/description_en.txt new file mode 100644 index 00000000..8012158a --- /dev/null +++ b/description/h4sh5/DumpIt-mirror/description_en.txt @@ -0,0 +1 @@ +This project is a mirror of Comae's DumpIt memory acquisition tool for Windows. DumpIt creates a complete physical memory dump of a live Windows system in a single click, producing a raw or Microsoft crash dump format file suitable for analysis with tools like Volatility or WinDbg. It is aimed at incident responders and forensic analysts who need a portable, easy-to-use memory capture utility for live acquisition during investigations. diff --git a/description/hLunaaa/hLunaaa.github.io/description_en.txt b/description/hLunaaa/hLunaaa.github.io/description_en.txt new file mode 100644 index 00000000..6844b9c2 --- /dev/null +++ b/description/hLunaaa/hLunaaa.github.io/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on driver Trace Cleaner. +It centers on driver development and asset pipelines. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hide area. diff --git a/description/hackcatml/frida-findJNINativeMethods/description_en.txt b/description/hackcatml/frida-findJNINativeMethods/description_en.txt new file mode 100644 index 00000000..356f35ab --- /dev/null +++ b/description/hackcatml/frida-findJNINativeMethods/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on find JNI native methods while the app is running. +It is primarily written in JavaScript and centers on hooking and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/hackcatml/frida-watchpoint-tutorial/description_en.txt b/description/hackcatml/frida-watchpoint-tutorial/description_en.txt new file mode 100644 index 00000000..101875c0 --- /dev/null +++ b/description/hackcatml/frida-watchpoint-tutorial/description_en.txt @@ -0,0 +1,3 @@ +This project provides frida's setHardwareWatchpoint tutorial. +The first three sections are more like trial and error before writing the final section. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/hackcatml/kfd-explorer/description_en.txt b/description/hackcatml/kfd-explorer/description_en.txt new file mode 100644 index 00000000..0d47e34b --- /dev/null +++ b/description/hackcatml/kfd-explorer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iOS kernel memory explorer. +It is primarily written in Python and Swift and centers on kernel-level work and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios memory explorer area. diff --git a/description/hackcatml/zygisk-memdump/description_en.txt b/description/hackcatml/zygisk-memdump/description_en.txt new file mode 100644 index 00000000..bc0abcc1 --- /dev/null +++ b/description/hackcatml/zygisk-memdump/description_en.txt @@ -0,0 +1,3 @@ +This project is a zygisk module that dumps so file from process memory. +It is primarily written in C/C++ and C++ and centers on modding, hooking, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/hackerhouse-opensource/SignToolEx/description_en.txt b/description/hackerhouse-opensource/SignToolEx/description_en.txt new file mode 100644 index 00000000..48c3da24 --- /dev/null +++ b/description/hackerhouse-opensource/SignToolEx/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sign Leaked Cert. +This allows expired (leaked) certificates to be used for code-signing but does not permit spoofing Authenticode timestamps. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / sign tools area. diff --git a/description/hacksysteam/HackSysExtremeVulnerableDriver/description_en.txt b/description/hacksysteam/HackSysExtremeVulnerableDriver/description_en.txt new file mode 100644 index 00000000..62d4239a --- /dev/null +++ b/description/hacksysteam/HackSysExtremeVulnerableDriver/description_en.txt @@ -0,0 +1,3 @@ +This project provides guide. +It has been developed for security researchers and enthusiasts to improve their skills in kernel-level exploitation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/hadevn/Valorant-SDK-2024/description_en.txt b/description/hadevn/Valorant-SDK-2024/description_en.txt new file mode 100644 index 00000000..791a971f --- /dev/null +++ b/description/hadevn/Valorant-SDK-2024/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK. +It is primarily written in C/C++ and centers on shader work, rendering, and audio systems. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/hadevn/apex_full_cheat/description_en.txt b/description/hadevn/apex_full_cheat/description_en.txt new file mode 100644 index 00000000..d67815f4 --- /dev/null +++ b/description/hadevn/apex_full_cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:apex legends and centers on apex full cheat. +It is primarily written in C/C++ and C++ and centers on rendering, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/halloweeks/pubg-mobile-pak-extract/description_en.txt b/description/halloweeks/pubg-mobile-pak-extract/description_en.txt new file mode 100644 index 00000000..19ec90b5 --- /dev/null +++ b/description/halloweeks/pubg-mobile-pak-extract/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pak extracting tool. +This tool is tailored for versions before the 1.1.0 update, as post-update changes in encryption algorithms are not currently supported. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:pubgm area. diff --git a/description/hanickadot/compile-time-regular-expressions/description_en.txt b/description/hanickadot/compile-time-regular-expressions/description_en.txt new file mode 100644 index 00000000..3ce5a627 --- /dev/null +++ b/description/hanickadot/compile-time-regular-expressions/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on compile Time Regular Expression in C++. +If you are using cmake, you can add this directory as subdirectory and link to target ctre. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/hanickadot/cthash/description_en.txt b/description/hanickadot/cthash/description_en.txt new file mode 100644 index 00000000..caac74a7 --- /dev/null +++ b/description/hanickadot/cthash/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on constexpr implementation of SHA-2 and SHA-3 family of hashes. +The library also implements hash_value literals in namespace cthash::literals (suffixes in parenthesis for each hash function type). +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/haram/splendid_implanter/description_en.txt b/description/haram/splendid_implanter/description_en.txt new file mode 100644 index 00000000..e255aaa2 --- /dev/null +++ b/description/haram/splendid_implanter/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on there is a more detailed write-up at. +This exploits a flaw in the user-mode component of BattlEye that should've never even existed to begin with. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:be area. diff --git a/description/harlamism/IdaClu/description_en.txt b/description/harlamism/IdaClu/description_en.txt new file mode 100644 index 00000000..177988b3 --- /dev/null +++ b/description/harlamism/IdaClu/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin for clustering and organizing functions in large binaries. It provides a Qt-based GUI with internationalization support, function grouping by various criteria, and visual navigation aids to help manage analysis of binaries with many functions. It is mainly useful for reverse engineers working with large binaries in IDA Pro who need better function organization and navigation tools. diff --git a/description/harukumo/HorizonEngine/description_en.txt b/description/harukumo/HorizonEngine/description_en.txt new file mode 100644 index 00000000..a312e852 --- /dev/null +++ b/description/harukumo/HorizonEngine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on 3D rendering engine. +Horizon Engine is currently only supported on Windows and only target modern graphics APIs (Direct3D 12, Vulkan, Metal). +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/hasherezade/mal_unpack_drv/description_en.txt b/description/hasherezade/mal_unpack_drv/description_en.txt new file mode 100644 index 00000000..814111d0 --- /dev/null +++ b/description/hasherezade/mal_unpack_drv/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on wARNING: This is an experimental version, use it on a Virtual Machine only! +The driver is signed by a test signature, so, in order for the installation to succeed, Test Signing must be enabled on the target machine. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / sample unpacker area. diff --git a/description/hasherezade/pe-bear/description_en.txt b/description/hasherezade/pe-bear/description_en.txt new file mode 100644 index 00000000..f0ef9bb6 --- /dev/null +++ b/description/hasherezade/pe-bear/description_en.txt @@ -0,0 +1 @@ +This project is PE-bear, a portable executable (PE) file viewer and editor with a Qt-based GUI. It displays detailed PE structure information including DOS/NT headers, section tables, import/export directories, resources, relocations, debug directories, TLS, and CLR metadata. The tool supports hex editing, section manipulation, overlay extraction, and comparison of multiple PE files side by side. It is aimed at malware analysts, reverse engineers, and security researchers performing manual PE file analysis and modification. diff --git a/description/hasherezade/pe-sieve/description_en.txt b/description/hasherezade/pe-sieve/description_en.txt new file mode 100644 index 00000000..924de72c --- /dev/null +++ b/description/hasherezade/pe-sieve/description_en.txt @@ -0,0 +1,3 @@ +This project is a tool that helps to detect malware running on the system, as well as to collect the potentially malicious material for further analysis. +PE-sieve is meant to be a light-weight engine dedicated to scan a single process at the time. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hook area. diff --git a/description/hasherezade/thread_namecalling/description_en.txt b/description/hasherezade/thread_namecalling/description_en.txt new file mode 100644 index 00000000..0d0c36e5 --- /dev/null +++ b/description/hasherezade/thread_namecalling/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on setThreadDescription. +Then, a function GetThreadDescription is called remotely on the target, via APC, causing the description buffer to be copied into the target’s working set. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/helloobaby/Nmi-Callback/description_en.txt b/description/helloobaby/Nmi-Callback/description_en.txt new file mode 100644 index 00000000..0093d60c --- /dev/null +++ b/description/helloobaby/Nmi-Callback/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on nMI Callback. +It is primarily written in C/C++ and C++ and centers on kernel-level work, driver development, and modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection: hacked hypervisor area. diff --git a/description/helloobaby/wow-IAT-fix/description_en.txt b/description/helloobaby/wow-IAT-fix/description_en.txt new file mode 100644 index 00000000..a3d79da0 --- /dev/null +++ b/description/helloobaby/wow-IAT-fix/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:wow and centers on wow iat fix. +It is primarily written in C/C++ and C++ and centers on plugin development, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:wow area. diff --git a/description/helpsystems/Agafi/description_en.txt b/description/helpsystems/Agafi/description_en.txt new file mode 100644 index 00000000..99228925 --- /dev/null +++ b/description/helpsystems/Agafi/description_en.txt @@ -0,0 +1,3 @@ +This project is a gadget finder and a ROP-Chainer tool for x86 platforms. +Agafi (Advanced Gadget Finder) is a x86 gadget-finder tool useful to find gadgets in programs, modules and running processes. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rop finder area. diff --git a/description/helpsystems/turbodiff/description_en.txt b/description/helpsystems/turbodiff/description_en.txt new file mode 100644 index 00000000..07512c2f --- /dev/null +++ b/description/helpsystems/turbodiff/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on diff. +It discovers and analyzes differences between the functions of two binaries. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/hercul3s/Packet-Sniffer/description_en.txt b/description/hercul3s/Packet-Sniffer/description_en.txt new file mode 100644 index 00000000..aceaabba --- /dev/null +++ b/description/hercul3s/Packet-Sniffer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on packet Logger/Decryptor. +It is primarily written in C/C++ and C++ and centers on networking and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / packet sniffer&filter area. diff --git a/description/herosi/PyClassInformer/description_en.txt b/description/herosi/PyClassInformer/description_en.txt new file mode 100644 index 00000000..4a026bf8 --- /dev/null +++ b/description/herosi/PyClassInformer/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin that identifies and classifies C++ RTTI (Run-Time Type Information) structures in binaries. It provides class hierarchy visualization, automatic function renaming based on RTTI data, library flag classification, method classification, and configurable coloring for identified class members. It is mainly useful for reverse engineers analyzing C++ binaries who need automated class structure recovery and RTTI-based function identification. diff --git a/description/hfiref0x/KDU/description_en.txt b/description/hfiref0x/KDU/description_en.txt new file mode 100644 index 00000000..bc71519b --- /dev/null +++ b/description/hfiref0x/KDU/description_en.txt @@ -0,0 +1 @@ +This project is the Kernel Driver Utility (KDU), a Windows tool for loading unsigned kernel drivers by exploiting vulnerable legitimate signed drivers (BYOVD). It includes an extensible provider system supporting dozens of known vulnerable drivers (Intel, ASUS, MSI, Gigabyte, etc.) to gain arbitrary kernel read/write or code execution, then uses those primitives to map a custom unsigned driver into kernel memory. The C codebase automates DSE bypass, driver mapping, and cleanup. It is aimed at security researchers studying driver signature enforcement bypass and the BYOVD attack surface. diff --git a/description/hfiref0x/UPGDSED/description_en.txt b/description/hfiref0x/UPGDSED/description_en.txt new file mode 100644 index 00000000..29fe9c41 --- /dev/null +++ b/description/hfiref0x/UPGDSED/description_en.txt @@ -0,0 +1 @@ +This project is UPGDSED (Universal PatchGuard and DSE Disable), a Windows tool for disabling PatchGuard (Kernel Patch Protection) and Driver Signature Enforcement (DSE) at runtime. It uses multiple techniques including exploiting vulnerable signed drivers, manipulating CI.dll globals, and patching KPP context data to allow loading of unsigned kernel drivers and modifying protected kernel structures. The C codebase targets multiple Windows versions from 7 through 11. It is aimed at kernel researchers studying PatchGuard internals, DSE bypass methods, and Windows kernel security mechanisms. diff --git a/description/hfiref0x/WinObjEx64/description_en.txt b/description/hfiref0x/WinObjEx64/description_en.txt new file mode 100644 index 00000000..659545bc --- /dev/null +++ b/description/hfiref0x/WinObjEx64/description_en.txt @@ -0,0 +1,3 @@ +This project is an advanced utility that lets you explore the Windows Object Manager namespace. +However, administrative privileges are required to view much of the namespace and to edit object-related security information. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / windows ring0 callback area. diff --git a/description/hfiref0x/WubbabooMark/description_en.txt b/description/hfiref0x/WubbabooMark/description_en.txt new file mode 100644 index 00000000..1ac22e13 --- /dev/null +++ b/description/hfiref0x/WubbabooMark/description_en.txt @@ -0,0 +1,3 @@ +This project is aimed to detect traces of usage of software debuggers or special software designed to hide debugger presence from the debugee by tampering with various aspects of the program environment. +The typical set of debuggers nowadays is actually limited to a few most popular solutions like Ghidra/IDA/OllyDbg/x32+x64dbg/WinDbg and so on. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti debugging area. diff --git a/description/hiatus/adbg/description_en.txt b/description/hiatus/adbg/description_en.txt new file mode 100644 index 00000000..c846cf71 --- /dev/null +++ b/description/hiatus/adbg/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linux anti-debugging techniques. +It is primarily written in C and C/C++ and centers on debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti debugging area. diff --git a/description/hid3rx/PEPacker/description_en.txt b/description/hid3rx/PEPacker/description_en.txt new file mode 100644 index 00000000..7518b358 --- /dev/null +++ b/description/hid3rx/PEPacker/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pE X64. +It is primarily written in C++ and centers on asset pipelines. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/hkx3upper/Karlann/description_en.txt b/description/hkx3upper/Karlann/description_en.txt new file mode 100644 index 00000000..16d0f71f --- /dev/null +++ b/description/hkx3upper/Karlann/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver proof-of-concept that implements keyboard input injection and Winsock kernel (WSK) network communication from kernel mode. The C driver includes keyboard simulation through Kbd.c and network socket operations through Wsk.c with a libwsk helper library. It is mainly useful for kernel security researchers studying kernel-mode input injection and WSK network communication techniques. diff --git a/description/holi4m/gdrv-loader-v2/description_en.txt b/description/holi4m/gdrv-loader-v2/description_en.txt new file mode 100644 index 00000000..e0ee75ed --- /dev/null +++ b/description/holi4m/gdrv-loader-v2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on gdrv.sys. +It is primarily written in C/C++ and C++ and centers on driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/hooksteroid/ApexD3D_External/description_en.txt b/description/hooksteroid/ApexD3D_External/description_en.txt new file mode 100644 index 00000000..cf72fd2b --- /dev/null +++ b/description/hooksteroid/ApexD3D_External/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:apex legends and centers on apex d3 d external. +It is primarily written in C/C++ and C++ and centers on driver development, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:apex legends area. diff --git a/description/hooksteroid/R6Table_Internal/description_en.txt b/description/hooksteroid/R6Table_Internal/description_en.txt new file mode 100644 index 00000000..0b460b20 --- /dev/null +++ b/description/hooksteroid/R6Table_Internal/description_en.txt @@ -0,0 +1 @@ +This project is an internal cheat for Rainbow Six Siege written in C++ that hooks into the game process to provide ESP, aimbot, and player information features. It reads game entity data through direct memory access using reverse-engineered SDK structures and renders overlays through the game's own rendering pipeline. The codebase demonstrates Unreal Engine-based FPS cheat patterns specific to R6S. It is aimed at game security researchers studying Rainbow Six Siege cheat implementations and anti-cheat detection vectors. diff --git a/description/horsicq/Nauz-File-Detector/description_en.txt b/description/horsicq/Nauz-File-Detector/description_en.txt new file mode 100644 index 00000000..0868cf0b --- /dev/null +++ b/description/horsicq/Nauz-File-Detector/description_en.txt @@ -0,0 +1 @@ +This project is Nauz File Detector (NFD), a tool for identifying packers, compilers, protectors, and linkers used to build executable files. It scans PE, ELF, Mach-O, and other binary formats using signature-based detection to identify hundreds of known compilers (MSVC, GCC, Clang), packers (UPX, ASPack), protectors (Themida, VMProtect), and installers. The C++/Qt application provides both GUI and command-line interfaces. It is aimed at malware analysts and reverse engineers performing initial binary triage. diff --git a/description/horsicq/x64dbg-Plugin-Manager/description_en.txt b/description/horsicq/x64dbg-Plugin-Manager/description_en.txt new file mode 100644 index 00000000..c334fbf3 --- /dev/null +++ b/description/horsicq/x64dbg-Plugin-Manager/description_en.txt @@ -0,0 +1,3 @@ +This project provides x64dbg plugin manager. +It is primarily written in C++ and C/C++ and centers on plugin development and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/hotline1337/equ8_bypass/description_en.txt b/description/hotline1337/equ8_bypass/description_en.txt new file mode 100644 index 00000000..a684656a --- /dev/null +++ b/description/hotline1337/equ8_bypass/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple EQU8 User-Mode Bypass that uses registry to find the driver path and close the IOCTL handle. +Pull requests are welcome. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:equ8 area. diff --git a/description/hotline1337/page_no_access/description_en.txt b/description/hotline1337/page_no_access/description_en.txt new file mode 100644 index 00000000..628db076 --- /dev/null +++ b/description/hotline1337/page_no_access/description_en.txt @@ -0,0 +1,3 @@ +This project is the pages will be decrypted on their very first access. +It is primarily written in C++ and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / page protection area. diff --git a/description/hotline1337/umium/description_en.txt b/description/hotline1337/umium/description_en.txt new file mode 100644 index 00000000..4374d3e6 --- /dev/null +++ b/description/hotline1337/umium/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on c++/CLI. +It uses a combination of undocumented Windows NT system functions and advanced runtime modifications to detect and neutralize debugging, memory tampering, or sandboxing attempts. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti debugging area. diff --git a/description/hualuoo/palworld-helper/description_en.txt b/description/hualuoo/palworld-helper/description_en.txt new file mode 100644 index 00000000..342918b6 --- /dev/null +++ b/description/hualuoo/palworld-helper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on helper. +It is primarily written in Python and centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:palworld [ue5] area. diff --git a/description/huangkaoya/redalert2/description_en.txt b/description/huangkaoya/redalert2/description_en.txt new file mode 100644 index 00000000..4392de96 --- /dev/null +++ b/description/huangkaoya/redalert2/description_en.txt @@ -0,0 +1 @@ +This project is a Red Alert 2 game engine reimplementation or modification project. It works with the Command & Conquer: Red Alert 2 / Yuri's Revenge game logic, implementing or extending RTS game mechanics including unit AI, building construction, resource management, multiplayer networking, and map rendering. It is aimed at classic RTS game modders and game engine researchers studying Westwood-era RTS engine architecture. diff --git a/description/huawei-mediatek-devs/android_kernel_huawei_mt6761/description_en.txt b/description/huawei-mediatek-devs/android_kernel_huawei_mt6761/description_en.txt new file mode 100644 index 00000000..f7b3e315 --- /dev/null +++ b/description/huawei-mediatek-devs/android_kernel_huawei_mt6761/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on huawei mt6761. +It centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel source area. diff --git a/description/hubblo-org/windows-rapl-driver/description_en.txt b/description/hubblo-org/windows-rapl-driver/description_en.txt new file mode 100644 index 00000000..58a72797 --- /dev/null +++ b/description/hubblo-org/windows-rapl-driver/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on windows driver to get RAPL metrics from a bare metal machine. +It should say "WindowsKernelModeDriver10.0". +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hwid area. diff --git a/description/hugsy/CFB/description_en.txt b/description/hugsy/CFB/description_en.txt new file mode 100644 index 00000000..42953e29 --- /dev/null +++ b/description/hugsy/CFB/description_en.txt @@ -0,0 +1 @@ +This project is CFB (Canadian Furious Beaver), a Windows kernel-mode IRP (I/O Request Packet) monitoring framework. It installs a filter driver that hooks the IRP dispatch table of target drivers, logging all IRP requests with parameters, buffers, and return values. The C kernel driver and Python client allow real-time monitoring of driver communication for reverse engineering IOCTL interfaces. It is aimed at Windows kernel researchers and reverse engineers studying driver communication protocols and IOCTL fuzzing. diff --git a/description/hugsy/ropgadget-rs/description_en.txt b/description/hugsy/ropgadget-rs/description_en.txt new file mode 100644 index 00000000..15174cd8 --- /dev/null +++ b/description/hugsy/ropgadget-rs/description_en.txt @@ -0,0 +1 @@ +This project is a ROP gadget finder written in Rust for discovering Return-Oriented Programming gadgets in binary executables. It scans PE, ELF, and Mach-O binaries for instruction sequences ending in return instructions that can be chained for exploitation. The Rust implementation provides fast parallel scanning across large binaries. It is aimed at exploit developers and vulnerability researchers building ROP chains for binary exploitation. diff --git a/description/huntandhackett/process-cloning/description_en.txt b/description/huntandhackett/process-cloning/description_en.txt new file mode 100644 index 00000000..d5a8b9e6 --- /dev/null +++ b/description/huntandhackett/process-cloning/description_en.txt @@ -0,0 +1 @@ +This project is a Windows process cloning proof of concept in C that creates a copy of a running process using NtCreateProcessEx with the parent process handle. The cloned process inherits the virtual address space snapshot of the original, enabling techniques such as process hollowing, memory analysis, or credential dumping from the clone without directly accessing the target. It is aimed at security researchers studying process manipulation techniques and their detection opportunities. diff --git a/description/huoji120/Etw-Syscall/description_en.txt b/description/huoji120/Etw-Syscall/description_en.txt new file mode 100644 index 00000000..ce64a443 --- /dev/null +++ b/description/huoji120/Etw-Syscall/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eTW Syscall. +It is primarily written in C++ and C/C++ and centers on modding and hooking. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/huoji120/goodeye/description_en.txt b/description/huoji120/goodeye/description_en.txt new file mode 100644 index 00000000..97306122 --- /dev/null +++ b/description/huoji120/goodeye/description_en.txt @@ -0,0 +1,3 @@ +This project is the below function will be executed in each thread that bedaisy registers an APC on. +It is primarily written in C++ and C/C++ and centers on reverse engineering, kernel-level work, and driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:be area. diff --git a/description/hx1997/dayu/description_en.txt b/description/hx1997/dayu/description_en.txt new file mode 100644 index 00000000..4881f491 --- /dev/null +++ b/description/hx1997/dayu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on open/HarmonyOS abc file parser and decompiler. +My availability and expertise are limited, so decompilation correctness and future maintenance are NOT guaranteed. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/hypervisor/kli/description_en.txt b/description/hypervisor/kli/description_en.txt new file mode 100644 index 00000000..98064ea5 --- /dev/null +++ b/description/hypervisor/kli/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple header only, kernel-mode alternative to lazy_importer. +It is primarily written in C++ and centers on kernel-level work and modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / lazy importer area. diff --git a/description/hyuunnn/Hyara/description_en.txt b/description/hyuunnn/Hyara/description_en.txt new file mode 100644 index 00000000..5ffe77c9 --- /dev/null +++ b/description/hyuunnn/Hyara/description_en.txt @@ -0,0 +1 @@ +This project is a multi-platform YARA rule generation plugin supporting IDA Pro, Ghidra, Binary Ninja, and Cutter. The Python-based tool provides integrated APIs for each disassembler to create, check, and detect YARA signatures directly from binary analysis environments. It is mainly useful for malware analysts and reverse engineers who need to generate YARA rules from binary patterns across different disassembly platforms. diff --git a/description/hzqst/FuckCertVerifyTimeValidity/description_en.txt b/description/hzqst/FuckCertVerifyTimeValidity/description_en.txt new file mode 100644 index 00000000..afb9ef20 --- /dev/null +++ b/description/hzqst/FuckCertVerifyTimeValidity/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sign Leaked Cert. +It is primarily written in C++ and C/C++ and centers on kernel-level work and hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / sign tools area. diff --git a/description/hzqst/VmwareHardenedLoader/description_en.txt b/description/hzqst/VmwareHardenedLoader/description_en.txt new file mode 100644 index 00000000..3012edab --- /dev/null +++ b/description/hzqst/VmwareHardenedLoader/description_en.txt @@ -0,0 +1 @@ +This project is a VMware anti-detection hardening tool that patches VMware virtual machines to evade VM detection techniques used by malware and anti-cheat systems. It modifies CPUID leaves, SMBIOS tables, ACPI data, registry keys, MAC addresses, and other hardware fingerprints to make the VM appear as a physical machine. The C/C++ loader operates at the hypervisor level and includes both Windows and Linux guest support. It is aimed at malware analysts and game security researchers needing to hide virtualization from VM-aware software. diff --git a/description/hzqst/unicorn_pe/description_en.txt b/description/hzqst/unicorn_pe/description_en.txt new file mode 100644 index 00000000..1139d0cb --- /dev/null +++ b/description/hzqst/unicorn_pe/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on unicorn PE Unicorn PE is an unicorn based instrumentation project/framework designed to emulate code execution for windows PE files, especially packed ones. +Show disasm for all instructions that is being executed. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dynamic binary instrumentation area. diff --git a/description/iArtorias/debug_remover/description_en.txt b/description/iArtorias/debug_remover/description_en.txt new file mode 100644 index 00000000..f53baae6 --- /dev/null +++ b/description/iArtorias/debug_remover/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on strip Debug Info. +It is primarily written in C/C++ and C++ and centers on debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/iBotPeaches/Apktool/description_en.txt b/description/iBotPeaches/Apktool/description_en.txt new file mode 100644 index 00000000..871cbe79 --- /dev/null +++ b/description/iBotPeaches/Apktool/description_en.txt @@ -0,0 +1 @@ +This project is Apktool, a tool for reverse engineering Android APK files. It decodes resources to nearly original form, including layouts, strings, and assets, and rebuilds them after modification. It supports smali disassembly/reassembly of DEX bytecode, resource table decoding, AndroidManifest.xml parsing, and APK repackaging with proper resource compilation. The Java tool enables APK modification without access to original source code. It is aimed at Android reverse engineers, modders, and security researchers who need to inspect, modify, and repackage Android applications. diff --git a/description/iCollin/pubg-internal/description_en.txt b/description/iCollin/pubg-internal/description_en.txt new file mode 100644 index 00000000..c4efac7a --- /dev/null +++ b/description/iCollin/pubg-internal/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on code is by no means pretty. +This is a reference to learn about the game. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:pubg area. diff --git a/description/icculus/mojoelf/description_en.txt b/description/icculus/mojoelf/description_en.txt new file mode 100644 index 00000000..1f39eff9 --- /dev/null +++ b/description/icculus/mojoelf/description_en.txt @@ -0,0 +1,3 @@ +This project is an ELF binary loader that runs in your application instead of as part of the C runtime. +The most useful feature of this is that, unlike the standard dlopen(), it can load an ELF file from a place other than the filesystem. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android memory loading area. diff --git a/description/icelemon1314/mapleLemon/description_en.txt b/description/icelemon1314/mapleLemon/description_en.txt new file mode 100644 index 00000000..88d409b1 --- /dev/null +++ b/description/icelemon1314/mapleLemon/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on private Server-CMS-027. +It is primarily written in Java and JavaScript and centers on modding and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:maplestory area. diff --git a/description/icsharpcode/ILSpy/description_en.txt b/description/icsharpcode/ILSpy/description_en.txt new file mode 100644 index 00000000..a213afc9 --- /dev/null +++ b/description/icsharpcode/ILSpy/description_en.txt @@ -0,0 +1 @@ +This project is ILSpy, an open-source .NET assembly browser and decompiler. It decompiles .NET assemblies back to C#, VB.NET, or IL code, supporting all major .NET versions including .NET Framework, .NET Core, and .NET 5+. The tool provides an interactive tree-based assembly browser, syntax-highlighted source code view, search functionality, and plugin extensibility. It handles complex decompilation scenarios including async/await patterns, LINQ expressions, and generic types. It is aimed at .NET developers, reverse engineers, and security researchers examining managed code binaries. diff --git a/description/idkhidden/DrawIDA/description_en.txt b/description/idkhidden/DrawIDA/description_en.txt new file mode 100644 index 00000000..73599a83 --- /dev/null +++ b/description/idkhidden/DrawIDA/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on lightweight whiteboard plugin for IDA that allows reverse engineers to sketch and brainstorm directly inside IDA. +DrawIDA is licensed under the MIT License – see the LICENSE file for details. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/igozdev/xorlit/description_en.txt b/description/igozdev/xorlit/description_en.txt new file mode 100644 index 00000000..b24bb9a6 --- /dev/null +++ b/description/igozdev/xorlit/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on string Crypter. +In the case that one argument is passed, the key used will default to xorlit::seed. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/igromanru/Dark-Souls-III-Cheat-Engine-Guide/description_en.txt b/description/igromanru/Dark-Souls-III-Cheat-Engine-Guide/description_en.txt new file mode 100644 index 00000000..2c2c5073 --- /dev/null +++ b/description/igromanru/Dark-Souls-III-Cheat-Engine-Guide/description_en.txt @@ -0,0 +1,3 @@ +This project is the most recent table is the The Grand Archives Dark Souls III Cheat Table. +The use of invalid data during gameplay is a violation of the online service end user license agreement. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:dark souls area. diff --git a/description/igromanru/R6-Chams-public/description_en.txt b/description/igromanru/R6-Chams-public/description_en.txt new file mode 100644 index 00000000..cdd269f6 --- /dev/null +++ b/description/igromanru/R6-Chams-public/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on chams. +Disclaimer This source code is intended for educational purposes only, to demonstration how Chameleon Models with a "visual check" can be achieved with a more or less clean code. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:r6 area. diff --git a/description/ikhsanprasetyo/dota2dumped/description_en.txt b/description/ikhsanprasetyo/dota2dumped/description_en.txt new file mode 100644 index 00000000..5e6bed3b --- /dev/null +++ b/description/ikhsanprasetyo/dota2dumped/description_en.txt @@ -0,0 +1 @@ +This project is a collection of dumped Dota 2 game data including netvar offsets, interface pointers, and class structure definitions extracted from the Source 2 engine. It provides C++ headers with entity field offsets, ability data structures, and game state layouts updated after game patches. It is aimed at Dota 2 modders and game security researchers who need current memory layout information for the Source 2 engine as used in Dota 2. diff --git a/description/illegal-instruction-co/CountHook/description_en.txt b/description/illegal-instruction-co/CountHook/description_en.txt new file mode 100644 index 00000000..2994b2c3 --- /dev/null +++ b/description/illegal-instruction-co/CountHook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on workingSet. +This example includes a way to bypass them. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / bypass page protection area. diff --git a/description/illegal-instruction-co/processhacker-mcp/description_en.txt b/description/illegal-instruction-co/processhacker-mcp/description_en.txt new file mode 100644 index 00000000..909f8fcf --- /dev/null +++ b/description/illegal-instruction-co/processhacker-mcp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP for runtime analysis and process hacking; ProcessHacker for AI agents, extensible with DLL plugins. +It is primarily written in C++ and C/C++ and centers on asset pipelines, editor tooling, and plugin development. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/imadr/Unity-game-hacking/description_en.txt b/description/imadr/Unity-game-hacking/description_en.txt new file mode 100644 index 00000000..3fbd8975 --- /dev/null +++ b/description/imadr/Unity-game-hacking/description_en.txt @@ -0,0 +1,3 @@ +This project provides this is a small guide for extracting and modifying assets or code from games made with the unity engine. +It centers on asset pipelines, modding, and Unity. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/imnotdatguy/csgo2-cheat/description_en.txt b/description/imnotdatguy/csgo2-cheat/description_en.txt new file mode 100644 index 00000000..a835a904 --- /dev/null +++ b/description/imnotdatguy/csgo2-cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:cs2 and centers on csgo2 cheat. +It is primarily written in C++ and C/C++ and centers on rendering, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/imugee/xdv/description_en.txt b/description/imugee/xdv/description_en.txt new file mode 100644 index 00000000..a799a747 --- /dev/null +++ b/description/imugee/xdv/description_en.txt @@ -0,0 +1,3 @@ +This project is disassembler or debugger that works based on the extension plugin. +It is primarily written in C/C++ and C++ and centers on plugin development, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/imxiaoc996/DeviceWarLock/description_en.txt b/description/imxiaoc996/DeviceWarLock/description_en.txt new file mode 100644 index 00000000..75d5994a --- /dev/null +++ b/description/imxiaoc996/DeviceWarLock/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android. +It is primarily written in Java and C/C++ and centers on networking, SDK generation, and hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hwid area. diff --git a/description/inanevin/LinaEngine/description_en.txt b/description/inanevin/LinaEngine/description_en.txt new file mode 100644 index 00000000..ca9adcd2 --- /dev/null +++ b/description/inanevin/LinaEngine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on lina Engine is a cross-platform, lightweight, straight to the point open-source 3D game engine. +The reasoning behind Lina is first personal learning, and creating a library of tools for myself like LinaVG, a vector graphics library used in Lina's GUI and editor systems, or like LinaGX, a complete Vulkan, DX12 and Metal graphics backend. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/inflation/goldberg_emulator/description_en.txt b/description/inflation/goldberg_emulator/description_en.txt new file mode 100644 index 00000000..c8e79f8c --- /dev/null +++ b/description/inflation/goldberg_emulator/description_en.txt @@ -0,0 +1 @@ +This project is the Goldberg Steam Emulator, a Steam API compatibility layer that emulates Steamworks API calls without connecting to Steam servers. It replaces steam_api.dll/steam_api64.dll to provide offline functionality for Steam-dependent games, emulating achievements, leaderboards, matchmaking, overlay, and DLC ownership checks locally. The C++ library supports LAN multiplayer through direct network broadcasting. It is aimed at game preservation enthusiasts, modders, and researchers studying Steam DRM and API dependencies. diff --git a/description/intel/pcm/description_en.txt b/description/intel/pcm/description_en.txt new file mode 100644 index 00000000..cf56a78b --- /dev/null +++ b/description/intel/pcm/description_en.txt @@ -0,0 +1 @@ +This project is Intel Performance Counter Monitor (PCM), a tool suite for monitoring CPU performance metrics, memory bandwidth, PCIe throughput, and power consumption on Intel processors. The C++ codebase supports Docker deployment, CXL monitoring, and extensive documentation on custom compilation options and environment variables. It is mainly useful for performance engineers and security researchers profiling system-level performance and hardware counter behavior. diff --git a/description/intelpt/WindowsIntelPT/description_en.txt b/description/intelpt/WindowsIntelPT/description_en.txt new file mode 100644 index 00000000..1d8d1f25 --- /dev/null +++ b/description/intelpt/WindowsIntelPT/description_en.txt @@ -0,0 +1 @@ +This project is a Windows driver and user-mode library for capturing Intel Processor Trace (IPT) data on Windows systems. It provides a kernel driver that configures IPT MSRs and manages trace buffers, along with a user-mode API for starting/stopping traces and processing captured data. The tool supports both per-process and system-wide tracing modes. It is aimed at security researchers and tool developers using Intel PT for Windows binary tracing, coverage-guided fuzzing, and execution analysis. diff --git a/description/intelpt/processor-trace/description_en.txt b/description/intelpt/processor-trace/description_en.txt new file mode 100644 index 00000000..6ee379d3 --- /dev/null +++ b/description/intelpt/processor-trace/description_en.txt @@ -0,0 +1 @@ +This project is the Intel Processor Trace (PT) decoder library (libipt), an open-source reference implementation for decoding Intel PT trace packets. It reconstructs instruction-level execution traces from raw PT data, handling timing, control flow, and packet decoding across multiple trace formats. The C library provides APIs for packet-level and instruction-level trace decoding. It is aimed at debugger authors, performance tool developers, and security researchers building Intel PT-based tracing and coverage tools. diff --git a/description/intelpt/winipt/description_en.txt b/description/intelpt/winipt/description_en.txt new file mode 100644 index 00000000..f08893c5 --- /dev/null +++ b/description/intelpt/winipt/description_en.txt @@ -0,0 +1 @@ +This project is WinIPT, a library and tools for controlling Intel Processor Trace (IPT) on Windows. It provides APIs for configuring and collecting IPT traces from user-mode and kernel-mode code, supporting per-process and per-CPU tracing modes. The C library wraps Windows IPT driver interfaces for trace buffer management and configuration. It is aimed at security researchers and performance analysts using Intel PT for code coverage, fuzzing, and execution tracing on Windows. diff --git a/description/inuNorii/Elden-Ring-CT-TGA/description_en.txt b/description/inuNorii/Elden-Ring-CT-TGA/description_en.txt new file mode 100644 index 00000000..9273e53a --- /dev/null +++ b/description/inuNorii/Elden-Ring-CT-TGA/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on elden Ring. +~/.steam/steam/steamapps/compatdata/1245620/pfx/drive_c/) In Steam, set the game's launch options to protonhax init %command% Run the game via Steam (Disabling EasyAntiCheat is optional) Run Cheat Engine via protonhax run 1245620 /path/to/Cheat\ Engine.exe in your terminal of choice or put it in a shell script (replace /path/to/ with your actual path to where you installed CE, default should be ~/.wine/drive_c/Program\ Files/Cheat\ Engine\ 7.5/Cheat\ Engine.exe) Load the .CT file via File->Load or by clicking on the folder icon Activate the "Open" script by ticking its box. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / cheat engine plugins area. diff --git a/description/invi1998/MultiplayerBlasterGame/description_en.txt b/description/invi1998/MultiplayerBlasterGame/description_en.txt new file mode 100644 index 00000000..73689aa2 --- /dev/null +++ b/description/invi1998/MultiplayerBlasterGame/description_en.txt @@ -0,0 +1 @@ +This project is an Unreal Engine multiplayer FPS game called Blaster with full networking support. It includes character animation systems with aim offsets, weapon mechanics, game mode logic, and HoloLens platform configuration, built as a complete playable multiplayer shooter. It is mainly useful for game developers and engine researchers studying Unreal Engine multiplayer game architecture and network replication patterns. diff --git a/description/iofomo/abyss/description_en.txt b/description/iofomo/abyss/description_en.txt new file mode 100644 index 00000000..6dc9c512 --- /dev/null +++ b/description/iofomo/abyss/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android system call hook. +It is primarily written in C/C++ and C and centers on asset pipelines, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/ioncodes/pooldump/description_en.txt b/description/ioncodes/pooldump/description_en.txt new file mode 100644 index 00000000..2b3aee9a --- /dev/null +++ b/description/ioncodes/pooldump/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel pool memory dumper that extracts and displays contents of kernel pool allocations. It scans kernel pool pages to enumerate allocated blocks, their pool tags, sizes, and owning drivers, and can dump the contents of specific pool allocations. The tool helps identify kernel-mode artifacts left by drivers and rootkits in pool memory. It is aimed at kernel forensics researchers and anti-cheat analysts examining kernel pool artifacts for evidence of manually mapped drivers. diff --git a/description/ioncodes/vacation3-emu/description_en.txt b/description/ioncodes/vacation3-emu/description_en.txt new file mode 100644 index 00000000..eae56327 --- /dev/null +++ b/description/ioncodes/vacation3-emu/description_en.txt @@ -0,0 +1 @@ +This project is a VAC3 (Valve Anti-Cheat version 3) module emulator that loads and executes VAC scanning modules in a controlled environment outside of the Steam client. It emulates the module loading interface, provides fake game memory for scanning, and logs which memory regions and patterns VAC modules check. The C++ emulator helps researchers understand VAC's detection methodology. It is aimed at anti-cheat researchers reverse engineering VAC3's scanning behavior and detection signatures. diff --git a/description/iqrw0/DieDMAProtection/description_en.txt b/description/iqrw0/DieDMAProtection/description_en.txt new file mode 100644 index 00000000..c16f1f43 --- /dev/null +++ b/description/iqrw0/DieDMAProtection/description_en.txt @@ -0,0 +1 @@ +This project is a Windows proof of concept that disables DMA protection mechanisms (IOMMU/VT-d) to re-enable direct physical memory access from external PCIe devices. It manipulates DMA remapping configuration to bypass protections that would otherwise block FPGA-based DMA attack hardware from reading game process memory. The C kernel driver demonstrates the attack surface of DMA protection implementations. It is aimed at security researchers studying DMA protection bypass techniques and IOMMU security boundaries. diff --git a/description/irisengine/iris/description_en.txt b/description/irisengine/iris/description_en.txt new file mode 100644 index 00000000..3ac25cce --- /dev/null +++ b/description/irisengine/iris/description_en.txt @@ -0,0 +1 @@ +This project is a cross-platform C++ game engine called Iris with a component-based architecture, CMake build system, and support for multiple rendering backends. It includes camera systems, color management, smart pointer utilities, and modern C++ concepts-based interfaces. It is mainly useful for game engine developers studying lightweight, modern C++ engine design with template metaprogramming patterns. diff --git a/description/irql/nokd/description_en.txt b/description/irql/nokd/description_en.txt new file mode 100644 index 00000000..2629fd96 --- /dev/null +++ b/description/irql/nokd/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on kernel debugger protocol. +The implementation does not require any of the KD specific variables in ntoskrnl to be set, it will copy the KdDebuggerDataBlock to local memory and decoded it inline, then pass this to WinDBG as the debugger block, making it very difficult to flag. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/isadorasophia/murder/description_en.txt b/description/isadorasophia/murder/description_en.txt new file mode 100644 index 00000000..104d6343 --- /dev/null +++ b/description/isadorasophia/murder/description_en.txt @@ -0,0 +1 @@ +This project is Murder Engine, a pixel art 2D game engine written in C# built on MonoGame. It provides an ECS (Entity Component System) architecture, Aseprite sprite integration, dialogue systems, input management, physics, particle effects, and a visual editor for building narrative-driven pixel art games. The engine emphasizes clean API design and efficient 2D rendering. It is aimed at indie game developers creating story-driven 2D games with pixel art aesthetics. diff --git a/description/isiddique2024/Page-Table-Injector/description_en.txt b/description/isiddique2024/Page-Table-Injector/description_en.txt new file mode 100644 index 00000000..9e03de75 --- /dev/null +++ b/description/isiddique2024/Page-Table-Injector/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on page Table Injector (PT-Injector. +It is primarily written in C++ and C/C++ and centers on anti-cheat research, kernel-level work, and driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/isoadam/gina_public/description_en.txt b/description/isoadam/gina_public/description_en.txt new file mode 100644 index 00000000..0264a910 --- /dev/null +++ b/description/isoadam/gina_public/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hijack IRP Null. +It is primarily written in C/C++ and C++ and centers on driver development and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/ispras/qemu/description_en.txt b/description/ispras/qemu/description_en.txt new file mode 100644 index 00000000..817ba3ff --- /dev/null +++ b/description/ispras/qemu/description_en.txt @@ -0,0 +1 @@ +This project is a modified QEMU fork from ISP RAS (Institute for System Programming of the Russian Academy of Sciences) with additional analysis and instrumentation capabilities. It extends QEMU's dynamic binary translation engine with features for program analysis, code coverage collection, taint tracking, or symbolic execution support. It is aimed at systems researchers and security analysts using QEMU as a platform for binary analysis and vulnerability research. diff --git a/description/issuimo/UnityResolve.hpp/description_en.txt b/description/issuimo/UnityResolve.hpp/description_en.txt new file mode 100644 index 00000000..252c6d3c --- /dev/null +++ b/description/issuimo/UnityResolve.hpp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on unity cheat framwork. +It is primarily written in C++ and centers on rendering, physics, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/itaymigdal/awesome-injection/description_en.txt b/description/itaymigdal/awesome-injection/description_en.txt new file mode 100644 index 00000000..eae3df27 --- /dev/null +++ b/description/itaymigdal/awesome-injection/description_en.txt @@ -0,0 +1,3 @@ +This project is a curated resource collection for injection. +PRs are welcome to help me maintain and extend this list! +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/ixty/mandibule/description_en.txt b/description/ixty/mandibule/description_en.txt new file mode 100644 index 00000000..06b7d38b --- /dev/null +++ b/description/ixty/mandibule/description_en.txt @@ -0,0 +1 @@ +This project is a Linux process injection tool that uses ptrace to inject and execute arbitrary ELF binaries inside a running target process. The C codebase includes a minimal C runtime (icrt) with raw syscall wrappers, ELF loading and relocation handling, fake stack construction, and shellcode argument passing for position-independent injection payloads. It is mainly useful for Linux security researchers studying ptrace-based process injection and runtime ELF loading techniques. diff --git a/description/izarooni/MapleEzorsia/description_en.txt b/description/izarooni/MapleEzorsia/description_en.txt new file mode 100644 index 00000000..29ec02dd --- /dev/null +++ b/description/izarooni/MapleEzorsia/description_en.txt @@ -0,0 +1 @@ +This project is MapleEzorsia, a MapleStory v83 private server source with custom content and modifications. It implements server-side game logic for the classic v83 version including login handling, character management, map instances, monster mechanics, quest systems, and custom gameplay features. The Java codebase extends the standard v83 server framework with quality-of-life improvements. It is aimed at MapleStory private server developers and game server researchers. diff --git a/description/j-hc/FlagSecurePatcher/description_en.txt b/description/j-hc/FlagSecurePatcher/description_en.txt new file mode 100644 index 00000000..f0b69e24 --- /dev/null +++ b/description/j-hc/FlagSecurePatcher/description_en.txt @@ -0,0 +1,3 @@ +This project provides disable flag secure and screenshot listeners. +It is organized as documentation and reference material for the cheat / magisk area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/j4nn/CVE-2020-0041/description_en.txt b/description/j4nn/CVE-2020-0041/description_en.txt new file mode 100644 index 00000000..724ea054 --- /dev/null +++ b/description/j4nn/CVE-2020-0041/description_en.txt @@ -0,0 +1 @@ +Local privilege escalation exploit for CVE-2020-0041, a Binder driver vulnerability caused by an incorrect bounds check in transaction buffer allocation, demonstrated on Pixel 3 (February 2020 firmware QQ1A.200205.002) by manipulating pending binder node reallocation to achieve kernel arbitrary read/write and escalate to root. diff --git a/description/jackpal/Android-Terminal-Emulator/description_en.txt b/description/jackpal/Android-Terminal-Emulator/description_en.txt new file mode 100644 index 00000000..52e6f7f8 --- /dev/null +++ b/description/jackpal/Android-Terminal-Emulator/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on terminal Emulator for Android is a terminal emulator for communicating with the built-in Android shell. +It emulates a reasonably large subset of Digital Equipment Corporation VT-100 terminal codes, so that programs like "vi", "Emacs" and "NetHack" will display properly. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android terminal emulator area. diff --git a/description/jackullrich/syscall-detect/description_en.txt b/description/jackullrich/syscall-detect/description_en.txt new file mode 100644 index 00000000..68672663 --- /dev/null +++ b/description/jackullrich/syscall-detect/description_en.txt @@ -0,0 +1 @@ +This project is a Windows proof of concept for detecting direct and indirect syscall invocations from user mode. It uses the instrumentation callback or thread stack inspection to determine whether a syscall originated from ntdll (normal) or from a custom stub (suspicious), flagging potential syscall hooking evasion. The C implementation demonstrates detection heuristics that anti-cheat and EDR products can use. It is aimed at defensive security researchers studying direct syscall detection and user-mode integrity monitoring. diff --git a/description/jafarlihi/modreveal/description_en.txt b/description/jafarlihi/modreveal/description_en.txt new file mode 100644 index 00000000..af48ed01 --- /dev/null +++ b/description/jafarlihi/modreveal/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on find hidden Linux kernel modules. +It is primarily written in C and centers on kernel-level work and modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hide area. diff --git a/description/jailbreakdotparty/dirtyZero/description_en.txt b/description/jailbreakdotparty/dirtyZero/description_en.txt new file mode 100644 index 00000000..3ffa2a15 --- /dev/null +++ b/description/jailbreakdotparty/dirtyZero/description_en.txt @@ -0,0 +1 @@ +This project is dirtyZero, an iOS exploit targeting a specific kernel vulnerability to achieve arbitrary kernel read/write on modern iOS versions. It leverages a zero-day or recently patched vulnerability in the XNU kernel to build a reliable exploitation primitive, which can be chained with other components for jailbreaking or security research. It is aimed at iOS security researchers and jailbreak developers studying XNU kernel exploitation on recent iOS releases. diff --git a/description/jakcron/nstool/description_en.txt b/description/jakcron/nstool/description_en.txt new file mode 100644 index 00000000..aba4a650 --- /dev/null +++ b/description/jakcron/nstool/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on general purpose read/extract tool. +To display general information the usage is as follows. +It is mainly useful for console emulator developers and Switch researchers working in the nintendo switch area. diff --git a/description/jammsen/docker-palworld-dedicated-server/description_en.txt b/description/jammsen/docker-palworld-dedicated-server/description_en.txt new file mode 100644 index 00000000..b66f8d33 --- /dev/null +++ b/description/jammsen/docker-palworld-dedicated-server/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on server based on Linux and Docker. +This 2 persons helped a lot along to way and made me and this project better! +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:palworld [ue5] area. diff --git a/description/janisslsm/ida-ps4-helper/description_en.txt b/description/janisslsm/ida-ps4-helper/description_en.txt new file mode 100644 index 00000000..d1da2863 --- /dev/null +++ b/description/janisslsm/ida-ps4-helper/description_en.txt @@ -0,0 +1,3 @@ +This project is a helper plugin for PS4 module loader. +This is a helper plugin intended for ps4-module-loader. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/janoglezcampos/DeathSleep/description_en.txt b/description/janoglezcampos/DeathSleep/description_en.txt new file mode 100644 index 00000000..167714ad --- /dev/null +++ b/description/janoglezcampos/DeathSleep/description_en.txt @@ -0,0 +1,3 @@ +This project is a PoC implementation for an evasion technique to terminate the current thread and restore it before resuming execution, while implementing page protection changes during no execution. +Sleep and obfuscation methods are well known in the maldev community, with different implementations, they have the objective of hiding from memory scanners while sleeping, usually changing page protections and even adding cool features like encrypting the shellcode, but there is another important point to hide our shellcode, and is hiding the current execution thread. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / page protection area. diff --git a/description/januwA/game-reversed-study/description_en.txt b/description/januwA/game-reversed-study/description_en.txt new file mode 100644 index 00000000..68563284 --- /dev/null +++ b/description/januwA/game-reversed-study/description_en.txt @@ -0,0 +1,3 @@ +This project provides CE guide zh. +It is organized as documentation and reference material for the cheat / guide area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/jbro129/android-modding/description_en.txt b/description/jbro129/android-modding/description_en.txt new file mode 100644 index 00000000..11399c07 --- /dev/null +++ b/description/jbro129/android-modding/description_en.txt @@ -0,0 +1,3 @@ +This project is a collection of repositories related to Android game modding. +Il2CppDumper YuanShen by kagurazakasanae : Modified version of Il2CppDumper allows you to dump methods of UserAssembly.dll of the game Genshin Impact. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/jcalabres/hook-updater/description_en.txt b/description/jcalabres/hook-updater/description_en.txt new file mode 100644 index 00000000..0d582bb0 --- /dev/null +++ b/description/jcalabres/hook-updater/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on update Frida hooks automatically. +It is primarily written in Python and centers on hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/jd-opensource/arkdecompiler/description_en.txt b/description/jd-opensource/arkdecompiler/description_en.txt new file mode 100644 index 00000000..b4ce9d40 --- /dev/null +++ b/description/jd-opensource/arkdecompiler/description_en.txt @@ -0,0 +1 @@ +This project is ArkDecompiler, a decompiler for Huawei's ArkCompiler bytecode format used in HarmonyOS applications. It parses ArkTS/ArkJS compiled bytecode, reconstructs control flow, recovers source-level constructs, and outputs readable JavaScript/TypeScript code from compiled .abc files. It is aimed at mobile security researchers and reverse engineers analyzing HarmonyOS applications built with ArkCompiler. diff --git a/description/jdavidberger/chaiScriptPlugin/description_en.txt b/description/jdavidberger/chaiScriptPlugin/description_en.txt new file mode 100644 index 00000000..a25ffcc6 --- /dev/null +++ b/description/jdavidberger/chaiScriptPlugin/description_en.txt @@ -0,0 +1,3 @@ +This project is the plugin API is very thorough but isn't well suited for rapid prototyping. +The plugin adds three commands. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/jdu2600/CFG-FindHiddenShellcode/description_en.txt b/description/jdu2600/CFG-FindHiddenShellcode/description_en.txt new file mode 100644 index 00000000..37342dd7 --- /dev/null +++ b/description/jdu2600/CFG-FindHiddenShellcode/description_en.txt @@ -0,0 +1 @@ +This project is a Windows tool that detects hidden shellcode execution by analyzing Control Flow Guard (CFG) bitmap inconsistencies. It scans process memory for executable regions that are valid CFG call targets but not part of any known module's legitimate code, indicating injected shellcode that has been marked as CFG-valid. The C implementation demonstrates using CFG metadata as a detection signal. It is aimed at anti-cheat engineers and EDR developers studying CFG-based code injection detection techniques. diff --git a/description/jdu2600/Etw-SyscallMonitor/description_en.txt b/description/jdu2600/Etw-SyscallMonitor/description_en.txt new file mode 100644 index 00000000..9786d365 --- /dev/null +++ b/description/jdu2600/Etw-SyscallMonitor/description_en.txt @@ -0,0 +1 @@ +This project is a Windows syscall monitoring tool that uses ETW Threat Intelligence events to log system call activity in real time. It captures syscall numbers, parameters, calling process/thread information, and stack traces through the EtwTi provider without kernel hooking or driver installation. The C implementation demonstrates user-mode syscall monitoring for detecting suspicious API usage patterns. It is aimed at security researchers and anti-cheat developers building syscall-based behavioral detection. diff --git a/description/jdu2600/EtwTi-FluctuationMonitor/description_en.txt b/description/jdu2600/EtwTi-FluctuationMonitor/description_en.txt new file mode 100644 index 00000000..22566b47 --- /dev/null +++ b/description/jdu2600/EtwTi-FluctuationMonitor/description_en.txt @@ -0,0 +1 @@ +This project is a Windows tool that monitors ETW Threat Intelligence (EtwTi) provider registration fluctuations to detect when security products are being tampered with. It watches for changes in EtwTi callback registrations that indicate an attacker is removing or patching ETW-based monitoring, which is a common EDR evasion technique. The C implementation provides real-time alerts on callback manipulation. It is aimed at defensive security researchers and EDR developers building tamper detection for ETW-based telemetry. diff --git a/description/jfmaes/LazySign/description_en.txt b/description/jfmaes/LazySign/description_en.txt new file mode 100644 index 00000000..6da4e4d0 --- /dev/null +++ b/description/jfmaes/LazySign/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fake Cert. +This repo gives you the opportunity of fake signing with 0 additional dependencies, all of the binaries used are part of Microsoft's own devkits. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/jiayy/android_vuln_poc-exp/description_en.txt b/description/jiayy/android_vuln_poc-exp/description_en.txt new file mode 100644 index 00000000..1d01583a --- /dev/null +++ b/description/jiayy/android_vuln_poc-exp/description_en.txt @@ -0,0 +1,3 @@ +This project provides list. +It is organized as documentation and reference material for the cheat / android kernel cve area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel cve area. diff --git a/description/jimbeveridge/readdirectorychanges/description_en.txt b/description/jimbeveridge/readdirectorychanges/description_en.txt new file mode 100644 index 00000000..c656bff9 --- /dev/null +++ b/description/jimbeveridge/readdirectorychanges/description_en.txt @@ -0,0 +1 @@ +This project is a C++ wrapper around the Windows ReadDirectoryChangesW API for monitoring filesystem changes in real time. It provides a clean interface for watching directory trees and receiving notifications about file creation, modification, deletion, and renaming events. The library handles asynchronous I/O, buffer management, and recursive directory monitoring. It is aimed at Windows developers building file system watchers, sync tools, or security monitoring applications. diff --git a/description/jinyuliao/GenericGraph/description_en.txt b/description/jinyuliao/GenericGraph/description_en.txt new file mode 100644 index 00000000..fc5b3192 --- /dev/null +++ b/description/jinyuliao/GenericGraph/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on generic graph data structure plugin for ue4. +It is primarily written in C/C++ and C++ and centers on asset pipelines, editor tooling, and plugin development. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unreal area. diff --git a/description/jiqiu2022/Zygisk-MyInjector/description_en.txt b/description/jiqiu2022/Zygisk-MyInjector/description_en.txt new file mode 100644 index 00000000..580865c7 --- /dev/null +++ b/description/jiqiu2022/Zygisk-MyInjector/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on zygisk Injector. +It is primarily written in C/C++ and Java and centers on kernel-level work, asset pipelines, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/jiubanlo/WinNT5_src_20201004/description_en.txt b/description/jiubanlo/WinNT5_src_20201004/description_en.txt new file mode 100644 index 00000000..12e0e060 --- /dev/null +++ b/description/jiubanlo/WinNT5_src_20201004/description_en.txt @@ -0,0 +1 @@ +This project is a leaked Windows NT 5.x (Windows 2000/XP/Server 2003) source code archive. It contains the original Microsoft source code for the Windows kernel (ntoskrnl), HAL, Win32k, device drivers, user-mode subsystems, and system utilities. The C/C++ codebase provides insight into Windows kernel internals, memory management, scheduler, object manager, and security subsystem implementation. It is aimed at Windows kernel researchers and security analysts studying NT kernel architecture and internals at the source level. diff --git a/description/jixiaoyong/ApkSigner/description_en.txt b/description/jixiaoyong/ApkSigner/description_en.txt new file mode 100644 index 00000000..8d12dd39 --- /dev/null +++ b/description/jixiaoyong/ApkSigner/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android Apk Sign Tool. +The functions of the current version are relatively stable and can meet basic usage needs. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/jjolano/shadow/description_en.txt b/description/jjolano/shadow/description_en.txt new file mode 100644 index 00000000..152a203a --- /dev/null +++ b/description/jjolano/shadow/description_en.txt @@ -0,0 +1,3 @@ +This project is a jailbreak detection bypass for modern iOS jailbreaks. +Shadow is not guaranteed to work on all apps, but here are some ideas to try. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios jailbreak area. diff --git a/description/jlgreathouse/AMD_IBS_Toolkit/description_en.txt b/description/jlgreathouse/AMD_IBS_Toolkit/description_en.txt new file mode 100644 index 00000000..64a37dca --- /dev/null +++ b/description/jlgreathouse/AMD_IBS_Toolkit/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on aMD Sampling. +IBS is a hardware mechanism that samples a subset of all of the instructions going through a processor. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/jmorton06/Lumos/description_en.txt b/description/jmorton06/Lumos/description_en.txt new file mode 100644 index 00000000..660c27ea --- /dev/null +++ b/description/jmorton06/Lumos/description_en.txt @@ -0,0 +1 @@ +This project is Lumos, an open-source C++ game engine with a cross-platform editor. It provides Vulkan/OpenGL rendering with PBR materials, a scene graph with ECS architecture, physics (Box2D/Bullet), audio, Lua scripting, 2D/3D support, and a Dear ImGui-based editor interface. The engine includes asset pipelines, serialization, and multi-platform build support. It is aimed at indie game developers and engine enthusiasts building 2D/3D games with an accessible open-source engine. diff --git a/description/jmpews/Dobby/description_en.txt b/description/jmpews/Dobby/description_en.txt new file mode 100644 index 00000000..c2cfb46d --- /dev/null +++ b/description/jmpews/Dobby/description_en.txt @@ -0,0 +1,3 @@ +This project is a lightweight, multi-platform, multi-architecture hook framework. +It is primarily written in C/C++ and C++ and centers on kernel-level work, networking, and plugin development. +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / hook area. diff --git a/description/jmprdi/binja-division-deoptimization/description_en.txt b/description/jmprdi/binja-division-deoptimization/description_en.txt new file mode 100644 index 00000000..fb61d6ae --- /dev/null +++ b/description/jmprdi/binja-division-deoptimization/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on division and Modulo Deoptimizer. +It operates on MLIL, so it should be architecture agnostic. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/jnastarot/HIGU_ntcall/description_en.txt b/description/jnastarot/HIGU_ntcall/description_en.txt new file mode 100644 index 00000000..e1aecb27 --- /dev/null +++ b/description/jnastarot/HIGU_ntcall/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on direct System Calls. +Functions with ENUM are also supported, but most of them crash the process at the stage of calling the parameter conversion. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/jnastarot/anti-cheat/description_en.txt b/description/jnastarot/anti-cheat/description_en.txt new file mode 100644 index 00000000..cad477bd --- /dev/null +++ b/description/jnastarot/anti-cheat/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / open source anti cheat system and centers on anti cheat. +It is primarily written in C/C++ and C++ and centers on anti-cheat research. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / open source anti cheat system area. diff --git a/description/jnastarot/furikuri/description_en.txt b/description/jnastarot/furikuri/description_en.txt new file mode 100644 index 00000000..30ffc90d --- /dev/null +++ b/description/jnastarot/furikuri/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / obfuscation engine and centers on furikuri. +It is primarily written in C/C++ and C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/jnastarot/ice9/description_en.txt b/description/jnastarot/ice9/description_en.txt new file mode 100644 index 00000000..bc7b753a --- /dev/null +++ b/description/jnastarot/ice9/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / open source anti cheat system and centers on ice9. +It is primarily written in C/C++ and C++ and centers on anti-cheat research, modding, and hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / open source anti cheat system area. diff --git a/description/jnastarot/shibari/description_en.txt b/description/jnastarot/shibari/description_en.txt new file mode 100644 index 00000000..d13e26d8 --- /dev/null +++ b/description/jnastarot/shibari/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linking multiple PE\PE + files to one. +It is primarily written in C++ and C/C++ and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/jnz/q3vm/description_en.txt b/description/jnz/q3vm/description_en.txt new file mode 100644 index 00000000..18b9a75e --- /dev/null +++ b/description/jnz/q3vm/description_en.txt @@ -0,0 +1,3 @@ +This project is a lightweight (single file: vm.c) embeddable interpreter/Virtual Machine (VM) for compiled bytecode files (.qvm) based on good old C-language input (.c). +A complete C compiler to generate .qvm files is included (LCC). +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / dynamic script area. diff --git a/description/joaomlneto/procmap/description_en.txt b/description/joaomlneto/procmap/description_en.txt new file mode 100644 index 00000000..ea5b4f2d --- /dev/null +++ b/description/joaomlneto/procmap/description_en.txt @@ -0,0 +1 @@ +C++14 library for parsing Linux /proc/pid/maps into structured MemorySegment objects exposing address ranges, permission flags, file offsets, and backing file paths, providing a programmatic interface for memory layout analysis of running processes useful in memory forensics and game security tooling. diff --git a/description/joeyjurjens/iOS-Mod-Menu-Template-for-Theos/description_en.txt b/description/joeyjurjens/iOS-Mod-Menu-Template-for-Theos/description_en.txt new file mode 100644 index 00000000..61bdc0ac --- /dev/null +++ b/description/joeyjurjens/iOS-Mod-Menu-Template-for-Theos/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iOS mod menu. +Images 50x50 are recommended, you can get a sample of my images by copying the standard(in tweak.xm) base64 string & use this website to show the picture. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/johndpope/pianogame/description_en.txt b/description/johndpope/pianogame/description_en.txt new file mode 100644 index 00000000..23bd5411 --- /dev/null +++ b/description/johndpope/pianogame/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on piano Game. +It is primarily written in C/C++ and C++ and centers on rendering and graphics. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/johnhalloran321/mcpSafetyScanner/description_en.txt b/description/johnhalloran321/mcpSafetyScanner/description_en.txt new file mode 100644 index 00000000..cb3f8cff --- /dev/null +++ b/description/johnhalloran321/mcpSafetyScanner/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCPSafetyScanner - Automated MCP safety auditing and remediation using Agents. +Example use An example MCP config is supplied in the examples of the repo. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server security area. diff --git a/description/johnsonjason/MapleStoryBuildFramework/description_en.txt b/description/johnsonjason/MapleStoryBuildFramework/description_en.txt new file mode 100644 index 00000000..579f4e6b --- /dev/null +++ b/description/johnsonjason/MapleStoryBuildFramework/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on antiCheat. +It is primarily written in C/C++ and C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:maplestory area. diff --git a/description/jokerNi/WProtectSDK/description_en.txt b/description/jokerNi/WProtectSDK/description_en.txt new file mode 100644 index 00000000..5c3b30f5 --- /dev/null +++ b/description/jokerNi/WProtectSDK/description_en.txt @@ -0,0 +1,3 @@ +This project provides wprotect sdk. +It is primarily written in C/C++ and centers on SDK generation. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/jonomango/nohv/description_en.txt b/description/jonomango/nohv/description_en.txt new file mode 100644 index 00000000..27d7a8e7 --- /dev/null +++ b/description/jonomango/nohv/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on it is useful for benchmarking your hypervisor against common vm-detections. +It is primarily written in C++ and C/C++ and centers on kernel-level work, driver development, and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection: hacked hypervisor area. diff --git a/description/jonpalmisc/ida_screenshot/description_en.txt b/description/jonpalmisc/ida_screenshot/description_en.txt new file mode 100644 index 00000000..77fcb803 --- /dev/null +++ b/description/jonpalmisc/ida_screenshot/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on high-resolution screenshot capture plugin for IDA Pro. +Run make install (assuming you are on macOS or Linux), or otherwise place the screenshot.py file in your IDA user plugins folder. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/jooola00/fortnite-cheat-source-internal/description_en.txt b/description/jooola00/fortnite-cheat-source-internal/description_en.txt new file mode 100644 index 00000000..ca2a6efc --- /dev/null +++ b/description/jooola00/fortnite-cheat-source-internal/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:fortnite and centers on fortnite cheat source internal. +It is primarily written in C/C++ and C++ and centers on SDK generation and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/joxeankoret/diaphora/description_en.txt b/description/joxeankoret/diaphora/description_en.txt new file mode 100644 index 00000000..9d8514f4 --- /dev/null +++ b/description/joxeankoret/diaphora/description_en.txt @@ -0,0 +1 @@ +This project is Diaphora, the most advanced open-source binary diffing tool, implemented as an IDA Pro plugin in Python. It performs function-level comparison between two binaries using multiple heuristics including control flow graph matching, basic block hash comparison, instruction mnemonics, string references, and call graph topology. It supports partial matching, porting of symbols and comments between database versions, and generates detailed diff reports. It is aimed at reverse engineers, vulnerability researchers, and patch analysts comparing binary updates and identifying code changes across software versions. diff --git a/description/jpvanoosten/LearningDirectX12/description_en.txt b/description/jpvanoosten/LearningDirectX12/description_en.txt new file mode 100644 index 00000000..69c87e33 --- /dev/null +++ b/description/jpvanoosten/LearningDirectX12/description_en.txt @@ -0,0 +1 @@ +This project is a tutorial series and sample code for learning DirectX 12 graphics programming. It covers D3D12 fundamentals including device creation, command queues, pipeline state objects, root signatures, descriptor heaps, resource management, texture loading, and rendering techniques with progressive complexity. The C++ samples build from basic triangle rendering to complete scenes. It is aimed at graphics programmers learning modern low-level GPU programming with DirectX 12. diff --git a/description/jsacco/NTKernelWalkerLib/description_en.txt b/description/jsacco/NTKernelWalkerLib/description_en.txt new file mode 100644 index 00000000..a3b10576 --- /dev/null +++ b/description/jsacco/NTKernelWalkerLib/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on user-mode ntoskrnl symbol/struct offset resolver via dbghelp + executable section gadget scanning (e.g., short ROP primitives. +It uses dbghelp to fetch RVAs of exported symbols from ntoskrnl.exe and uses and image mapper that can scan executable sections to find ROP gadgets such as “pop rcx ; ret” or “jmp rax”. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/jsacco/ntoskrnlwalker/description_en.txt b/description/jsacco/ntoskrnlwalker/description_en.txt new file mode 100644 index 00000000..bb856e30 --- /dev/null +++ b/description/jsacco/ntoskrnlwalker/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on resolve offsets, gadgets and symbols from NTKernel. +Basically it saves you time and helps you build gadgets, obtain offsets and navigate the kernel structures for your target build much easier/faster. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/jseclab/obj2shellcode/description_en.txt b/description/jseclab/obj2shellcode/description_en.txt new file mode 100644 index 00000000..22b4e7bd --- /dev/null +++ b/description/jseclab/obj2shellcode/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / shellcode engine & tricks and centers on obj2shellcode. +It is primarily written in C++ and C/C++ and centers on modding, memory analysis, and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / shellcode engine & tricks area. diff --git a/description/jsecurity101/MSFT_DriverBlockList/description_en.txt b/description/jsecurity101/MSFT_DriverBlockList/description_en.txt new file mode 100644 index 00000000..e60811f5 --- /dev/null +++ b/description/jsecurity101/MSFT_DriverBlockList/description_en.txt @@ -0,0 +1,3 @@ +This project provides the recommended driver block list that can be found here: microsoft recommended driver block rules. +It centers on driver development. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / black signature area. diff --git a/description/jsherman212/xnuspy/description_en.txt b/description/jsherman212/xnuspy/description_en.txt new file mode 100644 index 00000000..ad5d92c2 --- /dev/null +++ b/description/jsherman212/xnuspy/description_en.txt @@ -0,0 +1,3 @@ +This project is an iOS kernel function hooking framework for checkra1n'able devices. +4K devices are not supported. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios memory explorer area. diff --git a/description/jsirichai/CVE-2019-2215/description_en.txt b/description/jsirichai/CVE-2019-2215/description_en.txt new file mode 100644 index 00000000..798da508 --- /dev/null +++ b/description/jsirichai/CVE-2019-2215/description_en.txt @@ -0,0 +1 @@ +Temporary root proof-of-concept for CVE-2019-2215, a use-after-free in the Android Binder driver's epoll integration, targeting Pixel 2 and Pixel 2 XL on September 2019 firmware (kernel 4.4.177-g83bee1dc48e8) and compiled as a standalone ARM64 binary using Android NDK with hardcoded kernel offsets. diff --git a/description/jtang613/GhidrAssist/description_en.txt b/description/jtang613/GhidrAssist/description_en.txt new file mode 100644 index 00000000..2850a871 --- /dev/null +++ b/description/jtang613/GhidrAssist/description_en.txt @@ -0,0 +1,3 @@ +This project is an LLM extension for Ghidra to enable AI assistance in RE. +It supports any OpenAI v1-compatible API, including local models (Ollama, LM-Studio, Open-WebUI) and cloud providers (OpenAI, Anthropic, Azure). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ghidra plugins area. diff --git a/description/jtang613/GhidrAssistMCP/description_en.txt b/description/jtang613/GhidrAssistMCP/description_en.txt new file mode 100644 index 00000000..d4828fb6 --- /dev/null +++ b/description/jtang613/GhidrAssistMCP/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP for Ghidra. +By implementing the Model Context Protocol, this extension allows external AI assistants, automated analysis tools, and custom scripts to seamlessly interact with Ghidra's analysis capabilities. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/jtang613/IDAssist/description_en.txt b/description/jtang613/IDAssist/description_en.txt new file mode 100644 index 00000000..710b3161 --- /dev/null +++ b/description/jtang613/IDAssist/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on aI-powered RE plugin for IDA Pro: LLM function explanation, semantic knowledge graph, RAG, MCP integration. +Built with Python and PySide6, IDAssist runs as a dockable panel inside IDA Pro 9.0+ and communicates with LLM providers (OpenAI, Anthropic, Ollama, LiteLLM, and more) to analyze functions, suggest renames, answer questions about code, and build a searchable knowledge graph of an entire binary. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/jthuraisamy/TelemetrySourcerer/description_en.txt b/description/jthuraisamy/TelemetrySourcerer/description_en.txt new file mode 100644 index 00000000..65e02c2a --- /dev/null +++ b/description/jthuraisamy/TelemetrySourcerer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on enumerate and disable callbacks/ETW. +The driver does not come signed, so consider enabling test signing mode, temporarily disabling driver signature enforcement (DSE), or signing the driver with a valid certificate. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/juniorjacob/readwrite-kernel-stable/description_en.txt b/description/juniorjacob/readwrite-kernel-stable/description_en.txt new file mode 100644 index 00000000..b7e0ceed --- /dev/null +++ b/description/juniorjacob/readwrite-kernel-stable/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / rpm and centers on readwrite kernel stable. +It is primarily written in C and C/C++ and centers on kernel-level work, driver development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rpm area. diff --git a/description/junron/auto-enum/description_en.txt b/description/junron/auto-enum/description_en.txt new file mode 100644 index 00000000..d80e32ea --- /dev/null +++ b/description/junron/auto-enum/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on automatically identify and set enums for standard functions. +It is primarily written in Python and C and centers on asset pipelines, plugin development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/justfoxing/ghidra_bridge/description_en.txt b/description/justfoxing/ghidra_bridge/description_en.txt new file mode 100644 index 00000000..cc80f597 --- /dev/null +++ b/description/justfoxing/ghidra_bridge/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on python 3 bridge to Ghidra's Python scripting. +But Ghidra's Python scripting is based on Jython, which isn't in a great state these days. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ghidra plugins area. diff --git a/description/justinpbarnett/unity-mcp/description_en.txt b/description/justinpbarnett/unity-mcp/description_en.txt new file mode 100644 index 00000000..f1f70974 --- /dev/null +++ b/description/justinpbarnett/unity-mcp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP for unity. +It is primarily written in C# and Python and centers on shader work, rendering, and graphics. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/jwmcglynn/android-emulator/description_en.txt b/description/jwmcglynn/android-emulator/description_en.txt new file mode 100644 index 00000000..2d17a376 --- /dev/null +++ b/description/jwmcglynn/android-emulator/description_en.txt @@ -0,0 +1,3 @@ +This project provides android emulator. +It centers on emulation. +It is mainly useful for mobile platform and emulator researchers working in the android emulator area. diff --git a/description/jxy-s/herpaderping/description_en.txt b/description/jxy-s/herpaderping/description_en.txt new file mode 100644 index 00000000..eb1a39bc --- /dev/null +++ b/description/jxy-s/herpaderping/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hide Process/File. +This results in curious behavior by security products and the OS itself. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hide area. diff --git a/description/jynew/jynew/description_en.txt b/description/jynew/jynew/description_en.txt new file mode 100644 index 00000000..046ea8d6 --- /dev/null +++ b/description/jynew/jynew/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on jinYongLegend. +The README entry provides the main context for the project even though no local archive snapshot is available. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/k3v1n1990s/docker-win/description_en.txt b/description/k3v1n1990s/docker-win/description_en.txt new file mode 100644 index 00000000..39d7930c --- /dev/null +++ b/description/k3v1n1990s/docker-win/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on wsl2. +It centers on networking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/kWAYTV/dma-cheat-base/description_en.txt b/description/kWAYTV/dma-cheat-base/description_en.txt new file mode 100644 index 00000000..1a9e031c --- /dev/null +++ b/description/kWAYTV/dma-cheat-base/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cheat base. +It is primarily written in C/C++ and C++ and centers on rendering, animation, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dma area. diff --git a/description/kaijia2022/Cheat-Engine-DMA-Plugin/description_en.txt b/description/kaijia2022/Cheat-Engine-DMA-Plugin/description_en.txt new file mode 100644 index 00000000..5c4ae93b --- /dev/null +++ b/description/kaijia2022/Cheat-Engine-DMA-Plugin/description_en.txt @@ -0,0 +1 @@ +This project is a Cheat Engine plugin that enables memory reading and writing through DMA (Direct Memory Access) hardware such as PCILeech-compatible FPGA boards. It replaces Cheat Engine's standard process memory access with DMA-based physical memory operations, allowing memory scanning and editing without the target system's OS detecting the access. The C/C++ plugin integrates with the pcileech/LeechCore library. It is aimed at DMA-based game security researchers and anti-cheat analysts testing DMA attack scenarios through Cheat Engine's familiar interface. diff --git a/description/kali11211/valorant-internal-cheat/description_en.txt b/description/kali11211/valorant-internal-cheat/description_en.txt new file mode 100644 index 00000000..c7e90387 --- /dev/null +++ b/description/kali11211/valorant-internal-cheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +It is primarily written in C/C++ and C++ and centers on Unreal Engine, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/kanekikun420/NoCheatZ-3/description_en.txt b/description/kanekikun420/NoCheatZ-3/description_en.txt new file mode 100644 index 00000000..e73217b7 --- /dev/null +++ b/description/kanekikun420/NoCheatZ-3/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on source Engine serverside anti-cheat plugin. +It is primarily written in C/C++ and C++ and centers on anti-cheat research, plugin development, and SDK generation. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / game engine protection:source area. diff --git a/description/kanition/pbrtbook/description_en.txt b/description/kanition/pbrtbook/description_en.txt new file mode 100644 index 00000000..3bf46c9c --- /dev/null +++ b/description/kanition/pbrtbook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on physically Based Rendering: From Theory To Implementation. +It centers on rendering and modding. +It is mainly useful for graphics programmers and rendering researchers working in the renderer area. diff --git a/description/kantam5/DeadByDaylight/description_en.txt b/description/kantam5/DeadByDaylight/description_en.txt new file mode 100644 index 00000000..d6f555c7 --- /dev/null +++ b/description/kantam5/DeadByDaylight/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dead By Daylight Copy. +It is primarily written in C++ and C/C++ and centers on physics, animation, and asset pipelines. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/katahiromz/RisohEditor/description_en.txt b/description/katahiromz/RisohEditor/description_en.txt new file mode 100644 index 00000000..708f9d5d --- /dev/null +++ b/description/katahiromz/RisohEditor/description_en.txt @@ -0,0 +1 @@ +This project is RisohEditor, a free Windows resource editor for PE executable and DLL files. It provides a GUI for viewing, editing, adding, and removing resources including dialogs, menus, icons, bitmaps, string tables, version info, and manifest files. The C++ application supports resource script (RC) import/export and handles both 32-bit and 64-bit PE files. It is aimed at Windows developers, reverse engineers, and translators who need to modify embedded resources in compiled executables. diff --git a/description/ke0z/VulChatGPT/description_en.txt b/description/ke0z/VulChatGPT/description_en.txt new file mode 100644 index 00000000..a556e36a --- /dev/null +++ b/description/ke0z/VulChatGPT/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on chatGPT. +BinAIVulHunter is an advanced IDA Pro plugin that leverages multiple AI providers (OpenAI GPT, Google Gemini, and Ollama) to perform intelligent vulnerability analysis, code explanation, and security assessment of decompiled functions. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/keijiro/AICommand/description_en.txt b/description/keijiro/AICommand/description_en.txt new file mode 100644 index 00000000..a669a043 --- /dev/null +++ b/description/keijiro/AICommand/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on chatGPT integration with Unity Editor. +CAUTION - The API key is stored in UserSettings/AICommandSettings.asset. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unity area. diff --git a/description/keith2018/SoftGLRender/description_en.txt b/description/keith2018/SoftGLRender/description_en.txt new file mode 100644 index 00000000..5a91929d --- /dev/null +++ b/description/keith2018/SoftGLRender/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under renderer and centers on soft glrender. +It centers on rendering. +It is mainly useful for graphics programmers and rendering researchers working in the renderer area. diff --git a/description/kem0x/FortKit/description_en.txt b/description/kem0x/FortKit/description_en.txt new file mode 100644 index 00000000..5c6a2f4e --- /dev/null +++ b/description/kem0x/FortKit/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dump. +It is primarily written in C/C++ and C++ and centers on SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/keowu/Ryujin/description_en.txt b/description/keowu/Ryujin/description_en.txt new file mode 100644 index 00000000..99f7e204 --- /dev/null +++ b/description/keowu/Ryujin/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on x86 PE BIN2BIN. +Ryūjin is a research-grade protector and obfuscator built to explore Bin2Bin transformation techniques. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/keowu/koidbg/description_en.txt b/description/keowu/koidbg/description_en.txt new file mode 100644 index 00000000..c0f9c5de --- /dev/null +++ b/description/keowu/koidbg/description_en.txt @@ -0,0 +1,3 @@ +This project is a debugger for Windows ARM64. +It is available in English and Portuguese. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/keowu/sourceengineexplorer/description_en.txt b/description/keowu/sourceengineexplorer/description_en.txt new file mode 100644 index 00000000..91204c97 --- /dev/null +++ b/description/keowu/sourceengineexplorer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on explorer. +A CS Source Engine² for creating cheat debug valve codes, exploring hidden game engine features, exploit development, assembly analyzer or a full network emulator, a custom scripting interface for study and cloud-based decompiler for testing (and binary analysis), think about it maybe as a basis for you to make your own tool, or use it however you want, after all it exists for studies. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:source area. diff --git a/description/kernelwernel/VMAware/description_en.txt b/description/kernelwernel/VMAware/description_en.txt new file mode 100644 index 00000000..085a8125 --- /dev/null +++ b/description/kernelwernel/VMAware/description_en.txt @@ -0,0 +1 @@ +This project is VMAware, a cross-platform C++ library for virtual machine detection. It implements over 100 detection techniques checking for hypervisor CPUID leaves, known VM artifacts in registry/filesystem/MAC addresses, timing-based side channels, hardware fingerprints, and driver signatures to determine whether code is running inside VMware, VirtualBox, Hyper-V, QEMU/KVM, or other hypervisors. The header-only library provides a simple API returning confidence scores. It is aimed at anti-cheat developers, malware researchers, and security engineers implementing VM detection or studying VM evasion techniques. diff --git a/description/kernullist/windbg-decompile-ext/description_en.txt b/description/kernullist/windbg-decompile-ext/description_en.txt new file mode 100644 index 00000000..e0f97bc2 --- /dev/null +++ b/description/kernullist/windbg-decompile-ext/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on winDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode. +Fastest path is to vendor the header and import library into the project. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windbg plugins area. diff --git a/description/ketoo/NoahGameFrame/description_en.txt b/description/ketoo/NoahGameFrame/description_en.txt new file mode 100644 index 00000000..52509ad0 --- /dev/null +++ b/description/ketoo/NoahGameFrame/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on server Engine. +NF is greatly inspired by OGRE and Bigworld. +It is mainly useful for backend, multiplayer, and online game developers working in the game network / source area. diff --git a/description/khang06/Il2CppDumper-YuanShen/description_en.txt b/description/khang06/Il2CppDumper-YuanShen/description_en.txt new file mode 100644 index 00000000..f1407a7c --- /dev/null +++ b/description/khang06/Il2CppDumper-YuanShen/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on il2Cpp Dump for Genshin Impact. +The program will then generate all the output files in current working directory. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/khang06/genshinjumpfixer2/description_en.txt b/description/khang06/genshinjumpfixer2/description_en.txt new file mode 100644 index 00000000..3c475316 --- /dev/null +++ b/description/khang06/genshinjumpfixer2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on decode CFG. +The script will automatically calculate the jump targets and simplify the code. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:genshin impact area. diff --git a/description/khang06/mhynot2/description_en.txt b/description/khang06/mhynot2/description_en.txt new file mode 100644 index 00000000..29cf935c --- /dev/null +++ b/description/khang06/mhynot2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cheating is bad, but I think requiring a kernel driver to play a (mostly) single-player game is worse. +Even though this is a tool to get around cheat prevention measures, this is intended as a tool for research and experimental purposes and isn't specifically designed for cheating. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:genshin impact area. diff --git a/description/khang06/misc/description_en.txt b/description/khang06/misc/description_en.txt new file mode 100644 index 00000000..12504dd3 --- /dev/null +++ b/description/khang06/misc/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on decode CFG. +It is primarily written in Rust and Python and centers on reverse engineering, shader work, and rendering. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:genshin impact area. diff --git a/description/khanhduytran0/coruna/description_en.txt b/description/khanhduytran0/coruna/description_en.txt new file mode 100644 index 00000000..36a53212 --- /dev/null +++ b/description/khanhduytran0/coruna/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on leaked iOS exploit toolkit — WebKit chains for multiple iOS versions, partially deobfuscated. +These scripts are modified in a way that allows you to host them locally. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios jailbreak area. diff --git a/description/kila58/qemu-patched/description_en.txt b/description/kila58/qemu-patched/description_en.txt new file mode 100644 index 00000000..5ebbe144 --- /dev/null +++ b/description/kila58/qemu-patched/description_en.txt @@ -0,0 +1 @@ +This project is a patched QEMU fork with anti-detection modifications to hide the virtual machine from guest OS detection techniques. It modifies CPUID responses, SMBIOS/DMI data, ACPI tables, device names, and other VM fingerprints to make QEMU VMs appear as physical hardware to anti-VM checks used by malware and anti-cheat systems. It is aimed at malware analysts and game security researchers who need to run VM-detecting software in QEMU without triggering detection. diff --git a/description/killop/anything_about_game/description_en.txt b/description/killop/anything_about_game/description_en.txt new file mode 100644 index 00000000..b3644047 --- /dev/null +++ b/description/killop/anything_about_game/description_en.txt @@ -0,0 +1 @@ +This project is a curated collection of resources, articles, and references about game development covering topics including game engine architecture, rendering techniques, physics simulation, networking, AI, optimization, and production workflows. The repository organizes links to technical papers, GDC talks, blog posts, and open-source projects across multiple game development disciplines. It is aimed at game developers and technical artists seeking comprehensive learning resources about game technology. diff --git a/description/kirides/screencapture/description_en.txt b/description/kirides/screencapture/description_en.txt new file mode 100644 index 00000000..f3f158e6 --- /dev/null +++ b/description/kirides/screencapture/description_en.txt @@ -0,0 +1 @@ +This project is a screen capture library for Windows that provides efficient desktop frame acquisition using the DXGI Desktop Duplication API. It captures the desktop display with minimal CPU overhead by leveraging GPU-based frame copying, handles multi-monitor setups, and outputs frames in standard pixel formats for processing. The C++/C# library is suitable for building screen recording, streaming, or screenshot tools. It is aimed at developers building screen capture functionality for applications or anti-cheat screenshot systems. diff --git a/description/kitty8904/blanket/description_en.txt b/description/kitty8904/blanket/description_en.txt new file mode 100644 index 00000000..18f3eee4 --- /dev/null +++ b/description/kitty8904/blanket/description_en.txt @@ -0,0 +1 @@ +This project is Blanket, a Windows tool that hides the presence of a process by unlinking it from kernel process lists and manipulating process enumeration APIs. It removes the target process's EPROCESS entry from ActiveProcessLinks, patches PspCidTable entries, and hooks NtQuerySystemInformation to hide the process from Task Manager and other enumeration tools. It is aimed at kernel researchers studying process hiding rootkit techniques and their detection methods. diff --git a/description/kkent030315/EQU8-PoC/description_en.txt b/description/kkent030315/EQU8-PoC/description_en.txt new file mode 100644 index 00000000..7fe53541 --- /dev/null +++ b/description/kkent030315/EQU8-PoC/description_en.txt @@ -0,0 +1,3 @@ +This project is the below article covers full implementation of the equ8 kernel driver. +It is primarily written in C++ and centers on anti-cheat research, kernel-level work, and driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:equ8 area. diff --git a/description/kkent030315/IDARustCargo/description_en.txt b/description/kkent030315/IDARustCargo/description_en.txt new file mode 100644 index 00000000..6829f477 --- /dev/null +++ b/description/kkent030315/IDARustCargo/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on displaying potentially installed Cargo dependencies. +It is primarily written in Python and centers on plugin development and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/kkent030315/MsIoExploit/description_en.txt b/description/kkent030315/MsIoExploit/description_en.txt new file mode 100644 index 00000000..9b9e61cc --- /dev/null +++ b/description/kkent030315/MsIoExploit/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on msIo64.sys. +If you are interested in abusing physical memory mapping, see project anycall has full implementation of client and driver-sided functionalities. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/kkent030315/Van1338/description_en.txt b/description/kkent030315/Van1338/description_en.txt new file mode 100644 index 00000000..6f9db322 --- /dev/null +++ b/description/kkent030315/Van1338/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on elevating Handle By Timing Attack. +The Complexity of Windows Object Callback Design. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/kkent030315/evil-mhyprot-cli/description_en.txt b/description/kkent030315/evil-mhyprot-cli/description_en.txt new file mode 100644 index 00000000..a5fa22d9 --- /dev/null +++ b/description/kkent030315/evil-mhyprot-cli/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mhyprot2.sys. +What we can do with this CLI is as follows. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/kkkbbb/mkpms/description_en.txt b/description/kkkbbb/mkpms/description_en.txt new file mode 100644 index 00000000..2154bc76 --- /dev/null +++ b/description/kkkbbb/mkpms/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on wxshadow — KPM stealth breakpoint/hook via R^X page split, bypass self-read integrity check. +Any derivative work that uses, modifies, or distributes this project's code must be open-sourced under the same license. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel explorer area. diff --git a/description/kkkbbb/rustFrida/description_en.txt b/description/kkkbbb/rustFrida/description_en.txt new file mode 100644 index 00000000..84833a55 --- /dev/null +++ b/description/kkkbbb/rustFrida/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on frida-like Android ARM64 hook — QuickJS, Java/native/stealth hook, QBDI; pairs with wxshadow (mkpms. +It is primarily written in Rust and C/C++ and centers on modding, hooking, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/kkpwn/ErisDbg/description_en.txt b/description/kkpwn/ErisDbg/description_en.txt new file mode 100644 index 00000000..036ce08c --- /dev/null +++ b/description/kkpwn/ErisDbg/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vT debuger. +It is primarily written in C/C++ and C++ and centers on kernel-level work, driver development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/klezVirus/BYOUD/description_en.txt b/description/klezVirus/BYOUD/description_en.txt new file mode 100644 index 00000000..0285354a --- /dev/null +++ b/description/klezVirus/BYOUD/description_en.txt @@ -0,0 +1,3 @@ +This project is a framework for x64 stack spoofing on Windows. +It tackles a complete opposite approach from classic stack spoofing, manipulating unwind metadata to hide arbitrary chunks of the call chain in debuggers and EDRs. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/klezVirus/SilentMoonwalk/description_en.txt b/description/klezVirus/SilentMoonwalk/description_en.txt new file mode 100644 index 00000000..0f3ea958 --- /dev/null +++ b/description/klezVirus/SilentMoonwalk/description_en.txt @@ -0,0 +1,3 @@ +This project is a TRUE call stack spoofer. +This PoC is the result of a joint research done on the topic of stack spoofing. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/knah/Il2CppAssemblyUnhollower/description_en.txt b/description/knah/Il2CppAssemblyUnhollower/description_en.txt new file mode 100644 index 00000000..ec8ab634 --- /dev/null +++ b/description/knah/Il2CppAssemblyUnhollower/description_en.txt @@ -0,0 +1 @@ +This project is IL2CPP Assembly Unhollower, a tool that generates proxy .NET assemblies from IL2CPP metadata, enabling C# mods to interact with IL2CPP-compiled Unity games as if they were standard Mono assemblies. It processes IL2CPP global-metadata.dat and binary dumps to reconstruct type definitions, method signatures, and field layouts, generating wrapper assemblies that delegate calls to native IL2CPP methods. It is aimed at Unity modders and game security researchers working with IL2CPP builds where direct .NET reflection is unavailable. diff --git a/description/knight0x07/ImpulsiveDLLHijack/description_en.txt b/description/knight0x07/ImpulsiveDLLHijack/description_en.txt new file mode 100644 index 00000000..7bfe3165 --- /dev/null +++ b/description/knight0x07/ImpulsiveDLLHijack/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hijacking researches. +The tool basically acts on automating following stages performed for DLL Hijacking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dll hijack area. diff --git a/description/konstantin89/windows-kernel-debugging-guide/description_en.txt b/description/konstantin89/windows-kernel-debugging-guide/description_en.txt new file mode 100644 index 00000000..2ace15ea --- /dev/null +++ b/description/konstantin89/windows-kernel-debugging-guide/description_en.txt @@ -0,0 +1,3 @@ +This project provides guide about remote windows kernel debugging. +It is organized as documentation and reference material for the cheat / guide area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/korcankaraokcu/PINCE/description_en.txt b/description/korcankaraokcu/PINCE/description_en.txt new file mode 100644 index 00000000..a50347e4 --- /dev/null +++ b/description/korcankaraokcu/PINCE/description_en.txt @@ -0,0 +1 @@ +This project is PINCE (PINCE Is Not Cheat Engine), a front-end for GDB designed for game hacking and reverse engineering on Linux. It provides a Qt-based GUI with memory scanning, value editing, pointer chain resolution, code injection, breakpoint management, and Cheat Engine-compatible table support. The Python application communicates with GDB for process attachment and memory operations. It is aimed at Linux game hackers and reverse engineers who need Cheat Engine-like functionality on Linux systems. diff --git a/description/kotae4/intro-to-gamehacking/description_en.txt b/description/kotae4/intro-to-gamehacking/description_en.txt new file mode 100644 index 00000000..479310b7 --- /dev/null +++ b/description/kotae4/intro-to-gamehacking/description_en.txt @@ -0,0 +1 @@ +This project is an introductory tutorial and lab environment for learning game hacking techniques. It provides step-by-step guides covering memory scanning, pointer chains, code injection, function hooking, and pattern scanning with accompanying practice binaries. The educational materials progress from basic Cheat Engine usage to writing custom external and internal cheats in C++. It is aimed at aspiring game security researchers and beginners starting their game hacking journey. diff --git a/description/kotae4/lab-esp-and-aimbot/description_en.txt b/description/kotae4/lab-esp-and-aimbot/description_en.txt new file mode 100644 index 00000000..98a3a6c8 --- /dev/null +++ b/description/kotae4/lab-esp-and-aimbot/description_en.txt @@ -0,0 +1 @@ +This project is an educational game hacking lab that provides a controlled environment for learning ESP and aimbot implementation. It includes a simple 3D target application and companion cheat code demonstrating external memory reading, world-to-screen coordinate transformation, player/entity ESP rendering, and basic aimbot math (angle calculation and mouse movement). It is aimed at beginners learning game hacking fundamentals in a safe practice environment. diff --git a/description/kouzhudong/AntiHook/description_en.txt b/description/kouzhudong/AntiHook/description_en.txt new file mode 100644 index 00000000..96550e4a --- /dev/null +++ b/description/kouzhudong/AntiHook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on enum and Remove Hook in Windows. +It centers on kernel-level work, driver development, and graphics. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/kovidomi/game-reversing/description_en.txt b/description/kovidomi/game-reversing/description_en.txt new file mode 100644 index 00000000..2540e424 --- /dev/null +++ b/description/kovidomi/game-reversing/description_en.txt @@ -0,0 +1,3 @@ +This project provides here is a compiled list based on personally recommended learning materials to help people with the process of learning how to reverse engineer video games. +Majority of the collected resources here will be focused on reversing PC games on the Microsoft Windows operating system with x86 assembly in mind over x64 as it is easier to learn. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/kp7742/IL2CPPDumper/description_en.txt b/description/kp7742/IL2CPPDumper/description_en.txt new file mode 100644 index 00000000..15c2baa2 --- /dev/null +++ b/description/kp7742/IL2CPPDumper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on il2Cpp Dump for Android Platform. +It is primarily written in C/C++ and C++ and centers on driver development, networking, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/kp7742/MemDumper/description_en.txt b/description/kp7742/MemDumper/description_en.txt new file mode 100644 index 00000000..16b42667 --- /dev/null +++ b/description/kp7742/MemDumper/description_en.txt @@ -0,0 +1 @@ +Android memory dumping tool that extracts loaded shared library (.so) segments from a target process's address space and reconstructs valid ELF binaries with fixed headers for both 32-bit and 64-bit architectures, reading directly from /proc/pid/mem without ptrace to bypass basic anti-debugging protections. diff --git a/description/kp7742/UE4Dumper/description_en.txt b/description/kp7742/UE4Dumper/description_en.txt new file mode 100644 index 00000000..6a71bc65 --- /dev/null +++ b/description/kp7742/UE4Dumper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK Dump For Android. +It is primarily written in C/C++ and C++ and centers on modding, Unreal Engine, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unreal area. diff --git a/description/kprprivate/EAC-CR3-BYPASS/description_en.txt b/description/kprprivate/EAC-CR3-BYPASS/description_en.txt new file mode 100644 index 00000000..a3646155 --- /dev/null +++ b/description/kprprivate/EAC-CR3-BYPASS/description_en.txt @@ -0,0 +1,3 @@ +This project is a simple UM + KM example of how to bypass EAC CR3. +It is primarily written in C/C++ and C and centers on driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:eac area. diff --git a/description/krampus-nuggets/ce-tutorial/description_en.txt b/description/krampus-nuggets/ce-tutorial/description_en.txt new file mode 100644 index 00000000..f141b7cf --- /dev/null +++ b/description/krampus-nuggets/ce-tutorial/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cE. +These registers are not all used the same purposes as illustrated below. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/krispybyte/Simple-EFT-Base/description_en.txt b/description/krispybyte/Simple-EFT-Base/description_en.txt new file mode 100644 index 00000000..539f3262 --- /dev/null +++ b/description/krispybyte/Simple-EFT-Base/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple-EFT-Base A simple OOP escape from tarkov base made by me, offsets are most likely outdated, not looking to update this anytime soon. +It is primarily written in C++ and C/C++ and centers on driver development, rendering, and animation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:eft area. diff --git a/description/krispybyte/Simple-Rust-Base/description_en.txt b/description/krispybyte/Simple-Rust-Base/description_en.txt new file mode 100644 index 00000000..4b28ec00 --- /dev/null +++ b/description/krispybyte/Simple-Rust-Base/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple Rust Base A simple OOP cheat base for the video game Rust made by me a while ago, code is old and could be improved a lot, this is also outdated. +It is primarily written in C++ and C/C++ and centers on driver development, rendering, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:rust area. diff --git a/description/krispybyte/Vook/description_en.txt b/description/krispybyte/Vook/description_en.txt new file mode 100644 index 00000000..6f3cf290 --- /dev/null +++ b/description/krispybyte/Vook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vAC hook. +As always, PR's are welcome! +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:vac area. diff --git a/description/kristofhracza/tim_apple/description_en.txt b/description/kristofhracza/tim_apple/description_en.txt new file mode 100644 index 00000000..be2ed2fb --- /dev/null +++ b/description/kristofhracza/tim_apple/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +Offsets Script download Run the offset_download.ps1 in the same folder as you're executable is Manual download Download client.dll.json, offsets.json and buttons.json Place these files in the same folder as the executable file tim_apple.exe is. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/krxdev-kaan/AqHax-CSGO/description_en.txt b/description/krxdev-kaan/AqHax-CSGO/description_en.txt new file mode 100644 index 00000000..dde509dc --- /dev/null +++ b/description/krxdev-kaan/AqHax-CSGO/description_en.txt @@ -0,0 +1 @@ +This project is AqHax, a CS:GO internal cheat in C++ providing ESP, aimbot, triggerbot, movement hacks, and skin changer features through Source engine SDK hooking. It uses interface capture, VMT hooking, and netvar dumping patterns typical of CS:GO internal cheats. It is aimed at game security researchers studying CS:GO cheat implementations. diff --git a/description/ksoju/Eac-Bypass/description_en.txt b/description/ksoju/Eac-Bypass/description_en.txt new file mode 100644 index 00000000..db5c3be0 --- /dev/null +++ b/description/ksoju/Eac-Bypass/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / explore anticheat system:eac and centers on eac bypass. +It is primarily written in C++ and C/C++ and centers on driver development and shader work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:eac area. diff --git a/description/ktock/qemu-wasm/description_en.txt b/description/ktock/qemu-wasm/description_en.txt new file mode 100644 index 00000000..54d3bf15 --- /dev/null +++ b/description/ktock/qemu-wasm/description_en.txt @@ -0,0 +1 @@ +This project is a WebAssembly port of QEMU that runs virtual machines directly in web browsers. It compiles QEMU's x86 and other architecture emulators to WASM using Emscripten, enabling users to boot Linux, Windows, and other operating systems in a browser tab without server-side processing. The project handles VirtIO device emulation, networking, and storage through browser APIs. It is aimed at emulation researchers, educators, and developers wanting browser-based virtual machine access. diff --git a/description/kubo/plthook/description_en.txt b/description/kubo/plthook/description_en.txt new file mode 100644 index 00000000..e4c10aad --- /dev/null +++ b/description/kubo/plthook/description_en.txt @@ -0,0 +1 @@ +This project is plthook, a cross-platform C library for hooking functions through PLT (Procedure Linkage Table) and GOT (Global Offset Table) modification on Linux, macOS, and Windows. It intercepts dynamically linked function calls by replacing GOT/IAT entries, redirecting calls to user-defined replacement functions. The library supports ELF, Mach-O, and PE binary formats. It is aimed at security researchers, profiling tool developers, and anyone needing portable dynamic function interception. diff --git a/description/kvick-games/UnrealMCP/description_en.txt b/description/kvick-games/UnrealMCP/description_en.txt new file mode 100644 index 00000000..2148178d --- /dev/null +++ b/description/kvick-games/UnrealMCP/description_en.txt @@ -0,0 +1 @@ +This project is UnrealMCP, a Model Context Protocol server integration for Unreal Engine. It exposes Unreal Editor functionality through the MCP protocol, allowing AI assistants and automation tools to interact with the Unreal Editor for tasks such as asset management, level editing, blueprint manipulation, and project configuration. It is aimed at Unreal Engine developers integrating AI-assisted workflows and automation into their game development pipeline. diff --git a/description/kvnxiao/storytime/description_en.txt b/description/kvnxiao/storytime/description_en.txt new file mode 100644 index 00000000..fa7935b6 --- /dev/null +++ b/description/kvnxiao/storytime/description_en.txt @@ -0,0 +1 @@ +This project is a framework or tool related to game narrative or story management systems. It provides structures for organizing branching dialogue, quest progression, or interactive storytelling elements in games. It is aimed at game developers working on narrative-driven game content and story scripting systems. diff --git a/description/kweatherman/ida_missinglink/description_en.txt b/description/kweatherman/ida_missinglink/description_en.txt new file mode 100644 index 00000000..866a9348 --- /dev/null +++ b/description/kweatherman/ida_missinglink/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fills in missing indirect CALL & JMP target information. +Might not seem that useful at first glance, but can be very helpful for executables that are C++ OOP paradigm heavy to see where the indirect branches go. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/kweatherman/yara4ida/description_en.txt b/description/kweatherman/yara4ida/description_en.txt new file mode 100644 index 00000000..84642732 --- /dev/null +++ b/description/kweatherman/yara4ida/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on unofficial YARA IDA Pro plugin. +The default IDA hot key is "Alt-Y", but can be configured to another via your IDA "plugins.cfg" config file. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/kylejckson/PaintFE/description_en.txt b/description/kylejckson/PaintFE/description_en.txt new file mode 100644 index 00000000..44f6a977 --- /dev/null +++ b/description/kylejckson/PaintFE/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on rust raster image editor — layers, wgpu GPU filters, Rhai scripting, CLI batch, GIF/APNG, single portable binary. +It is primarily written in Rust and PowerShell and centers on shader work, rendering, and animation. +It is mainly useful for engine and tooling developers working on asset pipelines working in the image codec area. diff --git a/description/kyojig/csgo_kns/description_en.txt b/description/kyojig/csgo_kns/description_en.txt new file mode 100644 index 00000000..686bb016 --- /dev/null +++ b/description/kyojig/csgo_kns/description_en.txt @@ -0,0 +1 @@ +This project is a CS:GO internal cheat written in C++ that hooks into the Source engine through VMT (Virtual Method Table) hooking and interface pointers. It provides standard cheat features including ESP, aimbot, bhop, skin changer, and visual modifications by interacting with the game's client and engine interfaces. The codebase demonstrates Source engine SDK usage patterns common to CS:GO internal cheats. It is aimed at game security researchers studying CS:GO cheat implementations and Source engine hooking techniques. diff --git a/description/kyxiaxiang/360WFP_Exploit/description_en.txt b/description/kyxiaxiang/360WFP_Exploit/description_en.txt new file mode 100644 index 00000000..b879179e --- /dev/null +++ b/description/kyxiaxiang/360WFP_Exploit/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on bYOVD: Use 360netmon_x64.sys_wfp ​​WFP driver to block EDR/XDR network connection. +This project is intended for security research and vulnerability analysis only. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/lainswork/dwm-screen-shot/description_en.txt b/description/lainswork/dwm-screen-shot/description_en.txt new file mode 100644 index 00000000..41af404e --- /dev/null +++ b/description/lainswork/dwm-screen-shot/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dWM. +It is primarily written in C++ and C/C++ and centers on anti-cheat research. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / screenshot area. diff --git a/description/lainswork/shellcode-factory/description_en.txt b/description/lainswork/shellcode-factory/description_en.txt new file mode 100644 index 00000000..ac80ee72 --- /dev/null +++ b/description/lainswork/shellcode-factory/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / shellcode engine & tricks and centers on shellcode factory. +It is primarily written in C++ and C/C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / shellcode engine & tricks area. diff --git a/description/lauralex/fn-dma-cheat/description_en.txt b/description/lauralex/fn-dma-cheat/description_en.txt new file mode 100644 index 00000000..0470dce3 --- /dev/null +++ b/description/lauralex/fn-dma-cheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dMA. +It is primarily written in C++ and centers on Unreal Engine. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/lavoiesl/osx-cpu-temp/description_en.txt b/description/lavoiesl/osx-cpu-temp/description_en.txt new file mode 100644 index 00000000..5a6595fd --- /dev/null +++ b/description/lavoiesl/osx-cpu-temp/description_en.txt @@ -0,0 +1 @@ +This project is a command-line tool for reading CPU temperature on macOS through the SMC (System Management Controller) interface. It queries the Apple SMC for thermal sensor readings and displays the current CPU temperature in Celsius or Fahrenheit. The C implementation accesses IOKit's AppleSMC service directly. It is aimed at macOS developers and system monitoring tool builders who need programmatic access to hardware temperature data. diff --git a/description/layerfsd/phantasm-x86-virtualizer/description_en.txt b/description/layerfsd/phantasm-x86-virtualizer/description_en.txt new file mode 100644 index 00000000..4723bbac --- /dev/null +++ b/description/layerfsd/phantasm-x86-virtualizer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vM. +Example usage Protecting the program The VM implementation is either included in the target program by statically linking to it, or by having the virtualizer manually copy it into the executable. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/lbertitoyt/ImGUI-Zygisk-Unity/description_en.txt b/description/lbertitoyt/ImGUI-Zygisk-Unity/description_en.txt new file mode 100644 index 00000000..f633990f --- /dev/null +++ b/description/lbertitoyt/ImGUI-Zygisk-Unity/description_en.txt @@ -0,0 +1 @@ +This project is a Zygisk module template for injecting ImGui overlays into Unity-based Android games. It uses Zygisk (Magisk's Zygote injection framework) to load native code into the game process at startup, hooks the Unity rendering pipeline, and renders an ImGui-based mod menu overlay. The C++ module handles OpenGL ES context sharing and touch input translation. It is aimed at Android game modders building visual mod menus for rooted devices running Unity games. diff --git a/description/leap0x7b/luaboot/description_en.txt b/description/leap0x7b/luaboot/description_en.txt new file mode 100644 index 00000000..f6b78f53 --- /dev/null +++ b/description/leap0x7b/luaboot/description_en.txt @@ -0,0 +1,3 @@ +This project is a fully scriptable UEFI bootloader. +The files included in this repository are licensed under the MIT license. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / efi driver area. diff --git a/description/leeqwind/PESignAnalyzer/description_en.txt b/description/leeqwind/PESignAnalyzer/description_en.txt new file mode 100644 index 00000000..0a9e5023 --- /dev/null +++ b/description/leeqwind/PESignAnalyzer/description_en.txt @@ -0,0 +1,3 @@ +This project is a Simple PE File Signature information Extracting Tool. +This program is used to get signature information from PE files which signed by a/some embedded code signature certificate(s) on Windows. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/legendabrn/AutoAttach/description_en.txt b/description/legendabrn/AutoAttach/description_en.txt new file mode 100644 index 00000000..0bc09fdf --- /dev/null +++ b/description/legendabrn/AutoAttach/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on to change the status of the plugin, you need to write the command AutoAttachStatus (0/1)\ To specify a process, you must write the AutoAttachProcess command and enter the process name Sleep If suddenly you need a delay before the attached, then this can be done through AutoAttachSleep by specifying milliseconds in the arguments Example sleep AutoAttachSleep 1000 Example select process AutoAttachProcess dota2.exe Example enable AutoAttach AutoAttachStatus 1 Example disable AutoAttach AutoAttachStatus 0 if anything, commands are entered here :). +It is primarily written in C/C++ and C++ and centers on plugin development, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/lehmenkuehler/camera-triggerbot/description_en.txt b/description/lehmenkuehler/camera-triggerbot/description_en.txt new file mode 100644 index 00000000..e1a4ebc5 --- /dev/null +++ b/description/lehmenkuehler/camera-triggerbot/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on camera Triggerbot. +The bot reacts to either movement or color around the crosshair. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/lettier/3d-game-shaders-for-beginners/description_en.txt b/description/lettier/3d-game-shaders-for-beginners/description_en.txt new file mode 100644 index 00000000..3dc63cf5 --- /dev/null +++ b/description/lettier/3d-game-shaders-for-beginners/description_en.txt @@ -0,0 +1 @@ +This project is a step-by-step tutorial on implementing 3D game rendering techniques and shader effects. It covers SSAO, bloom, normal mapping, shadow mapping, fog, depth of field, motion blur, screen space reflection, cel shading, outlining, and other post-processing effects with GLSL shader code and explanatory text. The Panda3D-based examples provide working implementations of each technique. It is aimed at beginning graphics programmers and game developers learning real-time shader programming and rendering pipeline concepts. diff --git a/description/lfreist/hwinfo/description_en.txt b/description/lfreist/hwinfo/description_en.txt new file mode 100644 index 00000000..82a74ea3 --- /dev/null +++ b/description/lfreist/hwinfo/description_en.txt @@ -0,0 +1 @@ +This project is hwinfo, a cross-platform C++ library for retrieving hardware information including CPU model, core counts, cache sizes, RAM capacity, disk drives, GPU details, and network interfaces. It provides a unified API across Windows, Linux, and macOS for querying system hardware specifications programmatically. It is aimed at developers building system information tools, hardware inventory applications, or HWID-based identification systems. diff --git a/description/lguilhermee/Battleye-Shellcode-Dumper/description_en.txt b/description/lguilhermee/Battleye-Shellcode-Dumper/description_en.txt new file mode 100644 index 00000000..cbd3b221 --- /dev/null +++ b/description/lguilhermee/Battleye-Shellcode-Dumper/description_en.txt @@ -0,0 +1 @@ +This project is a tool for dumping BattlEye's runtime shellcode modules that are streamed from the BattlEye server and executed in the game process. It intercepts and saves these scanning modules before they execute, enabling offline analysis of BattlEye's detection logic. The tool captures the shellcode payloads and their decryption keys. It is aimed at anti-cheat researchers reverse engineering BattlEye's dynamic scanning module architecture and detection signatures. diff --git a/description/lguilhermee/EAC-Extractor-Utility/description_en.txt b/description/lguilhermee/EAC-Extractor-Utility/description_en.txt new file mode 100644 index 00000000..60c639fc --- /dev/null +++ b/description/lguilhermee/EAC-Extractor-Utility/description_en.txt @@ -0,0 +1 @@ +This project is a utility for extracting and dumping EasyAntiCheat (EAC) driver and module files from game installations. It locates EAC components in the game directory and Windows driver store, extracts the anti-cheat driver, user-mode modules, and configuration files for offline reverse engineering analysis. It is aimed at anti-cheat researchers who need to obtain EAC binaries for static analysis and reverse engineering. diff --git a/description/libiht/libiht/description_en.txt b/description/libiht/libiht/description_en.txt new file mode 100644 index 00000000..f2d52bee --- /dev/null +++ b/description/libiht/libiht/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on intel Hardware Trace Library. +It is proudly brought to you by Tencent Security Xuanwu Lab and its long-term talent cultivation program Tencent Spark Talent Program . +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/libjpeg-turbo/libjpeg-turbo/description_en.txt b/description/libjpeg-turbo/libjpeg-turbo/description_en.txt new file mode 100644 index 00000000..49de77c5 --- /dev/null +++ b/description/libjpeg-turbo/libjpeg-turbo/description_en.txt @@ -0,0 +1,3 @@ +This project provides it is included only for reference. +The Independent JPEG Group's JPEG software ==========================================. +It is mainly useful for engine and tooling developers working on asset pipelines working in the image codec area. diff --git a/description/liblava/liblava/description_en.txt b/description/liblava/liblava/description_en.txt new file mode 100644 index 00000000..049dde00 --- /dev/null +++ b/description/liblava/liblava/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on modern and easy-to-use library for Vulkan. +This lean framework is written in neat C++23 and it strives for a modular rolling release as far as possible. +It is mainly useful for low-level graphics programmers and performance-focused engine developers working in the vulkan / api area. diff --git a/description/libriscv/godot-sandbox/description_en.txt b/description/libriscv/godot-sandbox/description_en.txt new file mode 100644 index 00000000..4bc98627 --- /dev/null +++ b/description/libriscv/godot-sandbox/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sandboxing that enables safe modding for Godot games. +All Godot platforms are supported. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:godot area. diff --git a/description/libtersafe/KPM-MemReader/description_en.txt b/description/libtersafe/KPM-MemReader/description_en.txt new file mode 100644 index 00000000..e49e41b3 --- /dev/null +++ b/description/libtersafe/KPM-MemReader/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on kPM kernel module, cross-process memory read via ioctl hook; KernelPatch/APatch. +It is primarily written in C++ and C and centers on kernel-level work, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel driver area. diff --git a/description/libtersafe/dfm_android_unicorn/description_en.txt b/description/libtersafe/dfm_android_unicorn/description_en.txt new file mode 100644 index 00000000..fece3079 --- /dev/null +++ b/description/libtersafe/dfm_android_unicorn/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on coordinate Decryption (Android ARM64. +It is primarily written in C/C++ and C++ and centers on anti-cheat research, kernel-level work, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:ace area. diff --git a/description/libyal/libmdmp/description_en.txt b/description/libyal/libmdmp/description_en.txt new file mode 100644 index 00000000..e7dbeb48 --- /dev/null +++ b/description/libyal/libmdmp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on minidump. +It is primarily written in C/C++ and C and centers on memory analysis and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / winows kernel dump analysis area. diff --git a/description/lico-n/ZygiskFrida/description_en.txt b/description/lico-n/ZygiskFrida/description_en.txt new file mode 100644 index 00000000..3b69cf02 --- /dev/null +++ b/description/lico-n/ZygiskFrida/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on injects frida gadget using zygisk. +Zygisk part of Magisk allows you to run code in every Android application's Process. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/lightningpixel/modly/description_en.txt b/description/lightningpixel/modly/description_en.txt new file mode 100644 index 00000000..7444bcc2 --- /dev/null +++ b/description/lightningpixel/modly/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on local image-to-3D mesh desktop app; open-source AI on GPU; Windows/Linux; extensible generators. +It is primarily written in TypeScript and Python and centers on kernel-level work, modding, and hooking. +It is mainly useful for game AI and tooling developers working in the ai area. diff --git a/description/lil-skies/val-exception-handler/description_en.txt b/description/lil-skies/val-exception-handler/description_en.txt new file mode 100644 index 00000000..e250bfc4 --- /dev/null +++ b/description/lil-skies/val-exception-handler/description_en.txt @@ -0,0 +1 @@ +This project is a proof of concept demonstrating exploitation of Valorant/Vanguard's exception handling mechanism. It analyzes how Vanguard processes hardware exceptions and vectored exception handlers, documenting potential weaknesses in the anti-cheat's exception dispatch flow that could be leveraged for code execution or detection evasion. It is aimed at anti-cheat researchers studying Vanguard's kernel-level protection and exception handling architecture. diff --git a/description/linuxboot/fiano/description_en.txt b/description/linuxboot/fiano/description_en.txt new file mode 100644 index 00000000..4c60e6d4 --- /dev/null +++ b/description/linuxboot/fiano/description_en.txt @@ -0,0 +1 @@ +This project is Fiano, a Go library and toolset for parsing, creating, and manipulating UEFI firmware images. It handles UEFI Firmware Volumes, FFS files, PE32 sections, compression (LZMA, Tiano), and GUIDed sections found in BIOS/UEFI ROM images. The tools include commands for extracting, replacing, and removing firmware modules from flash images. It is aimed at firmware security researchers, UEFI developers, and boot security analysts working with UEFI firmware analysis and modification. diff --git a/description/liors619/TtdAntiDebugging/description_en.txt b/description/liors619/TtdAntiDebugging/description_en.txt new file mode 100644 index 00000000..0419cb54 --- /dev/null +++ b/description/liors619/TtdAntiDebugging/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on debug Testing. +It is primarily written in C++ and C/C++ and centers on hooking and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/lj94093/IDAAndroidBreakpoint/description_en.txt b/description/lj94093/IDAAndroidBreakpoint/description_en.txt new file mode 100644 index 00000000..e0195500 --- /dev/null +++ b/description/lj94093/IDAAndroidBreakpoint/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iDA plugin aid to set android so breakpoint. +It is primarily written in Python and centers on plugin development, modding, and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/lkeai2007/yolov5_PUBG/description_en.txt b/description/lkeai2007/yolov5_PUBG/description_en.txt new file mode 100644 index 00000000..377812a0 --- /dev/null +++ b/description/lkeai2007/yolov5_PUBG/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pUBG yolov5. +It is primarily written in Python and centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/llxiaoyuan/oxorany/description_en.txt b/description/llxiaoyuan/oxorany/description_en.txt new file mode 100644 index 00000000..992ac159 --- /dev/null +++ b/description/llxiaoyuan/oxorany/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on obfuscated any constant encryption in compile time on any platform. +It is primarily written in C/C++ and C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/localcc/PalworldModdingKit/description_en.txt b/description/localcc/PalworldModdingKit/description_en.txt new file mode 100644 index 00000000..36ac9f38 --- /dev/null +++ b/description/localcc/PalworldModdingKit/description_en.txt @@ -0,0 +1,3 @@ +This project is a modding kit for Palworld. +Simple example usage could look like this. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:palworld [ue5] area. diff --git a/description/lockedbyte/so_loader/description_en.txt b/description/lockedbyte/so_loader/description_en.txt new file mode 100644 index 00000000..2b9defa1 --- /dev/null +++ b/description/lockedbyte/so_loader/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / android memory loading and centers on so loader. +It is primarily written in C and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android memory loading area. diff --git a/description/loerting/dalvikus/description_en.txt b/description/loerting/dalvikus/description_en.txt new file mode 100644 index 00000000..990cc1ab --- /dev/null +++ b/description/loerting/dalvikus/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android reverse-engineering tool / smali editor. +Dalvikus is solely intended for ethical purposes. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/long123king/dk/description_en.txt b/description/long123king/dk/description_en.txt new file mode 100644 index 00000000..ad47e9a5 --- /dev/null +++ b/description/long123king/dk/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on refactored version of tokenext. +Check page_2_svg demos: Initial version Add pointers to local buffer(in green), pointers to symbols(in red) Add pointers to heap allocations(in blue) Add heap allocation changing history, blue rects are clickable. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windbg plugins area. diff --git a/description/longpoxin/hideroot/description_en.txt b/description/longpoxin/hideroot/description_en.txt new file mode 100644 index 00000000..f9810616 --- /dev/null +++ b/description/longpoxin/hideroot/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / magisk and centers on hideroot. +It is primarily written in C and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/longqun/Packer/description_en.txt b/description/longqun/Packer/description_en.txt new file mode 100644 index 00000000..a313bd7f --- /dev/null +++ b/description/longqun/Packer/description_en.txt @@ -0,0 +1 @@ +This project is a Windows PE packer written in C/C++ that compresses and encrypts PE executables. It packs the original binary's sections, adds a decompression stub that restores the original code at runtime, and handles import table reconstruction, relocation fixing, and TLS callback preservation. The packer demonstrates the basic architecture of executable compression tools. It is aimed at security researchers studying PE packing techniques, anti-analysis methods, and unpacking strategies. diff --git a/description/loqix/Fortnite/description_en.txt b/description/loqix/Fortnite/description_en.txt new file mode 100644 index 00000000..1e89ff6e --- /dev/null +++ b/description/loqix/Fortnite/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fortnite. +The code will be acompanied by a video series where I take you step-by-step through building themechanics yourself. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/love2d/love/description_en.txt b/description/love2d/love/description_en.txt new file mode 100644 index 00000000..0c532a79 --- /dev/null +++ b/description/love2d/love/description_en.txt @@ -0,0 +1 @@ +This project is LOVE (Love2D), a free open-source 2D game framework written in C++ with Lua scripting. It provides modules for graphics rendering (OpenGL/Metal), audio playback, physics (Box2D), windowing, input handling, threading, and filesystem access through a simple Lua API. Games are distributed as .love archive files containing Lua scripts and assets. It is aimed at indie game developers and hobbyists prototyping and building 2D games with minimal boilerplate. diff --git a/description/lowenware/dotrix/description_en.txt b/description/lowenware/dotrix/description_en.txt new file mode 100644 index 00000000..f5c46412 --- /dev/null +++ b/description/lowenware/dotrix/description_en.txt @@ -0,0 +1,3 @@ +This project is an OpenSource 3D engine for Rust developers. +The name is a derivation from dot and matrix. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/lowleveldesign/comon/description_en.txt b/description/lowleveldesign/comon/description_en.txt new file mode 100644 index 00000000..91a03389 --- /dev/null +++ b/description/lowleveldesign/comon/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on trace COM. +Comon is a WinDbg extension that can help you trace COM interactions (COM class creations and interface querying). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windbg plugins area. diff --git a/description/loyaltypollution/ida2llvm/description_en.txt b/description/loyaltypollution/ida2llvm/description_en.txt new file mode 100644 index 00000000..e8e2fbac --- /dev/null +++ b/description/loyaltypollution/ida2llvm/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iDA2LLVM - Dynamic Binary Lifting IDA code to LLVM IR. +The viewer will always synchronize against the user's cursor in the disassembly window, indicating whether it can be lifted. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/ls361664056/GameAI-paper-list/description_en.txt b/description/ls361664056/GameAI-paper-list/description_en.txt new file mode 100644 index 00000000..14f7198e --- /dev/null +++ b/description/ls361664056/GameAI-paper-list/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on zh. +It centers on modding. +It is mainly useful for game AI and tooling developers working in the ai area. diff --git a/description/ls9512/USecurity/description_en.txt b/description/ls9512/USecurity/description_en.txt new file mode 100644 index 00000000..f0cc7b20 --- /dev/null +++ b/description/ls9512/USecurity/description_en.txt @@ -0,0 +1,3 @@ +This project is a security component used in the Unity project. +It provides encryption of commonly used data types at runtime, PlayerPrefs storage encryption, and a quick call interface for encryption and decryption of common encryption algorithms. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / game engine protection:unity area. diff --git a/description/lstaroth/AntiXorstr/description_en.txt b/description/lstaroth/AntiXorstr/description_en.txt new file mode 100644 index 00000000..c0322648 --- /dev/null +++ b/description/lstaroth/AntiXorstr/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on anti Xorstr. +It is primarily written in Python and centers on plugin development and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/lstrsrt/csgo_internal_base/description_en.txt b/description/lstrsrt/csgo_internal_base/description_en.txt new file mode 100644 index 00000000..114e742f --- /dev/null +++ b/description/lstrsrt/csgo_internal_base/description_en.txt @@ -0,0 +1 @@ +This project is a CS:GO internal cheat base providing a clean framework for building Source engine internal cheats. It includes engine interface resolution, VMT hooking infrastructure, netvar dumping, pattern scanning, and a basic ImGui overlay menu. The C++ base provides the foundational code structure that cheat features (ESP, aimbot, etc.) are built upon. It is aimed at game security researchers studying the typical architecture of internal game cheats and Source engine hook patterns. diff --git a/description/luciouskami/palworld_rcon/description_en.txt b/description/luciouskami/palworld_rcon/description_en.txt new file mode 100644 index 00000000..c2cdc225 --- /dev/null +++ b/description/luciouskami/palworld_rcon/description_en.txt @@ -0,0 +1 @@ +This project is a Palworld dedicated server RCON (Remote Console) client for sending administration commands remotely. It implements the Source RCON protocol to connect to Palworld servers and execute server management commands such as player kicks, bans, broadcasts, and server configuration changes. It is aimed at Palworld server administrators and game server developers managing dedicated Palworld instances. diff --git a/description/luisfelipe18/GamesoftACS/description_en.txt b/description/luisfelipe18/GamesoftACS/description_en.txt new file mode 100644 index 00000000..ca36872e --- /dev/null +++ b/description/luisfelipe18/GamesoftACS/description_en.txt @@ -0,0 +1 @@ +This project is GamesoftACS, an anti-cheat system implementation for game servers. It provides server-side cheat detection including speed hack detection, teleport detection, abnormal damage validation, inventory manipulation checks, and client integrity verification. The system monitors gameplay patterns and flags suspicious activity for review. It is aimed at game server developers implementing custom anti-cheat protection for multiplayer games. diff --git a/description/lzghzr/APatch_kpm/description_en.txt b/description/lzghzr/APatch_kpm/description_en.txt new file mode 100644 index 00000000..547b4746 --- /dev/null +++ b/description/lzghzr/APatch_kpm/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on aPatch modules. +It is primarily written in C/C++ and C and centers on kernel-level work, modding, and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android root area. diff --git a/description/lzyddf/IDA_Plugin_PCodeGPT/description_en.txt b/description/lzyddf/IDA_Plugin_PCodeGPT/description_en.txt new file mode 100644 index 00000000..b98c3386 --- /dev/null +++ b/description/lzyddf/IDA_Plugin_PCodeGPT/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on chatGPT. +Currently, only Chinese is supported. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/m417z/Multiline-Ultimate-Assembler/description_en.txt b/description/m417z/Multiline-Ultimate-Assembler/description_en.txt new file mode 100644 index 00000000..3e23d246 --- /dev/null +++ b/description/m417z/Multiline-Ultimate-Assembler/description_en.txt @@ -0,0 +1,3 @@ +This project is a multiline (and ultimate) assembler (and disassembler) plugin for x64dbg and OllyDbg. +It is primarily written in C/C++ and C and centers on plugin development, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/m417z/thread-call-stack-scanner/description_en.txt b/description/m417z/thread-call-stack-scanner/description_en.txt new file mode 100644 index 00000000..fc62cb5e --- /dev/null +++ b/description/m417z/thread-call-stack-scanner/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on safely manage the unloading of DLLs that have been hooked into a process. +This is particularly useful in scenarios where dynamically loaded modules need to be safely unloaded without causing crashes. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti-cheat programming area. diff --git a/description/m417z/x64dbg-xfg-marker/description_en.txt b/description/m417z/x64dbg-xfg-marker/description_en.txt new file mode 100644 index 00000000..4090a12a --- /dev/null +++ b/description/m417z/x64dbg-xfg-marker/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on marks XFG call signatures as data. +Each signature is 8 bytes long, and is located right before the target function. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/mactec0/Kernelmode-manual-mapping-through-IAT/description_en.txt b/description/mactec0/Kernelmode-manual-mapping-through-IAT/description_en.txt new file mode 100644 index 00000000..e4051741 --- /dev/null +++ b/description/mactec0/Kernelmode-manual-mapping-through-IAT/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iAT Manual Map. +It supports interacting with the process by handle or kernel driver. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/maecry/asphyxia-cs2/description_en.txt b/description/maecry/asphyxia-cs2/description_en.txt new file mode 100644 index 00000000..21677888 --- /dev/null +++ b/description/maecry/asphyxia-cs2/description_en.txt @@ -0,0 +1 @@ +This project is Asphyxia, an open-source Counter-Strike 2 cheat written in C++. It provides ESP (player boxes, health bars, names), aimbot, triggerbot, and visual modifications through Source 2 engine SDK interaction. The internal cheat hooks into the game's rendering and input systems using interface pointers and pattern scanning. It is aimed at game security researchers studying CS2 cheat architecture and Source 2 engine internals for anti-cheat development. diff --git a/description/magicsword-io/LOLDrivers/description_en.txt b/description/magicsword-io/LOLDrivers/description_en.txt new file mode 100644 index 00000000..776c10f7 --- /dev/null +++ b/description/magicsword-io/LOLDrivers/description_en.txt @@ -0,0 +1 @@ +This project is a comprehensive catalog of Living Off The Land Drivers (LOLDrivers) - legitimate signed Windows drivers that can be abused for malicious purposes. It includes YAML-based driver metadata, YARA signature enrichment, HVCI driver tracking, Jinja2-based site generation, and validation tools for maintaining the driver database. It is mainly useful for BYOVD researchers, threat hunters, and anti-cheat engineers tracking vulnerable and exploitable signed Windows drivers. diff --git a/description/magnussen7/Embuche/description_en.txt b/description/magnussen7/Embuche/description_en.txt new file mode 100644 index 00000000..b1cf7859 --- /dev/null +++ b/description/magnussen7/Embuche/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eLF. +The main goal of Embuche is to implement a collection of anti-reversing techniques in order to make the task of a reverser harder and painful. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/mahaloz/DAILA/description_en.txt b/description/mahaloz/DAILA/description_en.txt new file mode 100644 index 00000000..899a8ca2 --- /dev/null +++ b/description/mahaloz/DAILA/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on chatGPT. +If you are looking for the paper repo, find it here. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/mahmoudimus/ida-taskr/description_en.txt b/description/mahmoudimus/ida-taskr/description_en.txt new file mode 100644 index 00000000..65a2b7f6 --- /dev/null +++ b/description/mahmoudimus/ida-taskr/description_en.txt @@ -0,0 +1,3 @@ +This project is a pure Python library for IDA Pro related parallel computing. +It lets you use the power of Qt (built-in to IDA!) and Python's multiprocessing to offload computationally intensive tasks to worker processes without freezing IDA Pro's UI. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/mandiant/GoReSym/description_en.txt b/description/mandiant/GoReSym/description_en.txt new file mode 100644 index 00000000..f446e65f --- /dev/null +++ b/description/mandiant/GoReSym/description_en.txt @@ -0,0 +1 @@ +This project is GoReSym, a tool from Mandiant for extracting function metadata and type information from Go binaries. It parses the Go runtime's pclntab (PC line table) and moduledata structures to recover function names, source file paths, and type definitions even from stripped Go executables. The Go tool outputs recovered symbols in a format compatible with IDA Pro and other disassemblers. It is aimed at malware analysts and reverse engineers who need to restore symbol information in stripped Go binaries used by malware. diff --git a/description/mandiant/ShimCacheParser/description_en.txt b/description/mandiant/ShimCacheParser/description_en.txt new file mode 100644 index 00000000..bc14b61f --- /dev/null +++ b/description/mandiant/ShimCacheParser/description_en.txt @@ -0,0 +1 @@ +This project is a Python tool for parsing Application Compatibility Shim Cache (AppCompatCache) entries from Windows registry hives. It extracts timestamps, file paths, and execution flags from the ShimCache data stored in the SYSTEM registry hive, supporting multiple Windows versions from XP through Windows 10. The parsed output can be exported in CSV or timeline format for forensic analysis. It is aimed at incident responders and digital forensics analysts investigating program execution history on Windows systems. diff --git a/description/mandiant/dncil/description_en.txt b/description/mandiant/dncil/description_en.txt new file mode 100644 index 00000000..62a78fa3 --- /dev/null +++ b/description/mandiant/dncil/description_en.txt @@ -0,0 +1 @@ +This project is dncil, a Common Intermediate Language (CIL) disassembly library for .NET binaries written in Python. It parses .NET PE metadata and disassembles method bodies into individual CIL instructions with operand resolution, providing a foundation for .NET binary analysis tools. The library supports all CIL opcodes and metadata token resolution. It is aimed at malware analysts and reverse engineers building automated .NET analysis tools or integrating CIL disassembly into YARA rules and detection pipelines. diff --git a/description/mandiant/flare-vm/description_en.txt b/description/mandiant/flare-vm/description_en.txt new file mode 100644 index 00000000..f77fd25f --- /dev/null +++ b/description/mandiant/flare-vm/description_en.txt @@ -0,0 +1 @@ +This project is FLARE VM, a fully customizable Windows-based security distribution from Mandiant for malware analysis, incident response, and reverse engineering. It uses Chocolatey and Boxstarter to automate the installation of hundreds of analysis tools including disassemblers (IDA, Ghidra, x64dbg), debuggers, decompilers, network analyzers, forensic utilities, and Python/Ruby environments onto a clean Windows VM. It is aimed at malware analysts and reverse engineers who need a reproducible, tool-rich Windows analysis environment. diff --git a/description/maoabc/nmmp/description_en.txt b/description/maoabc/nmmp/description_en.txt new file mode 100644 index 00000000..45b61161 --- /dev/null +++ b/description/maoabc/nmmp/description_en.txt @@ -0,0 +1 @@ +This project is NMMP (Nativ Method Map Protector), an Android native code protection tool that converts Java/Kotlin bytecode methods into native implementations. It extracts DEX method bytecodes, compiles them into native ARM/x86 code via an interpreter or JIT-like transformation, and replaces the original methods with JNI bridges that call the native equivalents. This prevents standard DEX decompilation from recovering the protected logic. It is aimed at Android developers and security researchers studying bytecode-to-native conversion as a code protection technique. diff --git a/description/marakew/syser/description_en.txt b/description/marakew/syser/description_en.txt new file mode 100644 index 00000000..f8f31334 --- /dev/null +++ b/description/marakew/syser/description_en.txt @@ -0,0 +1,3 @@ +This project is a debugger for Windows x86/64. +It is primarily written in C++ and C/C++ and centers on reverse engineering, plugin development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/marblexu/PythonPlantsVsZombies/description_en.txt b/description/marblexu/PythonPlantsVsZombies/description_en.txt new file mode 100644 index 00000000..b1c45c08 --- /dev/null +++ b/description/marblexu/PythonPlantsVsZombies/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on plantsVsZombies. +It is primarily written in Python and centers on graphics. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/marcusbotacin/BranchMonitoringProject/description_en.txt b/description/marcusbotacin/BranchMonitoringProject/description_en.txt new file mode 100644 index 00000000..b2092a05 --- /dev/null +++ b/description/marcusbotacin/BranchMonitoringProject/description_en.txt @@ -0,0 +1 @@ +This project is a research framework for monitoring program execution using Intel's Last Branch Record (LBR) and Branch Trace Store (BTS) hardware features. It captures branch-level execution traces from running programs through kernel-mode access to CPU branch recording registers, enabling fine-grained control flow monitoring without software instrumentation. The C kernel driver and user-mode tools provide branch trace collection and analysis. It is aimed at security researchers studying hardware-assisted execution monitoring for malware analysis and integrity checking. diff --git a/description/marin-m/vmlinux-to-elf/description_en.txt b/description/marin-m/vmlinux-to-elf/description_en.txt new file mode 100644 index 00000000..d0c404a9 --- /dev/null +++ b/description/marin-m/vmlinux-to-elf/description_en.txt @@ -0,0 +1 @@ +This project is vmlinux-to-elf, a Python tool that converts raw Linux kernel images (vmlinux, bzImage, zImage) into proper ELF files with symbol tables. It extracts the kernel's kallsyms symbol table, reconstructs section headers, and produces an ELF binary that can be loaded into IDA Pro, Ghidra, or other disassemblers with full function names. It is aimed at Linux kernel researchers, exploit developers, and reverse engineers who need to analyze kernel binaries with proper symbol information. diff --git a/description/marlkiller/d3dhook_imgui/description_en.txt b/description/marlkiller/d3dhook_imgui/description_en.txt new file mode 100644 index 00000000..f5806796 --- /dev/null +++ b/description/marlkiller/d3dhook_imgui/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on d3d opengl hook imgui x86/x64. +It is primarily written in C/C++ and C++ and centers on DirectX, OpenGL, and Vulkan. +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / hook area. diff --git a/description/martinjanas/Sensum/description_en.txt b/description/martinjanas/Sensum/description_en.txt new file mode 100644 index 00000000..c94c9243 --- /dev/null +++ b/description/martinjanas/Sensum/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +This project is being actively developed. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/mastercodeon314/KsDumper-11/description_en.txt b/description/mastercodeon314/KsDumper-11/description_en.txt new file mode 100644 index 00000000..2cdf02fc --- /dev/null +++ b/description/mastercodeon314/KsDumper-11/description_en.txt @@ -0,0 +1 @@ +Windows kernel-mode driver and C# GUI application that dumps process memory by communicating with a custom driver (KsDumperDriver.sys) through IOCTL, using KDU for vulnerable driver loading to bypass Driver Signature Enforcement. Supports PE32/PE64 header parsing, process enumeration via undocumented NT APIs, and includes anti-blocklist registry patches for the Microsoft Vulnerable Driver Blocklist. diff --git a/description/masterpastaa/AutoOffsets/description_en.txt b/description/masterpastaa/AutoOffsets/description_en.txt new file mode 100644 index 00000000..e74c6163 --- /dev/null +++ b/description/masterpastaa/AutoOffsets/description_en.txt @@ -0,0 +1 @@ +C++ utility that fetches current Fortnite game offsets from a remote API endpoint using the WinINet HTTP stack (InternetOpenUrlA/InternetReadFile). The offsets are retrieved from an external reversal database and can also be queried programmatically via a REST API with key-based authentication. diff --git a/description/masterpastaa/BattlEye-Handler-BYPASS/description_en.txt b/description/masterpastaa/BattlEye-Handler-BYPASS/description_en.txt new file mode 100644 index 00000000..4ae62205 --- /dev/null +++ b/description/masterpastaa/BattlEye-Handler-BYPASS/description_en.txt @@ -0,0 +1 @@ +Windows KMDF kernel driver that bypasses BattlEye's handle-stripping mechanism by continuously re-creating process handles before the approximately 5-second BattlEye cleanup cycle removes them. Built using the WindowsKernelModeDriver10.0 toolset with I/O control dispatch routines for usermode communication. diff --git a/description/mathisvickie/sign-expired/description_en.txt b/description/mathisvickie/sign-expired/description_en.txt new file mode 100644 index 00000000..4a8a486e --- /dev/null +++ b/description/mathisvickie/sign-expired/description_en.txt @@ -0,0 +1 @@ +DLL side-loading exploit for Microsoft's signtool.exe that hijacks XmlLite.dll to patch CertVerifyTimeValidity (crypt32.dll) and GetSystemTimeAsFileTime (KernelBase.dll) in-memory using WriteProcessMemory, effectively zeroing return values to bypass certificate expiration checks during Authenticode signing. diff --git a/description/matteyeux/IDArling/description_en.txt b/description/matteyeux/IDArling/description_en.txt new file mode 100644 index 00000000..3ff82931 --- /dev/null +++ b/description/matteyeux/IDArling/description_en.txt @@ -0,0 +1,3 @@ +This project is a collaborative reverse engineering plugin for IDA Pro and Hex-Rays. +It allows to synchronize in real-time the changes made to an IDA database by multiple IDA users, by connecting together different instances of IDA Pro. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/mattifestation/WDACTools/description_en.txt b/description/mattifestation/WDACTools/description_en.txt new file mode 100644 index 00000000..62b8ba3f --- /dev/null +++ b/description/mattifestation/WDACTools/description_en.txt @@ -0,0 +1 @@ +PowerShell module suite for managing Windows Defender Application Control (WDAC) code integrity policies, providing cmdlets to build base and supplemental CI policies, configure rule options (UMCI, WHQL, audit mode, managed installer), parse serialized policy binaries via CIPolicyParser, and deploy policies with CiTool.exe and auditing support. diff --git a/description/mcxiaoke/mqtt/description_en.txt b/description/mcxiaoke/mqtt/description_en.txt new file mode 100644 index 00000000..71447069 --- /dev/null +++ b/description/mcxiaoke/mqtt/description_en.txt @@ -0,0 +1 @@ +Comprehensive Chinese translation of the MQTT v3.1.1 OASIS specification, covering all 14 control packet types (CONNECT through DISCONNECT), QoS levels, topic filtering, session state management, security considerations, and WebSocket transport bindings. diff --git a/description/mdilai/Shtreeba/description_en.txt b/description/mdilai/Shtreeba/description_en.txt new file mode 100644 index 00000000..2b5e9b46 --- /dev/null +++ b/description/mdilai/Shtreeba/description_en.txt @@ -0,0 +1 @@ +Windows DLL injector that performs manual mapping into target processes, resolving imports and relocations without using LoadLibrary. Includes a UI component for process selection by name and a library component (MMap) that handles low-level PE section copying, relocation fixups, and import resolution. diff --git a/description/med0x2e/SigFlip/description_en.txt b/description/med0x2e/SigFlip/description_en.txt new file mode 100644 index 00000000..bc2efb0d --- /dev/null +++ b/description/med0x2e/SigFlip/description_en.txt @@ -0,0 +1,3 @@ +This project is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature. +SigInject encrypts and injects shellcode into a PE file's [WIN_CERTIFICATE] certificate table, the encryption key is printed out for usage with a basic BOF/C/C# loader (SigLoader), SigInject saves changes to a modified PE file and keeps its signature and certificate validity intact. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/medievalghoul/hwid-checker-mg/description_en.txt b/description/medievalghoul/hwid-checker-mg/description_en.txt new file mode 100644 index 00000000..efe5cae1 --- /dev/null +++ b/description/medievalghoul/hwid-checker-mg/description_en.txt @@ -0,0 +1,3 @@ +This project is the information ranges from system manufacturer, model name, serial number (Which is our main focus for this hwid checker). +This was a great learning experience and was much a challenge. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hwid area. diff --git a/description/mefistotelis/ida-pro-loadmap/description_en.txt b/description/mefistotelis/ida-pro-loadmap/description_en.txt new file mode 100644 index 00000000..43d5c24f --- /dev/null +++ b/description/mefistotelis/ida-pro-loadmap/description_en.txt @@ -0,0 +1 @@ +IDA Pro plugin that imports symbol names from VC, Borland, Dede, GCC, and IDA-format .MAP linker output files into the current database. Parses section:offset notation from various MAP file formats and creates named functions/labels at corresponding addresses using the IDA SDK's kernwin and segment APIs. diff --git a/description/melonjs/melonJS/description_en.txt b/description/melonjs/melonJS/description_en.txt new file mode 100644 index 00000000..d63f0a3e --- /dev/null +++ b/description/melonjs/melonJS/description_en.txt @@ -0,0 +1,3 @@ +This project is a fresh, _modern_ & lightweight HTML5 game engine -------------------------------------------------------------------------------. +It has been rebuilt entirely using ES6 class, inheritance and semantic, and bundled using esbuild for blazing fast build performance and provide modern features such as tree-shaking. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/memflow/memflow-kvm/description_en.txt b/description/memflow/memflow-kvm/description_en.txt new file mode 100644 index 00000000..46404378 --- /dev/null +++ b/description/memflow/memflow-kvm/description_en.txt @@ -0,0 +1 @@ +Memflow connector implemented as a Linux kernel module that maps KVM virtual machine physical pages directly into userspace, enabling fast cross-VM memory introspection without standard KVM APIs. The kernel module uses page-table walking and vmtools to expose guest memory through ioctl-based character device interfaces with Rust userspace bindings. diff --git a/description/mentebinaria/retoolkit/description_en.txt b/description/mentebinaria/retoolkit/description_en.txt new file mode 100644 index 00000000..91364517 --- /dev/null +++ b/description/mentebinaria/retoolkit/description_en.txt @@ -0,0 +1 @@ +Curated Windows installer (built with Inno Setup) that bundles 80+ reverse engineering tools into a single deployment, including debuggers (x64dbg, HyperDbg), decompilers (Ghidra, Cutter), .NET analyzers (dnSpyEx, ILSpy, de4dot), PE inspectors (PE-bear, pestudio, DIE), hex editors (ImHex, HxD), network tools (FakeNet, nmap), and YARA/YARA-X signature scanners. diff --git a/description/mexploitui/FakeEye/description_en.txt b/description/mexploitui/FakeEye/description_en.txt new file mode 100644 index 00000000..f3573ad4 --- /dev/null +++ b/description/mexploitui/FakeEye/description_en.txt @@ -0,0 +1 @@ +Emulator that mimics BattlEye's initialization sequence by managing the BEService process and launching games as if BattlEye anti-cheat were present. Reads configuration from external files, handles service installation via Windows SCM APIs, and creates the game process with appropriate launch parameters. diff --git a/description/mfxiaosheng/dwmhook/description_en.txt b/description/mfxiaosheng/dwmhook/description_en.txt new file mode 100644 index 00000000..07a21c94 --- /dev/null +++ b/description/mfxiaosheng/dwmhook/description_en.txt @@ -0,0 +1 @@ +Desktop Window Manager overlay rendering framework that hooks DWM's DirectX 11 vtable to draw ImGui-based overlays on top of all windows. Uses reflective DLL injection, MinHook/PolyHook2 for vtable interception, FW1FontWrapper for DirectWrite text rendering, and PDB symbol resolution (via DIA SDK) for locating internal DWM compositor functions. diff --git a/description/mgeeky/ShellcodeFluctuation/description_en.txt b/description/mgeeky/ShellcodeFluctuation/description_en.txt new file mode 100644 index 00000000..361dc7cc --- /dev/null +++ b/description/mgeeky/ShellcodeFluctuation/description_en.txt @@ -0,0 +1,3 @@ +This project is a PoC implementation for an another in-memory evasion technique that cyclically encrypts and decrypts shellcode's contents to then make it fluctuate between RW (or NoAccess) and RX memory protection. +This PoC is a demonstration of rather simple technique, already known to the offensive community (so I'm not bringin anything new here really) in hope to disclose secrecy behind magic showed by some commercial frameworks that demonstrate their evasion capabilities targeting both aforementioned memory scanners. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / page protection area. diff --git a/description/mgeeky/ThreadStackSpoofer/description_en.txt b/description/mgeeky/ThreadStackSpoofer/description_en.txt new file mode 100644 index 00000000..0edb910e --- /dev/null +++ b/description/mgeeky/ThreadStackSpoofer/description_en.txt @@ -0,0 +1,3 @@ +This project is a PoC implementation for an advanced in-memory evasion technique that spoofs Thread Call Stack. +This technique allows to bypass thread-based memory examination rules and better hide shellcodes while in-process memory. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/mgeeky/ntfs-journal-viewer/description_en.txt b/description/mgeeky/ntfs-journal-viewer/description_en.txt new file mode 100644 index 00000000..8e8d8408 --- /dev/null +++ b/description/mgeeky/ntfs-journal-viewer/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / information system & forensics and centers on ntfs journal viewer. +It is primarily written in C. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / information system & forensics area. diff --git a/description/mhyousefi/ZombiesVsPlants/description_en.txt b/description/mhyousefi/ZombiesVsPlants/description_en.txt new file mode 100644 index 00000000..8671539f --- /dev/null +++ b/description/mhyousefi/ZombiesVsPlants/description_en.txt @@ -0,0 +1 @@ +Plants vs. Zombies clone built with SDL2 (SDL2_image, SDL2_ttf) in C++, implementing lane-based tower defense mechanics with plant placement, projectile physics, zombie wave spawning, and sun resource management. Supports cross-platform builds on macOS using the bundled SDL2 frameworks. diff --git a/description/mibho/x64dbgTraceReader/description_en.txt b/description/mibho/x64dbgTraceReader/description_en.txt new file mode 100644 index 00000000..37164845 --- /dev/null +++ b/description/mibho/x64dbgTraceReader/description_en.txt @@ -0,0 +1 @@ +Standalone parser for x64dbg's .trace64 binary trace format that deserializes instruction records, disassembles them via the Capstone engine, and supports regex-based filtering over execution traces. Reconstructs per-instruction register and memory state from the compact trace buffer format for offline analysis. diff --git a/description/michaelmsonne/SignToolGUI/description_en.txt b/description/michaelmsonne/SignToolGUI/description_en.txt new file mode 100644 index 00000000..513bc355 --- /dev/null +++ b/description/michaelmsonne/SignToolGUI/description_en.txt @@ -0,0 +1 @@ +Windows Forms GUI wrapper around Microsoft's signtool.exe supporting three signing modes: Windows Certificate Store (thumbprint), PFX file, and Azure Trusted Signing (via Azure.CodeSigning SDK). Includes certificate monitoring, timestamp server management, signing validation, batch multi-file signing, and PowerShell script export for CI/CD integration. diff --git a/description/michal-z/zig-gamedev/description_en.txt b/description/michal-z/zig-gamedev/description_en.txt new file mode 100644 index 00000000..61fb18af --- /dev/null +++ b/description/michal-z/zig-gamedev/description_en.txt @@ -0,0 +1 @@ +Collection of cross-platform game development libraries written in Zig, providing bindings and wrappers for DirectX 12, Vulkan, OpenGL, and audio APIs. Includes sample applications demonstrating GPU-driven rendering, physics simulations, and real-time graphics techniques with the Zig build system. diff --git a/description/michelpereira/awesome-open-source-games/description_en.txt b/description/michelpereira/awesome-open-source-games/description_en.txt new file mode 100644 index 00000000..79ca0bc4 --- /dev/null +++ b/description/michelpereira/awesome-open-source-games/description_en.txt @@ -0,0 +1 @@ +Curated awesome-list of open-source games organized by platform (browser, mobile, desktop) and genre (arcade, FPS, RPG, strategy, puzzle), covering engines like Godot, Unity, and custom implementations across C++, JavaScript, Python, and other languages. diff --git a/description/michidk/Unity-Script-Collection/description_en.txt b/description/michidk/Unity-Script-Collection/description_en.txt new file mode 100644 index 00000000..8f5e1f3f --- /dev/null +++ b/description/michidk/Unity-Script-Collection/description_en.txt @@ -0,0 +1,3 @@ +This project is a maintained collection of useful & free unity scripts / library's / plugins and extensions. +This list is licensed under the GNU General Public License v3.0 and does only apply to this repository. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unity area. diff --git a/description/microsoft/D3D9On12/description_en.txt b/description/microsoft/D3D9On12/description_en.txt new file mode 100644 index 00000000..3a8ecdde --- /dev/null +++ b/description/microsoft/D3D9On12/description_en.txt @@ -0,0 +1,3 @@ +This project is the Direct3D9-On-12 mapping layer. +D3D9On12 is not an implementation of the D3D9 API , but is instead an implementation of the D3D9 usermode DDI (device driver interface). +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / compatibility area. diff --git a/description/microsoft/Detours/description_en.txt b/description/microsoft/Detours/description_en.txt new file mode 100644 index 00000000..899f825e --- /dev/null +++ b/description/microsoft/Detours/description_en.txt @@ -0,0 +1,3 @@ +This project is a software package for monitoring and instrumenting API calls on Windows. +Detours has been used by many ISVs and is also used by product teams at Microsoft. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hook area. diff --git a/description/microsoft/DirectXMath/description_en.txt b/description/microsoft/DirectXMath/description_en.txt new file mode 100644 index 00000000..aa02c786 --- /dev/null +++ b/description/microsoft/DirectXMath/description_en.txt @@ -0,0 +1 @@ +Microsoft's all-inline SIMD C++ linear algebra library providing SSE/SSE2/AVX/AVX2/ARM-NEON optimized vector, matrix, quaternion, and collision detection primitives (BoundingBox, BoundingSphere, BoundingFrustum). Includes extensions for F16C half-float conversion, FMA3/FMA4, spherical harmonics (SHMath), and DSP functions (XDSP). diff --git a/description/microsoft/SDCM/description_en.txt b/description/microsoft/SDCM/description_en.txt new file mode 100644 index 00000000..8d67f08c --- /dev/null +++ b/description/microsoft/SDCM/description_en.txt @@ -0,0 +1 @@ +Command-line tool that automates Microsoft Partner Center (Hardware Dev Center) workflows via REST APIs, enabling programmatic creation of Attestation/WHQL product submissions, downloading signed driver packages, and managing shipping labels for Windows Update driver distribution. diff --git a/description/microsoft/WSL/description_en.txt b/description/microsoft/WSL/description_en.txt new file mode 100644 index 00000000..f6b5e4bb --- /dev/null +++ b/description/microsoft/WSL/description_en.txt @@ -0,0 +1 @@ +Open-source components of Windows Subsystem for Linux, including the wsl.exe/wslconfig.exe front-end, Lxss Manager service, Plan 9 filesystem (DrvFS) integration, GNS networking stack, init/systemd orchestration, and the lightweight VM infrastructure for running unmodified Linux ELF binaries on Windows. diff --git a/description/microsoft/WSL2-Linux-Kernel/description_en.txt b/description/microsoft/WSL2-Linux-Kernel/description_en.txt new file mode 100644 index 00000000..83137d13 --- /dev/null +++ b/description/microsoft/WSL2-Linux-Kernel/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under wsl and centers on wsl2 linux kernel. +It centers on kernel-level work. +It is mainly useful for Windows subsystem and developer-environment researchers working in the wsl area. diff --git a/description/microsoft/pdb-rs/description_en.txt b/description/microsoft/pdb-rs/description_en.txt new file mode 100644 index 00000000..6b994eff --- /dev/null +++ b/description/microsoft/pdb-rs/description_en.txt @@ -0,0 +1 @@ +Rust implementation of a PDB (Program Database) reader/writer with full support for the MSF container format, CodeView symbol and type records, DBI stream parsing, TPI/IPI streams, and COFF image metadata. Includes a codeview crate for encoding/decoding symbol kinds (S_PUB, S_PROC, S_LOCAL) and type records (LF_CLASS, LF_POINTER, LF_PROCEDURE) with architecture-specific register mappings for x86, AMD64, and ARM64. diff --git a/description/microsoft/pdblister/description_en.txt b/description/microsoft/pdblister/description_en.txt new file mode 100644 index 00000000..81229bb2 --- /dev/null +++ b/description/microsoft/pdblister/description_en.txt @@ -0,0 +1 @@ +Rust command-line tool that generates PDB download manifests by scanning directories for PE files and extracting their debug directory entries (CodeView GUID and age). Mimics the behavior of symchk /om but operates significantly faster, constructing Microsoft Symbol Server URLs for batch PDB retrieval with both blocking and async download modes. diff --git a/description/mihaly044/pedigest/description_en.txt b/description/mihaly044/pedigest/description_en.txt new file mode 100644 index 00000000..92513a99 --- /dev/null +++ b/description/mihaly044/pedigest/description_en.txt @@ -0,0 +1 @@ +C library for computing Authenticode digests of PE files, implementing the hash-exclusion algorithm that skips the PE checksum field and security directory during hashing. Uses BCrypt APIs (SHA-1/SHA-256/SHA-384/SHA-512), parses embedded WIN_CERTIFICATE structures, and was designed for both kernel-mode (ksecdd.lib) and usermode (bcrypt.lib) environments. diff --git a/description/mike1k/HookHunter/description_en.txt b/description/mike1k/HookHunter/description_en.txt new file mode 100644 index 00000000..d6692fa2 --- /dev/null +++ b/description/mike1k/HookHunter/description_en.txt @@ -0,0 +1,3 @@ +This project is a multi-purpose Windows tool that can search a target process in order to find patches and hooks, then build a report. +In addition, HookHunter is also capable of following generic hooks to their final destination, making it convenient to simply run the tool and know exactly where specific hooks land. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hook area. diff --git a/description/mike1k/perses/description_en.txt b/description/mike1k/perses/description_en.txt new file mode 100644 index 00000000..303985b7 --- /dev/null +++ b/description/mike1k/perses/description_en.txt @@ -0,0 +1,3 @@ +This project is a X86 code obfuscation engine that works with Portable Executable files. +The obfuscation works by replacing a specific instruction with a larger more sophisticated set that is semantically compatible to the original. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/mikeroyal/Unreal-Engine-Guide/description_en.txt b/description/mikeroyal/Unreal-Engine-Guide/description_en.txt new file mode 100644 index 00000000..c0f94789 --- /dev/null +++ b/description/mikeroyal/Unreal-Engine-Guide/description_en.txt @@ -0,0 +1,3 @@ +This project is A guide covering Unreal Engine including the applications, libraries and tools that will make you a better and more efficient Unreal Engine developer. +**Note: You can easily convert this markdown file to a PDF in VSCode using this handy extension Markdown PDF.**. +It is mainly useful for game developers, engine programmers, and graphics researchers working on anti-cheat research and kernel-level work in the game engine / guide area. diff --git a/description/milakov/int_fastdiv/description_en.txt b/description/milakov/int_fastdiv/description_en.txt new file mode 100644 index 00000000..e2f7f69b --- /dev/null +++ b/description/milakov/int_fastdiv/description_en.txt @@ -0,0 +1 @@ +Header-only C++ class that replaces runtime integer division with precomputed multiply-and-shift operations based on "Hacker's Delight" magic number theory. Works transparently as a drop-in int replacement with overloaded / and % operators, targeting both CPU and CUDA GPU kernels via __host__ __device__ annotations for approximately 2x speedup over hardware division. diff --git a/description/milankovo/YaraVM/description_en.txt b/description/milankovo/YaraVM/description_en.txt new file mode 100644 index 00000000..ed7ccbd4 --- /dev/null +++ b/description/milankovo/YaraVM/description_en.txt @@ -0,0 +1 @@ +IDA Pro processor module and loader for disassembling compiled YARA rule binaries (.yar.bin), enabling static analysis of YARA bytecode and regex bytecode within the IDA environment. Parses the YARA arena-based file format (namespaces, rules, strings, code sections, AC transition tables) and provides a custom type information library (libyara.til) for struct annotation. diff --git a/description/milankovo/ida-search/description_en.txt b/description/milankovo/ida-search/description_en.txt new file mode 100644 index 00000000..16b14990 --- /dev/null +++ b/description/milankovo/ida-search/description_en.txt @@ -0,0 +1,3 @@ +This project is an IDA Pro 9.x plugin that brings 010 Editor-style type-aware binary search to IDA. +The ida-plugin.json manifest tells IDA to load plugin.py on startup. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/milankovo/ida_enums_helper/description_en.txt b/description/milankovo/ida_enums_helper/description_en.txt new file mode 100644 index 00000000..96416221 --- /dev/null +++ b/description/milankovo/ida_enums_helper/description_en.txt @@ -0,0 +1 @@ +IDA Pro plugin that streamlines enum management in the Hex-Rays pseudocode view, providing hotkey-driven actions to rename enum members (N), add values to existing or new enums (A), and quickly append to the last-used enum (Shift-A). Uses idaapi.tinfo_t ordinal iteration and chooser dialogs to match numeric operands against existing enum definitions. diff --git a/description/milcert/ExpoMon/description_en.txt b/description/milcert/ExpoMon/description_en.txt new file mode 100644 index 00000000..a88594cf --- /dev/null +++ b/description/milcert/ExpoMon/description_en.txt @@ -0,0 +1 @@ +x64dbg plugin with a Qt-based GUI that monitors DLL exports in debugged processes, built against the x64dbg Plugin SDK (bridgemain, TitanEngine, XEDParse). Tracks loaded module export tables and displays function names, ordinals, and addresses in real-time, with Windows internals helpers for resolving device names and process information. diff --git a/description/milostosic/rprof/description_en.txt b/description/milostosic/rprof/description_en.txt new file mode 100644 index 00000000..b05757e4 --- /dev/null +++ b/description/milostosic/rprof/description_en.txt @@ -0,0 +1 @@ +Lightweight CPU scope-based profiling library for games that captures hierarchical timing data with minimal overhead using thread-local storage and platform-specific high-resolution timers. Includes an ImGui/ImPlot-based inspector tool for visualizing flame graphs and frame-time distributions, with LZ4-compressed capture file serialization. diff --git a/description/mimilewis/MapleStory143/description_en.txt b/description/mimilewis/MapleStory143/description_en.txt new file mode 100644 index 00000000..8056d9f7 --- /dev/null +++ b/description/mimilewis/MapleStory143/description_en.txt @@ -0,0 +1 @@ +Java/Kotlin private server emulator for MapleStory v143 (CMS), implementing the full game server stack including login encryption (LoginCrypto), packet handling via Netty/MINA, character stat management, skill/buff systems, monster spawning, quest scripting (Nashorn), and a server-side anti-cheat tracker (CheatTracker) with offense categorization. diff --git a/description/minetest/minetest/description_en.txt b/description/minetest/minetest/description_en.txt new file mode 100644 index 00000000..ffa73610 --- /dev/null +++ b/description/minetest/minetest/description_en.txt @@ -0,0 +1 @@ +Open-source voxel game engine (Luanti, formerly Minetest) with a Lua modding API, supporting Irrlicht/SDL2 rendering, procedural world generation, multiplayer networking, and cross-platform builds (Linux, Windows, macOS, Android). Provides a complete content creation framework with node definitions, entity systems, inventory management, and formspec-based UIs. diff --git a/description/misc0110/PTEditor/description_en.txt b/description/misc0110/PTEditor/description_en.txt new file mode 100644 index 00000000..45b72215 --- /dev/null +++ b/description/misc0110/PTEditor/description_en.txt @@ -0,0 +1 @@ +Linux kernel module and userspace library for directly reading and modifying all page-table levels (PGD, PUD, PMD, PTE) of any process from user space on x86_64 and ARMv8. Supports virtual-to-physical address translation, PAT/MAIR memory type programming, NX bit manipulation, and TLB flushing, with a companion Windows kernel driver for cross-platform use. diff --git a/description/mischasan/aho-corasick/description_en.txt b/description/mischasan/aho-corasick/description_en.txt new file mode 100644 index 00000000..cd301d9f --- /dev/null +++ b/description/mischasan/aho-corasick/description_en.txt @@ -0,0 +1 @@ +High-performance Aho-Corasick multi-pattern string matching library using an Interleaved State-transition Matrix (ISM) representation that achieves both minimal memory footprint and maximum search speed. Supports memory-mapped serialization for persistent automata and provides a C API for building, querying, and dumping the compiled state machine. diff --git a/description/miscusi-peek/cheatengine-mcp-bridge/description_en.txt b/description/miscusi-peek/cheatengine-mcp-bridge/description_en.txt new file mode 100644 index 00000000..a0918dc3 --- /dev/null +++ b/description/miscusi-peek/cheatengine-mcp-bridge/description_en.txt @@ -0,0 +1 @@ +Model Context Protocol (MCP) bridge that connects AI agents to Cheat Engine via a Named Pipe architecture, exposing 40+ tools for memory reading, AOB scanning, pointer chain traversal, structure dissection, RTTI class identification, hardware breakpoints (DR0-DR3), and DBVM hypervisor-level tracing. Uses a Lua worker thread in CE synchronized with a Python FastMCP server for sub-2ms command latency. diff --git a/description/miticollo/xpc-tracer/description_en.txt b/description/miticollo/xpc-tracer/description_en.txt new file mode 100644 index 00000000..317c9e70 --- /dev/null +++ b/description/miticollo/xpc-tracer/description_en.txt @@ -0,0 +1,3 @@ +This project is a tracer based on frida for XPC messages in iOS and macOS. +This project is a variant of xpcspy. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/mix64/ELFpacker/description_en.txt b/description/mix64/ELFpacker/description_en.txt new file mode 100644 index 00000000..1048fe56 --- /dev/null +++ b/description/mix64/ELFpacker/description_en.txt @@ -0,0 +1 @@ +ELF32 binary packer that XOR-encrypts the .text section of an executable and prepends a decryption stub that restores the original code at runtime before jumping to the original entry point. Manipulates ELF headers, program headers, and section headers to inject the stub segment while preserving the binary's loadable structure. diff --git a/description/mizt0/mixed-boolean-transform/description_en.txt b/description/mizt0/mixed-boolean-transform/description_en.txt new file mode 100644 index 00000000..75168041 --- /dev/null +++ b/description/mizt0/mixed-boolean-transform/description_en.txt @@ -0,0 +1 @@ +Source-to-source C++ obfuscation tool that replaces integer constants and arithmetic expressions with semantically equivalent mixed boolean-arithmetic (MBA) expressions using Z3 SMT solver verification. Generates large polynomial MBA identities over bitwise operations (AND, OR, XOR, NOT) with Eigen3 linear algebra and GMP arbitrary-precision integers. diff --git a/description/mkaring/ConfuserEx/description_en.txt b/description/mkaring/ConfuserEx/description_en.txt new file mode 100644 index 00000000..7d92b1e9 --- /dev/null +++ b/description/mkaring/ConfuserEx/description_en.txt @@ -0,0 +1,3 @@ +This project is a open-source protector for .NET applications. +It is the successor of [Confuser][confuser] project. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/mltpig/PCILeech-FPGA-DMA_VMD/description_en.txt b/description/mltpig/PCILeech-FPGA-DMA_VMD/description_en.txt new file mode 100644 index 00000000..7a463aa8 --- /dev/null +++ b/description/mltpig/PCILeech-FPGA-DMA_VMD/description_en.txt @@ -0,0 +1 @@ +PCILeech FPGA firmware for Xilinx Artix-7 XC7A75T that emulates an Intel RST VMD (Volume Management Device) controller with Device ID 9A0B for DMA-based memory access. Implements multi-function PCI device simulation, MSI-X interrupt handling, NVMe command processing, configurable BAR addressing, and advanced TLP-level PCIe config space shadowing in SystemVerilog. diff --git a/description/moiz-2x/CVE-2025-24990_POC/description_en.txt b/description/moiz-2x/CVE-2025-24990_POC/description_en.txt new file mode 100644 index 00000000..632e3f68 --- /dev/null +++ b/description/moiz-2x/CVE-2025-24990_POC/description_en.txt @@ -0,0 +1 @@ +Proof-of-concept exploit for CVE-2025-24990 in the Windows Agere Modem driver (ltmdm64.sys), leveraging METHOD_NEITHER IOCTLs that fail to validate user/kernel address boundaries. Chains a 4-byte arbitrary write (IOCTL_GET_VERSION) with a null-dereference fixup via VirtualAlloc to achieve arbitrary kernel memory read/write in a BYOVD scenario, with an I/O Ring-based variant for privilege escalation. diff --git a/description/mojtabafalleh/emulator/description_en.txt b/description/mojtabafalleh/emulator/description_en.txt new file mode 100644 index 00000000..73cccb92 --- /dev/null +++ b/description/mojtabafalleh/emulator/description_en.txt @@ -0,0 +1 @@ +Debugger-emulator hybrid built on Unicorn Engine and Capstone that loads PE binaries, emulates x86/x64 execution with API hooking, and provides detailed instruction-level logging. Resolves imports via dbghelp, maps PE sections into the emulator's address space, and intercepts Windows API calls to simulate OS behavior for analyzing DRM-protected or obfuscated executables. diff --git a/description/momalab/e3/description_en.txt b/description/momalab/e3/description_en.txt new file mode 100644 index 00000000..c0b6e251 --- /dev/null +++ b/description/momalab/e3/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / encrypt variable and centers on e3. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / encrypt variable area. diff --git a/description/momo5502/ept-hook-detection/description_en.txt b/description/momo5502/ept-hook-detection/description_en.txt new file mode 100644 index 00000000..d35e7b61 --- /dev/null +++ b/description/momo5502/ept-hook-detection/description_en.txt @@ -0,0 +1 @@ +Usermode tool that detects EPT (Extended Page Table) hooks set by hypervisors using three independent methods: timing-based detection measuring execution latency discrepancies, write-and-compare checks that write to code pages and verify if the hypervisor silently redirects reads, and cross-thread consistency checks comparing code views across CPU cores. diff --git a/description/momo5502/levo/description_en.txt b/description/momo5502/levo/description_en.txt new file mode 100644 index 00000000..5ad118b2 --- /dev/null +++ b/description/momo5502/levo/description_en.txt @@ -0,0 +1 @@ +Experimental ahead-of-time (AOT) binary translator that recovers control flow graphs from x86/x64 PE executables using Ghidra export, lifts machine code to LLVM IR via Intel XED disassembly, and recompiles to native code with the LLVM backend. Includes a PE mapper and a runtime environment that intercepts kernel32 API calls for execution on the host OS. diff --git a/description/momo5502/patch-finder/description_en.txt b/description/momo5502/patch-finder/description_en.txt new file mode 100644 index 00000000..a302544e --- /dev/null +++ b/description/momo5502/patch-finder/description_en.txt @@ -0,0 +1 @@ +IDA Pro plugin that detects in-memory patches and hooks by scanning executable memory regions of a running process and comparing them byte-by-byte against the corresponding on-disk PE file. Uses the IDA SDK for segment enumeration and a custom PE parser to align virtual addresses with file offsets, highlighting discrepancies in the disassembly view. diff --git a/description/momo5502/sogen/description_en.txt b/description/momo5502/sogen/description_en.txt new file mode 100644 index 00000000..d60be64d --- /dev/null +++ b/description/momo5502/sogen/description_en.txt @@ -0,0 +1 @@ +Windows userspace emulator built on Unicorn Engine and Capstone that executes x86/x64 PE binaries with full syscall emulation, minidump loading, and Zstd-compressed state serialization. Includes a web-based UI (React/TypeScript) for interactive emulation sessions, cross-compilation support via Emscripten/Android NDK, and FlatBuffers-based IPC for structured execution traces. diff --git a/description/momo5502/vmtrace/description_en.txt b/description/momo5502/vmtrace/description_en.txt new file mode 100644 index 00000000..04f0c7ac --- /dev/null +++ b/description/momo5502/vmtrace/description_en.txt @@ -0,0 +1 @@ +C++ library built on the Windows Hypervisor Platform (WHP) API that provides trap-driven guest execution with host-backed memory, page-level access traps, and CPUID/syscall interception. Uses asmjit for runtime code generation and exposes a clean interface for mapping guest physical memory, setting memory permissions, and handling VM exits for single-step tracing. diff --git a/description/mono/mono/description_en.txt b/description/mono/mono/description_en.txt new file mode 100644 index 00000000..b9316d5d --- /dev/null +++ b/description/mono/mono/description_en.txt @@ -0,0 +1 @@ +Open-source implementation of the .NET Framework runtime (CLR) including a JIT/AOT compiler, garbage collector (SGen), class libraries, and an embeddable C API. Widely used as the scripting backend in Unity game engine, providing IL execution, P/Invoke interop, and managed-to-native bridging that is a primary target for game modding and security research. diff --git a/description/morsisko/xFindOut/description_en.txt b/description/morsisko/xFindOut/description_en.txt new file mode 100644 index 00000000..62b9c9d9 --- /dev/null +++ b/description/morsisko/xFindOut/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / x64dbg plugins and centers on x find out. +It is primarily written in C/C++ and C++ and centers on plugin development, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/moyix/gpt-wpre/description_en.txt b/description/moyix/gpt-wpre/description_en.txt new file mode 100644 index 00000000..59d37975 --- /dev/null +++ b/description/moyix/gpt-wpre/description_en.txt @@ -0,0 +1 @@ +Python tool that performs whole-program reverse engineering by extracting Ghidra decompilation output and call graphs via ghidra_bridge, then recursively summarizing functions bottom-up using GPT-3 (text-davinci-003). Builds natural language summaries of callee dependencies as context for each function, working around LLM context window limits to produce human-readable program analysis. diff --git a/description/mq1n/DLLThreadInjectionDetector/description_en.txt b/description/mq1n/DLLThreadInjectionDetector/description_en.txt new file mode 100644 index 00000000..9037b6b9 --- /dev/null +++ b/description/mq1n/DLLThreadInjectionDetector/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / detection:injection and centers on dllthread injection detector. +It is primarily written in C++ and C/C++ and centers on kernel-level work. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:injection area. diff --git a/description/mq1n/HiddenModuleDetector/description_en.txt b/description/mq1n/HiddenModuleDetector/description_en.txt new file mode 100644 index 00000000..52524273 --- /dev/null +++ b/description/mq1n/HiddenModuleDetector/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / detection:hide and centers on hidden module detector. +It is primarily written in C/C++ and C++ and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hide area. diff --git a/description/mq1n/NoMercy/description_en.txt b/description/mq1n/NoMercy/description_en.txt new file mode 100644 index 00000000..b9597e5f --- /dev/null +++ b/description/mq1n/NoMercy/description_en.txt @@ -0,0 +1,3 @@ +This project is the "NoMercy" project is "the gold standard" open source anti-cheat. +NoMercy is licensed under the MIT License. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / open source anti cheat system area. diff --git a/description/mqttjs/MQTT.js/description_en.txt b/description/mqttjs/MQTT.js/description_en.txt new file mode 100644 index 00000000..e0393821 --- /dev/null +++ b/description/mqttjs/MQTT.js/description_en.txt @@ -0,0 +1 @@ +Full-featured MQTT client library for Node.js and browsers supporting MQTT v3.1, v3.1.1, and v5.0 protocols over TCP, TLS, WebSocket, and WSS transports. Provides publish/subscribe messaging with QoS 0/1/2, automatic reconnection, last-will-and-testament, and CLI tools (mqtt pub/sub), with Electron and Vite integration examples. diff --git a/description/mrcang09/Android-Mem-Edit/description_en.txt b/description/mrcang09/Android-Mem-Edit/description_en.txt new file mode 100644 index 00000000..cc29d9a4 --- /dev/null +++ b/description/mrcang09/Android-Mem-Edit/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / android memory explorer and centers on android mem edit. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android memory explorer area. diff --git a/description/mrdoob/three.js/description_en.txt b/description/mrdoob/three.js/description_en.txt new file mode 100644 index 00000000..246b8dab --- /dev/null +++ b/description/mrdoob/three.js/description_en.txt @@ -0,0 +1 @@ +Comprehensive JavaScript 3D library providing WebGL and WebGPU renderers, a scene graph with cameras/lights/meshes, material/shader systems (PBR, TSL node-based shaders), loaders for glTF/FBX/OBJ, animation mixers, post-processing passes, physics integration, and XR support. The de facto standard for browser-based 3D rendering used extensively in web game development. diff --git a/description/mrexodia/DisableParallelLoader/description_en.txt b/description/mrexodia/DisableParallelLoader/description_en.txt new file mode 100644 index 00000000..c7824a2d --- /dev/null +++ b/description/mrexodia/DisableParallelLoader/description_en.txt @@ -0,0 +1 @@ +x64dbg plugin that disables the Windows parallel DLL loader (introduced in Windows 10) by patching the LdrpMapAndSnapWork and related ntdll internals via the Process Hacker Native API (phnt). Forces sequential dependency loading during process creation, making it easier to trace and debug DLL load order in x64dbg. diff --git a/description/mrexodia/EfiCMake/description_en.txt b/description/mrexodia/EfiCMake/description_en.txt new file mode 100644 index 00000000..171e64a7 --- /dev/null +++ b/description/mrexodia/EfiCMake/description_en.txt @@ -0,0 +1 @@ +Minimal CMake template for building UEFI applications using the EDK2 SDK headers without the full EDK2 build system. Produces standalone .efi binaries compiled with MSVC (/GS- /EHs-) and linked with /SUBSYSTEM:EFI_APPLICATION, providing bare-metal entry point access to EFI_SYSTEM_TABLE and boot services. diff --git a/description/mrexodia/NtPhp/description_en.txt b/description/mrexodia/NtPhp/description_en.txt new file mode 100644 index 00000000..91a77fea --- /dev/null +++ b/description/mrexodia/NtPhp/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / dynamic script and centers on nt php. +It is primarily written in C/C++ and C and centers on kernel-level work and driver development. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / dynamic script area. diff --git a/description/mrexodia/RiscyWorkshop/description_en.txt b/description/mrexodia/RiscyWorkshop/description_en.txt new file mode 100644 index 00000000..28aa4dd4 --- /dev/null +++ b/description/mrexodia/RiscyWorkshop/description_en.txt @@ -0,0 +1 @@ +Workshop materials for RISC-V based payload obfuscation, featuring a custom VM interpreter (riscvm), a C-to-RISC-V cross-compiler toolchain (llvm-mingw), and an obfuscator that applies liveness analysis and instruction mutation to RISC-V binaries. Includes exercises covering VM basics, shellcode generation, host API interaction, transpilation, and anti-analysis hardening techniques. diff --git a/description/mrexodia/TitanHide/description_en.txt b/description/mrexodia/TitanHide/description_en.txt new file mode 100644 index 00000000..6be0c55e --- /dev/null +++ b/description/mrexodia/TitanHide/description_en.txt @@ -0,0 +1,3 @@ +This project is a driver intended to hide debuggers from certain processes. +The driver hooks various Nt kernel functions (using SSDT table hooks) and modifies the return values of the original functions. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/mrexodia/dumpulator/description_en.txt b/description/mrexodia/dumpulator/description_en.txt new file mode 100644 index 00000000..68094fb1 --- /dev/null +++ b/description/mrexodia/dumpulator/description_en.txt @@ -0,0 +1 @@ +Python framework for emulating x86/x64 code directly from Windows minidump files using Unicorn Engine, reconstructing the process memory layout, thread contexts, loaded modules, and handle table from dump streams. Provides NT syscall stubs, PEB/TEB emulation, and API hooking to execute arbitrary functions from the dump's address space without a live process. diff --git a/description/mrexodia/ida-pro-mcp/description_en.txt b/description/mrexodia/ida-pro-mcp/description_en.txt new file mode 100644 index 00000000..b7f04cd1 --- /dev/null +++ b/description/mrexodia/ida-pro-mcp/description_en.txt @@ -0,0 +1 @@ +Model Context Protocol (MCP) server for IDA Pro that exposes the full IDAPython API surface to AI agents, enabling automated binary analysis tasks like function renaming, type annotation, cross-reference queries, decompilation, and struct creation. Includes comprehensive IDAPython documentation, an installable IDA plugin, and a test framework for validating MCP tool behavior. diff --git a/description/mrexodia/lldbext-dump/description_en.txt b/description/mrexodia/lldbext-dump/description_en.txt new file mode 100644 index 00000000..d5f73120 --- /dev/null +++ b/description/mrexodia/lldbext-dump/description_en.txt @@ -0,0 +1 @@ +LLDB Python extension that creates full-memory minidump files from a live Android debugging session, capturing all mapped memory regions, thread contexts, and module lists into a Windows-compatible minidump format. Includes a companion emulation script for replaying dumps with dumpulator-style Unicorn Engine execution on the captured memory snapshot. diff --git a/description/mrphrazer/ghidra-headless-mcp/description_en.txt b/description/mrphrazer/ghidra-headless-mcp/description_en.txt new file mode 100644 index 00000000..db6ea81a --- /dev/null +++ b/description/mrphrazer/ghidra-headless-mcp/description_en.txt @@ -0,0 +1 @@ +MCP server that drives headless Ghidra instances for AI-assisted reverse engineering, exposing 40+ tools across disassembly, decompilation, cross-references, symbol/type management, and scripting categories. Features a fake backend for offline testing, a CLI for non-MCP usage, fuzz testing support, and integration with Claude/Cursor/Copilot agents via JSON-RPC over stdio. diff --git a/description/mrphrazer/obfuscation_analysis/description_en.txt b/description/mrphrazer/obfuscation_analysis/description_en.txt new file mode 100644 index 00000000..96c60dc3 --- /dev/null +++ b/description/mrphrazer/obfuscation_analysis/description_en.txt @@ -0,0 +1 @@ +Binary Ninja plugin for analyzing and simplifying obfuscated code, featuring MBA (Mixed Boolean-Arithmetic) expression simplification via backward slicing and oracle-based lookup (msynth), opaque predicate detection through dataflow analysis, and automated deobfuscation workflows. Translates BNIL expressions to Z3-compatible forms for semantic verification of simplification correctness. diff --git a/description/mrphrazer/obfuscation_detection/description_en.txt b/description/mrphrazer/obfuscation_detection/description_en.txt new file mode 100644 index 00000000..98f4064d --- /dev/null +++ b/description/mrphrazer/obfuscation_detection/description_en.txt @@ -0,0 +1 @@ +Binary Ninja plugin that identifies obfuscated code regions using multiple heuristics: control flow flattening detection via loop analysis and dominator trees, instruction-level complexity metrics, n-gram frequency analysis comparing basic blocks against a reference database, and statistical outlier detection. Includes batch processing scripts for large-scale binary analysis campaigns. diff --git a/description/mrzhqiang/ms079/description_en.txt b/description/mrzhqiang/ms079/description_en.txt new file mode 100644 index 00000000..e4bf76b3 --- /dev/null +++ b/description/mrzhqiang/ms079/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on private Server-CMS-079. +The README entry provides the main context for the project even though no local archive snapshot is available. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:maplestory area. diff --git a/description/msd0pe-1/cve-maker/description_en.txt b/description/msd0pe-1/cve-maker/description_en.txt new file mode 100644 index 00000000..074bd8f3 --- /dev/null +++ b/description/msd0pe-1/cve-maker/description_en.txt @@ -0,0 +1 @@ +Python CLI tool that queries multiple vulnerability databases and exploit repositories to search for CVEs by keyword, product name, or CVE ID. Aggregates results from public APIs and presents matching vulnerabilities with associated exploit links, severity scores, and affected software versions in a unified output format. diff --git a/description/msnx/KernelSU-Pixel4XL/description_en.txt b/description/msnx/KernelSU-Pixel4XL/description_en.txt new file mode 100644 index 00000000..8430b296 --- /dev/null +++ b/description/msnx/KernelSU-Pixel4XL/description_en.txt @@ -0,0 +1 @@ +Modified Android kernel source for Google Pixel 4 XL (coral) with KernelSU patches integrated, providing kernel-level root access management through su binary injection and SELinux policy modifications. Based on the stock msm-floral kernel tree with KernelSU's syscall hooking and credential override mechanism for selective process privilege escalation. diff --git a/description/mtrojnar/osslsigncode/description_en.txt b/description/mtrojnar/osslsigncode/description_en.txt new file mode 100644 index 00000000..d7679256 --- /dev/null +++ b/description/mtrojnar/osslsigncode/description_en.txt @@ -0,0 +1 @@ +Cross-platform Authenticode signing tool built on OpenSSL and cURL that signs and timestamps PE (EXE/SYS/DLL), CAB, CAT, MSI, APPX, and PowerShell/JS script files. Supports PKCS#12/PFX certificates, PKCS#11 hardware tokens (SoftHSM), RFC 3161 timestamping, page hash computation, nested signatures, and catalog file creation without requiring Windows or Microsoft's signtool. diff --git a/description/mubix/netview/description_en.txt b/description/mubix/netview/description_en.txt new file mode 100644 index 00000000..ae0a78f3 --- /dev/null +++ b/description/mubix/netview/description_en.txt @@ -0,0 +1,3 @@ +This project is a enumeration tool. +It uses (with the -d) the current domain or a specified domain (with the -d domain) to enumerate hosts. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / information system & forensics area. diff --git a/description/muchenspace/android_virtualTouch/description_en.txt b/description/muchenspace/android_virtualTouch/description_en.txt new file mode 100644 index 00000000..ccea0e20 --- /dev/null +++ b/description/muchenspace/android_virtualTouch/description_en.txt @@ -0,0 +1 @@ +Android native binary (ARM64) that injects virtual touch events into the Linux input subsystem by writing to /dev/input/event* device nodes using the uinput framework. Built with the Android NDK, it simulates tap, swipe, and multi-touch gestures programmatically for game automation and input testing on rooted devices. diff --git a/description/muellerberndt/frida-detection/description_en.txt b/description/muellerberndt/frida-detection/description_en.txt new file mode 100644 index 00000000..ec3a1c35 --- /dev/null +++ b/description/muellerberndt/frida-detection/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / detection:frida and centers on frida detection. +It is primarily written in Java and C/C++ and centers on hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:frida area. diff --git a/description/musabcel/android_rom_list/description_en.txt b/description/musabcel/android_rom_list/description_en.txt new file mode 100644 index 00000000..79209d9e --- /dev/null +++ b/description/musabcel/android_rom_list/description_en.txt @@ -0,0 +1,3 @@ +This project provides list. +It is organized as documentation and reference material for the cheat / android rom area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android rom area. diff --git a/description/mut1234/BYPASS-PUBG-MOBILE-IMGUI/description_en.txt b/description/mut1234/BYPASS-PUBG-MOBILE-IMGUI/description_en.txt new file mode 100644 index 00000000..2927bd02 --- /dev/null +++ b/description/mut1234/BYPASS-PUBG-MOBILE-IMGUI/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:pubgm and centers on bypass pubg mobile imgui. +It is primarily written in C/C++ and C++ and centers on modding, hooking, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:pubgm area. diff --git a/description/muturikaranja/AfdIrpCallDispatch/description_en.txt b/description/muturikaranja/AfdIrpCallDispatch/description_en.txt new file mode 100644 index 00000000..e84a868d --- /dev/null +++ b/description/muturikaranja/AfdIrpCallDispatch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on .data Pointer hook in Afd.sys. +It is primarily written in C and centers on hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/muturikaranja/disable-threat-tracing/description_en.txt b/description/muturikaranja/disable-threat-tracing/description_en.txt new file mode 100644 index 00000000..246a3c74 --- /dev/null +++ b/description/muturikaranja/disable-threat-tracing/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eTW Testing. +It is primarily written in C. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/muturikaranja/overlay/description_en.txt b/description/muturikaranja/overlay/description_en.txt new file mode 100644 index 00000000..65248c61 --- /dev/null +++ b/description/muturikaranja/overlay/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on setWindowsHookEx. +It is primarily written in C++ and centers on hooking and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / overlay area. diff --git a/description/mylove90/pc_ginkgo/description_en.txt b/description/mylove90/pc_ginkgo/description_en.txt new file mode 100644 index 00000000..c7e3a5fa --- /dev/null +++ b/description/mylove90/pc_ginkgo/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on redmi Note 8/8T with KernelSU. +It centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel source area. diff --git a/description/mytechnotalent/Hacking-Windows/description_en.txt b/description/mytechnotalent/Hacking-Windows/description_en.txt new file mode 100644 index 00000000..537fb43a --- /dev/null +++ b/description/mytechnotalent/Hacking-Windows/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / guide and centers on hacking windows. +It is primarily written in C and centers on reverse engineering and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/mytechnotalent/Reverse-Engineering/description_en.txt b/description/mytechnotalent/Reverse-Engineering/description_en.txt new file mode 100644 index 00000000..369a9014 --- /dev/null +++ b/description/mytechnotalent/Reverse-Engineering/description_en.txt @@ -0,0 +1,3 @@ +This project provides a FREE comprehensive reverse engineering tutorial covering x86, x64, 32-bit/64-bit ARM, 8-bit AVR and 32-bit RISC-V architectures. +The first being static analysis and the other being dynamic analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/n4sm/m0dern_p4cker/description_en.txt b/description/n4sm/m0dern_p4cker/description_en.txt new file mode 100644 index 00000000..750976b4 --- /dev/null +++ b/description/n4sm/m0dern_p4cker/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eLF. +It is primarily written in C and C/C++ and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/nCine/nCine/description_en.txt b/description/nCine/nCine/description_en.txt new file mode 100644 index 00000000..f891a74d --- /dev/null +++ b/description/nCine/nCine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on it is written in C++11 but it can optionally be scripted with Lua. +It is released under the MIT License and it has been in active development since June 2011. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/nahid0x1/CVE-2024-0044/description_en.txt b/description/nahid0x1/CVE-2024-0044/description_en.txt new file mode 100644 index 00000000..9f372477 --- /dev/null +++ b/description/nahid0x1/CVE-2024-0044/description_en.txt @@ -0,0 +1,3 @@ +This project is a vulnerability affecting Android version 12 & 13. +This vulnerability can be exploited by crafting a specific payload that grants unauthorized access to application data directories, which should otherwise be inaccessible to the attacker. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android application cve area. diff --git a/description/nakdeyes/UnrealImGuiTools/description_en.txt b/description/nakdeyes/UnrealImGuiTools/description_en.txt new file mode 100644 index 00000000..a08790cf --- /dev/null +++ b/description/nakdeyes/UnrealImGuiTools/description_en.txt @@ -0,0 +1,3 @@ +This project is a set of tools and utilities for use with Unreal Engine projects using ImGui. +It also provides a small framework to make writing your own game specific tool windows a bit more quickly and easily. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unreal area. diff --git a/description/namazso/MagicSigner/description_en.txt b/description/namazso/MagicSigner/description_en.txt new file mode 100644 index 00000000..d62574ec --- /dev/null +++ b/description/namazso/MagicSigner/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sign Leaked Cert. +However that needs admin privileges, and has the tendency to break other apps, because it invalidates all the certificates TLS connections (like HTTPS) uses for the time. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / sign tools area. diff --git a/description/namazso/hdd_serial_spoofer/description_en.txt b/description/namazso/hdd_serial_spoofer/description_en.txt new file mode 100644 index 00000000..f74d3f50 --- /dev/null +++ b/description/namazso/hdd_serial_spoofer/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / hwid and centers on hdd serial spoofer. +It is primarily written in C++ and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/namazso/physmem_drivers/description_en.txt b/description/namazso/physmem_drivers/description_en.txt new file mode 100644 index 00000000..3636d892 --- /dev/null +++ b/description/namazso/physmem_drivers/description_en.txt @@ -0,0 +1,3 @@ +This project provides vulnerable driver list. +Also, there is no PoC available. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/naorhaziz/irql/description_en.txt b/description/naorhaziz/irql/description_en.txt new file mode 100644 index 00000000..c5c8464c --- /dev/null +++ b/description/naorhaziz/irql/description_en.txt @@ -0,0 +1 @@ +This project is a Rust crate that provides IRQL-aware memory allocation and data structure primitives for Windows kernel development. The workspace includes irql core abstractions, an irql_alloc crate with pool-backed Box and Vec types, and utilities for writing IRQL-safe kernel code in Rust. It is mainly useful for kernel developers and security researchers building Windows kernel drivers in Rust with proper IRQL-level memory management. diff --git a/description/narumii/Deobfuscator/description_en.txt b/description/narumii/Deobfuscator/description_en.txt new file mode 100644 index 00000000..3f177f24 --- /dev/null +++ b/description/narumii/Deobfuscator/description_en.txt @@ -0,0 +1,3 @@ +This project is a deobfuscator for java. +🔧 Contributing Contributions are welcome! +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/nbqofficial/HideDriver/description_en.txt b/description/nbqofficial/HideDriver/description_en.txt new file mode 100644 index 00000000..89caef7c --- /dev/null +++ b/description/nbqofficial/HideDriver/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hide Driver By Modify Flink/Blink. +This could be incredibly useful for someone trying to bypass certain anticheat software to circumvent security when programming a rootkit-like software. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hide area. diff --git a/description/nbqofficial/kernel-csgo/description_en.txt b/description/nbqofficial/kernel-csgo/description_en.txt new file mode 100644 index 00000000..542de533 --- /dev/null +++ b/description/nbqofficial/kernel-csgo/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple kernel cheat with hook for communication. +It is primarily written in C++ and centers on kernel-level work, driver development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/nbqofficial/norsefire/description_en.txt b/description/nbqofficial/norsefire/description_en.txt new file mode 100644 index 00000000..9eee51ae --- /dev/null +++ b/description/nbqofficial/norsefire/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on kernel-mode W/RPM/mouse_event for Windows. +It is primarily written in C++ and centers on kernel-level work, driver development, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rpm area. diff --git a/description/ndrewh/pyda/description_en.txt b/description/ndrewh/pyda/description_en.txt new file mode 100644 index 00000000..cb8104a2 --- /dev/null +++ b/description/ndrewh/pyda/description_en.txt @@ -0,0 +1 @@ +This project is Pyda, a Python-based dynamic binary analysis framework built on QEMU's user-mode emulation. It allows running and instrumenting Linux binaries with Python callbacks for function hooking, memory access monitoring, system call tracing, and instruction-level analysis without requiring native execution. The framework provides a scriptable interface for binary exploration and vulnerability research. It is aimed at security researchers and reverse engineers who prefer Python-based binary analysis workflows. diff --git a/description/nelfo/Milfuscator/description_en.txt b/description/nelfo/Milfuscator/description_en.txt new file mode 100644 index 00000000..9bef6ad2 --- /dev/null +++ b/description/nelfo/Milfuscator/description_en.txt @@ -0,0 +1,3 @@ +This project is the 'Free Milfuscator' is now an open-source project, the essence of which is to mutate the x32 code by rebuilding the entire PE using the Zydis & AsmJit libraries. +The very idea of mutation is taken from one P2C project for CS:GO. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/nelfo/PGHooker/description_en.txt b/description/nelfo/PGHooker/description_en.txt new file mode 100644 index 00000000..bda43105 --- /dev/null +++ b/description/nelfo/PGHooker/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on page Guard. +It is primarily written in C++ and centers on hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hook area. diff --git a/description/nem0/LumixEngine/description_en.txt b/description/nem0/LumixEngine/description_en.txt new file mode 100644 index 00000000..366b85c1 --- /dev/null +++ b/description/nem0/LumixEngine/description_en.txt @@ -0,0 +1,3 @@ +This project is a small collection of sample projects built with the Lumix Engine. +It is primarily written in C/C++ and C++ and centers on driver development, shader work, and rendering. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/nem0/lumixengine_maps/description_en.txt b/description/nem0/lumixengine_maps/description_en.txt new file mode 100644 index 00000000..c54aa35c --- /dev/null +++ b/description/nem0/lumixengine_maps/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on map downloader. +It can read OSM data and use them to place roads, buildings and other objects. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:lumix area. diff --git a/description/neogeek/get-unity/description_en.txt b/description/neogeek/get-unity/description_en.txt new file mode 100644 index 00000000..a8cee097 --- /dev/null +++ b/description/neogeek/get-unity/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on command line tool for getting the download URL for the latest or specific version of Unity. +It is primarily written in JavaScript and centers on editor tooling and Unity. +It is mainly useful for tooling developers and reverse engineers working in the game tools area. diff --git a/description/nettitude/Tartarus-TpAllocInject/description_en.txt b/description/nettitude/Tartarus-TpAllocInject/description_en.txt new file mode 100644 index 00000000..aea06863 --- /dev/null +++ b/description/nettitude/Tartarus-TpAllocInject/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on tpAllocInject. +This is a simple loader that uses indirect syscalls via the Tartarus' Gate method. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/netwarm007/GameEngineFromScratch/description_en.txt b/description/netwarm007/GameEngineFromScratch/description_en.txt new file mode 100644 index 00000000..e37cb834 --- /dev/null +++ b/description/netwarm007/GameEngineFromScratch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on 配合我的知乎专栏当中的系列文章《从零开始手敲次世代游戏引擎》所写的项目。. +This project is written by me as the sample of My articles Hand-made Next-Gen Game Engine From Scratch. +It is mainly useful for game developers, engine programmers, and graphics researchers working on DirectX and OpenGL in the game engine / guide area. diff --git a/description/nevergiveup-c/obfuscxx/description_en.txt b/description/nevergiveup-c/obfuscxx/description_en.txt new file mode 100644 index 00000000..bc399cec --- /dev/null +++ b/description/nevergiveup-c/obfuscxx/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on header-only compile-time variables obfuscation library for C++20 and later. +Decryption uses SIMD instructions (AVX2/SSE2/NEON) at runtime, making static analysis considerably more complicated. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / encrypt variable area. diff --git a/description/neverlosecc/source2gen/description_en.txt b/description/neverlosecc/source2gen/description_en.txt new file mode 100644 index 00000000..7efde795 --- /dev/null +++ b/description/neverlosecc/source2gen/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK Generator. +It is primarily written in C/C++ and C++ and centers on SDK generation and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:source area. diff --git a/description/neverlosecc/source2sdk/description_en.txt b/description/neverlosecc/source2sdk/description_en.txt new file mode 100644 index 00000000..e158f70c --- /dev/null +++ b/description/neverlosecc/source2sdk/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this repository contains the generated Source 2 SDKs for various games. +It is primarily written in C++ and centers on driver development, shader work, and rendering. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:source area. diff --git a/description/nevioo1337/VAC-ModuleDumper/description_en.txt b/description/nevioo1337/VAC-ModuleDumper/description_en.txt new file mode 100644 index 00000000..15c4b8ce --- /dev/null +++ b/description/nevioo1337/VAC-ModuleDumper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dump. +It is primarily written in C/C++ and C++ and centers on anti-cheat research, modding, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:vac area. diff --git a/description/newbit1/rootAVD/description_en.txt b/description/newbit1/rootAVD/description_en.txt new file mode 100644 index 00000000..a44b901c --- /dev/null +++ b/description/newbit1/rootAVD/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on root AVD. +It centers on kernel-level work, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/nezu-cc/BakaWare4/description_en.txt b/description/nezu-cc/BakaWare4/description_en.txt new file mode 100644 index 00000000..c4eb28fe --- /dev/null +++ b/description/nezu-cc/BakaWare4/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on tHIS CHEAT IS STILL WIP, MORE TO COME SOON:tm. +NOTE: the above only applies to release builds, anything is fair game in debug builds since they are only designed to be loaded in -insecure NOTE2: Debug builds must be able to be unloaded/unhooked for rapid iteration. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/nfrechette/rtm/description_en.txt b/description/nfrechette/rtm/description_en.txt new file mode 100644 index 00000000..d756b811 --- /dev/null +++ b/description/nfrechette/rtm/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this library is geared towards realtime applications that require their math to be as fast as possible. +It contains 3D and 4D arithmetic commonly used in video games and realtime applications. +It is mainly useful for engine programmers and gameplay or simulation developers working in the mathematics area. diff --git a/description/nhpcc502/MBA-Obfuscator/description_en.txt b/description/nhpcc502/MBA-Obfuscator/description_en.txt new file mode 100644 index 00000000..51b1f1fe --- /dev/null +++ b/description/nhpcc502/MBA-Obfuscator/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on non-linear Mixed Boolean-Arithmetic Expressions. +Structure MBA-Obfuscator's code is in "mba_obfuscator" folder, MBA-Obfuscator's output samples are in "samples" folder. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / mixed boolean-arithmetic area. diff --git a/description/nice-sprite/COD7-Tools/description_en.txt b/description/nice-sprite/COD7-Tools/description_en.txt new file mode 100644 index 00000000..f47ae3e4 --- /dev/null +++ b/description/nice-sprite/COD7-Tools/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dependencies VcPkg is used for all dependencies, it's awesome so I use it whenever I can. +Sidenotes Some features are still in progress, but I have a lot planned for this project and hope to take it in a direction that allows people to have fun with different games, better understand how they work, and easily extend the existing features for their own games. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cod7 area. diff --git a/description/nickcano/RelocBonus/description_en.txt b/description/nickcano/RelocBonus/description_en.txt new file mode 100644 index 00000000..6311c751 --- /dev/null +++ b/description/nickcano/RelocBonus/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on attack Reloc. +I gave a talk about this tool at DEFCON 26; here is the abstract. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/nico/demumble/description_en.txt b/description/nico/demumble/description_en.txt new file mode 100644 index 00000000..55af4a68 --- /dev/null +++ b/description/nico/demumble/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on itanium + MSVC symbol demangler; D/Rust/Swift; cross-platform replacement for c++filt / undname.exe. +It can also demangle D, Rust, and Swift symbols. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/niemand-sec/AntiCheat-Testing-Framework/description_en.txt b/description/niemand-sec/AntiCheat-Testing-Framework/description_en.txt new file mode 100644 index 00000000..b697b25c --- /dev/null +++ b/description/niemand-sec/AntiCheat-Testing-Framework/description_en.txt @@ -0,0 +1 @@ +This project is a modular framework for testing anti-cheat detection capabilities on Windows. It provides a structured set of attack primitives including process memory read/write, DLL injection, overlay rendering, input simulation, and driver-based kernel operations that can be selectively triggered to evaluate which techniques a given anti-cheat system detects or misses. The C/C++ framework helps benchmark anti-cheat coverage. It is aimed at anti-cheat developers and security researchers performing systematic anti-cheat evaluation and gap analysis. diff --git a/description/niemand-sec/DirectX11Hook/description_en.txt b/description/niemand-sec/DirectX11Hook/description_en.txt new file mode 100644 index 00000000..f38ba578 --- /dev/null +++ b/description/niemand-sec/DirectX11Hook/description_en.txt @@ -0,0 +1 @@ +This project is a DirectX 11 hook library in C++ that intercepts IDXGISwapChain::Present and ID3D11DeviceContext methods to render custom overlays within D3D11 applications. It locates the D3D11 vtable through a dummy device, installs function hooks, and renders ImGui menus inside the hooked render loop. The library serves as a base for building internal game overlays and cheat menus. It is aimed at game hackers and security researchers studying D3D11 hook-based overlay rendering techniques. diff --git a/description/niemand-sec/ReClass.NET-DriverReader/description_en.txt b/description/niemand-sec/ReClass.NET-DriverReader/description_en.txt new file mode 100644 index 00000000..07615e71 --- /dev/null +++ b/description/niemand-sec/ReClass.NET-DriverReader/description_en.txt @@ -0,0 +1 @@ +This project is a ReClass.NET plugin that reads process memory through a kernel driver instead of standard user-mode APIs. It replaces ReadProcessMemory with driver-based memory reading, enabling ReClass.NET to inspect memory of processes protected by anti-cheat systems that block standard memory access. The C#/C++ plugin bridges ReClass.NET with a kernel memory reader. It is aimed at game security researchers using ReClass.NET for memory structure analysis on anti-cheat protected processes. diff --git a/description/nikaera/Unity-GameCI-Sample/description_en.txt b/description/nikaera/Unity-GameCI-Sample/description_en.txt new file mode 100644 index 00000000..cad68ab0 --- /dev/null +++ b/description/nikaera/Unity-GameCI-Sample/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under game ci and centers on unity game ci sample. +It is primarily written in C# and centers on graphics, audio systems, and physics. +It is mainly useful for build, release, and automation engineers working in the game ci area. diff --git a/description/nikaiw/VMkatz/description_en.txt b/description/nikaiw/VMkatz/description_en.txt new file mode 100644 index 00000000..d2dfe255 --- /dev/null +++ b/description/nikaiw/VMkatz/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on extract Windows credentials directly from VM memory snapshots and virtual disks (LSASS, SAM/LSA, cached creds, NTDS.dit) in-place. +Pulling a single 100 GB disk image would take six days , and every hour of sustained exfil is another chance the SOC spots the anomaly, burns your tunnel, and the whole chain collapses. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / information system & forensics area. diff --git a/description/nillerusr/source-engine/description_en.txt b/description/nillerusr/source-engine/description_en.txt new file mode 100644 index 00000000..a83f8364 --- /dev/null +++ b/description/nillerusr/source-engine/description_en.txt @@ -0,0 +1,3 @@ +This project provides source engine. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/nitaigao/engine-showcase/description_en.txt b/description/nitaigao/engine-showcase/description_en.txt new file mode 100644 index 00000000..0c819ec6 --- /dev/null +++ b/description/nitaigao/engine-showcase/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on old engine. +The README entry provides the main context for the project even though no local archive snapshot is available. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/nkga/cheat-driver/description_en.txt b/description/nkga/cheat-driver/description_en.txt new file mode 100644 index 00000000..ab16e6cd --- /dev/null +++ b/description/nkga/cheat-driver/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mmCopyVirtualMemory Testing. +The simplest way to bypass anti-cheat protections from the kernel is to use your own kernel mode driver. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/nlepleux/MappedCallback/description_en.txt b/description/nlepleux/MappedCallback/description_en.txt new file mode 100644 index 00000000..f997a25e --- /dev/null +++ b/description/nlepleux/MappedCallback/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hide Callback. +By finding a codecave in a legit module in the kernel (here we take APCI driver, which is not protected by PatchGuard), we can write a JMP to our routines so that the start address of the registered function for the callback is in a valid module. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hide area. diff --git a/description/nmap/npcap/description_en.txt b/description/nmap/npcap/description_en.txt new file mode 100644 index 00000000..14561190 --- /dev/null +++ b/description/nmap/npcap/description_en.txt @@ -0,0 +1,3 @@ +This project is a packet capture and injection library for Windows by the Nmap Project. +It is a complete update to the unmaintained WinPcap project with improved speed, reliability, and security. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / packet capture&parse area. diff --git a/description/nneonneo/Il2CppVersions/description_en.txt b/description/nneonneo/Il2CppVersions/description_en.txt new file mode 100644 index 00000000..84a16deb --- /dev/null +++ b/description/nneonneo/Il2CppVersions/description_en.txt @@ -0,0 +1 @@ +This project is a collection of IL2CPP runtime headers and metadata definitions across multiple Unity IL2CPP versions. It serves as a version-tracking reference for the internal structures, API changes, and metadata format evolution of Unity's IL2CPP scripting backend. It is mainly useful for game security researchers and reverse engineers who need version-specific IL2CPP structure definitions for analyzing Unity games built with different engine versions. diff --git a/description/noahware/apic/description_en.txt b/description/noahware/apic/description_en.txt new file mode 100644 index 00000000..8cc11b6b --- /dev/null +++ b/description/noahware/apic/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel research tool exploring APIC (Advanced Programmable Interrupt Controller) manipulation for security research. It demonstrates reading and writing APIC registers, manipulating interrupt delivery, and exploring APIC-based timing and detection techniques. The C kernel driver provides low-level access to local APIC functionality. It is aimed at kernel researchers studying interrupt controller internals and their applications in security monitoring or evasion. diff --git a/description/noahware/binprotect/description_en.txt b/description/noahware/binprotect/description_en.txt new file mode 100644 index 00000000..bb85c307 --- /dev/null +++ b/description/noahware/binprotect/description_en.txt @@ -0,0 +1 @@ +This project is an x64 PE bin-to-bin obfuscator in C++ that transforms compiled binaries without adding new sections or requiring source code access. It includes a custom assembler and disassembler built on the binwrite library, PE file parsing with support for exception directories, RTTI structures, frame-pointer scanning, relocations, and jump-table recovery. The obfuscation pass operates at the basic-block level on disassembled functions. It is aimed at software protection researchers studying binary-rewriting obfuscation techniques and PE structural constraints. diff --git a/description/noahware/darken-anticheat/description_en.txt b/description/noahware/darken-anticheat/description_en.txt new file mode 100644 index 00000000..9d02bce4 --- /dev/null +++ b/description/noahware/darken-anticheat/description_en.txt @@ -0,0 +1 @@ +This project is Darken, a proof-of-concept anti-cheat system implementing common game protection techniques. It demonstrates kernel-mode driver communication, process integrity checking, module verification, memory scanning for known signatures, debugger detection, and overlay monitoring. The C/C++ codebase provides a reference implementation of anti-cheat detection mechanisms. It is aimed at game security developers studying anti-cheat architecture and building custom protection systems. diff --git a/description/noahware/hyper-reV/description_en.txt b/description/noahware/hyper-reV/description_en.txt new file mode 100644 index 00000000..8cefdbb7 --- /dev/null +++ b/description/noahware/hyper-reV/description_en.txt @@ -0,0 +1 @@ +This project is hyper-reV, a reverse engineering analysis or research tool targeting Hyper-V's hypervisor implementation. It documents Hyper-V's internal structures, hypercall interface, partition management, virtual processor handling, and memory virtualization mechanisms discovered through reverse engineering. It is aimed at hypervisor security researchers and exploit developers studying Microsoft Hyper-V internals and attack surfaces. diff --git a/description/noahware/winbo/description_en.txt b/description/noahware/winbo/description_en.txt new file mode 100644 index 00000000..439d3417 --- /dev/null +++ b/description/noahware/winbo/description_en.txt @@ -0,0 +1 @@ +This project is a Windows C++ tool for detecting overlay-style window hijacking through ETW and GDI table scanning. It parses dxgkrnl ETW events to identify which processes call Present on which window handles, comparing the caller PID against the window owner PID to flag unauthorized cross-process rendering via DirectX or OpenGL. For GDI-based rendering, it iterates the shared GDI handle table to find DC handles whose owner differs from the target window. Processes sharing a common parent are whitelisted to allow legitimate multi-process window sharing. It is aimed at anti-cheat and defensive security researchers studying overlay detection techniques. diff --git a/description/noobpk/frida-android-hook/description_en.txt b/description/noobpk/frida-android-hook/description_en.txt new file mode 100644 index 00000000..31294e6f --- /dev/null +++ b/description/noobpk/frida-android-hook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on trace classes/functions/and modify the return values. +It support script for trace classes, functions, and modify the return values of methods on iOS platform. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/noopstudios/interactive-feedback-mcp/description_en.txt b/description/noopstudios/interactive-feedback-mcp/description_en.txt new file mode 100644 index 00000000..91798be9 --- /dev/null +++ b/description/noopstudios/interactive-feedback-mcp/description_en.txt @@ -0,0 +1 @@ +This project is an MCP (Model Context Protocol) server that provides interactive user feedback capabilities to AI coding assistants. It allows the AI to request user input, confirmations, and selections through structured UI prompts during automated workflows, enabling human-in-the-loop interaction within MCP-compatible tools. It is aimed at developers building interactive AI-assisted workflows that require user feedback during execution. diff --git a/description/not-fl3/macroquad/description_en.txt b/description/not-fl3/macroquad/description_en.txt new file mode 100644 index 00000000..1449a7bf --- /dev/null +++ b/description/not-fl3/macroquad/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on rust 2D. +It is primarily written in Rust and JavaScript and centers on shader work, rendering, and audio systems. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/not-matthias/Nemesis/description_en.txt b/description/not-matthias/Nemesis/description_en.txt new file mode 100644 index 00000000..1d5c5e34 --- /dev/null +++ b/description/not-matthias/Nemesis/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dumping processes using the power of kernel space. +Some of these programs are available for free, but of course they won't be as good as the paid ones. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/not1cyyy/Kiroshi/description_en.txt b/description/not1cyyy/Kiroshi/description_en.txt new file mode 100644 index 00000000..d02976c2 --- /dev/null +++ b/description/not1cyyy/Kiroshi/description_en.txt @@ -0,0 +1,3 @@ +This project is an IDA Pro Plugin to detect common Anti-Cheat Artifacts. +⚠️ This plugin is for reverse engineering and academic research only . +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/notgoodusename/OsirisAndExtra/description_en.txt b/description/notgoodusename/OsirisAndExtra/description_en.txt new file mode 100644 index 00000000..6630529d --- /dev/null +++ b/description/notgoodusename/OsirisAndExtra/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +It is primarily written in C/C++ and C and centers on driver development, OpenGL, and rendering. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/nothings/stb/description_en.txt b/description/nothings/stb/description_en.txt new file mode 100644 index 00000000..f1bc2cd4 --- /dev/null +++ b/description/nothings/stb/description_en.txt @@ -0,0 +1 @@ +This project is stb, a collection of single-file public domain C libraries for game developers and graphics programmers. The most notable libraries include stb_image (image loading for JPEG/PNG/BMP/GIF), stb_truetype (TrueType font rasterization), stb_vorbis (Ogg Vorbis audio decoding), and stb_image_write (image writing). Each library is a single header file that can be dropped into any C/C++ project with no dependencies. It is aimed at game developers and embedded systems programmers wanting lightweight, dependency-free utility libraries. diff --git a/description/notpidgey/ManyTypes/description_en.txt b/description/notpidgey/ManyTypes/description_en.txt new file mode 100644 index 00000000..88dc5558 --- /dev/null +++ b/description/notpidgey/ManyTypes/description_en.txt @@ -0,0 +1 @@ +This project is ManyTypes, a Cheat Engine extension or companion tool that enhances type scanning and structure discovery when reverse engineering game memory. It provides advanced data type detection, structure member identification, and pointer chain resolution beyond standard Cheat Engine capabilities. It is aimed at game hackers and reverse engineers using Cheat Engine for memory analysis and structure reconstruction. diff --git a/description/notpresident35/learn-awesome-gamedev/description_en.txt b/description/notpresident35/learn-awesome-gamedev/description_en.txt new file mode 100644 index 00000000..a1897c4d --- /dev/null +++ b/description/notpresident35/learn-awesome-gamedev/description_en.txt @@ -0,0 +1,3 @@ +This project provides a Mega-List of learning resources for game creators. +This list is aimed at learning the craft of game development. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / guide area. diff --git a/description/notscimmy/libelevate/description_en.txt b/description/notscimmy/libelevate/description_en.txt new file mode 100644 index 00000000..7c93a700 --- /dev/null +++ b/description/notscimmy/libelevate/description_en.txt @@ -0,0 +1 @@ +This project is a C++ library for elevating handles and bypassing handle access restrictions on Windows. It exploits driver or kernel-level primitives to open processes with full access rights even when protected by anti-cheat or security software. The library provides a clean API for obtaining elevated handles that can be used for memory read/write operations. It is aimed at game security researchers studying handle elevation techniques and anti-cheat handle protection mechanisms. diff --git a/description/notsnakesilent/VMPStatic/description_en.txt b/description/notsnakesilent/VMPStatic/description_en.txt new file mode 100644 index 00000000..062f1cb7 --- /dev/null +++ b/description/notsnakesilent/VMPStatic/description_en.txt @@ -0,0 +1,3 @@ +This project is a static VMProtect unpacker for PE files, supports VMProtect 1.x–3.x and rebuilding unpacked PE images. +It is primarily written in Go and centers on asset pipelines. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix vmp area. diff --git a/description/noword/GDB-Windows-Binaries/description_en.txt b/description/noword/GDB-Windows-Binaries/description_en.txt new file mode 100644 index 00000000..f6898f3e --- /dev/null +++ b/description/noword/GDB-Windows-Binaries/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on gDB. +Compiled with mingw-w64 v12.2.0, includes all architectures, TUI supported, python supported, without any other dll dependencies except Windows own. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/nowsprinting/UnityAutomatedQAExamples/description_en.txt b/description/nowsprinting/UnityAutomatedQAExamples/description_en.txt new file mode 100644 index 00000000..28dcf633 --- /dev/null +++ b/description/nowsprinting/UnityAutomatedQAExamples/description_en.txt @@ -0,0 +1,3 @@ +This project provides unity automated QA guidebook. +It is organized as documentation and reference material for the game testing area rather than as a single standalone runtime codebase. +It is mainly useful for QA automation and testing engineers working in the game testing area. diff --git a/description/nqntmqmqmb/xorPacker/description_en.txt b/description/nqntmqmqmb/xorPacker/description_en.txt new file mode 100644 index 00000000..cf322b10 --- /dev/null +++ b/description/nqntmqmqmb/xorPacker/description_en.txt @@ -0,0 +1,3 @@ +This project is a simple packer working with all PE files which cipher your exe with a XOR implementation. +It is primarily written in C# and centers on debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/null-luo/btrace/description_en.txt b/description/null-luo/btrace/description_en.txt new file mode 100644 index 00000000..a0df9ed0 --- /dev/null +++ b/description/null-luo/btrace/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android App Dynamic Behavior Tracking Tool using eBPF. +It is primarily written in C/C++ and Go and centers on asset pipelines and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/nxrighthere/UnrealCLR/description_en.txt b/description/nxrighthere/UnrealCLR/description_en.txt new file mode 100644 index 00000000..a45cb5ff --- /dev/null +++ b/description/nxrighthere/UnrealCLR/description_en.txt @@ -0,0 +1 @@ +This project is UnrealCLR, a plugin that embeds the .NET runtime (CoreCLR) into Unreal Engine, enabling game logic development in C#. It provides .NET bindings for UE4/UE5 core systems including actors, components, input, physics, rendering, and the blueprint system. Developers can write gameplay code in C# that interoperates with native C++ and blueprint systems. It is aimed at Unreal Engine developers who prefer C# for game logic while leveraging UE's native rendering and tools. diff --git a/description/nyx-fuzz/QEMU-Nyx/description_en.txt b/description/nyx-fuzz/QEMU-Nyx/description_en.txt new file mode 100644 index 00000000..954dc1c5 --- /dev/null +++ b/description/nyx-fuzz/QEMU-Nyx/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on intel-PT. +This includes the ability to quickly reset memory and devices, obtain precise disassembly of the code running (even when code is partially swapped out / unavailable) & Intel-PT decoding, instrument code running in the VM with breakpoint-based hooks as well as communicating with a fuzzing frontend (e.g. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/nzcv/note/description_en.txt b/description/nzcv/note/description_en.txt new file mode 100644 index 00000000..a346ead3 --- /dev/null +++ b/description/nzcv/note/description_en.txt @@ -0,0 +1,3 @@ +This project provides guide-zh. +It is organized as documentation and reference material for the cheat / android file explorer area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android file explorer area. diff --git a/description/oakboat/DataPtrHookWin11/description_en.txt b/description/oakboat/DataPtrHookWin11/description_en.txt new file mode 100644 index 00000000..e5072ea6 --- /dev/null +++ b/description/oakboat/DataPtrHookWin11/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on ntUserSetGestureConfig. +It is primarily written in C/C++ and C++ and centers on driver development, asset pipelines, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/oakboat/DisableNvidiaScreenshot/description_en.txt b/description/oakboat/DisableNvidiaScreenshot/description_en.txt new file mode 100644 index 00000000..bf5be2f7 --- /dev/null +++ b/description/oakboat/DisableNvidiaScreenshot/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dWM. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / anti screenshot area. diff --git a/description/obama-gaming/xor-float/description_en.txt b/description/obama-gaming/xor-float/description_en.txt new file mode 100644 index 00000000..3c8cd16a --- /dev/null +++ b/description/obama-gaming/xor-float/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / encrypt variable and centers on xor float. +It is primarily written in C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / encrypt variable area. diff --git a/description/obfusk/apksigcopier/description_en.txt b/description/obfusk/apksigcopier/description_en.txt new file mode 100644 index 00000000..81372d99 --- /dev/null +++ b/description/obfusk/apksigcopier/description_en.txt @@ -0,0 +1 @@ +This project is apksigcopier, a Python tool for copying APK signatures from one APK to another. It extracts the v1 (JAR), v2, and v3 signing blocks from a signed APK and transplants them onto a modified APK, enabling re-signing without the original signing key in scenarios where the signature verification can be bypassed. The tool handles APK Signing Block manipulation at the binary level. It is aimed at Android security researchers and reverse engineers working with APK signature analysis and modification. diff --git a/description/obpo-project/obpo-plugin/description_en.txt b/description/obpo-project/obpo-plugin/description_en.txt new file mode 100644 index 00000000..a30bb3fc --- /dev/null +++ b/description/obpo-project/obpo-plugin/description_en.txt @@ -0,0 +1,3 @@ +This project is the obpo core is closed source , but provided obpo-plugin is FREE & OPEN SOURCE. +This is a simple backend server written in golang, used to receive request and input to ida and uses obpo-core to deobfuscation, finally returning data to obpo-plugin client. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix ollvm area. diff --git a/description/ocornut/imgui/description_en.txt b/description/ocornut/imgui/description_en.txt new file mode 100644 index 00000000..4e717281 --- /dev/null +++ b/description/ocornut/imgui/description_en.txt @@ -0,0 +1 @@ +This project is Dear ImGui, a bloat-free immediate-mode graphical user interface library for C++. It outputs vertex buffers that can be rendered with any graphics API (DirectX 9/10/11/12, OpenGL, Vulkan, Metal) and provides windows, widgets, plots, tables, docking, and multi-viewport support with minimal setup. The library is widely used for in-game debug overlays, tool GUIs, and cheat menu interfaces in game hacking contexts. It is aimed at game developers, tool programmers, and anyone needing fast, portable in-application GUI rendering. diff --git a/description/ofDataa/offsets/description_en.txt b/description/ofDataa/offsets/description_en.txt new file mode 100644 index 00000000..51ae890f --- /dev/null +++ b/description/ofDataa/offsets/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on offset. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/ohchase/yaui/description_en.txt b/description/ohchase/yaui/description_en.txt new file mode 100644 index 00000000..cdf04cb7 --- /dev/null +++ b/description/ohchase/yaui/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / injection:android and centers on yaui. +It is primarily written in Rust and centers on emulation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:android area. diff --git a/description/olafhartong/BamboozlEDR/description_en.txt b/description/olafhartong/BamboozlEDR/description_en.txt new file mode 100644 index 00000000..2610f1c6 --- /dev/null +++ b/description/olafhartong/BamboozlEDR/description_en.txt @@ -0,0 +1,3 @@ +This project is a comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes. +BamboozlEDR features a TUI interface and can generate realistic security events across multiple Windows ETW providers to test EDR detection capabilities, log analysis systems, and security monitoring solutions. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / information system & forensics area. diff --git a/description/oobbb/android-il2cpp-modspeed/description_en.txt b/description/oobbb/android-il2cpp-modspeed/description_en.txt new file mode 100644 index 00000000..f7360e7f --- /dev/null +++ b/description/oobbb/android-il2cpp-modspeed/description_en.txt @@ -0,0 +1 @@ +This project is an Android IL2CPP game speed hack tool that modifies Unity IL2CPP game timing to speed up or slow down gameplay. It hooks into Unity's Time class methods to manipulate deltaTime, timeScale, and fixed timestep values, allowing game speed control without modifying game logic. The C++ native library uses IL2CPP method hooking on Android. It is aimed at Android game modders and security researchers studying time manipulation attacks on IL2CPP Unity games. diff --git a/description/ookiineko/magiskboot_build/description_en.txt b/description/ookiineko/magiskboot_build/description_en.txt new file mode 100644 index 00000000..e5893621 --- /dev/null +++ b/description/ookiineko/magiskboot_build/description_en.txt @@ -0,0 +1 @@ +This project provides build scripts and patches for compiling Magisk's magiskboot utility as a standalone tool on Linux and other POSIX systems. Magiskboot handles Android boot image unpacking, repacking, ramdisk patching, kernel extraction, and DTB manipulation. The build system extracts magiskboot from the Magisk source tree and resolves its dependencies for independent compilation. It is aimed at Android developers and security researchers who need magiskboot without building the full Magisk suite. diff --git a/description/opa334/Dopamine/description_en.txt b/description/opa334/Dopamine/description_en.txt new file mode 100644 index 00000000..1d43de4a --- /dev/null +++ b/description/opa334/Dopamine/description_en.txt @@ -0,0 +1 @@ +This project is Dopamine, a semi-untethered rootless jailbreak for iOS 15.0–15.4.1 on all devices. It chains multiple kernel vulnerabilities to achieve arbitrary kernel read/write, bypasses PAC and PPL protections, patches AMFI for unsigned code execution, and installs Sileo and a procursus bootstrap in a rootless layout under /var/jb. The Swift and Objective-C codebase includes a polished GUI app for triggering the exploit. It is aimed at iOS security researchers and jailbreak community members studying modern iOS kernel exploitation and rootless jailbreak architecture. diff --git a/description/opa334/TrollStore/description_en.txt b/description/opa334/TrollStore/description_en.txt new file mode 100644 index 00000000..03745bfe --- /dev/null +++ b/description/opa334/TrollStore/description_en.txt @@ -0,0 +1 @@ +This project is TrollStore, a perma-signed jailed app installer for iOS that exploits CoreTrust and AMFI bugs to install IPA files with arbitrary entitlements without a jailbreak. Installed apps persist through reboots and do not require re-signing. The Objective-C tool leverages a kernel vulnerability chain specific to certain iOS versions to bypass code signing enforcement while remaining in the jailed sandbox. It is aimed at iOS security researchers studying code signing bypass and users wanting to sideload apps without developer certificates. diff --git a/description/opa334/opainject/description_en.txt b/description/opa334/opainject/description_en.txt new file mode 100644 index 00000000..9a1aeb9b --- /dev/null +++ b/description/opa334/opainject/description_en.txt @@ -0,0 +1 @@ +This project is opainject, a command-line tool for injecting dynamic libraries (dylibs) into running processes on iOS/macOS. It uses task_for_pid and Mach thread APIs to create a remote thread in the target process that loads the specified dylib via dlopen. The Objective-C tool works on jailbroken devices with tfp0 access. It is aimed at iOS jailbreak developers and security researchers who need runtime dylib injection for tweak development and process analysis. diff --git a/description/open-obfuscator/dProtect/description_en.txt b/description/open-obfuscator/dProtect/description_en.txt new file mode 100644 index 00000000..1799fa63 --- /dev/null +++ b/description/open-obfuscator/dProtect/description_en.txt @@ -0,0 +1 @@ +This project is dProtect, a code obfuscation tool for Android and iOS applications built on top of the LLVM obfuscator framework. It provides control flow flattening, instruction substitution, string encryption, opaque predicates, and mixed boolean-arithmetic transformations for native code compiled through the LLVM pipeline. The C++ LLVM passes operate at the IR level, making them architecture-independent. It is aimed at mobile developers and software protection researchers applying obfuscation to native mobile application code. diff --git a/description/openhardwaremonitor/openhardwaremonitor/description_en.txt b/description/openhardwaremonitor/openhardwaremonitor/description_en.txt new file mode 100644 index 00000000..b4334ee5 --- /dev/null +++ b/description/openhardwaremonitor/openhardwaremonitor/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / detection:hwid and centers on openhardwaremonitor. +It is primarily written in C# and JavaScript and centers on kernel-level work, driver development, and rendering. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hwid area. diff --git a/description/orangeduck/Corange/description_en.txt b/description/orangeduck/Corange/description_en.txt new file mode 100644 index 00000000..e0391f42 --- /dev/null +++ b/description/orangeduck/Corange/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pure C Game Engine. +Warning: Some things shown are from a previous version and may not remain the same in this version. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/orx/orx/description_en.txt b/description/orx/orx/description_en.txt new file mode 100644 index 00000000..ba8265f7 --- /dev/null +++ b/description/orx/orx/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under game engine / source and centers on orx. +It is primarily written in JavaScript and C/C++ and centers on kernel-level work, shader work, and rendering. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/otter-sec/bn-ebpf-solana/description_en.txt b/description/otter-sec/bn-ebpf-solana/description_en.txt new file mode 100644 index 00000000..4b4b9575 --- /dev/null +++ b/description/otter-sec/bn-ebpf-solana/description_en.txt @@ -0,0 +1 @@ +This project is a Binary Ninja plugin for disassembling and analyzing Solana eBPF (SBF) bytecode. It adds Solana's custom BPF instruction set support to Binary Ninja, enabling decompilation and analysis of compiled Solana smart contracts (programs). The plugin handles SBF-specific instruction encoding, memory model, and calling conventions. It is aimed at blockchain security auditors and researchers analyzing Solana program binaries for vulnerabilities. diff --git a/description/otvv/csgo-linux-cheat-sdk/description_en.txt b/description/otvv/csgo-linux-cheat-sdk/description_en.txt new file mode 100644 index 00000000..c419bec2 --- /dev/null +++ b/description/otvv/csgo-linux-cheat-sdk/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linux. +It is primarily written in C++ and centers on rendering, networking, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/oureveryday/VMPUnpacker/description_en.txt b/description/oureveryday/VMPUnpacker/description_en.txt new file mode 100644 index 00000000..a31afc47 --- /dev/null +++ b/description/oureveryday/VMPUnpacker/description_en.txt @@ -0,0 +1 @@ +This project is an unpacker for VMProtect-packed executables, available in both C++ and Python implementations. It uses LZMA decompression to extract the original PE from VMProtect's packed payload, recovering the protected binary's original sections and import tables. It is mainly useful for reverse engineers and malware analysts working with VMProtect-packed binaries who need automated unpacking capabilities. diff --git a/description/oxiKKK/ida-vtable-tools/description_en.txt b/description/oxiKKK/ida-vtable-tools/description_en.txt new file mode 100644 index 00000000..6c056310 --- /dev/null +++ b/description/oxiKKK/ida-vtable-tools/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iDA 9.X plugin for vtable ops: dump C++ interface skeleton (.hpp), rename with class prefix, set this pointer type, show slot index/offset. +It is primarily written in Python and centers on asset pipelines and plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/oxiKKK/oxware/description_en.txt b/description/oxiKKK/oxware/description_en.txt new file mode 100644 index 00000000..073f6533 --- /dev/null +++ b/description/oxiKKK/oxware/description_en.txt @@ -0,0 +1,3 @@ +This project is a free Counter-Strike 1.6 cheat built with love and passion, featuring 72,896 lines of C++ code in 363 source files! +This cheat is still in alpha stage of development! +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs1.6 area. diff --git a/description/pafuhana1213/KawaiiPhysics/description_en.txt b/description/pafuhana1213/KawaiiPhysics/description_en.txt new file mode 100644 index 00000000..ce408d37 --- /dev/null +++ b/description/pafuhana1213/KawaiiPhysics/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple fake Physics for UnrealEngine4 & 5. +It is primarily written in C++ and C/C++ and centers on physics, animation, and asset pipelines. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/pafuhana1213/VTuberWithUE4/description_en.txt b/description/pafuhana1213/VTuberWithUE4/description_en.txt new file mode 100644 index 00000000..e48280e6 --- /dev/null +++ b/description/pafuhana1213/VTuberWithUE4/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on uE4 VTuber. +It centers on physics, animation, and asset pipelines. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/palera1n/palera1n/description_en.txt b/description/palera1n/palera1n/description_en.txt new file mode 100644 index 00000000..d8c15f73 --- /dev/null +++ b/description/palera1n/palera1n/description_en.txt @@ -0,0 +1 @@ +This project is palera1n, a developer jailbreak for iOS 15+ on checkm8-compatible devices (A8–A11). It exploits the hardware-level checkm8 bootrom vulnerability over USB to boot a patched kernel with AMFI and codesigning disabled, installing the Sileo package manager and a bootstrap environment. The tool supports both rootful and rootless jailbreak modes, with the latter leaving the root filesystem sealed. It is aimed at iOS security researchers, jailbreak developers, and reverse engineers needing root access on modern iOS versions. diff --git a/description/panda-re/panda/description_en.txt b/description/panda-re/panda/description_en.txt new file mode 100644 index 00000000..25464b86 --- /dev/null +++ b/description/panda-re/panda/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on platform for Architecture-Neutral Dynamic Analysis. +QEMU is capable of emulating a complete machine in software without any need for hardware virtualization support. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/panda3d/panda3d/description_en.txt b/description/panda3d/panda3d/description_en.txt new file mode 100644 index 00000000..cbbbaff7 --- /dev/null +++ b/description/panda3d/panda3d/description_en.txt @@ -0,0 +1,3 @@ +This project is a game engine, a framework for 3D rendering and game development for Python and C++ programs. +Panda3D is open-source and free for any purpose, including commercial ventures, thanks to its liberal license. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/pandaadir05/re-architect/description_en.txt b/description/pandaadir05/re-architect/description_en.txt new file mode 100644 index 00000000..8c2d2632 --- /dev/null +++ b/description/pandaadir05/re-architect/description_en.txt @@ -0,0 +1,3 @@ +This project is an advanced automated reverse engineering platform that utilizes binary analysis techniques and machine learning to understand binary files and extract meaningful information. +The system leverages modern binary analysis techniques and machine learning to provide comprehensive analysis results in an efficient timeframe. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/pandora-analysis/pandora/description_en.txt b/description/pandora-analysis/pandora/description_en.txt new file mode 100644 index 00000000..e3eebf2e --- /dev/null +++ b/description/pandora-analysis/pandora/description_en.txt @@ -0,0 +1,3 @@ +This project is an analysis framework to discover if a file is suspicious and conveniently show the results. +Note that it is strongly recommended to use Ubuntu 24.04, which comes with a more recent version of libreoffice. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / analysis framework area. diff --git a/description/panzi/rust-u4pak/description_en.txt b/description/panzi/rust-u4pak/description_en.txt new file mode 100644 index 00000000..503975b9 --- /dev/null +++ b/description/panzi/rust-u4pak/description_en.txt @@ -0,0 +1,3 @@ +This project provides unpack, pack, list, check and mount unreal engine 4 .pak archives. +Note that only a limited number of pak versions are supported. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unreal area. diff --git a/description/papstuc/counterstrike2/description_en.txt b/description/papstuc/counterstrike2/description_en.txt new file mode 100644 index 00000000..e733234e --- /dev/null +++ b/description/papstuc/counterstrike2/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:cs2 and centers on counterstrike2. +It is primarily written in C++ and C/C++ and centers on rendering, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/paradiseduo/IPAPatch/description_en.txt b/description/paradiseduo/IPAPatch/description_en.txt new file mode 100644 index 00000000..b6f9466d --- /dev/null +++ b/description/paradiseduo/IPAPatch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on patch iOS Apps without Jailbreak. +It is primarily written in C/C++ and Objective-C and centers on networking, asset pipelines, and editor tooling. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios jailbreak area. diff --git a/description/paradoxwastaken/Poseidon/description_en.txt b/description/paradoxwastaken/Poseidon/description_en.txt new file mode 100644 index 00000000..afdc4cd2 --- /dev/null +++ b/description/paradoxwastaken/Poseidon/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on ntConvertBetweenAuxiliaryCounterAndPerformanceCounter. +2023 Update: There are quite a few detection vectors that can be identified by BE and EAC, some of which are discussed in (now closed) issues. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/paradoxwastaken/WindowsHardwareInfo/description_en.txt b/description/paradoxwastaken/WindowsHardwareInfo/description_en.txt new file mode 100644 index 00000000..459d7056 --- /dev/null +++ b/description/paradoxwastaken/WindowsHardwareInfo/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on windows-Hardware-Info A project written in C++ to get hardware info on a Windows PC. +Interfaces with the Windows Management Instrumentation (WMI) service to query hardware info of interest and provides a basic command line interface. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hwid area. diff --git a/description/paranoidninja/EtwTi-Syscall-Hook/description_en.txt b/description/paranoidninja/EtwTi-Syscall-Hook/description_en.txt new file mode 100644 index 00000000..8f99c3a0 --- /dev/null +++ b/description/paranoidninja/EtwTi-Syscall-Hook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on instrumentation Callback. +It is primarily written in C and C/C++ and centers on hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hook area. diff --git a/description/paroj/gltut/description_en.txt b/description/paroj/gltut/description_en.txt new file mode 100644 index 00000000..0c1e8c6b --- /dev/null +++ b/description/paroj/gltut/description_en.txt @@ -0,0 +1 @@ +This project is a comprehensive OpenGL tutorial with progressive C++ examples and detailed XML-based documentation covering core graphics concepts. It includes tutorial chapters on vector math, coordinate systems, lighting, texture mapping, and advanced rendering techniques, built with CMake and Lua-based asset generation scripts. It is mainly useful for graphics programmers and game developers learning modern OpenGL rendering fundamentals and 3D graphics theory. diff --git a/description/pascua28/android_kernel_samsung_sm7150/description_en.txt b/description/pascua28/android_kernel_samsung_sm7150/description_en.txt new file mode 100644 index 00000000..1bc5d5a2 --- /dev/null +++ b/description/pascua28/android_kernel_samsung_sm7150/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on samsung sm7150. +It centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel source area. diff --git a/description/pastor-ritz/ritz-amazing-fortnite-internal/description_en.txt b/description/pastor-ritz/ritz-amazing-fortnite-internal/description_en.txt new file mode 100644 index 00000000..e6f6b683 --- /dev/null +++ b/description/pastor-ritz/ritz-amazing-fortnite-internal/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this is the first time I actually sat down and made a cheat from scratch. +This source is nothing special but it is special to me (: There are many improvments to be made but there are no crashing issues I removed the p100 hook and added a shit one decided to post to github instead of sell so yea have fun with it there is a injector in the x64 release folder btw. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/patois/genmc/description_en.txt b/description/patois/genmc/description_en.txt new file mode 100644 index 00000000..a4c88285 --- /dev/null +++ b/description/patois/genmc/description_en.txt @@ -0,0 +1 @@ +This project is an IDAPython script and plugin that displays Hex-Rays decompiler microcode intermediate representation. It provides visual inspection of the microcode generated during decompilation, helping developers understand and debug Hex-Rays microcode plugin development. It is mainly useful for IDA Pro plugin developers and reverse engineers working with Hex-Rays microcode APIs for custom decompiler extensions. diff --git a/description/patrickcjk/TOG/description_en.txt b/description/patrickcjk/TOG/description_en.txt new file mode 100644 index 00000000..37b388b9 --- /dev/null +++ b/description/patrickcjk/TOG/description_en.txt @@ -0,0 +1 @@ +This project is TOG (The Online Gamer), a game cheat or tool related to online game modification. It provides functionality for interacting with online game processes, potentially including memory manipulation, packet modification, or automation features for specific online titles. It is aimed at game security researchers studying online game cheat tooling and anti-cheat challenges in live service games. diff --git a/description/paysonism/saturn-mapper/description_en.txt b/description/paysonism/saturn-mapper/description_en.txt new file mode 100644 index 00000000..5a9166db --- /dev/null +++ b/description/paysonism/saturn-mapper/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver manual mapper called Saturn that maps unsigned drivers into kernel memory by manually loading PE sections, resolving imports, and handling relocations. The C++ codebase includes both a WDK kernel driver component and prebuilt driver binaries with signature scanning capabilities. It is mainly useful for kernel security researchers studying manual driver mapping techniques and kernel-level code loading without standard driver signing. diff --git a/description/pbiernat/ripr/description_en.txt b/description/pbiernat/ripr/description_en.txt new file mode 100644 index 00000000..24195366 --- /dev/null +++ b/description/pbiernat/ripr/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin that rips binary code from disassembled functions and packages them into standalone Python scripts for emulation. It performs control flow analysis, dependency scanning, and code generation to extract reusable binary snippets, with r2pipe integration for Radare2 support. It is mainly useful for reverse engineers who need to extract and emulate individual functions from complex binaries outside of IDA Pro. diff --git a/description/pd0wm/binaryninja-pcode/description_en.txt b/description/pd0wm/binaryninja-pcode/description_en.txt new file mode 100644 index 00000000..19427fac --- /dev/null +++ b/description/pd0wm/binaryninja-pcode/description_en.txt @@ -0,0 +1 @@ +This project is a Binary Ninja plugin that bridges Ghidra's Sleigh disassembler and p-code intermediate representation into Binary Ninja's architecture framework. The C++ plugin integrates Ghidra's third-party decompiler components and includes experimental Low Level IL translation from p-code. It is mainly useful for reverse engineers who want to leverage Ghidra's processor definitions and p-code analysis within the Binary Ninja environment. diff --git a/description/percpopper/Fortnite-CameraCachePOV/description_en.txt b/description/percpopper/Fortnite-CameraCachePOV/description_en.txt new file mode 100644 index 00000000..d9743e77 --- /dev/null +++ b/description/percpopper/Fortnite-CameraCachePOV/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:fortnite and centers on fortnite camera cache pov. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/percpopper/Fortnite-FNameEntry/description_en.txt b/description/percpopper/Fortnite-FNameEntry/description_en.txt new file mode 100644 index 00000000..2e14909f --- /dev/null +++ b/description/percpopper/Fortnite-FNameEntry/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:fortnite and centers on fortnite fname entry. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/percpopper/Splitgate-Internal/description_en.txt b/description/percpopper/Splitgate-Internal/description_en.txt new file mode 100644 index 00000000..00154181 --- /dev/null +++ b/description/percpopper/Splitgate-Internal/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:splitgate and centers on splitgate internal. +It is primarily written in C++ and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:splitgate area. diff --git a/description/percpopper/UE4-Freecam/description_en.txt b/description/percpopper/UE4-Freecam/description_en.txt new file mode 100644 index 00000000..451a3312 --- /dev/null +++ b/description/percpopper/UE4-Freecam/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fOV Changer. +It is primarily written in C/C++ and C and centers on Unreal Engine, hooking, and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unreal area. diff --git a/description/percpopper/VALORANT-FNamePool/description_en.txt b/description/percpopper/VALORANT-FNamePool/description_en.txt new file mode 100644 index 00000000..f1fda4f4 --- /dev/null +++ b/description/percpopper/VALORANT-FNamePool/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iterate And Decrypt FNamePool->Entries On Valorant. +It is primarily written in C/C++ and C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/percpopper/VX-It/description_en.txt b/description/percpopper/VX-It/description_en.txt new file mode 100644 index 00000000..207c4fdd --- /dev/null +++ b/description/percpopper/VX-It/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on decrypt. +It is primarily written in C/C++ and C++ and centers on Unreal Engine. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:veiled experts area. diff --git a/description/perfect-hand/ue5-cardgame/description_en.txt b/description/perfect-hand/ue5-cardgame/description_en.txt new file mode 100644 index 00000000..e49cf644 --- /dev/null +++ b/description/perfect-hand/ue5-cardgame/description_en.txt @@ -0,0 +1 @@ +This project is a card game implementation built with Unreal Engine 5. It demonstrates UE5 game development patterns including card deck management, turn-based gameplay logic, UI widget design with UMG, network replication for multiplayer, and visual effects for card animations. The Blueprint and C++ project serves as a learning reference for UE5 game development. It is aimed at Unreal Engine developers studying card/board game implementation patterns in UE5. diff --git a/description/perilouswithadollarsign/cstrike15_src/description_en.txt b/description/perilouswithadollarsign/cstrike15_src/description_en.txt new file mode 100644 index 00000000..4e2d897e --- /dev/null +++ b/description/perilouswithadollarsign/cstrike15_src/description_en.txt @@ -0,0 +1 @@ +This project is a leaked partial source code archive of Counter-Strike: Global Offensive (CS:GO) based on the Source engine. It contains client and server game logic, weapon mechanics, player movement code, networking, UI systems, and engine interfaces. The C++ codebase provides insight into Source engine architecture and CS:GO's internal game systems. It is aimed at game security researchers and Source engine analysts studying CS:GO internals for anti-cheat development, cheat detection, and engine vulnerability research. diff --git a/description/petercunha/Pine/description_en.txt b/description/petercunha/Pine/description_en.txt new file mode 100644 index 00000000..ebf19d27 --- /dev/null +++ b/description/petercunha/Pine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on neural Network. +This software can be tweaked to work smoothly in CS:GO, Fortnite, and Overwatch. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/pgarba/ptrace_read_teb/description_en.txt b/description/pgarba/ptrace_read_teb/description_en.txt new file mode 100644 index 00000000..0ef3f3d4 --- /dev/null +++ b/description/pgarba/ptrace_read_teb/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on use ptrace to read the TEB of a process on Linux. +It is primarily written in C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / wine area. diff --git a/description/pgp/XFiles/description_en.txt b/description/pgp/XFiles/description_en.txt new file mode 100644 index 00000000..18bb2e32 --- /dev/null +++ b/description/pgp/XFiles/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on file explorer for (rooted) Android. +Releases Prebuilt APKs are available in the Releases section of this repo. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android file explorer area. diff --git a/description/phonowell/genshin-impact-script/description_en.txt b/description/phonowell/genshin-impact-script/description_en.txt new file mode 100644 index 00000000..93874725 --- /dev/null +++ b/description/phonowell/genshin-impact-script/description_en.txt @@ -0,0 +1,3 @@ +This project is a sweet genshin impact script. +It is primarily written in TypeScript. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:genshin impact area. diff --git a/description/phra/PEzor/description_en.txt b/description/phra/PEzor/description_en.txt new file mode 100644 index 00000000..40c84f7d --- /dev/null +++ b/description/phra/PEzor/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / binary packer and centers on pezor. +It is primarily written in C++ and C and centers on hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/piotrbania/frida_usb_dump/description_en.txt b/description/piotrbania/frida_usb_dump/description_en.txt new file mode 100644 index 00000000..c38ede2f --- /dev/null +++ b/description/piotrbania/frida_usb_dump/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on frida script that allows to sniff & dump USB traffic on macOS. +The OFFSETS_ were dumped on macos bigsur as far as i recall. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/pixijs/pixijs/description_en.txt b/description/pixijs/pixijs/description_en.txt new file mode 100644 index 00000000..763845b4 --- /dev/null +++ b/description/pixijs/pixijs/description_en.txt @@ -0,0 +1,3 @@ +This project is the fastest, most lightweight 2D library available for the web, working across all devices and allowing you to create rich, interactive graphics and cross-platform applications using WebGL and WebGPU. +It is primarily written in TypeScript and JavaScript and centers on shader work, rendering, and graphics. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/pjasicek/OpenClaw/description_en.txt b/description/pjasicek/OpenClaw/description_en.txt new file mode 100644 index 00000000..c5e3471e --- /dev/null +++ b/description/pjasicek/OpenClaw/description_en.txt @@ -0,0 +1 @@ +This project is an open-source C++ reimplementation of the classic Captain Claw platformer game with Box2D physics integration. It includes cross-platform support via CMake with Android build configurations, and provides a complete recreation of the original game's levels, actors, and gameplay mechanics. It is mainly useful for game engine researchers and modders studying 2D platformer game reimplementation and custom engine architecture with physics integration. diff --git a/description/pkurth/D3D12Renderer/description_en.txt b/description/pkurth/D3D12Renderer/description_en.txt new file mode 100644 index 00000000..8d8939a0 --- /dev/null +++ b/description/pkurth/D3D12Renderer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dX12. +It supports some "new" features like raytracing, mesh shaders etc. +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / guide area. diff --git a/description/planetchili/hw3d/description_en.txt b/description/planetchili/hw3d/description_en.txt new file mode 100644 index 00000000..5864abd0 --- /dev/null +++ b/description/planetchili/hw3d/description_en.txt @@ -0,0 +1,3 @@ +This project provides C++ 3D DirectX tutorial. +It is organized as documentation and reference material for the directx / guide area rather than as a single standalone runtime codebase. +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / guide area. diff --git a/description/playcanvas/engine/description_en.txt b/description/playcanvas/engine/description_en.txt new file mode 100644 index 00000000..c36b4738 --- /dev/null +++ b/description/playcanvas/engine/description_en.txt @@ -0,0 +1 @@ +This project is the PlayCanvas engine, an open-source WebGL/WebGPU game engine written in JavaScript. It provides a full 3D rendering pipeline with PBR materials, shadow mapping, particle systems, physics integration (Ammo.js), skeletal animation, audio, and XR support. The engine runs directly in web browsers and pairs with the PlayCanvas cloud editor for collaborative game development. It is aimed at web game developers and interactive 3D application builders targeting browser platforms. diff --git a/description/playgameservices/cpp-android-basic-samples/description_en.txt b/description/playgameservices/cpp-android-basic-samples/description_en.txt new file mode 100644 index 00000000..735456aa --- /dev/null +++ b/description/playgameservices/cpp-android-basic-samples/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sample games using the Google Play Games C++ SDK. +(Optional) On some versions of Windows it is helpful to map the samples folder to a shortened path. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/plibither8/2048.cpp/description_en.txt b/description/plibither8/2048.cpp/description_en.txt new file mode 100644 index 00000000..00dbf71f --- /dev/null +++ b/description/plibither8/2048.cpp/description_en.txt @@ -0,0 +1 @@ +This project is a terminal-based implementation of the 2048 puzzle game written in C++. It renders the game board in the console with color support, handles keyboard input for tile sliding, implements the merging and scoring logic, and tracks high scores. The clean, minimal codebase serves as an example of console game development in C++. It is aimed at C++ learners and hobbyist game developers studying simple game logic implementation. diff --git a/description/polygraphene/DirtyPipe-Android/description_en.txt b/description/polygraphene/DirtyPipe-Android/description_en.txt new file mode 100644 index 00000000..390593fe --- /dev/null +++ b/description/polygraphene/DirtyPipe-Android/description_en.txt @@ -0,0 +1 @@ +Multi-stage exploit leveraging CVE-2022-0847 (Dirty Pipe) to permanently root Pixel 6 devices by corrupting the kernel module loader through pipe page cache overwrites, injecting ARM64 shellcode payloads to patch SELinux and credentials, and automatically installing Magisk v24.3 for persistent root access across reboots. diff --git a/description/poppopjmp/VMDragonSlayer/description_en.txt b/description/poppopjmp/VMDragonSlayer/description_en.txt new file mode 100644 index 00000000..e1af6293 --- /dev/null +++ b/description/poppopjmp/VMDragonSlayer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on advanced Virtual Machine Detection and Analysis Framework. +The framework combines multiple analysis engines including Dynamic Taint Tracking (DTT), Symbolic Execution (SE), Pattern Classification, and Machine Learning to automate the reverse engineering process. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/ppy/osu-framework/description_en.txt b/description/ppy/osu-framework/description_en.txt new file mode 100644 index 00000000..7c769a8b --- /dev/null +++ b/description/ppy/osu-framework/description_en.txt @@ -0,0 +1 @@ +This project is osu!framework, a C# game framework built for osu! but usable as a general-purpose 2D game engine. It provides a scene graph with drawable hierarchies, input handling, audio management, threading model, smooth interpolation, text rendering, texture atlasing, and platform abstraction over OpenGL. The framework handles game loop timing, resource management, and UI layout. It is aimed at C# game developers wanting a well-tested 2D framework with modern .NET features. diff --git a/description/ppy/osu/description_en.txt b/description/ppy/osu/description_en.txt new file mode 100644 index 00000000..640df842 --- /dev/null +++ b/description/ppy/osu/description_en.txt @@ -0,0 +1 @@ +This project is osu!, an open-source rhythm game written in C# using the osu!framework. It implements multiple game modes (osu!standard, osu!taiko, osu!catch, osu!mania) with beatmap parsing, hit object rendering, scoring, replay recording, online multiplayer, and skinning support. The codebase includes a custom UI framework, audio processing pipeline, input handling, and smooth interpolation systems. It is aimed at rhythm game developers, C# game programmers, and the osu! modding community. diff --git a/description/pr701/fix-arxan/description_en.txt b/description/pr701/fix-arxan/description_en.txt new file mode 100644 index 00000000..ddfece7a --- /dev/null +++ b/description/pr701/fix-arxan/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on arxan is an portable executable file protector that includes features such as. +This tool helps to get some information about the loader and a decrypted working image for comfortable research. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / dump fix area. diff --git a/description/praydog/AutomataMP/description_en.txt b/description/praydog/AutomataMP/description_en.txt new file mode 100644 index 00000000..af99ebab --- /dev/null +++ b/description/praydog/AutomataMP/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on nieR. +While some important aspects of the game are well supported, some are not. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/praydog/Source2Gen/description_en.txt b/description/praydog/Source2Gen/description_en.txt new file mode 100644 index 00000000..681082ca --- /dev/null +++ b/description/praydog/Source2Gen/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK Generator. +It will generate C++ headers for many exposed classes and enumerators. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:source area. diff --git a/description/praydog/UEVR/description_en.txt b/description/praydog/UEVR/description_en.txt new file mode 100644 index 00000000..be331ab3 --- /dev/null +++ b/description/praydog/UEVR/description_en.txt @@ -0,0 +1 @@ +This project is UEVR, a universal Unreal Engine VR injection mod that adds 6DOF VR support to virtually any Unreal Engine 4/5 game. It hooks into the engine's rendering pipeline to implement stereoscopic rendering, head tracking through OpenXR/OpenVR, motion controller input, and roomscale movement without game-specific modifications. The C++ injector uses UE reflection and pattern scanning to locate engine internals at runtime. It is aimed at VR enthusiasts and UE researchers adding VR support to flat-screen UE games. diff --git a/description/praydog/luagenny/description_en.txt b/description/praydog/luagenny/description_en.txt new file mode 100644 index 00000000..d0e3823f --- /dev/null +++ b/description/praydog/luagenny/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / sdk codegen and centers on luagenny. +It is primarily written in C++ and C/C++ and centers on reverse engineering and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / sdk codegen area. diff --git a/description/preludeorg/ThreatIntelligenceConsumer/description_en.txt b/description/preludeorg/ThreatIntelligenceConsumer/description_en.txt new file mode 100644 index 00000000..089ce3a2 --- /dev/null +++ b/description/preludeorg/ThreatIntelligenceConsumer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on consuming from the Threat-Intelligence ETW provider without a driver or PPL privilege. +It has been formally tested against Windows 11 24H2 and Windows 11 25H2 (alongside the latest Canary Insider Preview build, as of the time of this POC being uploaded). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/progmboy/openprocmon/description_en.txt b/description/progmboy/openprocmon/description_en.txt new file mode 100644 index 00000000..6e74fe45 --- /dev/null +++ b/description/progmboy/openprocmon/description_en.txt @@ -0,0 +1 @@ +This project is OpenProcmon, an open-source process monitor for Windows inspired by Sysinternals Process Monitor. It captures real-time system activity including process creation/termination, file system operations, registry access, network activity, and DLL loading using ETW (Event Tracing for Windows) and minifilter drivers. The C++ application provides a GUI with filtering, highlighting, and export capabilities. It is aimed at system administrators, malware analysts, and security researchers monitoring Windows system activity. diff --git a/description/psavarmattas/android_kernel_oneplus_sm7250-WKSU/description_en.txt b/description/psavarmattas/android_kernel_oneplus_sm7250-WKSU/description_en.txt new file mode 100644 index 00000000..b4f7946c --- /dev/null +++ b/description/psavarmattas/android_kernel_oneplus_sm7250-WKSU/description_en.txt @@ -0,0 +1 @@ +This project is a custom Android kernel source for the OnePlus Nord (sm7250 platform) with KernelSU integration. It provides a modified kernel tree based on the Qualcomm SM7250 BSP with KernelSU patches for root access management, allowing systemless root on OnePlus Nord devices. It is aimed at Android kernel developers and custom ROM builders targeting OnePlus devices with KernelSU support. diff --git a/description/pudii/gba-ghidra-loader/description_en.txt b/description/pudii/gba-ghidra-loader/description_en.txt new file mode 100644 index 00000000..d3ed286f --- /dev/null +++ b/description/pudii/gba-ghidra-loader/description_en.txt @@ -0,0 +1,3 @@ +This project is the memory areas and IO is mapped to the according addresses. +It parses the GBA Cartridge header of the ROM and sets the entry point accordingly. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ghidra plugins area. diff --git a/description/push0ebp/sig-database/description_en.txt b/description/push0ebp/sig-database/description_en.txt new file mode 100644 index 00000000..6949ebba --- /dev/null +++ b/description/push0ebp/sig-database/description_en.txt @@ -0,0 +1 @@ +This project is a collection of FLIRT (Fast Library Identification and Recognition Technology) signature files for various Linux library versions. It covers OpenSSL and other system libraries across multiple Ubuntu releases and architectures (amd64/i386), organized by distribution version. It is mainly useful for reverse engineers using IDA Pro who need library function identification signatures for Linux binary analysis. diff --git a/description/push0ebp/xMalHunter/description_en.txt b/description/push0ebp/xMalHunter/description_en.txt new file mode 100644 index 00000000..96e87c5c --- /dev/null +++ b/description/push0ebp/xMalHunter/description_en.txt @@ -0,0 +1 @@ +This project is a malware detection tool that leverages pe-sieve for scanning running processes for injected code, inline hooks, and hollowed modules. It links against pe-sieve and libpeconv libraries to perform automated detection of in-memory malware artifacts across 32-bit and 64-bit Windows processes. It is mainly useful for malware analysts and anti-cheat researchers studying runtime code injection detection and process integrity verification. diff --git a/description/pxb1988/dex2jar/description_en.txt b/description/pxb1988/dex2jar/description_en.txt new file mode 100644 index 00000000..aca9ef76 --- /dev/null +++ b/description/pxb1988/dex2jar/description_en.txt @@ -0,0 +1 @@ +This project is dex2jar, a set of Java tools for converting Android DEX bytecode to Java class files (JAR format) and vice versa. The converted JAR files can then be analyzed with standard Java decompilers like JD-GUI or CFR. The toolset also includes d2j-baksmali for disassembly and utilities for APK signing and DEX manipulation. It is aimed at Android reverse engineers and security analysts who need to examine Android application logic using familiar Java analysis tools. diff --git a/description/pykaso/Swift-String-Obfuscator/description_en.txt b/description/pykaso/Swift-String-Obfuscator/description_en.txt new file mode 100644 index 00000000..d37c3869 --- /dev/null +++ b/description/pykaso/Swift-String-Obfuscator/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on string Crypter for Swift. +Another possible solution is to use two files. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/qemu-gvm/qemu-gvm/description_en.txt b/description/qemu-gvm/qemu-gvm/description_en.txt new file mode 100644 index 00000000..f36333b9 --- /dev/null +++ b/description/qemu-gvm/qemu-gvm/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on qEMU. +Both AMD and Intel processors are supported. +It is mainly useful for mobile platform and emulator researchers working in the android emulator area. diff --git a/description/qqq26/nuzu/description_en.txt b/description/qqq26/nuzu/description_en.txt new file mode 100644 index 00000000..e5819314 --- /dev/null +++ b/description/qqq26/nuzu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on yuzu based repository. +This is an unofficial mirror fork of the original repository. +It is mainly useful for console emulator developers and Switch researchers working in the nintendo switch area. diff --git a/description/qtfreet00/AntiFrida/description_en.txt b/description/qtfreet00/AntiFrida/description_en.txt new file mode 100644 index 00000000..5c93c2bc --- /dev/null +++ b/description/qtfreet00/AntiFrida/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / detection:frida and centers on anti frida. +It is primarily written in Java and C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:frida area. diff --git a/description/qtkite/defender-control/description_en.txt b/description/qtkite/defender-control/description_en.txt new file mode 100644 index 00000000..e5513e89 --- /dev/null +++ b/description/qtkite/defender-control/description_en.txt @@ -0,0 +1 @@ +This project is a C# GUI utility for controlling Windows Defender real-time protection. It provides a simple toggle interface to enable or disable Defender's real-time monitoring, tamper protection settings, and automatic sample submission without navigating through Windows Security settings. The tool modifies relevant registry keys and service configurations. It is aimed at developers and security researchers who need to temporarily disable Defender during testing, malware analysis, or software development. diff --git a/description/quarkslab/AERoot/description_en.txt b/description/quarkslab/AERoot/description_en.txt new file mode 100644 index 00000000..22635f74 --- /dev/null +++ b/description/quarkslab/AERoot/description_en.txt @@ -0,0 +1 @@ +This project is a Python tool from Quarkslab for rooting Android Emulator instances at runtime without modifying the system image. It exploits the emulator's debug pipe or ADB root access to remount the system partition as read-write, install a custom su binary, and establish persistent root. The tool automates the process across multiple Android API levels. It is aimed at mobile security researchers and Android developers who need root access on emulator instances for testing and reverse engineering. diff --git a/description/quarkslab/peetch/description_en.txt b/description/quarkslab/peetch/description_en.txt new file mode 100644 index 00000000..b2d53cc6 --- /dev/null +++ b/description/quarkslab/peetch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eBPF toolkit: dump (sniff traffic with PID/process), tls (OpenSSL key/master-secret extraction), proxy (intercept and decrypt TLS); PCAPng + Scapy; OpenSSL, IPv4, TLS 1.2. +The first called dump aims to sniff network traffic by associating information about the source process with each packet. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel explorer area. diff --git a/description/quic/gunyah-hypervisor/description_en.txt b/description/quic/gunyah-hypervisor/description_en.txt new file mode 100644 index 00000000..e8d55f28 --- /dev/null +++ b/description/quic/gunyah-hypervisor/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on type-1 hypervisor for ARM64. +The Gunyah Hypervisor open source project provides a reference Type-1 hypervisor configuration suitable for general purpose hosting of multiple trusted and dependent VMs. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/quickemu-project/quickemu/description_en.txt b/description/quickemu-project/quickemu/description_en.txt new file mode 100644 index 00000000..91063dac --- /dev/null +++ b/description/quickemu-project/quickemu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on quickly create and run optimized QEMU VMs for Windows/macOS/Linux. +The original objective of the project was to [enable quick testing of Linux distributions]( where the virtual machines and their configuration can be stored anywhere (such as external USB storage or your home directory) and no elevated permissions are required to run the virtual machines. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/qwqdanchun/Pillager/description_en.txt b/description/qwqdanchun/Pillager/description_en.txt new file mode 100644 index 00000000..2f2fbc09 --- /dev/null +++ b/description/qwqdanchun/Pillager/description_en.txt @@ -0,0 +1 @@ +This project is a Go-based post-exploitation credential harvesting tool for Windows. It extracts saved passwords, cookies, bookmarks, and history from major browsers (Chrome, Firefox, Edge), collects Wi-Fi passwords, reads chat application data, and gathers other locally stored credentials. The tool compiles as a single static binary for easy deployment. It is aimed at penetration testers and red team operators performing credential collection during authorized security assessments. diff --git a/description/r0keb/Smep-Bypass/description_en.txt b/description/r0keb/Smep-Bypass/description_en.txt new file mode 100644 index 00000000..9d479694 --- /dev/null +++ b/description/r0keb/Smep-Bypass/description_en.txt @@ -0,0 +1 @@ +This project is a proof of concept for bypassing SMEP (Supervisor Mode Execution Prevention) on Windows. SMEP prevents the kernel from executing code in user-mode pages. This exploit demonstrates techniques to disable SMEP by manipulating the CR4 register through ROP chains or vulnerable driver primitives, enabling kernel-mode execution of user-space shellcode. It is aimed at kernel exploitation researchers studying hardware security feature bypass techniques. diff --git a/description/r0ngwe1/petoy/description_en.txt b/description/r0ngwe1/petoy/description_en.txt new file mode 100644 index 00000000..84ff9971 --- /dev/null +++ b/description/r0ngwe1/petoy/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pE. +It is primarily written in C/C++ and JavaScript. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/r1cky33/krnl-gdi-render/description_en.txt b/description/r1cky33/krnl-gdi-render/description_en.txt new file mode 100644 index 00000000..560b7c31 --- /dev/null +++ b/description/r1cky33/krnl-gdi-render/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel-mode GDI rendering framework that hooks GDI drawing functions to render overlay graphics from kernel space. The C++ WDK driver includes signature scanning, NT kernel utilities, and prebuilt signed driver binaries for deploying kernel-level visual overlays. It is mainly useful for game security researchers studying kernel-mode rendering techniques and GDI hook-based overlay implementations that bypass user-mode detection. diff --git a/description/rabbitfishy/sdk/description_en.txt b/description/rabbitfishy/sdk/description_en.txt new file mode 100644 index 00000000..085c811c --- /dev/null +++ b/description/rabbitfishy/sdk/description_en.txt @@ -0,0 +1 @@ +This project is a reverse-engineered SDK for a Source engine game (likely CS:GO) containing class definitions, interface declarations, netvar structures, and function prototypes extracted from the game binary. The C++ headers provide type-accurate representations of game data structures including entity classes, weapon data, player info, and engine interfaces. It is aimed at game cheat developers and security researchers who need SDK headers for interacting with Source engine game internals. diff --git a/description/rabbitstack/fibratus/description_en.txt b/description/rabbitstack/fibratus/description_en.txt new file mode 100644 index 00000000..27859b0f --- /dev/null +++ b/description/rabbitstack/fibratus/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel exploration and observability tool written in Go that captures and analyzes kernel event streams via ETW (Event Tracing for Windows). It monitors process creation, thread activity, file I/O, registry operations, network connections, and driver loading in real time, with support for filtering rules, alerting, and output to various sinks including Elasticsearch. The tool includes a rule engine for detecting suspicious behavior patterns and can be used for threat hunting and endpoint telemetry. It is aimed at security analysts, threat hunters, and defenders building detection capabilities around Windows kernel-level activity. diff --git a/description/rad9800/BloatedHammer/description_en.txt b/description/rad9800/BloatedHammer/description_en.txt new file mode 100644 index 00000000..f3791ceb --- /dev/null +++ b/description/rad9800/BloatedHammer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on aPI Hammering with C++20 by folding (avoiding loops. +It is primarily written in C++ and centers on networking and modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/rad9800/BootExecuteEDR/description_en.txt b/description/rad9800/BootExecuteEDR/description_en.txt new file mode 100644 index 00000000..2b01bada --- /dev/null +++ b/description/rad9800/BootExecuteEDR/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on bootExecute EDR Bypass. +This occurs even before Windows services are launched. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hide area. diff --git a/description/radareorg/iaito/description_en.txt b/description/radareorg/iaito/description_en.txt new file mode 100644 index 00000000..357f12c6 --- /dev/null +++ b/description/radareorg/iaito/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on official radare2 GUI (Qt5/6), focused on reverse engineering workflow. +It is primarily written in C/C++ and C++ and centers on reverse engineering, editor tooling, and plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / decompiler area. diff --git a/description/radareorg/r2a/description_en.txt b/description/radareorg/r2a/description_en.txt new file mode 100644 index 00000000..f4298372 --- /dev/null +++ b/description/radareorg/r2a/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on local language model for radare2. +It centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / radare plugins area. diff --git a/description/radareorg/radius2/description_en.txt b/description/radareorg/radius2/description_en.txt new file mode 100644 index 00000000..f7dbc750 --- /dev/null +++ b/description/radareorg/radius2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fast binary emulation and symbolic execution framework using radare2. +It is primarily written in Rust and C and centers on modding and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / radare plugins area. diff --git a/description/raizam/gamedev_libraries/description_en.txt b/description/raizam/gamedev_libraries/description_en.txt new file mode 100644 index 00000000..356d850e --- /dev/null +++ b/description/raizam/gamedev_libraries/description_en.txt @@ -0,0 +1,3 @@ +This project is a collection of open source c/c++ libraries for gamedev. +The library has been written with a data-oriented philosophy: POD structures are preferred over classes, flat arrays are the preferred data structure, etc. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / guide area. diff --git a/description/rand-tech/pcm/description_en.txt b/description/rand-tech/pcm/description_en.txt new file mode 100644 index 00000000..c190bba7 --- /dev/null +++ b/description/rand-tech/pcm/description_en.txt @@ -0,0 +1 @@ +This project is PCM (Process Context Monitor), a tool or library for monitoring process context switches, thread scheduling, and CPU utilization at a low level. It captures per-core scheduling events and context switch data to provide fine-grained visibility into process and thread execution patterns on the system. It is aimed at performance analysts and security researchers studying process scheduling behavior and CPU resource consumption. diff --git a/description/raskolnikov90/Beatrice.py/description_en.txt b/description/raskolnikov90/Beatrice.py/description_en.txt new file mode 100644 index 00000000..745acc3b --- /dev/null +++ b/description/raskolnikov90/Beatrice.py/description_en.txt @@ -0,0 +1 @@ +This project is Beatrice.py, a Python tool for modifying x86-64 machine code by substituting instructions with semantically equivalent alternative encodings. It replaces original opcodes with functionally identical but byte-different instruction sequences to evade signature-based antivirus and anti-cheat detection. The tool operates at the binary level using instruction-level pattern matching and substitution rules. It is aimed at security researchers studying instruction-level binary mutation for AV evasion and binary diversity. diff --git a/description/rathena/rathena/description_en.txt b/description/rathena/rathena/description_en.txt new file mode 100644 index 00000000..9343e17c --- /dev/null +++ b/description/rathena/rathena/description_en.txt @@ -0,0 +1 @@ +This project is rAthena, an open-source Ragnarok Online server emulator written in C++. It implements login, character, and map servers with support for thousands of items, monsters, skills, quests, guilds, WoE (War of Emperium), and custom scripting through an NPC script language. The server supports MySQL database storage and multi-zone architecture. It is aimed at game server developers, private server operators, and researchers studying classic MMO server implementation patterns. diff --git a/description/raysan5/custom_game_engines/description_en.txt b/description/raysan5/custom_game_engines/description_en.txt new file mode 100644 index 00000000..13949141 --- /dev/null +++ b/description/raysan5/custom_game_engines/description_en.txt @@ -0,0 +1,3 @@ +This project is A comprehensive list of custom game engines. +This list is based on a 2020 article: custom_game_engines_small_study. +It is mainly useful for game developers, engine programmers, and graphics researchers working on rendering and graphics in the game engine / guide area. diff --git a/description/raysan5/raylib/description_en.txt b/description/raysan5/raylib/description_en.txt new file mode 100644 index 00000000..93563774 --- /dev/null +++ b/description/raysan5/raylib/description_en.txt @@ -0,0 +1,3 @@ +This project is a simple and easy-to-use library to enjoy videogames programming. +It is primarily written in C and C/C++ and centers on kernel-level work, OpenGL, and Vulkan. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/razixNew/CompiledProtection/description_en.txt b/description/razixNew/CompiledProtection/description_en.txt new file mode 100644 index 00000000..e6f2253f --- /dev/null +++ b/description/razixNew/CompiledProtection/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cheat Compiler. +It is primarily written in C/C++ and C++ and centers on anti-cheat research. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/rbfx/rbfx/description_en.txt b/description/rbfx/rbfx/description_en.txt new file mode 100644 index 00000000..cfe5ddf0 --- /dev/null +++ b/description/rbfx/rbfx/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on c# support and WYSIWYG editor. +It centers on editor tooling. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/rbmm/KPDB/description_en.txt b/description/rbmm/KPDB/description_en.txt new file mode 100644 index 00000000..46665dfd --- /dev/null +++ b/description/rbmm/KPDB/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on parsing PDB in Driver. +It is primarily written in C++ and C/C++ and centers on driver development and modding. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring0 area. diff --git a/description/rbmm/LockFile-Poc/description_en.txt b/description/rbmm/LockFile-Poc/description_en.txt new file mode 100644 index 00000000..4dfa8043 --- /dev/null +++ b/description/rbmm/LockFile-Poc/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on lock File. +It is primarily written in C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/rbmm/SearchEx/description_en.txt b/description/rbmm/SearchEx/description_en.txt new file mode 100644 index 00000000..7ba21541 --- /dev/null +++ b/description/rbmm/SearchEx/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / information system & forensics and centers on search ex. +It is primarily written in C++ and C/C++ and centers on hooking and memory analysis. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / information system & forensics area. diff --git a/description/rbmm/USN/description_en.txt b/description/rbmm/USN/description_en.txt new file mode 100644 index 00000000..b4603155 --- /dev/null +++ b/description/rbmm/USN/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / information system & forensics and centers on usn. +It is primarily written in C++ and C/C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / information system & forensics area. diff --git a/description/rdbo/DX11-BaseHook/description_en.txt b/description/rdbo/DX11-BaseHook/description_en.txt new file mode 100644 index 00000000..b9303ae5 --- /dev/null +++ b/description/rdbo/DX11-BaseHook/description_en.txt @@ -0,0 +1 @@ +This project is a minimal DirectX 11 hooking base in C++ that intercepts the IDXGISwapChain::Present function to render custom overlays inside D3D11 applications. It demonstrates creating a dummy D3D11 device to locate the vtable, hooking Present with a trampoline, and rendering ImGui menus within the hooked frame. The project serves as a starting template for building internal game overlays. It is aimed at game hackers learning DirectX 11 hook-based overlay rendering and cheat menu development. diff --git a/description/rdeioris/LuaMachine/description_en.txt b/description/rdeioris/LuaMachine/description_en.txt new file mode 100644 index 00000000..013dddea --- /dev/null +++ b/description/rdeioris/LuaMachine/description_en.txt @@ -0,0 +1 @@ +This project is an Unreal Engine plugin that embeds a Lua scripting runtime for gameplay programming. It provides Lua-driven game logic through Blueprint-accessible code assets, coroutine support, reflection-based metatables, and proxy call interfaces for bridging Lua scripts with UE4 actors and components. It is mainly useful for game developers and modders seeking scriptable gameplay in Unreal Engine through Lua integration. diff --git a/description/reahly/mono-external-lib/description_en.txt b/description/reahly/mono-external-lib/description_en.txt new file mode 100644 index 00000000..a4b08945 --- /dev/null +++ b/description/reahly/mono-external-lib/description_en.txt @@ -0,0 +1 @@ +This project is an external library for reading Unity/Mono game internals from outside the game process on Windows. It parses Mono runtime metadata structures externally through process memory reading to enumerate classes, methods, fields, and their offsets without injection. The C++ library reconstructs the Mono type system from raw memory to enable external cheat development for Unity Mono games. It is aimed at game hackers and security researchers studying external access to Mono/.NET game internals. diff --git a/description/realTristan/Reborn/description_en.txt b/description/realTristan/Reborn/description_en.txt new file mode 100644 index 00000000..4ef22e59 --- /dev/null +++ b/description/realTristan/Reborn/description_en.txt @@ -0,0 +1 @@ +This project is a Rust-based Fortnite cheat framework with a web server backend, SQLite database, and a Discord bot interface. It provides a modular architecture with separate crates for the cheat server, bot commands, and client communication. It is mainly useful for game security researchers studying Rust-based cheat frameworks and web-controlled game modification architectures. diff --git a/description/realquantumstealth-hub/PCILeech-DMA-Fullstealth/description_en.txt b/description/realquantumstealth-hub/PCILeech-DMA-Fullstealth/description_en.txt new file mode 100644 index 00000000..d2b222ac --- /dev/null +++ b/description/realquantumstealth-hub/PCILeech-DMA-Fullstealth/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on quantumstealth open source Fullstealth firmware; Vivado build for M2/Squirrel/Captain 75T/Enigma X1. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dma area. diff --git a/description/recastnavigation/recastnavigation/description_en.txt b/description/recastnavigation/recastnavigation/description_en.txt new file mode 100644 index 00000000..3925fe3d --- /dev/null +++ b/description/recastnavigation/recastnavigation/description_en.txt @@ -0,0 +1 @@ +This project is Recast & Detour, an industry-standard navigation mesh toolset for games. Recast generates navigation meshes from arbitrary 3D geometry through voxelization, contour tracing, and polygon mesh simplification. Detour provides pathfinding, path smoothing, and local steering on the generated navmeshes with support for off-mesh connections, area costs, and tile-based streaming. The C++ library is used in numerous commercial game engines and titles. It is aimed at game developers implementing AI navigation and pathfinding systems. diff --git a/description/redbg/CS2-Internal/description_en.txt b/description/redbg/CS2-Internal/description_en.txt new file mode 100644 index 00000000..bb89b90e --- /dev/null +++ b/description/redbg/CS2-Internal/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +It is primarily written in C++ and C/C++ and centers on SDK generation, hooking, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/rednaga/APKiD/description_en.txt b/description/rednaga/APKiD/description_en.txt new file mode 100644 index 00000000..ddf89e46 --- /dev/null +++ b/description/rednaga/APKiD/description_en.txt @@ -0,0 +1 @@ +This project is APKiD, an Android application identifier that detects compilers, packers, obfuscators, and anti-analysis techniques used in APK and DEX files. It uses YARA rules to fingerprint known protection tools including ProGuard, DexGuard, Bangcle, Ijiami, and dozens of other commercial and custom protectors. The Python tool outputs detected protections and their versions. It is aimed at mobile security analysts, malware researchers, and reverse engineers performing initial triage on Android samples to identify applied protections before deeper analysis. diff --git a/description/rednaga/frida-stack/description_en.txt b/description/rednaga/frida-stack/description_en.txt new file mode 100644 index 00000000..e6836193 --- /dev/null +++ b/description/rednaga/frida-stack/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on getting better stacks and backtraces in Frida. +This resulted in me re-writing the same functions all the time. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/redskal/obfuscatxor/description_en.txt b/description/redskal/obfuscatxor/description_en.txt new file mode 100644 index 00000000..7dddfaca --- /dev/null +++ b/description/redskal/obfuscatxor/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on string Crypter for golang. +The generated variables can then be used in your code. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/redteamsocietegenerale/DLLirant/description_en.txt b/description/redteamsocietegenerale/DLLirant/description_en.txt new file mode 100644 index 00000000..68a80770 --- /dev/null +++ b/description/redteamsocietegenerale/DLLirant/description_en.txt @@ -0,0 +1 @@ +This project is DLLirant, a tool for automated DLL hijacking vulnerability discovery on Windows. It tests executables for DLL search order hijacking by generating proxy DLLs, placing them in candidate directories, and monitoring whether the target application loads them. The tool automates the process of identifying missing DLL dependencies and unsafe search paths. It is aimed at penetration testers and security auditors finding DLL hijacking opportunities for privilege escalation or persistence. diff --git a/description/redthing1/w1tn3ss/description_en.txt b/description/redthing1/w1tn3ss/description_en.txt new file mode 100644 index 00000000..b914ed5e --- /dev/null +++ b/description/redthing1/w1tn3ss/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dynamic binary instrumentation, analysis, and patching framework. +It is primarily written in C++ and C and centers on modding, hooking, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dynamic binary instrumentation area. diff --git a/description/regenrek/deepwiki-mcp/description_en.txt b/description/regenrek/deepwiki-mcp/description_en.txt new file mode 100644 index 00000000..cddb245b --- /dev/null +++ b/description/regenrek/deepwiki-mcp/description_en.txt @@ -0,0 +1 @@ +This project is a Model Context Protocol (MCP) server that integrates DeepWiki documentation analysis into AI coding workflows. It allows AI assistants to query and retrieve information from project documentation, wikis, and knowledge bases through the MCP protocol, providing contextual documentation access during code analysis and development. It is aimed at developers using MCP-compatible AI tools who want automated documentation lookup and reference. diff --git a/description/regomne/ilhook-rs/description_en.txt b/description/regomne/ilhook-rs/description_en.txt new file mode 100644 index 00000000..5a8a47dc --- /dev/null +++ b/description/regomne/ilhook-rs/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on rust x86. +HOOK is a mechanism that intercepts function calls and handles them by user-defined code. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hook area. diff --git a/description/rem0obb/rtti-parser/description_en.txt b/description/rem0obb/rtti-parser/description_en.txt new file mode 100644 index 00000000..d4a4e8ce --- /dev/null +++ b/description/rem0obb/rtti-parser/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iDA script to parse RTTI information in executable support for IDA 9.2. +Can't rename byte at 'xxx' because the name is already used in the program. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/repnz/apc-research/description_en.txt b/description/repnz/apc-research/description_en.txt new file mode 100644 index 00000000..106c12cc --- /dev/null +++ b/description/repnz/apc-research/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on aPC Internals Research Code. +A library with common functionality related to the supplied samples. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/repnz/ida-plugins/description_en.txt b/description/repnz/ida-plugins/description_en.txt new file mode 100644 index 00000000..b7f0bda7 --- /dev/null +++ b/description/repnz/ida-plugins/description_en.txt @@ -0,0 +1,3 @@ +This project provides register cross references. +A notable mention is Oregami, But the main difference is that Oregami tries to analyze and find where the same value is used, and display only these references. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/revan1611/UE-Interview-Cheat-Sheet/description_en.txt b/description/revan1611/UE-Interview-Cheat-Sheet/description_en.txt new file mode 100644 index 00000000..f7407d00 --- /dev/null +++ b/description/revan1611/UE-Interview-Cheat-Sheet/description_en.txt @@ -0,0 +1,3 @@ +This project provides ue interview cheat sheet. +It centers on Unreal Engine. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / guide area. diff --git a/description/reveny/Android-Emulator-Detection/description_en.txt b/description/reveny/Android-Emulator-Detection/description_en.txt new file mode 100644 index 00000000..0201be6b --- /dev/null +++ b/description/reveny/Android-Emulator-Detection/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android Anti-Emulator. +It is primarily written in Java and C++ and centers on plugin development and emulation. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:virtual environments area. diff --git a/description/reveny/Android-LD-Preload-Injector/description_en.txt b/description/reveny/Android-LD-Preload-Injector/description_en.txt new file mode 100644 index 00000000..88771cc9 --- /dev/null +++ b/description/reveny/Android-LD-Preload-Injector/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android-LD-Preload-Injector Use LD-Preload to Inject a shared library on any android version and architecture Injector is Dead, not working anymore. +Build and Installation Android Studio is required. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:android area. diff --git a/description/reveny/Android-Library-Remap-Hide/description_en.txt b/description/reveny/Android-Library-Remap-Hide/description_en.txt new file mode 100644 index 00000000..3fbea876 --- /dev/null +++ b/description/reveny/Android-Library-Remap-Hide/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on remap a library for Android. +Required is that you have 2 separate libraries. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hide area. diff --git a/description/reveny/Android-Native-Import-Hide/description_en.txt b/description/reveny/Android-Native-Import-Hide/description_en.txt new file mode 100644 index 00000000..1949bd8e --- /dev/null +++ b/description/reveny/Android-Native-Import-Hide/description_en.txt @@ -0,0 +1,3 @@ +This project is a library for hiding and retrieving imports in ELF binaries. +It is primarily written in C++ and centers on hooking and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/reveny/Android-Native-Root-Detector/description_en.txt b/description/reveny/Android-Native-Root-Detector/description_en.txt new file mode 100644 index 00000000..61c7f04a --- /dev/null +++ b/description/reveny/Android-Native-Root-Detector/description_en.txt @@ -0,0 +1,3 @@ +This project is a tool for detecting root on android. +It is primarily written in Kotlin and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:android root area. diff --git a/description/reveny/Android-Ptrace-Injector/description_en.txt b/description/reveny/Android-Ptrace-Injector/description_en.txt new file mode 100644 index 00000000..f0f12666 --- /dev/null +++ b/description/reveny/Android-Ptrace-Injector/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / injection:android and centers on android ptrace injector. +It is primarily written in C/C++ and C++ and centers on modding, memory analysis, and emulation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:android area. diff --git a/description/reveny/Android-Virtual-Inject/description_en.txt b/description/reveny/Android-Virtual-Inject/description_en.txt new file mode 100644 index 00000000..dcaf19e0 --- /dev/null +++ b/description/reveny/Android-Virtual-Inject/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on inject through Virtual Space without root permissions. +Limitations The injector is not compatible with games protected by anti-cheat mechanisms. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:android area. diff --git a/description/reveny/Zygisk-ImGui-Mod-Menu/description_en.txt b/description/reveny/Zygisk-ImGui-Mod-Menu/description_en.txt new file mode 100644 index 00000000..12759e10 --- /dev/null +++ b/description/reveny/Zygisk-ImGui-Mod-Menu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on imGui menu using Zygisk. +Warning This project is still in development and may not work as expected. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/revsic/AntiDebugging/description_en.txt b/description/revsic/AntiDebugging/description_en.txt new file mode 100644 index 00000000..40439899 --- /dev/null +++ b/description/revsic/AntiDebugging/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on anti debugging techniques written in C++. +It is primarily written in C++ and centers on debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti debugging area. diff --git a/description/revsic/cpp-veh-dbi/description_en.txt b/description/revsic/cpp-veh-dbi/description_en.txt new file mode 100644 index 00000000..590c012c --- /dev/null +++ b/description/revsic/cpp-veh-dbi/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / dynamic binary instrumentation and centers on cpp veh dbi. +It is primarily written in C++ and PowerShell. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dynamic binary instrumentation area. diff --git a/description/rexdex/recompiler/description_en.txt b/description/rexdex/recompiler/description_en.txt new file mode 100644 index 00000000..143dbfec --- /dev/null +++ b/description/rexdex/recompiler/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on porting Xbox360 executables to Windows. +I was pondering this question few years ago and that should not come as a surprise that there are some obvious technical difficulties in getting this done. +It is mainly useful for console emulator developers and Xbox researchers working in the xbox area. diff --git a/description/rhboot/pesign/description_en.txt b/description/rhboot/pesign/description_en.txt new file mode 100644 index 00000000..64142d87 --- /dev/null +++ b/description/rhboot/pesign/description_en.txt @@ -0,0 +1 @@ +This project is pesign, a Linux tool for signing and verifying UEFI Secure Boot binaries using the Authenticode signature format. It generates and embeds PKCS#7 signatures into PE executables compatible with UEFI firmware verification, supporting certificate management through NSS databases. The C tool handles signature generation, removal, and validation for EFI bootloaders and kernel images. It is aimed at Linux distribution maintainers and system engineers managing UEFI Secure Boot signing infrastructure. diff --git a/description/ri-char/pwatch/description_en.txt b/description/ri-char/pwatch/description_en.txt new file mode 100644 index 00000000..042474c2 --- /dev/null +++ b/description/ri-char/pwatch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hWBP on linux/android. +This is useful for debugging a process without having to attach a debugger to it. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/ri-char/rwMem/description_en.txt b/description/ri-char/rwMem/description_en.txt new file mode 100644 index 00000000..c2ddb955 --- /dev/null +++ b/description/ri-char/rwMem/description_en.txt @@ -0,0 +1,3 @@ +This project is the fork version of rwProcMem33. +There are many ways to do this, but most of them are not very reliable. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android memory explorer area. diff --git a/description/ri-char/zygisk-dump-dex/description_en.txt b/description/ri-char/zygisk-dump-dex/description_en.txt new file mode 100644 index 00000000..7dbe4f29 --- /dev/null +++ b/description/ri-char/zygisk-dump-dex/description_en.txt @@ -0,0 +1,3 @@ +This project is a zygisk module that hooks libdexfile.so to dump dex. +This is only test on my Android 14 and 15. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/ricencheese/csgo-bot/description_en.txt b/description/ricencheese/csgo-bot/description_en.txt new file mode 100644 index 00000000..66dc2015 --- /dev/null +++ b/description/ricencheese/csgo-bot/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:csgo and centers on csgo bot. +It is primarily written in C/C++ and C++ and centers on driver development, OpenGL, and shader work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/richor1042/IDAFuncOutline/description_en.txt b/description/richor1042/IDAFuncOutline/description_en.txt new file mode 100644 index 00000000..ba4f6bfa --- /dev/null +++ b/description/richor1042/IDAFuncOutline/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin that generates function outlines and call hierarchy visualizations. It creates tree-like displays of function call relationships, showing callers and callees with depth control, helping analysts quickly understand code structure and identify important functions. It is aimed at reverse engineers using IDA Pro who need visual function hierarchy exploration. diff --git a/description/ritz-1337/fortnite-external-evo.gj/description_en.txt b/description/ritz-1337/fortnite-external-evo.gj/description_en.txt new file mode 100644 index 00000000..a1226e77 --- /dev/null +++ b/description/ritz-1337/fortnite-external-evo.gj/description_en.txt @@ -0,0 +1 @@ +This project is an external Fortnite cheat written in C++ that operates outside the game process using memory reading through a kernel driver. It provides ESP (player positions, health, distance), aimbot with smoothing and FOV control, and item/loot ESP by reading UE4 game state from external memory. The external approach avoids injection-based anti-cheat detection. It is aimed at game security researchers studying external cheat architecture for Unreal Engine games protected by EAC. diff --git a/description/rlybasic/DWM_Hook/description_en.txt b/description/rlybasic/DWM_Hook/description_en.txt new file mode 100644 index 00000000..396ace36 --- /dev/null +++ b/description/rlybasic/DWM_Hook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dWM. +It is primarily written in C++ and C/C++ and centers on rendering, hooking, and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / overlay area. diff --git a/description/rmccrystal/kdmapper-rs/description_en.txt b/description/rmccrystal/kdmapper-rs/description_en.txt new file mode 100644 index 00000000..0482d29e --- /dev/null +++ b/description/rmccrystal/kdmapper-rs/description_en.txt @@ -0,0 +1,3 @@ +This project is a kdmapper library for Rust. +It is primarily written in C/C++ and C++ and centers on driver development, modding, and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/rmusser01/Infosec_Reference/description_en.txt b/description/rmusser01/Infosec_Reference/description_en.txt new file mode 100644 index 00000000..a3c6cb8e --- /dev/null +++ b/description/rmusser01/Infosec_Reference/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on game Hacking. +Full support by Biden and his administration as well shows that this is not some partisan issue(Those who claim so, don't be a useful idiot). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/ro0ti/CS2-Offsets/description_en.txt b/description/ro0ti/CS2-Offsets/description_en.txt new file mode 100644 index 00000000..4e75b8ab --- /dev/null +++ b/description/ro0ti/CS2-Offsets/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on offset. +It is primarily written in C# and C++ and centers on rendering, networking, and physics. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/roger1337/JDBG/description_en.txt b/description/roger1337/JDBG/description_en.txt new file mode 100644 index 00000000..683359f4 --- /dev/null +++ b/description/roger1337/JDBG/description_en.txt @@ -0,0 +1 @@ +This project is JDBG, a lightweight Java debugger that allows attaching to and inspecting running Java/JVM processes. It provides method hooking, breakpoint setting, variable inspection, and class enumeration through the JVM Debug Interface (JDWP). The tool can be used for runtime analysis of Java-based game clients and obfuscated Java applications. It is aimed at Java reverse engineers and security researchers analyzing JVM-based applications. diff --git a/description/rogerxiii/kernel-codecave-poc/description_en.txt b/description/rogerxiii/kernel-codecave-poc/description_en.txt new file mode 100644 index 00000000..55416119 --- /dev/null +++ b/description/rogerxiii/kernel-codecave-poc/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel proof of concept that hides executable code inside code caves within legitimate kernel drivers. It scans loaded drivers for unused padding regions (code caves) in their .text sections, copies shellcode into these gaps, and executes it from the context of a trusted driver module. This avoids allocating new executable kernel memory that would be detectable by anti-cheat scans. It is aimed at kernel security researchers studying code cave abuse and stealthy kernel code execution techniques. diff --git a/description/rogxo/ReadPhys/description_en.txt b/description/rogxo/ReadPhys/description_en.txt new file mode 100644 index 00000000..680f051b --- /dev/null +++ b/description/rogxo/ReadPhys/description_en.txt @@ -0,0 +1,3 @@ +This project is a method to read physical memory by manually mapping PTE without using any r/w API (like MmCopyMemory/MmMapIoSpace...) Reversed from AXE-BASE.sys. +It is primarily written in C++ and C/C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:ace area. diff --git a/description/rogxo/kernel_hack/description_en.txt b/description/rogxo/kernel_hack/description_en.txt new file mode 100644 index 00000000..6f4a8732 --- /dev/null +++ b/description/rogxo/kernel_hack/description_en.txt @@ -0,0 +1 @@ +This project is a Linux kernel module for game memory hacking on Android and Linux platforms. It provides kernel-mode memory read/write operations, process management, and verification mechanisms through a loadable kernel module with Kconfig-based build configuration. It is mainly useful for mobile game security researchers studying kernel-level memory access techniques and Linux kernel module-based game manipulation. diff --git a/description/romainthomas/the-poor-mans-obfuscator/description_en.txt b/description/romainthomas/the-poor-mans-obfuscator/description_en.txt new file mode 100644 index 00000000..589982d7 --- /dev/null +++ b/description/romainthomas/the-poor-mans-obfuscator/description_en.txt @@ -0,0 +1 @@ +This project is a lightweight LLVM-based code obfuscator that applies simple but effective transformation passes to compiled binaries through the LLVM IR pipeline. It implements instruction substitution, control flow flattening, and string encryption as LLVM optimization passes that can be integrated into standard build workflows. The C++ passes operate on LLVM IR, making them language and architecture independent. It is aimed at software protection researchers studying basic obfuscation transformations and their implementation as compiler passes. diff --git a/description/roomyoni/Nvidia-GPU-Spoof/description_en.txt b/description/roomyoni/Nvidia-GPU-Spoof/description_en.txt new file mode 100644 index 00000000..f8fd18c4 --- /dev/null +++ b/description/roomyoni/Nvidia-GPU-Spoof/description_en.txt @@ -0,0 +1 @@ +This project is a Windows tool for spoofing NVIDIA GPU hardware identifiers used for HWID (Hardware ID) banning in games. It modifies GPU serial numbers, device IDs, and other identifiers reported through NVIDIA's driver interface to evade hardware bans. The tool patches driver-level queries and registry entries that anti-cheat systems use for hardware fingerprinting. It is aimed at game security researchers studying HWID spoofing techniques and anti-cheat hardware identification methods. diff --git a/description/rooootdev/lara/description_en.txt b/description/rooootdev/lara/description_en.txt new file mode 100644 index 00000000..fe3acda2 --- /dev/null +++ b/description/rooootdev/lara/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on wIP darksword kexploit implementation; iOS 17.1.1-26.0.1 tested; includes font overwrite, app bypass, file manager, and DirtyZero2 experiments. +It is primarily written in C/C++ and Swift and centers on kernel-level work, asset pipelines, and editor tooling. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios jailbreak area. diff --git a/description/roothide/Dopamine2-roothide/description_en.txt b/description/roothide/Dopamine2-roothide/description_en.txt new file mode 100644 index 00000000..632d589f --- /dev/null +++ b/description/roothide/Dopamine2-roothide/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iOS 15 and 16. +It is primarily written in C/C++ and Objective-C and centers on kernel-level work, asset pipelines, and plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios jailbreak area. diff --git a/description/rrbranco/blackhat2012/description_en.txt b/description/rrbranco/blackhat2012/description_en.txt new file mode 100644 index 00000000..7df8d655 --- /dev/null +++ b/description/rrbranco/blackhat2012/description_en.txt @@ -0,0 +1,3 @@ +This project is the samples are divided in four categories: Anti-Debugging Anti-Disassembly Obfuscation Anti-VM. +Anti-Debugging POCs were developed in C/C++ using Visual Studio 2010 and Assembly with Flat Assembler, they are in the folder Csrc and ASMsrc, respectively. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti disassembly area. diff --git a/description/rrpvm/csgo-external-cheat/description_en.txt b/description/rrpvm/csgo-external-cheat/description_en.txt new file mode 100644 index 00000000..b73498ee --- /dev/null +++ b/description/rrpvm/csgo-external-cheat/description_en.txt @@ -0,0 +1 @@ +This project is an external CS:GO cheat written in C++ that operates by reading game memory from a separate process. It provides ESP, aimbot, radar hack, and basic visual features through external memory reading using ReadProcessMemory or a kernel driver. The cheat reads entity positions, player health, and weapon data from the game's memory without injecting code into the CS:GO process. It is aimed at game security researchers studying external cheat patterns and anti-cheat external detection methods. diff --git a/description/rtfmkiesel/loldrivers-client/description_en.txt b/description/rtfmkiesel/loldrivers-client/description_en.txt new file mode 100644 index 00000000..f0f41994 --- /dev/null +++ b/description/rtfmkiesel/loldrivers-client/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on scan loldrivers. +It is primarily written in Go and PowerShell and centers on driver development and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/rushiranpise/detection/description_en.txt b/description/rushiranpise/detection/description_en.txt new file mode 100644 index 00000000..df92a94e --- /dev/null +++ b/description/rushiranpise/detection/description_en.txt @@ -0,0 +1 @@ +This project is a collection of Android detection techniques for identifying root access, Xposed framework, Frida, VPN connections, developer options, and other security-relevant device states. The Java library implements multiple checks for each category using file system scanning, process enumeration, property queries, and native code inspection. It is aimed at Android app developers and mobile security engineers implementing runtime environment integrity checks. diff --git a/description/rushzzz-max/r6-external/description_en.txt b/description/rushzzz-max/r6-external/description_en.txt new file mode 100644 index 00000000..632f71f4 --- /dev/null +++ b/description/rushzzz-max/r6-external/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C/C++ and C++ and centers on driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:r6 area. diff --git a/description/rxi/kit/description_en.txt b/description/rxi/kit/description_en.txt new file mode 100644 index 00000000..354c0902 --- /dev/null +++ b/description/rxi/kit/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pixels. +It is primarily written in C/C++ and C and centers on asset pipelines. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/ryan-weil/ReadWriteDriver/description_en.txt b/description/ryan-weil/ReadWriteDriver/description_en.txt new file mode 100644 index 00000000..9a918402 --- /dev/null +++ b/description/ryan-weil/ReadWriteDriver/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on ntUserSetSysColors. +Please note that the function addresses are currently hardcoded for Windows 11 kernel 10.0.22000.376. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/ryanjon2040/Unreal-Binary-Builder/description_en.txt b/description/ryanjon2040/Unreal-Binary-Builder/description_en.txt new file mode 100644 index 00000000..9f8cb82c --- /dev/null +++ b/description/ryanjon2040/Unreal-Binary-Builder/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on build UE Source. +It is primarily written in C# and centers on asset pipelines, editor tooling, and plugin development. +It is mainly useful for tooling developers and reverse engineers working in the game tools area. diff --git a/description/ryanjon2040/UnrealNetworkProfiler/description_en.txt b/description/ryanjon2040/UnrealNetworkProfiler/description_en.txt new file mode 100644 index 00000000..86d27fd2 --- /dev/null +++ b/description/ryanjon2040/UnrealNetworkProfiler/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on network Profiler for UE. +It is primarily written in C# and centers on networking, asset pipelines, and Unreal Engine. +It is mainly useful for tooling developers and reverse engineers working in the game tools area. diff --git a/description/s0ngidong3/TPM-SPOOFER/description_en.txt b/description/s0ngidong3/TPM-SPOOFER/description_en.txt new file mode 100644 index 00000000..864b5ea0 --- /dev/null +++ b/description/s0ngidong3/TPM-SPOOFER/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver that spoofs TPM (Trusted Platform Module) serial numbers by hooking TPM IOCTL communication. It includes a kernel-mode driver with hook-based TPM response interception and a user-mode serial checker tool for verifying the spoofed values. It is mainly useful for game security researchers studying hardware ID spoofing techniques and anti-cheat HWID ban evasion mechanisms. diff --git a/description/s1lentq/ReGameDLL_CS/description_en.txt b/description/s1lentq/ReGameDLL_CS/description_en.txt new file mode 100644 index 00000000..a921a586 --- /dev/null +++ b/description/s1lentq/ReGameDLL_CS/description_en.txt @@ -0,0 +1 @@ +This project is ReGameDLL_CS, a reverse-engineered reimplementation of the Counter-Strike 1.6 server game DLL (mp.dll) in C++. It provides a drop-in replacement for the original game DLL with bug fixes, performance improvements, extended API hooks for server plugins, and compatibility with the original GoldSource engine. The codebase covers game rules, player mechanics, weapon systems, buy menu logic, and bot AI. It is aimed at CS 1.6 server operators, plugin developers, and researchers studying GoldSource engine game logic. diff --git a/description/s3pt3mb3r/Dainsleif/description_en.txt b/description/s3pt3mb3r/Dainsleif/description_en.txt new file mode 100644 index 00000000..f0770c63 --- /dev/null +++ b/description/s3pt3mb3r/Dainsleif/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this is an internal cheat for _Counter-Strike: Global Offensive_ I've been working on as my training of reverse engineering. +As of today, Dainsleif is a quite simple cheat, so it'll be easy to read and understand. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/s3rg0x/AIMachDec/description_en.txt b/description/s3rg0x/AIMachDec/description_en.txt new file mode 100644 index 00000000..d991a552 --- /dev/null +++ b/description/s3rg0x/AIMachDec/description_en.txt @@ -0,0 +1,3 @@ +This project is an IDA plugin for Apple AARCH64/ARM64 binaries that utilizes LLMs to translate assembly functions into readable pseudo-code in C, Objective-C, or Swift. +This plugin is specifically designed for analyzing Apple Mach-O binaries, including iOS apps, kernelcaches, and dyld_shared_cache libraries. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/s4m33r89/Imgui-Native-ModMenu/description_en.txt b/description/s4m33r89/Imgui-Native-ModMenu/description_en.txt new file mode 100644 index 00000000..53b3849f --- /dev/null +++ b/description/s4m33r89/Imgui-Native-ModMenu/description_en.txt @@ -0,0 +1 @@ +This project is an Android native mod menu template using Dear ImGui for rendering. It provides a ready-to-use C++ framework for building game modification menus on Android, with ImGui rendering through OpenGL ES, touch input handling, and JNI integration for hooking game functions. The template includes toggle switches, sliders, and input fields for cheat features. It is aimed at Android game modders building visual cheat menus with native code injection. diff --git a/description/sFIsAnExpert/CS2-External-Cheat/description_en.txt b/description/sFIsAnExpert/CS2-External-Cheat/description_en.txt new file mode 100644 index 00000000..ffb9e567 --- /dev/null +++ b/description/sFIsAnExpert/CS2-External-Cheat/description_en.txt @@ -0,0 +1 @@ +This project is an external cheat for Counter-Strike 2 with a D3D11 ImGui overlay interface. The C++ codebase includes aimbot, engine interaction, math utilities, memory reading modules, offset management, and a DirectX 11-based overlay renderer for displaying cheat UI and ESP visuals. It is mainly useful for game security researchers studying external cheat architecture, D3D11 overlay rendering, and CS2 memory reading techniques. diff --git a/description/sa413x/UEFI-Bootloader/description_en.txt b/description/sa413x/UEFI-Bootloader/description_en.txt new file mode 100644 index 00000000..fc3aca21 --- /dev/null +++ b/description/sa413x/UEFI-Bootloader/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on simple mmapper which using UEFI runtime driver. +It is primarily written in C/C++ and C and centers on driver development and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / efi driver area. diff --git a/description/sad0p/venom/description_en.txt b/description/sad0p/venom/description_en.txt new file mode 100644 index 00000000..f3761a29 --- /dev/null +++ b/description/sad0p/venom/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linux Kernel Rookit Hooking Mechanism. +It is primarily written in C/C++ and C and centers on kernel-level work, asset pipelines, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / linux kernel explorer area. diff --git a/description/sai2fast/DsArk64/description_en.txt b/description/sai2fast/DsArk64/description_en.txt new file mode 100644 index 00000000..bb3a42d7 --- /dev/null +++ b/description/sai2fast/DsArk64/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on bYOVD: DsArk64.sys (Qihoo 360) - WHQL-signed, process kill from ring 0 + kernel R/W. +Download any 360 installer from 360.cn (no account, no CAPTCHA) Spawn it suspended (CREATE_SUSPENDED) Inject shellcode via CreateRemoteThread; shellcode calls CreateFileW("\\.\DsArk") Driver checks IoGetCurrentProcess() image name, sees Qihoo cert, allows open DuplicateHandle the result back to the attacker process TerminateProcess the donor. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/sailro/EscapeFromTarkov-Trainer/description_en.txt b/description/sailro/EscapeFromTarkov-Trainer/description_en.txt new file mode 100644 index 00000000..2b7954f0 --- /dev/null +++ b/description/sailro/EscapeFromTarkov-Trainer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this project has been discontinued After 5 years of proud service, this project has been discontinued. +With the release of version 1.0 and, above all, the switch to IL2CPP technology, internal modding is going to be completely different (and much more complex). +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:eft area. diff --git a/description/sammyfreg/netImgui/description_en.txt b/description/sammyfreg/netImgui/description_en.txt new file mode 100644 index 00000000..da4a3811 --- /dev/null +++ b/description/sammyfreg/netImgui/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on 'Dear Imgui' remote access library and application. +It allows any program using Dear ImGui to receives input from a remote PC and then forwards its UI rendering to it ( textures, vertices, indices, draw commands ). +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unreal area. diff --git a/description/samshine/ScyllaHideDetector2/description_en.txt b/description/samshine/ScyllaHideDetector2/description_en.txt new file mode 100644 index 00000000..afbab456 --- /dev/null +++ b/description/samshine/ScyllaHideDetector2/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on scyllaHide Detector V2 Allows you to find the use of ScyllaHide, if your program will debug and restore bytes. +It is primarily written in C/C++ and C++ and centers on hooking and debugging. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti debugging area. diff --git a/description/samuelgr/Xidi/description_en.txt b/description/samuelgr/Xidi/description_en.txt new file mode 100644 index 00000000..4f77826a --- /dev/null +++ b/description/samuelgr/Xidi/description_en.txt @@ -0,0 +1 @@ +This project is Xidi, a Windows DLL that intercepts XInput and DirectInput API calls to provide virtual controller mapping and input translation. It acts as a compatibility layer allowing modern XInput controllers to work with legacy DirectInput games and vice versa, with configurable button mapping, deadzone adjustment, and force feedback translation. The C++ library loads as a proxy DLL. It is aimed at game players and developers solving controller compatibility issues between DirectInput and XInput APIs. diff --git a/description/sanqiuu/AndroidCheatTemplate/description_en.txt b/description/sanqiuu/AndroidCheatTemplate/description_en.txt new file mode 100644 index 00000000..6323bece --- /dev/null +++ b/description/sanqiuu/AndroidCheatTemplate/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on unity cheat framwork. +It is primarily written in C/C++ and C++ and centers on OpenGL, Unity, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/sapdragon/hint-break/description_en.txt b/description/sapdragon/hint-break/description_en.txt new file mode 100644 index 00000000..fd406993 --- /dev/null +++ b/description/sapdragon/hint-break/description_en.txt @@ -0,0 +1,3 @@ +This project is a 25-year-old architectural blind spot affecting modern reverse engineering tools. +While most of these have been assigned functions or are correctly parsed, two opcodes — 0F 1A and 0F 1B — remain ghosts in the machine. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / anti debugging area. diff --git a/description/sapdragon/syscalls-cpp/description_en.txt b/description/sapdragon/syscalls-cpp/description_en.txt new file mode 100644 index 00000000..f2f2cc2b --- /dev/null +++ b/description/sapdragon/syscalls-cpp/description_en.txt @@ -0,0 +1,3 @@ +This project is a modern C++20 header-only library for advanced direct system call invocation. +The core principle is modularity . +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/saveme712/BinCon/description_en.txt b/description/saveme712/BinCon/description_en.txt new file mode 100644 index 00000000..85d0f436 --- /dev/null +++ b/description/saveme712/BinCon/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vEH + PAGE_NOACCESS. +The example project provides an example of a simple console application hardened against memory scans, memory modifications, debuggers, and other things. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / page protection area. diff --git a/description/sbsbsbssbsbs/boundcallback/description_en.txt b/description/sbsbsbssbsbs/boundcallback/description_en.txt new file mode 100644 index 00000000..00d689ee --- /dev/null +++ b/description/sbsbsbssbsbs/boundcallback/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on keRegisterBoundCallback. +It is primarily written in C++ and centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/scottcgi/Mojoc/description_en.txt b/description/scottcgi/Mojoc/description_en.txt new file mode 100644 index 00000000..f735c8ae --- /dev/null +++ b/description/scottcgi/Mojoc/description_en.txt @@ -0,0 +1,3 @@ +This project is a cross-platform, open-source, pure C game engine for mobile game. +It is based on OpenGLES3 and written in C99. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/scrt/avdebugger/description_en.txt b/description/scrt/avdebugger/description_en.txt new file mode 100644 index 00000000..14c815eb --- /dev/null +++ b/description/scrt/avdebugger/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this project helps to automatically recover these signatures. +Here are the instructions to use this tool. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / anti signature scanning area. diff --git a/description/sean2077/big5-decode-ida/description_en.txt b/description/sean2077/big5-decode-ida/description_en.txt new file mode 100644 index 00000000..ae314b21 --- /dev/null +++ b/description/sean2077/big5-decode-ida/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iDA Plugin for decoding bytes as big5. +It is primarily written in Python and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/secrary/Hooking-via-InstrumentationCallback/description_en.txt b/description/secrary/Hooking-via-InstrumentationCallback/description_en.txt new file mode 100644 index 00000000..908edbef --- /dev/null +++ b/description/secrary/Hooking-via-InstrumentationCallback/description_en.txt @@ -0,0 +1 @@ +This project is a Windows proof of concept that intercepts syscall returns using the instrumentation callback mechanism (NtSetInformationProcess with ProcessInstrumentationCallback). When set, the callback fires on every kernel-to-user transition, allowing inspection or modification of syscall results without patching ntdll stubs. The C/C++ implementation logs intercepted calls and demonstrates how this technique can be used for monitoring or tampering. It is aimed at security researchers studying alternative hooking methods and anti-cheat or EDR evasion techniques. diff --git a/description/secrary/idenLib/description_en.txt b/description/secrary/idenLib/description_en.txt new file mode 100644 index 00000000..c21a8913 --- /dev/null +++ b/description/secrary/idenLib/description_en.txt @@ -0,0 +1 @@ +This project is idenLib, an IDA Pro plugin for identifying statically linked library functions in stripped binaries. It matches function byte patterns against a database of known library signatures (similar to FLIRT but using a different matching approach) to recover function names from Visual C++ runtime, STL, and other commonly linked libraries. The C++ plugin helps rename unknown functions in stripped PE binaries. It is aimed at reverse engineers working with stripped Windows executables. diff --git a/description/secrary/idenLibX/description_en.txt b/description/secrary/idenLibX/description_en.txt new file mode 100644 index 00000000..b76e43f8 --- /dev/null +++ b/description/secrary/idenLibX/description_en.txt @@ -0,0 +1 @@ +This project is idenLibX, an x64dbg plugin version of idenLib for identifying statically linked library functions during dynamic analysis. It scans loaded modules in the debugged process for known library function signatures and applies function names in real time within x64dbg. The C++ plugin brings library identification capabilities to the debugging workflow. It is aimed at reverse engineers who prefer x64dbg for dynamic analysis and need library function identification. diff --git a/description/secrary/makin/description_en.txt b/description/secrary/makin/description_en.txt new file mode 100644 index 00000000..736c7b23 --- /dev/null +++ b/description/secrary/makin/description_en.txt @@ -0,0 +1 @@ +This project is a Windows anti-debugging detection tool written in C that checks for over 30 debugger detection techniques. It tests for API-based checks (IsDebuggerPresent, CheckRemoteDebuggerPresent), NtQueryInformationProcess flags, PEB fields, hardware breakpoints, timing attacks, TLS callbacks, and various other anti-debug indicators. The results are displayed in a console with pass/fail status for each check. It is aimed at security researchers and malware analysts studying anti-debugging techniques and their effectiveness. diff --git a/description/secretsquirrel/SigThief/description_en.txt b/description/secretsquirrel/SigThief/description_en.txt new file mode 100644 index 00000000..b1826415 --- /dev/null +++ b/description/secretsquirrel/SigThief/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on stealing signatures from pe files. +There are some Anti-Virus vendors that give priority to certain certificate authorities without checking that the signature is actually valid, and there are those that just check to see that the certTable is populated with some value. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/securityjoes/ThreatResearch/description_en.txt b/description/securityjoes/ThreatResearch/description_en.txt new file mode 100644 index 00000000..fa1b5e87 --- /dev/null +++ b/description/securityjoes/ThreatResearch/description_en.txt @@ -0,0 +1 @@ +This project is a collection of threat research tools, scripts, and Ghidra/IDA plugins from Security Joes. It includes analysis scripts for specific malware families, Ghidra extensions for automated deobfuscation, YARA rules, and reverse engineering utilities used in incident response engagements. The Python and Java tools accompany published threat research reports. It is aimed at malware analysts and threat researchers extending their RE toolkits with specialized analysis scripts. diff --git a/description/seeinglogic/ariadne/description_en.txt b/description/seeinglogic/ariadne/description_en.txt new file mode 100644 index 00000000..8118923c --- /dev/null +++ b/description/seeinglogic/ariadne/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on graph Analysis. +It implements some common static analysis tasks including call graph analysis, and can integrate block coverage information. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/seekbytes/ptxNinja/description_en.txt b/description/seekbytes/ptxNinja/description_en.txt new file mode 100644 index 00000000..6eebff52 --- /dev/null +++ b/description/seekbytes/ptxNinja/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on binary Ninja plugin for reverse engineering PTX — CUDA GPU virtual ISA. +The plugin can be installed using Binary Ninja's plugin manager. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/seifreed/r2morph/description_en.txt b/description/seifreed/r2morph/description_en.txt new file mode 100644 index 00000000..75f05ec7 --- /dev/null +++ b/description/seifreed/r2morph/description_en.txt @@ -0,0 +1,3 @@ +This project is a metamorphic binary transformation engine based on r2pipe and radare2. +It is primarily written in Python and C and centers on modding, memory analysis, and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / radare plugins area. diff --git a/description/seksea/gamesneeze/description_en.txt b/description/seksea/gamesneeze/description_en.txt new file mode 100644 index 00000000..16db3029 --- /dev/null +++ b/description/seksea/gamesneeze/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linux. +Donations are accepted in BTC and Monero. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/seladb/PcapPlusPlus/description_en.txt b/description/seladb/PcapPlusPlus/description_en.txt new file mode 100644 index 00000000..f163b781 --- /dev/null +++ b/description/seladb/PcapPlusPlus/description_en.txt @@ -0,0 +1 @@ +This project is PcapPlusPlus, a multiplatform C++ network packet parsing and crafting library. It provides high-level APIs for capturing, parsing, and constructing packets across 100+ network protocols including Ethernet, IPv4/IPv6, TCP, UDP, HTTP, DNS, TLS, and many more. The library wraps libpcap/WinPcap/Npcap for live capture and supports PCAP/PCAPNG file reading and writing. It is aimed at network security developers, protocol researchers, and anyone building packet analysis tools or network monitoring applications. diff --git a/description/semihcevik/hwidspoofer/description_en.txt b/description/semihcevik/hwidspoofer/description_en.txt new file mode 100644 index 00000000..51d150a1 --- /dev/null +++ b/description/semihcevik/hwidspoofer/description_en.txt @@ -0,0 +1,3 @@ +This project is a Windows HWID (Hardware Identification) spoofer designed to modify hardware identifiers and clean tracking traces. +This project showcases my programming skills, problem-solving abilities, and interest in different areas of expertise. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/senator715/IDA-Fusion/description_en.txt b/description/senator715/IDA-Fusion/description_en.txt new file mode 100644 index 00000000..4caaffe7 --- /dev/null +++ b/description/senator715/IDA-Fusion/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fast Signature scanner & creator. +Most existing solutions are riddled with bugs, generate non-unique signatures, and struggle with binaries that employ anti-reverse engineering techniques, such as duplicated binary parts. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/senko37/yarascan-ida/description_en.txt b/description/senko37/yarascan-ida/description_en.txt new file mode 100644 index 00000000..f0f8eb9e --- /dev/null +++ b/description/senko37/yarascan-ida/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on scan file with Yara rules. +It is primarily written in Python and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/serge-14/encrypted_value/description_en.txt b/description/serge-14/encrypted_value/description_en.txt new file mode 100644 index 00000000..5f68b230 --- /dev/null +++ b/description/serge-14/encrypted_value/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on i simple header file only library which allows you to encrypte scalar values in you app. +It is primarily written in C++. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / encrypt variable area. diff --git a/description/sergiovillaverde/win11_apk_installer/description_en.txt b/description/sergiovillaverde/win11_apk_installer/description_en.txt new file mode 100644 index 00000000..c25dceb1 --- /dev/null +++ b/description/sergiovillaverde/win11_apk_installer/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under wsa and centers on win11 apk installer. +It is primarily written in Python and centers on driver development. +It is mainly useful for Android-on-Windows and platform integration researchers working in the wsa area. diff --git a/description/serjam/mwclap/description_en.txt b/description/serjam/mwclap/description_en.txt new file mode 100644 index 00000000..822ad648 --- /dev/null +++ b/description/serjam/mwclap/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this hack requires NVIDIA GeForce Experience's ingame overlay to be installed and enabled!\ Game must be set to fullscreen borderless. +Disclaimer This source code is for educational purposes only. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cod warzone area. diff --git a/description/sevaa/dwex/description_en.txt b/description/sevaa/dwex/description_en.txt new file mode 100644 index 00000000..7f9434c4 --- /dev/null +++ b/description/sevaa/dwex/description_en.txt @@ -0,0 +1 @@ +This project is DWEX (DWARF Explorer), a GUI tool for browsing DWARF debug information in ELF binaries and separate debug files. It displays the full DWARF tree structure including compilation units, types, functions, variables, and line number mappings in an interactive tree view. The Python application uses pyelftools for DWARF parsing. It is aimed at compiler developers, debugger authors, and reverse engineers who need to inspect DWARF debug data in compiled binaries. diff --git a/description/sezzyaep/CS2-OFFSETS/description_en.txt b/description/sezzyaep/CS2-OFFSETS/description_en.txt new file mode 100644 index 00000000..f9ce7265 --- /dev/null +++ b/description/sezzyaep/CS2-OFFSETS/description_en.txt @@ -0,0 +1 @@ +This project is a regularly updated repository of Counter-Strike 2 memory offsets and netvar dumps. It provides struct offsets, entity field addresses, and interface pointers extracted from the CS2 client and server binaries after each game update. The data is formatted as C++ headers and JSON for use in cheat and mod development. It is aimed at CS2 cheat developers and game security researchers who need current memory layout information for the Source 2 engine. diff --git a/description/shadirvan/Unity-Cheat-Sheet/description_en.txt b/description/shadirvan/Unity-Cheat-Sheet/description_en.txt new file mode 100644 index 00000000..f279bf9e --- /dev/null +++ b/description/shadirvan/Unity-Cheat-Sheet/description_en.txt @@ -0,0 +1,3 @@ +This project provides unity cheat sheet. +It centers on Unity. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / guide area. diff --git a/description/shalzuth/Il2CppRuntimeDumper/description_en.txt b/description/shalzuth/Il2CppRuntimeDumper/description_en.txt new file mode 100644 index 00000000..7e59db90 --- /dev/null +++ b/description/shalzuth/Il2CppRuntimeDumper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on il2Cpp Dump Runtime. +How does this work The method heavily relies on the il2cpp reflection system, and uses il2cpp calls to reconstruct the dll's. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/shalzuth/NativeNetSharp/description_en.txt b/description/shalzuth/NativeNetSharp/description_en.txt new file mode 100644 index 00000000..96509a85 --- /dev/null +++ b/description/shalzuth/NativeNetSharp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on injecting C# code. +It is primarily written in C#. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/shalzuth/PalWorldAntiCheat/description_en.txt b/description/shalzuth/PalWorldAntiCheat/description_en.txt new file mode 100644 index 00000000..8d834ce5 --- /dev/null +++ b/description/shalzuth/PalWorldAntiCheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on anti Cheat. +It is primarily written in C# and centers on shader work, rendering, and audio systems. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:palworld [ue5] area. diff --git a/description/shalzuth/UnrealSharp/description_en.txt b/description/shalzuth/UnrealSharp/description_en.txt new file mode 100644 index 00000000..51a5e8b9 --- /dev/null +++ b/description/shalzuth/UnrealSharp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK View. +What is this and is it shiny? +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unreal area. diff --git a/description/shareef12/cpuz/description_en.txt b/description/shareef12/cpuz/description_en.txt new file mode 100644 index 00000000..bb5f4512 --- /dev/null +++ b/description/shareef12/cpuz/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cPU-Z. +This exploit supports Windows XP - Windows 10 1607. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/shuruk421/VACKeyRetrieval/description_en.txt b/description/shuruk421/VACKeyRetrieval/description_en.txt new file mode 100644 index 00000000..19212da7 --- /dev/null +++ b/description/shuruk421/VACKeyRetrieval/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on retrieves VAC module ice encryption key. +It is primarily written in C++ and centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:vac area. diff --git a/description/si1kyyy/csgo_cheat_external/description_en.txt b/description/si1kyyy/csgo_cheat_external/description_en.txt new file mode 100644 index 00000000..f77b6ef1 --- /dev/null +++ b/description/si1kyyy/csgo_cheat_external/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C++ and C/C++ and centers on driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/sideeffects/HoudiniEngineForUnreal/description_en.txt b/description/sideeffects/HoudiniEngineForUnreal/description_en.txt new file mode 100644 index 00000000..81e4a2e7 --- /dev/null +++ b/description/sideeffects/HoudiniEngineForUnreal/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on houdini Engine Plugin for Unreal Engine. +This plug-in brings Houdini's powerful and flexible procedural workflow into Unreal Engine through Houdini Digital Assets. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unreal area. diff --git a/description/signal-slot/mcp-gdb/description_en.txt b/description/signal-slot/mcp-gdb/description_en.txt new file mode 100644 index 00000000..6978640d --- /dev/null +++ b/description/signal-slot/mcp-gdb/description_en.txt @@ -0,0 +1 @@ +This project is an MCP (Model Context Protocol) server that exposes GDB debugger functionality to AI coding assistants. It allows LLMs to set breakpoints, inspect memory, read registers, step through code, and analyze program state through GDB's machine interface via MCP protocol calls. The tool enables AI-assisted debugging workflows. It is aimed at developers and reverse engineers using AI tools for automated debugging and binary analysis through GDB. diff --git a/description/sigwl/AiDA/description_en.txt b/description/sigwl/AiDA/description_en.txt new file mode 100644 index 00000000..a6756d10 --- /dev/null +++ b/description/sigwl/AiDA/description_en.txt @@ -0,0 +1,3 @@ +This project is an AI-powered assistant for IDA 9.0+ to accelerate reverse engineering of C++ games. +These are crucial for many C++ applications on Windows. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/simply-codes/Fortnite-External-P2C/description_en.txt b/description/simply-codes/Fortnite-External-P2C/description_en.txt new file mode 100644 index 00000000..fdc308a8 --- /dev/null +++ b/description/simply-codes/Fortnite-External-P2C/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C/C++ and C++ and centers on shader work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/sina85/hide-file/description_en.txt b/description/sina85/hide-file/description_en.txt new file mode 100644 index 00000000..866bd575 --- /dev/null +++ b/description/sina85/hide-file/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hide File. +It is primarily written in C and centers on kernel-level work and driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hide area. diff --git a/description/sinai-dev/UnityExplorer/description_en.txt b/description/sinai-dev/UnityExplorer/description_en.txt new file mode 100644 index 00000000..adf1a13b --- /dev/null +++ b/description/sinai-dev/UnityExplorer/description_en.txt @@ -0,0 +1 @@ +This project is UnityExplorer, a runtime Unity game inspector and debugging tool that can be injected into any Unity game via BepInEx or MelonLoader. It provides a real-time scene hierarchy browser, GameObject and Component inspector, C# REPL console, mouse/freecam controls, and clipboard functionality for examining and modifying game state at runtime. The C# codebase uses reflection and IL2CPP unhollowing to work with both Mono and IL2CPP Unity builds. It is aimed at Unity modders, game hackers, and researchers reverse engineering Unity-based games. diff --git a/description/singhhdev/Spoofer-AMIDEWIN/description_en.txt b/description/singhhdev/Spoofer-AMIDEWIN/description_en.txt new file mode 100644 index 00000000..7a786fca --- /dev/null +++ b/description/singhhdev/Spoofer-AMIDEWIN/description_en.txt @@ -0,0 +1,3 @@ +This project is the focus is on understanding Windows internals, system identifiers, and controlled modification patterns for research and education. +It is primarily written in C/C++ and C++ and centers on modding and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/skMetinek/Non-Newtonian-New-York/description_en.txt b/description/skMetinek/Non-Newtonian-New-York/description_en.txt new file mode 100644 index 00000000..8576d0a9 --- /dev/null +++ b/description/skMetinek/Non-Newtonian-New-York/description_en.txt @@ -0,0 +1 @@ +This project is Non-Newtonian New York, a game or tech demo exploring fluid simulation and non-Newtonian physics in a city environment. It implements physics-based effects where materials change behavior under stress, combined with urban destruction and environmental interaction mechanics. It is aimed at game developers and physics simulation enthusiasts experimenting with advanced fluid and material simulation in game contexts. diff --git a/description/skadro-official/skCrypter/description_en.txt b/description/skadro-official/skCrypter/description_en.txt new file mode 100644 index 00000000..7d8630c6 --- /dev/null +++ b/description/skadro-official/skCrypter/description_en.txt @@ -0,0 +1 @@ +This project is skCrypter, a compile-time string encryption library for C++ that encrypts string literals at compilation and decrypts them at runtime. It uses constexpr functions and template metaprogramming to XOR-encode strings during compilation, preventing static analysis tools from extracting readable strings from the binary. The header-only library provides a simple macro interface for encrypting any string literal. It is aimed at cheat developers and software protection researchers who need to hide strings from signature scanners and static analysis. diff --git a/description/skelsec/minidump/description_en.txt b/description/skelsec/minidump/description_en.txt new file mode 100644 index 00000000..442b06f8 --- /dev/null +++ b/description/skelsec/minidump/description_en.txt @@ -0,0 +1 @@ +This project is a Python library for parsing Windows minidump (.dmp) files. It extracts process memory contents, thread contexts, module lists, exception records, and system information from minidump files without requiring Windows or WinDbg. The library supports both full and mini dump formats and can be used programmatically for automated analysis or credential extraction from LSASS dumps. It is aimed at incident responders, forensic analysts, and penetration testers working with Windows memory dumps in cross-platform environments. diff --git a/description/skr0x1c0/binja_kc/description_en.txt b/description/skr0x1c0/binja_kc/description_en.txt new file mode 100644 index 00000000..a9296542 --- /dev/null +++ b/description/skr0x1c0/binja_kc/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on plugin for loading MachO kernelcache and dSYM files. +This plugin can load symbols and type information from multiple dSYM files contained in the KDK to the corresponding kernelcache opened in Binary Ninja. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/skrixx68/Dota2-Overlay-2.0/description_en.txt b/description/skrixx68/Dota2-Overlay-2.0/description_en.txt new file mode 100644 index 00000000..12b7dd7e --- /dev/null +++ b/description/skrixx68/Dota2-Overlay-2.0/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:dota2 and centers on dota2 overlay 2.0. +It is primarily written in C/C++ and C++ and centers on overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:dota2 area. diff --git a/description/skylicht-lab/skylicht-engine/description_en.txt b/description/skylicht-lab/skylicht-engine/description_en.txt new file mode 100644 index 00000000..f86c4468 --- /dev/null +++ b/description/skylicht-lab/skylicht-engine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on skylicht Engine Skylicht Engine is an evolution of the Irrlicht Project. +Skylicht Engine is a super lightweight Game Engine that targets mobile platforms (Android, IOS). +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/skylot/jadx/description_en.txt b/description/skylot/jadx/description_en.txt new file mode 100644 index 00000000..f09ce98a --- /dev/null +++ b/description/skylot/jadx/description_en.txt @@ -0,0 +1 @@ +This project is JADX, a DEX to Java decompiler that converts Android APK, DEX, and AAR files into readable Java source code. It includes both a command-line tool and a Swing-based GUI with search, navigation, deobfuscation, and export capabilities. The decompiler handles complex control flow, exception handlers, inner classes, annotations, and enum reconstruction. It is aimed at Android reverse engineers, malware analysts, and mobile security researchers who need to examine Android application internals. diff --git a/description/skylot/raung/description_en.txt b/description/skylot/raung/description_en.txt new file mode 100644 index 00000000..189f46b9 --- /dev/null +++ b/description/skylot/raung/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on assembler/disassembler for java bytecode. +This project at a very early stage of development, many features not yet finished and syntax not stable. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/skywind3000/kcp/description_en.txt b/description/skywind3000/kcp/description_en.txt new file mode 100644 index 00000000..62898dd0 --- /dev/null +++ b/description/skywind3000/kcp/description_en.txt @@ -0,0 +1 @@ +This project is KCP, a fast and reliable ARQ (Automatic Repeat reQuest) protocol implementation in C that provides TCP-like reliability over UDP. It trades 10-20% more bandwidth for 30-40% lower latency compared to TCP by implementing aggressive retransmission, selective ACK, and fast recovery without the overhead of TCP's congestion control. The single-file C library is protocol-agnostic and works over any transport layer. It is aimed at game developers and network programmers building low-latency real-time multiplayer networking. diff --git a/description/slack69/csgo-dma-overlay/description_en.txt b/description/slack69/csgo-dma-overlay/description_en.txt new file mode 100644 index 00000000..16a629e2 --- /dev/null +++ b/description/slack69/csgo-dma-overlay/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dMA. +It centers on overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/smartdone/Frida-Scripts/description_en.txt b/description/smartdone/Frida-Scripts/description_en.txt new file mode 100644 index 00000000..4fd95acb --- /dev/null +++ b/description/smartdone/Frida-Scripts/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on some scripts. +It is primarily written in JavaScript and Python and centers on editor tooling and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / frida area. diff --git a/description/snare/ida-efiutils/description_en.txt b/description/snare/ida-efiutils/description_en.txt new file mode 100644 index 00000000..dfa97a35 --- /dev/null +++ b/description/snare/ida-efiutils/description_en.txt @@ -0,0 +1 @@ +This project is ida-efiutils, an IDA Pro plugin for analyzing UEFI firmware binaries. It identifies and annotates EFI protocol GUIDs, Boot Services and Runtime Services table references, protocol installations and lookups, and PEI/DXE module entry points. The Python plugin enriches UEFI binary analysis with automatic symbol annotation and type application. It is aimed at firmware security researchers reverse engineering UEFI BIOS implementations and boot-level malware. diff --git a/description/sneakyevil/ida_functioncolor/description_en.txt b/description/sneakyevil/ida_functioncolor/description_en.txt new file mode 100644 index 00000000..990bec94 --- /dev/null +++ b/description/sneakyevil/ida_functioncolor/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iDA Plugin to colorize function definition in pseudocode. +It is primarily written in Python and centers on asset pipelines and plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/sneakyevilSK/CSGO_BacktrackPatch/description_en.txt b/description/sneakyevilSK/CSGO_BacktrackPatch/description_en.txt new file mode 100644 index 00000000..8ed397f4 --- /dev/null +++ b/description/sneakyevilSK/CSGO_BacktrackPatch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on backtrack Patch. +It is primarily written in C/C++ and C and centers on hooking and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/sneakyevilSK/IL2CPP_Resolver/description_en.txt b/description/sneakyevilSK/IL2CPP_Resolver/description_en.txt new file mode 100644 index 00000000..417dca86 --- /dev/null +++ b/description/sneakyevilSK/IL2CPP_Resolver/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iL2CPP resolver. +It is primarily written in C++ and centers on Unity and IL2CPP analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/snesrev/zelda3/description_en.txt b/description/snesrev/zelda3/description_en.txt new file mode 100644 index 00000000..16bd6993 --- /dev/null +++ b/description/snesrev/zelda3/description_en.txt @@ -0,0 +1,3 @@ +This project is a reimplementation of Zelda 3. +The game is playable from start to end. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/socketio/socket.io/description_en.txt b/description/socketio/socket.io/description_en.txt new file mode 100644 index 00000000..4f2d8c4d --- /dev/null +++ b/description/socketio/socket.io/description_en.txt @@ -0,0 +1 @@ +This project is Socket.IO, a real-time bidirectional event-based communication library for Node.js and browsers. It uses WebSocket as the primary transport with automatic fallback to HTTP long-polling, providing reliable real-time messaging with features like auto-reconnection, multiplexing via namespaces, room-based broadcasting, and binary data support. The JavaScript/TypeScript library includes both server and client components. It is aimed at web developers building real-time applications such as multiplayer games, chat systems, and live dashboards. diff --git a/description/sodareverse/TDE/description_en.txt b/description/sodareverse/TDE/description_en.txt new file mode 100644 index 00000000..33fd908a --- /dev/null +++ b/description/sodareverse/TDE/description_en.txt @@ -0,0 +1,3 @@ +This project is a devirtualization engine for Themida. +Information This engine is wrote to be a plugin for IDA. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix themida area. diff --git a/description/solenum/exengine/description_en.txt b/description/solenum/exengine/description_en.txt new file mode 100644 index 00000000..0fe92043 --- /dev/null +++ b/description/solenum/exengine/description_en.txt @@ -0,0 +1 @@ +This project is exengine, a minimal 3D game engine written in C using OpenGL. It provides basic 3D rendering with lighting, model loading (IQM format), scene management, text rendering, input handling, and a simple entity system. The engine emphasizes simplicity and readability as a learning resource for understanding game engine fundamentals. It is aimed at hobbyist game developers and students learning 3D engine architecture from scratch in C. diff --git a/description/solidi/hl-mods/description_en.txt b/description/solidi/hl-mods/description_en.txt new file mode 100644 index 00000000..51e0e000 --- /dev/null +++ b/description/solidi/hl-mods/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on modification For Half-Life. +It centers on modding. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/sonodima/physpatch/description_en.txt b/description/sonodima/physpatch/description_en.txt new file mode 100644 index 00000000..b3d20c4e --- /dev/null +++ b/description/sonodima/physpatch/description_en.txt @@ -0,0 +1 @@ +This project is PhysPatch, a tool for patching Windows kernel memory through physical memory access. It translates virtual addresses to physical addresses via page table walking, then directly modifies physical memory pages to bypass software-level memory protection. This technique avoids kernel API hooks and memory access monitoring. It is aimed at kernel researchers studying physical memory manipulation and its implications for anti-cheat and security product integrity. diff --git a/description/sonyps5201314/pdb/description_en.txt b/description/sonyps5201314/pdb/description_en.txt new file mode 100644 index 00000000..355d6c9b --- /dev/null +++ b/description/sonyps5201314/pdb/description_en.txt @@ -0,0 +1 @@ +This project is a Windows PDB (Program Database) parsing and manipulation tool built with C++ and the Microsoft DIA (Debug Interface Access) SDK. It provides functionality for reading, merging, and analyzing PDB symbol files, with support for old PDB formats and custom configuration through pdb.cfg files. It is mainly useful for reverse engineers and debugger developers who need programmatic access to Windows debug symbol information. diff --git a/description/soyware/heck_csgo_external/description_en.txt b/description/soyware/heck_csgo_external/description_en.txt new file mode 100644 index 00000000..e59c0c25 --- /dev/null +++ b/description/soyware/heck_csgo_external/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C++ and C/C++ and centers on modding, SDK generation, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/spirthack/CSGOSimple/description_en.txt b/description/spirthack/CSGOSimple/description_en.txt new file mode 100644 index 00000000..b6fbcfa2 --- /dev/null +++ b/description/spirthack/CSGOSimple/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +This fork was created after MarkHC stops working on this project. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/springmusk026/Android-Mod-Menu-Kotlin/description_en.txt b/description/springmusk026/Android-Mod-Menu-Kotlin/description_en.txt new file mode 100644 index 00000000..0a7d643c --- /dev/null +++ b/description/springmusk026/Android-Mod-Menu-Kotlin/description_en.txt @@ -0,0 +1 @@ +This project is an Android game mod menu template written in Kotlin with native C++ hooking support. It provides a floating overlay menu built with Android views, native library injection for memory patching and function hooking, and JNI bridge code for communication between the Kotlin UI and native game modifications. It is aimed at Android game modders who prefer Kotlin for UI development while using C++ for low-level game manipulation. diff --git a/description/springmusk026/Android-ModMenu-SemiJni/description_en.txt b/description/springmusk026/Android-ModMenu-SemiJni/description_en.txt new file mode 100644 index 00000000..e757456f --- /dev/null +++ b/description/springmusk026/Android-ModMenu-SemiJni/description_en.txt @@ -0,0 +1 @@ +This project is an Android game mod menu template using a semi-JNI approach that combines Java overlay UI with native C++ game hooking. It provides a floating menu rendered through Android's WindowManager with toggles and sliders, while the native library handles memory patching, function hooking, and game value modification through JNI callbacks. It is aimed at Android game modders building cheat menus that combine Java UI with native code manipulation. diff --git a/description/springmusk026/ImGui-Unity-With-Layout/description_en.txt b/description/springmusk026/ImGui-Unity-With-Layout/description_en.txt new file mode 100644 index 00000000..4593a657 --- /dev/null +++ b/description/springmusk026/ImGui-Unity-With-Layout/description_en.txt @@ -0,0 +1 @@ +This project is an enhanced Android Unity mod menu template using Dear ImGui with pre-built layout configurations. It extends the basic ImGui-Unity integration with organized menu tabs, categorized cheat options, styled widgets, and save/load settings functionality. The C++ library provides a polished mod menu experience within Unity games on Android. It is aimed at Android game modders wanting a feature-complete ImGui mod menu template for Unity titles. diff --git a/description/springmusk026/Imgui-Unity/description_en.txt b/description/springmusk026/Imgui-Unity/description_en.txt new file mode 100644 index 00000000..d7822f97 --- /dev/null +++ b/description/springmusk026/Imgui-Unity/description_en.txt @@ -0,0 +1 @@ +This project is an Android mod menu template that renders a Dear ImGui interface inside Unity games. It hooks into Unity's rendering pipeline on Android to draw an ImGui overlay with cheat controls, using IL2CPP or Mono method hooking for game logic modification. The C++ native library handles OpenGL ES rendering integration. It is aimed at Android Unity game modders building ImGui-based cheat interfaces. diff --git a/description/spudgy/UnrealEngine4-SwissKnife/description_en.txt b/description/spudgy/UnrealEngine4-SwissKnife/description_en.txt new file mode 100644 index 00000000..55463a84 --- /dev/null +++ b/description/spudgy/UnrealEngine4-SwissKnife/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sDK View. +This project allows you to inspect all UObjects under GEngine World's Actors array. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unreal area. diff --git a/description/spyder1g/a-pasted-rust-script/description_en.txt b/description/spyder1g/a-pasted-rust-script/description_en.txt new file mode 100644 index 00000000..cbe9ec64 --- /dev/null +++ b/description/spyder1g/a-pasted-rust-script/description_en.txt @@ -0,0 +1 @@ +This project is a Rust game cheat with an ImGui-based loader featuring anti-debugging protections, Base64 encoding utilities, and a feature module system. The C++ codebase includes a Visual Studio solution with menu rendering, anti-debug checks, and cheat feature implementations. It is mainly useful for game security researchers studying cheat loader architecture and basic anti-debug techniques in game modification tools. diff --git a/description/ssloy/tinyraytracer/description_en.txt b/description/ssloy/tinyraytracer/description_en.txt new file mode 100644 index 00000000..1ab84a6d --- /dev/null +++ b/description/ssloy/tinyraytracer/description_en.txt @@ -0,0 +1,3 @@ +This project is a brief computer graphics / rendering course. +It is not meant to be the ultimate rendering code or even physically realistic. +It is mainly useful for graphics programmers and rendering researchers working in the renderer area. diff --git a/description/ssloy/tinyrenderer/description_en.txt b/description/ssloy/tinyrenderer/description_en.txt new file mode 100644 index 00000000..b9c274ce --- /dev/null +++ b/description/ssloy/tinyrenderer/description_en.txt @@ -0,0 +1,4 @@ +This project is a software 3D renderer written in approximately 500 lines of bare C++ with no third-party graphics libraries. +It implements the full rendering pipeline from scratch including Bresenham line drawing, triangle rasterization, barycentric coordinates, z-buffer hidden face removal, camera handling, shading, texture mapping, normal mapping, shadow mapping, and ambient occlusion. +The accompanying course lectures demonstrate how OpenGL, Vulkan, Metal, and DirectX work internally by building each stage of the pipeline step by step. +It is mainly useful for graphics programmers and game engine researchers learning software rendering fundamentals and 3D graphics pipeline internals. diff --git a/description/ssmugabi/IDAPlugins/description_en.txt b/description/ssmugabi/IDAPlugins/description_en.txt new file mode 100644 index 00000000..e20768a3 --- /dev/null +++ b/description/ssmugabi/IDAPlugins/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on integrate essential IDA Pro plugins for enhanced functionality, including deobfuscation, binary diffing, and custom cryptography support. +IDAPlugins offers a variety of useful functions, including. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/ssnob/hidden_syscall_monitoring/description_en.txt b/description/ssnob/hidden_syscall_monitoring/description_en.txt new file mode 100644 index 00000000..99e6d2c3 --- /dev/null +++ b/description/ssnob/hidden_syscall_monitoring/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on monitors hidden syscalls called from call of duty anticheat. +It is primarily written in C/C++ and C++ and centers on hooking and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/ssut/payload-dumper-go/description_en.txt b/description/ssut/payload-dumper-go/description_en.txt new file mode 100644 index 00000000..92d0e165 --- /dev/null +++ b/description/ssut/payload-dumper-go/description_en.txt @@ -0,0 +1,4 @@ +This project is a high-performance Android OTA payload dumper written in Go that extracts partition images from payload.bin files. +It features parallelized decompression for fast extraction, payload checksum verification, and support for processing original zip packages containing payload.bin directly. +The Go codebase handles OTA payload parsing, partition data decompression, and multi-threaded I/O with xz as an external dependency for optimal performance. +It is mainly useful for Android security researchers and ROM developers who need to extract and analyze partition images from Android OTA update packages. diff --git a/description/ssyuqixe/obfCoder/description_en.txt b/description/ssyuqixe/obfCoder/description_en.txt new file mode 100644 index 00000000..42de99f8 --- /dev/null +++ b/description/ssyuqixe/obfCoder/description_en.txt @@ -0,0 +1 @@ +This project is a C++ code obfuscation tool that applies various transformation techniques to source code and compiled binaries. It includes CMake-based build support, experiment examples, OpenSSL crypto library integration, and demonstration programs showing before-and-after obfuscation results. It is mainly useful for software protection researchers studying code obfuscation techniques and anti-reverse-engineering transformations. diff --git a/description/st4ckh0und/hook-buster/description_en.txt b/description/st4ckh0und/hook-buster/description_en.txt new file mode 100644 index 00000000..d1c56de6 --- /dev/null +++ b/description/st4ckh0und/hook-buster/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / detection:hook and centers on hook buster. +It is primarily written in C and Python and centers on hooking. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hook area. diff --git a/description/stackOverflower92/FightingGame-UE5/description_en.txt b/description/stackOverflower92/FightingGame-UE5/description_en.txt new file mode 100644 index 00000000..2947a81c --- /dev/null +++ b/description/stackOverflower92/FightingGame-UE5/description_en.txt @@ -0,0 +1,4 @@ +This project is an Unreal Engine 5 fighting game with a comprehensive animation system including root motion locomotion, combat idle transitions, and directional movement blending. +It includes Blueprints and UAssets for character fighters with walk, run, jump, attack, hit reaction, block, dodge, and death animation sequences organized by movement direction and combat state. +The project uses UE5's animation blueprint system with montage-based combat moves, input handling, and game mode configurations. +It is mainly useful for game developers and UE5 researchers studying fighting game animation architecture and root motion implementation in Unreal Engine 5. diff --git a/description/stars-one/ASCTool/description_en.txt b/description/stars-one/ASCTool/description_en.txt new file mode 100644 index 00000000..d9f4d7c8 --- /dev/null +++ b/description/stars-one/ASCTool/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on apk Signature Crack Tool. +It is primarily written in Kotlin. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / android area. diff --git a/description/staturnzz/oob_entry/description_en.txt b/description/staturnzz/oob_entry/description_en.txt new file mode 100644 index 00000000..6cb9820d --- /dev/null +++ b/description/staturnzz/oob_entry/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iOS 3.0-10.3.4 tfp0 kernel exploit. +It is primarily written in C/C++ and C and centers on kernel-level work and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios jailbreak area. diff --git a/description/stdhu/windows-kernel-pagehook/description_en.txt b/description/stdhu/windows-kernel-pagehook/description_en.txt new file mode 100644 index 00000000..cb1dba31 --- /dev/null +++ b/description/stdhu/windows-kernel-pagehook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pTE Hook. +Under the Windows kernel, the kernel address is shared, but since the cr3 of each process is different. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring0 area. diff --git a/description/steffalon/battleye-rust/description_en.txt b/description/steffalon/battleye-rust/description_en.txt new file mode 100644 index 00000000..25c20e09 --- /dev/null +++ b/description/steffalon/battleye-rust/description_en.txt @@ -0,0 +1 @@ +This project is a Rust library for interacting with BattlEye RCON (Remote Console) protocol. It implements packet encoding with checksum hashing, socket-based communication, and provides examples for listening to and reading/writing BattlEye remote console commands. It is mainly useful for game server administrators and security researchers studying BattlEye's remote console protocol and server management interface. diff --git a/description/sterrasec/genpatch/description_en.txt b/description/sterrasec/genpatch/description_en.txt new file mode 100644 index 00000000..59f0e371 --- /dev/null +++ b/description/sterrasec/genpatch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on python script for patching binary. +If patch script is successfully generated, a dialog similar to following appears. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/stevemk14ebr/PolyHook/description_en.txt b/description/stevemk14ebr/PolyHook/description_en.txt new file mode 100644 index 00000000..202f12e7 --- /dev/null +++ b/description/stevemk14ebr/PolyHook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on polyHook - x86/x64 Hooking Library Provides abstract C++ 11 interface for various hooking methods. +Samples: The file Tests.cpp provides examples for every type of hooking method. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hook area. diff --git a/description/stevemk14ebr/PolyHook_2_0/description_en.txt b/description/stevemk14ebr/PolyHook_2_0/description_en.txt new file mode 100644 index 00000000..b5a90bc2 --- /dev/null +++ b/description/stevemk14ebr/PolyHook_2_0/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on packaging PolyHook2 is available on vcpkg. +It is primarily written in C++ and centers on Unity and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hook area. diff --git a/description/stevemk14ebr/RETools/description_en.txt b/description/stevemk14ebr/RETools/description_en.txt new file mode 100644 index 00000000..8cd72fc5 --- /dev/null +++ b/description/stevemk14ebr/RETools/description_en.txt @@ -0,0 +1 @@ +This project is a curated collection of reverse engineering and security tools organized by category. It catalogs disassemblers, debuggers, decompilers, hex editors, network analyzers, binary analysis frameworks, sandbox tools, and malware analysis utilities with descriptions and links. The repository serves as a reference guide for building a reverse engineering toolkit. It is aimed at security researchers and reverse engineers discovering and selecting appropriate tools for binary analysis workflows. diff --git a/description/stevinz/awesome-game-engine-dev/description_en.txt b/description/stevinz/awesome-game-engine-dev/description_en.txt new file mode 100644 index 00000000..5781f061 --- /dev/null +++ b/description/stevinz/awesome-game-engine-dev/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on Awesome Game Engine Development. +Curated list of resources related to the development of game engines (tools that improve and speed up game creation). +It is mainly useful for game developers, engine programmers, and graphics researchers working on DirectX and OpenGL in the game engine / guide area. diff --git a/description/stijnherfst/HiveWE/description_en.txt b/description/stijnherfst/HiveWE/description_en.txt new file mode 100644 index 00000000..2fcd3e55 --- /dev/null +++ b/description/stijnherfst/HiveWE/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on editor. +It improves massively on the vanilla WE, especially for large maps where the regular World Editor is often too slow and clunky. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:warcraft iii area. diff --git a/description/stolevchristian/LUDA/description_en.txt b/description/stolevchristian/LUDA/description_en.txt new file mode 100644 index 00000000..5ac2c8e1 --- /dev/null +++ b/description/stolevchristian/LUDA/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on lua scripting plugin for IDA Pro. +LUDA provides direct IDA SDK access from Lua, enabling rapid prototyping and automation of reverse engineering workflows. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/storm-devs/storm-engine/description_en.txt b/description/storm-devs/storm-engine/description_en.txt new file mode 100644 index 00000000..f31edaaf --- /dev/null +++ b/description/storm-devs/storm-engine/description_en.txt @@ -0,0 +1 @@ +This project is the Storm Engine, the open-sourced game engine originally developed by Akella for the Sea Dogs/Pirates of the Caribbean series. The C++ engine includes a DirectX 9 renderer, physics system, scripting engine, resource management, scene graph, water simulation, and ship combat mechanics. The codebase represents a complete commercial game engine from the early 2000s era. It is aimed at game engine historians, hobbyist developers, and researchers studying vintage commercial game engine architecture. diff --git a/description/strazzere/android-unpacker/description_en.txt b/description/strazzere/android-unpacker/description_en.txt new file mode 100644 index 00000000..f709c754 --- /dev/null +++ b/description/strazzere/android-unpacker/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android. +The tools were created specifically to assist in malware reversing and analysis - be careful. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / sample unpacker area. diff --git a/description/strazzere/anti-emulator/description_en.txt b/description/strazzere/anti-emulator/description_en.txt new file mode 100644 index 00000000..e888f537 --- /dev/null +++ b/description/strazzere/anti-emulator/description_en.txt @@ -0,0 +1 @@ +This project is an Android emulator detection library that checks for common emulator artifacts including QEMU-specific system properties, generic hardware identifiers, operator names, build fingerprints, sensor availability, and file system signatures. The Java library provides a simple API that returns detection results for each heuristic, helping apps determine if they are running on a physical device or an emulated environment. It is aimed at Android security researchers and developers implementing emulator detection for anti-cheat, anti-fraud, or DRM purposes. diff --git a/description/stride3d/stride/description_en.txt b/description/stride3d/stride/description_en.txt new file mode 100644 index 00000000..da83e490 --- /dev/null +++ b/description/stride3d/stride/description_en.txt @@ -0,0 +1 @@ +This project is Stride (formerly Xenko), an open-source C# game engine with a full-featured editor. It provides PBR rendering, global illumination, a visual scripting system, physics (Bullet), audio, UI, animation, particle systems, and VR support. The engine uses a modern rendering pipeline with Vulkan, Direct3D 11/12, and OpenGL backends. It is aimed at game developers building 3D games and interactive applications using C# and .NET. diff --git a/description/strozfriedberg/ntfs-linker/description_en.txt b/description/strozfriedberg/ntfs-linker/description_en.txt new file mode 100644 index 00000000..f2668ac2 --- /dev/null +++ b/description/strozfriedberg/ntfs-linker/description_en.txt @@ -0,0 +1 @@ +This project is a C++ forensic tool for parsing and correlating NTFS filesystem metadata including $MFT, $UsnJrnl, and $LogFile records. It links change journal entries to MFT records to reconstruct file system activity timelines, resolving full file paths and tracking file creation, modification, rename, and deletion events. It is aimed at digital forensics analysts investigating file system activity on Windows NTFS volumes. diff --git a/description/stungeye/UE5-With-Dear-ImGui/description_en.txt b/description/stungeye/UE5-With-Dear-ImGui/description_en.txt new file mode 100644 index 00000000..9130f728 --- /dev/null +++ b/description/stungeye/UE5-With-Dear-ImGui/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on sample Unreal Engine 5.0.1 C++ Project That Incorporates Dear ImGui. +This project was built as part of this 25 minute YouTube tutorial. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unreal area. diff --git a/description/stuxnet147/IDA-Assistant/description_en.txt b/description/stuxnet147/IDA-Assistant/description_en.txt new file mode 100644 index 00000000..c286faac --- /dev/null +++ b/description/stuxnet147/IDA-Assistant/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on claude-3 models assistant. +The plugin integrates with IDA Pro and provides an interactive chat interface where users can ask questions, seek guidance, and receive intelligent suggestions to support their reverse engineering workflow. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/stuxnet147/Known-Driver-Mappers/description_en.txt b/description/stuxnet147/Known-Driver-Mappers/description_en.txt new file mode 100644 index 00000000..21d5b75b --- /dev/null +++ b/description/stuxnet147/Known-Driver-Mappers/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on known Driver Mappers. +It centers on driver development. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/stuxnet147/PiDqSerializationWrite-Example/description_en.txt b/description/stuxnet147/PiDqSerializationWrite-Example/description_en.txt new file mode 100644 index 00000000..40a4ae7e --- /dev/null +++ b/description/stuxnet147/PiDqSerializationWrite-Example/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on piDqSerializationWrite. +It is primarily written in C++ and centers on Unity. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring0 area. diff --git a/description/stuxnet147/Themida-Research/description_en.txt b/description/stuxnet147/Themida-Research/description_en.txt new file mode 100644 index 00000000..afac1e1d --- /dev/null +++ b/description/stuxnet147/Themida-Research/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on themida 3.x research. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix themida area. diff --git a/description/su-vikas/conbeerlib/description_en.txt b/description/su-vikas/conbeerlib/description_en.txt new file mode 100644 index 00000000..790409d6 --- /dev/null +++ b/description/su-vikas/conbeerlib/description_en.txt @@ -0,0 +1 @@ +This project is ConBeerLib, a library for detecting container and virtualization environments from within Linux processes. It checks for Docker, LXC, Kubernetes, WSL, and virtual machine indicators by examining cgroup hierarchies, filesystem markers, environment variables, and hardware characteristics. The C/Python library helps applications determine their execution environment. It is aimed at security researchers and application developers implementing environment detection for anti-analysis or deployment awareness. diff --git a/description/suifei/fridare/description_en.txt b/description/suifei/fridare/description_en.txt new file mode 100644 index 00000000..bd1f681b --- /dev/null +++ b/description/suifei/fridare/description_en.txt @@ -0,0 +1 @@ +This project is a Frida repackaging and anti-detection tool for iOS and Android platforms. It provides shell scripts and a Go-based hex replacement utility that patches recognizable Frida strings, symbols, and artifact names to evade common anti-instrumentation detection, along with automated installation scripts and documentation for both rooted and rootless iOS setups. It is mainly useful for mobile reverse engineers who need stealth Frida deployments that bypass anti-Frida detection mechanisms. diff --git a/description/sultim-t/xash-rt/description_en.txt b/description/sultim-t/xash-rt/description_en.txt new file mode 100644 index 00000000..fee5bc1b --- /dev/null +++ b/description/sultim-t/xash-rt/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on xash3D FWGS with a real-time path tracing. +It is primarily written in C and C/C++ and centers on OpenGL, rendering, and modding. +It is mainly useful for graphics programmers and rendering researchers working in the renderer area. diff --git a/description/sum-catnip/kptnhook/description_en.txt b/description/sum-catnip/kptnhook/description_en.txt new file mode 100644 index 00000000..98061e61 --- /dev/null +++ b/description/sum-catnip/kptnhook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on windows kernelmode driver to inject dll into each and every process and perform systemwide function hooking. +I'm using a kernel driver to ensure each and every process is accessible, from the first processes started by windows before even the login screen. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/sunnamed434/UnityVulnerableEntryPoint/description_en.txt b/description/sunnamed434/UnityVulnerableEntryPoint/description_en.txt new file mode 100644 index 00000000..47347b4d --- /dev/null +++ b/description/sunnamed434/UnityVulnerableEntryPoint/description_en.txt @@ -0,0 +1 @@ +This project demonstrates vulnerable entry points in Unity games that can be exploited for code injection and game modification. It identifies weak points in the Unity runtime initialization process, Assembly-CSharp loading, and MonoBehaviour lifecycle where attackers can inject custom code or modify game behavior. The C# examples show practical exploitation scenarios. It is aimed at Unity game developers learning about security vulnerabilities in their games and security researchers studying Unity-specific attack surfaces. diff --git a/description/supermanc88/Document/description_en.txt b/description/supermanc88/Document/description_en.txt new file mode 100644 index 00000000..7e211331 --- /dev/null +++ b/description/supermanc88/Document/description_en.txt @@ -0,0 +1,3 @@ +This project provides guide. +It is organized as documentation and reference material for the cheat / windows kernel explorer area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/susMdT/LoudSunRun/description_en.txt b/description/susMdT/LoudSunRun/description_en.txt new file mode 100644 index 00000000..13d1beac --- /dev/null +++ b/description/susMdT/LoudSunRun/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on stack Spoofing with Synthetic frames based on the work of namazso, SilentMoonWalk, and VulcanRaven. +Overview There are a few steps this program does. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/svnscha/mcp-windbg/description_en.txt b/description/svnscha/mcp-windbg/description_en.txt new file mode 100644 index 00000000..9d5c7a8f --- /dev/null +++ b/description/svnscha/mcp-windbg/description_en.txt @@ -0,0 +1 @@ +This project is an MCP (Model Context Protocol) server that integrates with CDB/WinDbg to enable AI models to analyze Windows crash dumps and connect to remote debugging sessions. The Python-based server wraps CDB sessions, provides dump triage prompts, and includes example programs demonstrating common crash scenarios such as null pointer dereferences, heap overflows, and divide-by-zero errors. It is mainly useful for reverse engineers and kernel developers seeking AI-augmented crash dump analysis and automated debugging workflows. diff --git a/description/svoboda18/magiskboot/description_en.txt b/description/svoboda18/magiskboot/description_en.txt new file mode 100644 index 00000000..81ea9714 --- /dev/null +++ b/description/svoboda18/magiskboot/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on boot Image Modification Tool. +It is primarily written in C and C/C++ and centers on modding and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/swordjoinmagic/MoBaDemo/description_en.txt b/description/swordjoinmagic/MoBaDemo/description_en.txt new file mode 100644 index 00000000..4e9aef31 --- /dev/null +++ b/description/swordjoinmagic/MoBaDemo/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on unity MoBa. +It centers on Unity. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/sxlmnwb/windows-subsystem-linux/description_en.txt b/description/sxlmnwb/windows-subsystem-linux/description_en.txt new file mode 100644 index 00000000..65741b7e --- /dev/null +++ b/description/sxlmnwb/windows-subsystem-linux/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under wsl and centers on windows subsystem linux. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for Windows subsystem and developer-environment researchers working in the wsl area. diff --git a/description/symeonp/Lenovo-CVE-2025-8061/description_en.txt b/description/symeonp/Lenovo-CVE-2025-8061/description_en.txt new file mode 100644 index 00000000..9400e984 --- /dev/null +++ b/description/symeonp/Lenovo-CVE-2025-8061/description_en.txt @@ -0,0 +1 @@ +This project is a proof-of-concept exploit for CVE-2025-8061, a vulnerability in a Lenovo kernel driver that allows local privilege escalation on Windows. It demonstrates how the vulnerable driver's IOCTL interface can be abused to gain arbitrary kernel read/write or code execution from an unprivileged user context. The C/C++ exploit automates the vulnerability trigger and privilege escalation payload. It is aimed at Windows kernel vulnerability researchers and BYOVD analysts studying Lenovo driver security issues. diff --git a/description/synacktiv/dotNIET/description_en.txt b/description/synacktiv/dotNIET/description_en.txt new file mode 100644 index 00000000..12b9b6d2 --- /dev/null +++ b/description/synacktiv/dotNIET/description_en.txt @@ -0,0 +1 @@ +This project is dotNIET, an IDA Pro plugin for deobfuscating .NET Native (NativeAOT) compiled binaries. It reconstructs type information, method names, and metadata references that are lost during .NET Native AOT compilation, mapping native code back to original .NET types and methods. The Python plugin helps analyze .NET applications that have been compiled to native code. It is aimed at reverse engineers analyzing .NET Native binaries where standard .NET decompilation tools cannot be used. diff --git a/description/synacktiv/windows_kernel_shadow_stack/description_en.txt b/description/synacktiv/windows_kernel_shadow_stack/description_en.txt new file mode 100644 index 00000000..fd79826e --- /dev/null +++ b/description/synacktiv/windows_kernel_shadow_stack/description_en.txt @@ -0,0 +1 @@ +This project is research on Windows kernel shadow stack (CET - Control-flow Enforcement Technology) implementation and security implications. It documents how Windows implements kernel-mode shadow stacks using Intel CET, the interaction with PatchGuard, and potential bypass or weakening scenarios. The analysis covers KVAS shadow stack initialization, exception handling, and compatibility with existing kernel exploitation techniques. It is aimed at kernel security researchers studying CET's impact on kernel exploitation and Windows kernel hardening. diff --git a/description/synctop/tpm-mmio/description_en.txt b/description/synctop/tpm-mmio/description_en.txt new file mode 100644 index 00000000..ff6bca7b --- /dev/null +++ b/description/synctop/tpm-mmio/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on using MMIO (Memory-Mapped I/O) to read TPM 2.0 public Endorsement Key. +This proof of concept (POC) demonstrates how Memory-Mapped I/O (MMIO) can be used to directly query the TPM state and the EK from the chip itself, bypassing any OS hooks. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:hwid area. diff --git a/description/syoyo/tinygltf/description_en.txt b/description/syoyo/tinygltf/description_en.txt new file mode 100644 index 00000000..da2dc9f7 --- /dev/null +++ b/description/syoyo/tinygltf/description_en.txt @@ -0,0 +1 @@ +This project is TinyGLTF, a header-only C++ library for loading and saving glTF 2.0 3D model files. It parses both glTF JSON and GLB binary formats, handling meshes, materials, textures, animations, skins, cameras, and extensions without external dependencies beyond stb_image for texture loading. The library supports reading from files, memory buffers, and custom I/O callbacks. It is aimed at game developers and 3D application programmers who need a lightweight, portable glTF loader. diff --git a/description/t3ssellate/unmapper/description_en.txt b/description/t3ssellate/unmapper/description_en.txt new file mode 100644 index 00000000..73d1a6cf --- /dev/null +++ b/description/t3ssellate/unmapper/description_en.txt @@ -0,0 +1,3 @@ +This project is an automatic tool for fixing dumped PE files for decompilation. +It modifies the PE's headers such that a decompiler, or other static analysis tools, will be able to load the file correctly and without errors. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / dump fix area. diff --git a/description/taida957789/ida-mcp-server-plugin/description_en.txt b/description/taida957789/ida-mcp-server-plugin/description_en.txt new file mode 100644 index 00000000..f556537d --- /dev/null +++ b/description/taida957789/ida-mcp-server-plugin/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin that implements a Model Context Protocol (MCP) server, exposing IDA's analysis capabilities to AI assistants and external tools. It allows MCP clients to query disassembly, decompilation, cross-references, function information, and type data from IDA databases remotely. The Python plugin bridges IDA Pro with AI-powered reverse engineering workflows. It is aimed at reverse engineers integrating IDA Pro with LLM-based analysis tools through the MCP protocol. diff --git a/description/tamirzb/CVE-2021-1961/description_en.txt b/description/tamirzb/CVE-2021-1961/description_en.txt new file mode 100644 index 00000000..ce829312 --- /dev/null +++ b/description/tamirzb/CVE-2021-1961/description_en.txt @@ -0,0 +1 @@ +Exploit for CVE-2021-1961, a Qualcomm QSEECOM (TrustZone) kernel driver vulnerability that achieves arbitrary kernel read/write on Android by abusing the Widevine DRM trusted application's ION buffer handling, demonstrated on Pixel 3 (blueline) to modify /proc/version and disable SELinux enforcement. diff --git a/description/tandasat/HelloIommuPkg/description_en.txt b/description/tandasat/HelloIommuPkg/description_en.txt new file mode 100644 index 00000000..bbe8a548 --- /dev/null +++ b/description/tandasat/HelloIommuPkg/description_en.txt @@ -0,0 +1,3 @@ +This project is the sample DXE runtime driver demonstrating how to program DMA remapping. +This project is meant to show a simplified yet functioning code example for learning purposes and not designed for actual use in production systems. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:dma area. diff --git a/description/tandasat/MiniVisorPkg/description_en.txt b/description/tandasat/MiniVisorPkg/description_en.txt new file mode 100644 index 00000000..41b2c3f0 --- /dev/null +++ b/description/tandasat/MiniVisorPkg/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this is a research hypervisor written as a UEFI and Windows driver for the educational purpose for Intel processors. +This MiniVisor, as a UEFI driver, provides the ability to inspect system activities even before the operating system boots, while as a Windows driver, allows developers to debug it with familiar tools like WinDbg. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / efi driver area. diff --git a/description/tandasat/Sushi/description_en.txt b/description/tandasat/Sushi/description_en.txt new file mode 100644 index 00000000..22f6f8c7 --- /dev/null +++ b/description/tandasat/Sushi/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on monitoring PG. +A related blog entry can be found here. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / patchguard-related area. diff --git a/description/tangsilian/android-vuln/description_en.txt b/description/tangsilian/android-vuln/description_en.txt new file mode 100644 index 00000000..1d01583a --- /dev/null +++ b/description/tangsilian/android-vuln/description_en.txt @@ -0,0 +1,3 @@ +This project provides list. +It is organized as documentation and reference material for the cheat / android kernel cve area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel cve area. diff --git a/description/tasox/miniDumpReader/description_en.txt b/description/tasox/miniDumpReader/description_en.txt new file mode 100644 index 00000000..c447186a --- /dev/null +++ b/description/tasox/miniDumpReader/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on minidump. +It is primarily written in Python and centers on memory analysis. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / winows kernel dump analysis area. diff --git a/description/techiew/EldenRingMods/description_en.txt b/description/techiew/EldenRingMods/description_en.txt new file mode 100644 index 00000000..d54eef26 --- /dev/null +++ b/description/techiew/EldenRingMods/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mod. +It is primarily written in C++ and C/C++ and centers on animation and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:eldenring area. diff --git a/description/teemu-l/execution-trace-viewer/description_en.txt b/description/teemu-l/execution-trace-viewer/description_en.txt new file mode 100644 index 00000000..6e9246f6 --- /dev/null +++ b/description/teemu-l/execution-trace-viewer/description_en.txt @@ -0,0 +1,3 @@ +This project is an application for viewing, editing and analyzing execution traces. +It was originally made for reverse engineering obfuscated code, but it can be used to analyze any kind of execution trace. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/tenclass/mvisor/description_en.txt b/description/tenclass/mvisor/description_en.txt new file mode 100644 index 00000000..01c80af2 --- /dev/null +++ b/description/tenclass/mvisor/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on c++ remake. +It is primarily written in C/C++ and C++ and centers on kernel-level work, rendering, and audio systems. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/termux/termux-app/description_en.txt b/description/termux/termux-app/description_en.txt new file mode 100644 index 00000000..603a942a --- /dev/null +++ b/description/termux/termux-app/description_en.txt @@ -0,0 +1 @@ +This project is Termux, an Android terminal emulator and Linux environment app that provides a full Linux command-line experience without rooting. It includes its own package manager (pkg/apt) with thousands of packages including compilers, interpreters, editors, networking tools, and development frameworks. The Java/C application uses a custom Linux sysroot with proot for file system isolation and supports SSH, Python, Node.js, Rust, and other development environments. It is aimed at developers, security researchers, and power users wanting a Linux-like environment on Android devices. diff --git a/description/tgillam/HumanMouseMovement/description_en.txt b/description/tgillam/HumanMouseMovement/description_en.txt new file mode 100644 index 00000000..a9eb7c5b --- /dev/null +++ b/description/tgillam/HumanMouseMovement/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / triggerbot & aimbot and centers on human mouse movement. +It is primarily written in C and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/thalium/ida_kmdf/description_en.txt b/description/thalium/ida_kmdf/description_en.txt new file mode 100644 index 00000000..b1c3e1c5 --- /dev/null +++ b/description/thalium/ida_kmdf/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin for analyzing Windows Kernel-Mode Driver Framework (KMDF) drivers. It identifies and annotates KMDF framework structures, callback registrations, I/O queue configurations, and device initialization patterns in driver binaries. The Python plugin applies KMDF type definitions and names framework function calls, simplifying driver reverse engineering. It is aimed at reverse engineers analyzing KMDF-based Windows kernel drivers. diff --git a/description/thalium/rumba/description_en.txt b/description/thalium/rumba/description_en.txt new file mode 100644 index 00000000..f2897263 --- /dev/null +++ b/description/thalium/rumba/description_en.txt @@ -0,0 +1 @@ +This project is Rumba, a Python framework for automated analysis of VMProtect-protected binaries. It uses symbolic execution and trace analysis to reconstruct the original control flow and instruction semantics from VMProtect's virtualized code handlers. The tool processes execution traces to identify virtual opcode handlers, extract their semantics, and recover the original program logic. It is aimed at reverse engineers and malware analysts deobfuscating VMProtect-protected binaries. diff --git a/description/thalium/symless/description_en.txt b/description/thalium/symless/description_en.txt new file mode 100644 index 00000000..f98c5596 --- /dev/null +++ b/description/thalium/symless/description_en.txt @@ -0,0 +1 @@ +This project is Symless, an IDA Pro plugin for automated structure and type recovery from stripped binaries. It uses data flow analysis and memory access patterns to reconstruct struct definitions, identify field types and sizes, and propagate type information across functions without requiring debug symbols. The Python plugin improves IDA's decompilation output for stripped binaries. It is aimed at reverse engineers working with stripped C/C++ binaries who need automated type reconstruction. diff --git a/description/the-dise/EasyPixel/description_en.txt b/description/the-dise/EasyPixel/description_en.txt new file mode 100644 index 00000000..8421dd50 --- /dev/null +++ b/description/the-dise/EasyPixel/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on magisk module that disguises a device under Google Pixel. +It centers on modding and Unity. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/thefLink/DeepSleep/description_en.txt b/description/thefLink/DeepSleep/description_en.txt new file mode 100644 index 00000000..d32184a7 --- /dev/null +++ b/description/thefLink/DeepSleep/description_en.txt @@ -0,0 +1,3 @@ +This project is a variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC. +Huge thanks to @waldoirc for documenting large parts of this technique on his blog This implementation is different in that it does not make use of any APCs and is fully implemented as PIC. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / page protection area. diff --git a/description/theo-abel/awesome-anti-virtualization/description_en.txt b/description/theo-abel/awesome-anti-virtualization/description_en.txt new file mode 100644 index 00000000..4550d5c4 --- /dev/null +++ b/description/theo-abel/awesome-anti-virtualization/description_en.txt @@ -0,0 +1,3 @@ +This project provides a curated list of awesome resources related to anti virtualization techniques. +Anti-virtualization techniques are used to detect and evade virtualized environments. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:virtual environments area. diff --git a/description/therealdreg/anticuckoo/description_en.txt b/description/therealdreg/anticuckoo/description_en.txt new file mode 100644 index 00000000..a3e261d4 --- /dev/null +++ b/description/therealdreg/anticuckoo/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cuckoo. +Crash POCs is only a demostration. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:virtual environments area. diff --git a/description/thesecretclub/CVEAC-2020/description_en.txt b/description/thesecretclub/CVEAC-2020/description_en.txt new file mode 100644 index 00000000..cc989f9c --- /dev/null +++ b/description/thesecretclub/CVEAC-2020/description_en.txt @@ -0,0 +1 @@ +This project is a proof-of-concept Windows kernel driver exploiting a vulnerability in EasyAntiCheat's kernel module. The C++ WDK driver includes EAC-specific analysis code, kernel module enumeration, PE parsing, hook installation, and NMD assembly integration for runtime code manipulation. It is mainly useful for anti-cheat security researchers studying EasyAntiCheat kernel driver vulnerabilities and anti-cheat bypass techniques. diff --git a/description/thesecretclub/callout-poc/description_en.txt b/description/thesecretclub/callout-poc/description_en.txt new file mode 100644 index 00000000..86f579c4 --- /dev/null +++ b/description/thesecretclub/callout-poc/description_en.txt @@ -0,0 +1,3 @@ +This project is the project is licensed under the MIT license. +It is primarily written in C/C++ and C and centers on kernel-level work and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/thesecretclub/window_hijack/description_en.txt b/description/thesecretclub/window_hijack/description_en.txt new file mode 100644 index 00000000..5aeea5aa --- /dev/null +++ b/description/thesecretclub/window_hijack/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver that performs window handle hijacking for covert kernel-to-user communication. It includes dispatch control handlers, data getter modules for reading process information, and NT/driver definition headers for interacting with the Windows windowing subsystem from kernel mode. It is mainly useful for kernel security researchers studying window object manipulation and covert communication channels between kernel drivers and user-mode applications. diff --git a/description/thetuh/anticheat-poc/description_en.txt b/description/thetuh/anticheat-poc/description_en.txt new file mode 100644 index 00000000..d0fb25e5 --- /dev/null +++ b/description/thetuh/anticheat-poc/description_en.txt @@ -0,0 +1 @@ +This project is a proof-of-concept anti-cheat system for Windows that demonstrates common detection techniques used by game protection software. It implements checks for debugger presence, code integrity verification, memory scanning for known cheat signatures, and process enumeration for suspicious tools. The C/C++ codebase serves as a reference implementation showing how anti-cheat engines detect and respond to tampering. It is aimed at game security researchers studying anti-cheat architecture and detection methodology. diff --git a/description/thewhiteninja/ntfstool/description_en.txt b/description/thewhiteninja/ntfstool/description_en.txt new file mode 100644 index 00000000..07e63223 --- /dev/null +++ b/description/thewhiteninja/ntfstool/description_en.txt @@ -0,0 +1,3 @@ +This project is a forensic tool focused on [NTFS][10] volumes. +It supports reading partition info (MBR, partition table, VBR) but also information on Master File Table, Bitlocker encrypted volume, EFS encrypted files, USN journal and more. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / information system & forensics area. diff --git a/description/thomaseichhorn/cs16-client/description_en.txt b/description/thomaseichhorn/cs16-client/description_en.txt new file mode 100644 index 00000000..035b14d4 --- /dev/null +++ b/description/thomaseichhorn/cs16-client/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on rewrote CS1.6. +If you are experiencing bug on Android, attach an ADB log. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/threatlabz/pikabot-deobfuscator/description_en.txt b/description/threatlabz/pikabot-deobfuscator/description_en.txt new file mode 100644 index 00000000..bc3bca97 --- /dev/null +++ b/description/threatlabz/pikabot-deobfuscator/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on deobfuscating Pikabot's strings using RC4 and AES. +After a Pikabot sample is loaded, the user can decompile a function and right-click in the decompiled output and either choose to decrypt strings in the current function or in all of them. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/tiann/DirtyPipeRoot/description_en.txt b/description/tiann/DirtyPipeRoot/description_en.txt new file mode 100644 index 00000000..8a72ec82 --- /dev/null +++ b/description/tiann/DirtyPipeRoot/description_en.txt @@ -0,0 +1 @@ +Android application that exploits the Dirty Pipe vulnerability (CVE-2022-0847) to achieve one-click temporary root on Pixel 6 devices running vulnerable kernel versions, packaging both a vulnerability checker and a native C exploit into a user-friendly app that overwrites read-only files through Linux pipe page cache corruption. diff --git a/description/tiann/KernelSU/description_en.txt b/description/tiann/KernelSU/description_en.txt new file mode 100644 index 00000000..780bf564 --- /dev/null +++ b/description/tiann/KernelSU/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / android root and centers on kernel su. +It is primarily written in Kotlin and Rust and centers on kernel-level work, networking, and asset pipelines. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android root area. diff --git a/description/ticarpi/jwt_tool/description_en.txt b/description/ticarpi/jwt_tool/description_en.txt new file mode 100644 index 00000000..e0897ad6 --- /dev/null +++ b/description/ticarpi/jwt_tool/description_en.txt @@ -0,0 +1 @@ +This project is jwt_tool, a Python toolkit for testing, tampering, and cracking JSON Web Tokens (JWT). It supports decoding tokens, modifying claims and headers, testing for common vulnerabilities including algorithm confusion (none/HS256/RS256), key confusion attacks, JKU/X5U injection, and brute-forcing weak signing keys. The tool includes automated scanning modes for API security testing. It is aimed at penetration testers and web security researchers auditing JWT-based authentication implementations. diff --git a/description/timetravelthree/IDARustDemangler/description_en.txt b/description/timetravelthree/IDARustDemangler/description_en.txt new file mode 100644 index 00000000..ab8170ee --- /dev/null +++ b/description/timetravelthree/IDARustDemangler/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on rust Demangler & Normalizer. +The demangling algorithm used in this script is based on rs-dml binary so make sure you have it already installed. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/timhsutw/elfuck/description_en.txt b/description/timhsutw/elfuck/description_en.txt new file mode 100644 index 00000000..b3e9a47d --- /dev/null +++ b/description/timhsutw/elfuck/description_en.txt @@ -0,0 +1 @@ +This project is an ELF binary packer and protector for Linux that implements executable compression, encryption, and anti-debugging techniques. The C codebase includes NRV2E decompression, password-based locking, and runtime ELF loading with self-modifying code. It is mainly useful for binary protection researchers studying ELF packing techniques and Linux executable obfuscation. diff --git a/description/tingwei1111/MapleStory-YOLOv8-Training/description_en.txt b/description/tingwei1111/MapleStory-YOLOv8-Training/description_en.txt new file mode 100644 index 00000000..81fb42dd --- /dev/null +++ b/description/tingwei1111/MapleStory-YOLOv8-Training/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on yOLOv8 training project for MapleStory object detection using Apple MPS acceleration. +It is primarily written in Python and centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:maplestory area. diff --git a/description/tingwei1111/maplestory-worlds-automation/description_en.txt b/description/tingwei1111/maplestory-worlds-automation/description_en.txt new file mode 100644 index 00000000..07b8c0c3 --- /dev/null +++ b/description/tingwei1111/maplestory-worlds-automation/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on yOLO for MapleStory Worlds (Artale. +It is primarily written in Python. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:maplestory area. diff --git a/description/tinyobjloader/tinyobjloader/description_en.txt b/description/tinyobjloader/tinyobjloader/description_en.txt new file mode 100644 index 00000000..b58f3c05 --- /dev/null +++ b/description/tinyobjloader/tinyobjloader/description_en.txt @@ -0,0 +1 @@ +This project is tinyobjloader, a lightweight single-header C++ library for parsing Wavefront OBJ 3D model files. It loads vertex positions, normals, texture coordinates, materials (MTL files), and face indices with support for triangulation, smoothing groups, and per-face materials. The header-only implementation has no external dependencies and handles large models efficiently. It is aimed at game developers and graphics programmers who need a simple, portable OBJ file loader for 3D rendering applications. diff --git a/description/tmr232/Sark/description_en.txt b/description/tmr232/Sark/description_en.txt new file mode 100644 index 00000000..760cabcc --- /dev/null +++ b/description/tmr232/Sark/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iDAPython Made Easy. +Python2 and older IDA is still supported for bugfixes & community contributions and is maintained on the IDA-6.x branch _. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/tomlooman/ActionRoguelike/description_en.txt b/description/tomlooman/ActionRoguelike/description_en.txt new file mode 100644 index 00000000..3caf9c31 --- /dev/null +++ b/description/tomlooman/ActionRoguelike/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on uE Roguelike Game. +This may affect stability and is not always supporting multiplayer yet until the systems stabilize over time. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/tomlooman/EpicSurvivalGame/description_en.txt b/description/tomlooman/EpicSurvivalGame/description_en.txt new file mode 100644 index 00000000..eaa8a1db --- /dev/null +++ b/description/tomlooman/EpicSurvivalGame/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on uE4 FPS Game. +The C++ Course features include building of a C++ game framework including an "action system" and event-driven code for flexible and re-usable game code the "unreal way". +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/tomlooman/SimpleFPSTemplate/description_en.txt b/description/tomlooman/SimpleFPSTemplate/description_en.txt new file mode 100644 index 00000000..047a2b2d --- /dev/null +++ b/description/tomlooman/SimpleFPSTemplate/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on uE4 FPS Demo. +This code "bloats" the template to look a lot more complex than neccessary if you are simply looking to start with C++ in Unreal Engine. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/tomlooman/ue4-tutorials/description_en.txt b/description/tomlooman/ue4-tutorials/description_en.txt new file mode 100644 index 00000000..0b99fe47 --- /dev/null +++ b/description/tomlooman/ue4-tutorials/description_en.txt @@ -0,0 +1,3 @@ +This project provides ue4 tutorials. +It is primarily written in C++ and C/C++ and centers on audio systems, physics, and animation. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / guide area. diff --git a/description/tomrus88/OpenLumina/description_en.txt b/description/tomrus88/OpenLumina/description_en.txt new file mode 100644 index 00000000..c562c77a --- /dev/null +++ b/description/tomrus88/OpenLumina/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on allows connecting to third party Lumina servers. +Build or download precompiled version of the plugin and put it into your IDA\plugins directory Copy your hexrays .crt certificate file(s) provided by Lumina server owner to your IDA install directory. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/tomvita/SE-tools/description_en.txt b/description/tomvita/SE-tools/description_en.txt new file mode 100644 index 00000000..48ea0bfa --- /dev/null +++ b/description/tomvita/SE-tools/description_en.txt @@ -0,0 +1 @@ +This project is SE-tools, a collection of Nintendo Switch homebrew tools for game memory editing and cheat development. It includes a memory scanner, pointer searcher, cheat code manager, and real-time memory viewer that operate on the Switch through the Atmosphere CFW's dmnt:cht service. The tools support creating and applying cheat codes in the standard Atmosphere cheat format. It is aimed at Switch homebrew developers and game modders creating memory-based cheats for Nintendo Switch titles. diff --git a/description/topfreegames/pitaya/description_en.txt b/description/topfreegames/pitaya/description_en.txt new file mode 100644 index 00000000..2c0b21b3 --- /dev/null +++ b/description/topfreegames/pitaya/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on server framework. +It provides a basic development framework for distributed multiplayer games and server-side applications. +It is mainly useful for backend, multiplayer, and online game developers working in the game network / source area. diff --git a/description/topjohnwu/Magisk/description_en.txt b/description/topjohnwu/Magisk/description_en.txt new file mode 100644 index 00000000..de6d60c4 --- /dev/null +++ b/description/topjohnwu/Magisk/description_en.txt @@ -0,0 +1 @@ +This project is Magisk, the most widely used Android root solution and systemless modification framework. It provides root access management through a su daemon, module-based system modifications without altering the system partition, MagiskHide for root detection bypass, and a comprehensive Android app for managing modules and superuser permissions. It is mainly useful for Android security researchers, anti-cheat engineers, and mobile developers studying root frameworks, systemless modifications, and root detection evasion techniques. diff --git a/description/tr1xxx/battleye-region-walking/description_en.txt b/description/tr1xxx/battleye-region-walking/description_en.txt new file mode 100644 index 00000000..6c688078 --- /dev/null +++ b/description/tr1xxx/battleye-region-walking/description_en.txt @@ -0,0 +1,4 @@ +This project demonstrates BattlEye's memory region walking technique used to detect injected code in a process's virtual address space. +It implements VirtualQuery-based region enumeration with BattlEye's filtering logic that identifies suspicious executable memory regions based on protection flags, region sizes, memory types, and address patterns. +The C++ codebase classifies regions as valid or invalid based on MEM_PRIVATE/MEM_MAPPED type checks and specific size and address heuristics that BattlEye uses to flag shellcode and manual-mapped modules. +It is mainly useful for anti-cheat researchers and reverse engineers studying BattlEye's memory scanning detection methodology. diff --git a/description/traccar/traccar-geocoder/description_en.txt b/description/traccar/traccar-geocoder/description_en.txt new file mode 100644 index 00000000..c45770e3 --- /dev/null +++ b/description/traccar/traccar-geocoder/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on self-hosted reverse geocoding from OpenStreetMap; Traccar stack; Rust server + C++ PBF indexer, Docker. +It is primarily written in Rust and C++ and centers on memory analysis. +It is mainly useful for backend, multiplayer, and online game developers working in the game network / location / geocoding area. diff --git a/description/trailofbits/CoBRA/description_en.txt b/description/trailofbits/CoBRA/description_en.txt new file mode 100644 index 00000000..546696f6 --- /dev/null +++ b/description/trailofbits/CoBRA/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on coefficient-Based Reconstruction of Arithmetic — a Mixed Boolean-Arithmetic (MBA) expression simplifier for deobfuscation. +It is primarily written in C++ and C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / mixed boolean-arithmetic area. diff --git a/description/trailofbits/HVCI-loldrivers-check/description_en.txt b/description/trailofbits/HVCI-loldrivers-check/description_en.txt new file mode 100644 index 00000000..bf7bb1df --- /dev/null +++ b/description/trailofbits/HVCI-loldrivers-check/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hVCI loldrivers check. +It is primarily written in PowerShell and centers on driver development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/travisfoley/dfirtriage/description_en.txt b/description/travisfoley/dfirtriage/description_en.txt new file mode 100644 index 00000000..9f2bf33d --- /dev/null +++ b/description/travisfoley/dfirtriage/description_en.txt @@ -0,0 +1 @@ +This project is a Python-based digital forensics and incident response (DFIR) triage tool for Windows systems. It automates the collection of volatile and non-volatile forensic artifacts including running processes, network connections, scheduled tasks, registry hives, event logs, prefetch files, and browser history into a structured output directory. It is aimed at incident responders performing rapid initial triage and evidence preservation on Windows endpoints. diff --git a/description/trumank/jmap/description_en.txt b/description/trumank/jmap/description_en.txt new file mode 100644 index 00000000..b7c01051 --- /dev/null +++ b/description/trumank/jmap/description_en.txt @@ -0,0 +1 @@ +This project is jmap, a tool for mapping and visualizing Unreal Engine asset dependencies and relationships. It parses UE4/UE5 .uasset and .umap files to build dependency graphs showing how assets reference each other, helping identify loading chains, circular dependencies, and asset structure. It is aimed at Unreal Engine modders and game analysts mapping out game content structure and asset relationships. diff --git a/description/trumank/patternsleuth/description_en.txt b/description/trumank/patternsleuth/description_en.txt new file mode 100644 index 00000000..fe8002ca --- /dev/null +++ b/description/trumank/patternsleuth/description_en.txt @@ -0,0 +1 @@ +This project is PatternSleuth, a Rust library for high-performance pattern scanning (signature scanning) in binary files and process memory. It provides fast multi-pattern matching with wildcard support, optimized SIMD implementations, and batch scanning capabilities for searching large memory regions. The library supports both file-based and live process memory scanning. It is aimed at game hackers, reverse engineers, and anti-cheat developers who need efficient binary pattern matching for offset discovery or signature detection. diff --git a/description/trustdecision/trustdevice-android/description_en.txt b/description/trustdecision/trustdevice-android/description_en.txt new file mode 100644 index 00000000..32123a88 --- /dev/null +++ b/description/trustdecision/trustdevice-android/description_en.txt @@ -0,0 +1 @@ +This project is a TrustDecision device fingerprinting SDK for Android that generates unique device identifiers and risk signals for fraud detection. The Kotlin and Java-based library includes instrumented tests, privacy policy documentation, and ProGuard configuration for production deployment. It is mainly useful for anti-cheat engineers and mobile security researchers studying Android device fingerprinting and device integrity verification techniques. diff --git a/description/trustdecision/trustdevice-ios/description_en.txt b/description/trustdecision/trustdevice-ios/description_en.txt new file mode 100644 index 00000000..968e7697 --- /dev/null +++ b/description/trustdecision/trustdevice-ios/description_en.txt @@ -0,0 +1 @@ +This project is a TrustDecision device fingerprinting SDK for iOS, distributed as a CocoaPod. It collects device-specific attributes for fraud detection and device integrity assessment, providing unique device identifiers and risk signals through a native Objective-C/Swift interface. It is mainly useful for anti-cheat engineers and mobile security researchers studying iOS device fingerprinting and device integrity verification techniques. diff --git a/description/tsoding/olive.c/description_en.txt b/description/tsoding/olive.c/description_en.txt new file mode 100644 index 00000000..77f40b6a --- /dev/null +++ b/description/tsoding/olive.c/description_en.txt @@ -0,0 +1 @@ +This project is Olive.c, a simple 2D graphics library written in C with no dependencies. It implements software rasterization including line drawing, triangle filling, circle rendering, text display, and basic image compositing using only C standard library functions. The single-header library renders to raw pixel buffers that can be displayed through any windowing system. It is aimed at beginner programmers and hobbyist developers learning computer graphics fundamentals through minimal C implementations. diff --git a/description/tteck/Proxmox/description_en.txt b/description/tteck/Proxmox/description_en.txt new file mode 100644 index 00000000..d5f20113 --- /dev/null +++ b/description/tteck/Proxmox/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pVE Helper Scripts. +Options are displayed to users in a dialog box format. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/turanszkij/WickedEngine/description_en.txt b/description/turanszkij/WickedEngine/description_en.txt new file mode 100644 index 00000000..3afba176 --- /dev/null +++ b/description/turanszkij/WickedEngine/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on c++ 3D. +If you want to develop a C++ application that uses Wicked Engine, you can build the WickedEngine_Windows static library project and link against it. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/turbulenz/turbulenz_engine/description_en.txt b/description/turbulenz/turbulenz_engine/description_en.txt new file mode 100644 index 00000000..2ee11ca7 --- /dev/null +++ b/description/turbulenz/turbulenz_engine/description_en.txt @@ -0,0 +1 @@ +This project is the Turbulenz Engine, an open-source HTML5 game engine written in TypeScript/JavaScript. It provides a full game development framework with 3D rendering (WebGL), physics, audio, networking, input handling, asset management, and a scene graph. The engine includes both client-side game runtime and server-side services for leaderboards, multiplayer, and metrics. It is aimed at web game developers building browser-based 2D and 3D games using web technologies. diff --git a/description/twohyjr/Metal-Game-Engine-Tutorial/description_en.txt b/description/twohyjr/Metal-Game-Engine-Tutorial/description_en.txt new file mode 100644 index 00000000..7f8d62da --- /dev/null +++ b/description/twohyjr/Metal-Game-Engine-Tutorial/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on apple's Metal Api. +This will open up the entire project, where you can view, edit, and hell even optimize the engine. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / guide area. diff --git a/description/tym32167/arma3beclient/description_en.txt b/description/tym32167/arma3beclient/description_en.txt new file mode 100644 index 00000000..6cc59129 --- /dev/null +++ b/description/tym32167/arma3beclient/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on battlEye Tool. +It is primarily written in C# and PowerShell and centers on modding, Unity, and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:arma3 area. diff --git a/description/u3d-community/U3D/description_en.txt b/description/u3d-community/U3D/description_en.txt new file mode 100644 index 00000000..62433aec --- /dev/null +++ b/description/u3d-community/U3D/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on c++ 2D/3D. +It centers on Unity. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/uNetworking/uWebSockets/description_en.txt b/description/uNetworking/uWebSockets/description_en.txt new file mode 100644 index 00000000..2e6a25a8 --- /dev/null +++ b/description/uNetworking/uWebSockets/description_en.txt @@ -0,0 +1 @@ +This project is uWebSockets, a high-performance WebSocket and HTTP server library written in C++ with Node.js bindings. It implements the WebSocket protocol with minimal overhead, achieving millions of connections per server and microsecond-level latency. The library supports TLS via OpenSSL/BoringSSL, HTTP routing, pub/sub messaging, and per-socket backpressure handling. It is aimed at game server developers and backend engineers building high-throughput real-time networking services. diff --git a/description/ufrisk/pcileech/description_en.txt b/description/ufrisk/pcileech/description_en.txt new file mode 100644 index 00000000..e72c5d15 --- /dev/null +++ b/description/ufrisk/pcileech/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pCILeech Summary: ================= PCILeech uses PCIe hardware devices to read and write target system memory. +This is achieved by using DMA over PCIe. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dma area. diff --git a/description/umpolungfish/byvalver/description_en.txt b/description/umpolungfish/byvalver/description_en.txt new file mode 100644 index 00000000..6f09844f --- /dev/null +++ b/description/umpolungfish/byvalver/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on shellcode bad-byte banisher with preserved functionalities. +The generic bad-byte banishment framework provides 2x usage modes. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / shellcode engine & tricks area. diff --git a/description/un4ckn0wl3z/DMACheatEngineLoader/description_en.txt b/description/un4ckn0wl3z/DMACheatEngineLoader/description_en.txt new file mode 100644 index 00000000..5cd7170c --- /dev/null +++ b/description/un4ckn0wl3z/DMACheatEngineLoader/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cheatEngine DMA, not open-source. +Instead of complex configurations, you can achieve DMA compatibility by simply copying your existing Cheat Engine installation into the provided DMACE folder. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / dma area. diff --git a/description/un4ckn0wl3z/DMAInvoker/description_en.txt b/description/un4ckn0wl3z/DMAInvoker/description_en.txt new file mode 100644 index 00000000..d072d72c --- /dev/null +++ b/description/un4ckn0wl3z/DMAInvoker/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dMA RPM for Windows. +This tool leverages the DMALibrary for its operations. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rpm area. diff --git a/description/un4ckn0wl3z/MemMCP/description_en.txt b/description/un4ckn0wl3z/MemMCP/description_en.txt new file mode 100644 index 00000000..7417113f --- /dev/null +++ b/description/un4ckn0wl3z/MemMCP/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cheat Engine-like but MCP. +It is primarily written in Python. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/universal5433/android_kernel_samsung_universal5433/description_en.txt b/description/universal5433/android_kernel_samsung_universal5433/description_en.txt new file mode 100644 index 00000000..2c21104d --- /dev/null +++ b/description/universal5433/android_kernel_samsung_universal5433/description_en.txt @@ -0,0 +1 @@ +Samsung Galaxy kernel source for the Exynos 5433 SoC platform (used in devices such as the Galaxy Note 4 and Galaxy Alpha), providing a full Linux 3.10-era kernel tree with Samsung-specific board support, ARM big.LITTLE scheduling, and proprietary driver integrations for display, camera, and modem subsystems relevant to Android kernel-level security research. diff --git a/description/univrsal/input-overlay/description_en.txt b/description/univrsal/input-overlay/description_en.txt new file mode 100644 index 00000000..19355190 --- /dev/null +++ b/description/univrsal/input-overlay/description_en.txt @@ -0,0 +1 @@ +This project is input-overlay, an OBS Studio plugin that displays keyboard, mouse, and gamepad inputs as an overlay on stream. It captures real-time input events and renders them as visual indicators showing which keys and buttons are pressed, with customizable layouts, skins, and positioning. The C++ plugin integrates with OBS's rendering pipeline. It is aimed at game streamers and content creators who want to show controller/keyboard inputs on their livestreams. diff --git a/description/unkvolism/Solemn/description_en.txt b/description/unkvolism/Solemn/description_en.txt new file mode 100644 index 00000000..a382483d --- /dev/null +++ b/description/unkvolism/Solemn/description_en.txt @@ -0,0 +1,3 @@ +This project provides a command-line tool for windows that automates adding drivers to the HVCI (HvciDisallowedImages) custom blocklist. +Hypervisor-Protected Code Integrity (HVCI) , often marketed as Memory Integrity in Windows Security settings, is a critical virtualization-based security (VBS) feature. +It is mainly useful for low-level Windows, Linux, and mobile researchers working in the some tricks / windows ring3 area. diff --git a/description/unsafeblackcat/MapleStoryEx/description_en.txt b/description/unsafeblackcat/MapleStoryEx/description_en.txt new file mode 100644 index 00000000..fa9cef39 --- /dev/null +++ b/description/unsafeblackcat/MapleStoryEx/description_en.txt @@ -0,0 +1 @@ +This project is MapleStoryEx, an extended MapleStory private server implementation with custom content and enhanced features. It builds on a classic MapleStory server emulator with additional quests, items, maps, and gameplay mechanics beyond the original game version. The codebase handles server-side game logic including combat, inventory, party systems, and scripted events. It is aimed at MapleStory private server developers customizing game content. diff --git a/description/urho3d/Urho3D/description_en.txt b/description/urho3d/Urho3D/description_en.txt new file mode 100644 index 00000000..0e3df407 --- /dev/null +++ b/description/urho3d/Urho3D/description_en.txt @@ -0,0 +1,3 @@ +This project is the founder of Urho3D (Lasse Öörni) is currently working on Turso3D. +Urho3D is a free lightweight, cross-platform 2D and 3D game engine. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/user1342/Obfu-DE-Scate/description_en.txt b/description/user1342/Obfu-DE-Scate/description_en.txt new file mode 100644 index 00000000..5fb62abd --- /dev/null +++ b/description/user1342/Obfu-DE-Scate/description_en.txt @@ -0,0 +1 @@ +This project is a Python-based Android APK deobfuscation tool that analyzes obfuscated class and method names to generate human-readable mappings. It produces visual HTML reports with class hierarchy diagrams and method classification to help reverse engineers navigate heavily obfuscated Android applications. It is mainly useful for Android reverse engineers and malware analysts dealing with ProGuard or R8-obfuscated APKs. diff --git a/description/user23333/veh/description_en.txt b/description/user23333/veh/description_en.txt new file mode 100644 index 00000000..7446da77 --- /dev/null +++ b/description/user23333/veh/description_en.txt @@ -0,0 +1 @@ +This project is a Windows Vectored Exception Handler (VEH) based debugging framework that implements a software debugger using VEH instead of the Debug API. It sets up exception handlers to intercept breakpoints, single-step exceptions, and access violations, providing debugger-like functionality without triggering standard debugger detection methods. It is aimed at security researchers and reverse engineers who need to debug processes that actively detect and block conventional debuggers. diff --git a/description/utmapp/UTM/description_en.txt b/description/utmapp/UTM/description_en.txt new file mode 100644 index 00000000..cd479ffa --- /dev/null +++ b/description/utmapp/UTM/description_en.txt @@ -0,0 +1 @@ +This project is UTM, a full-featured virtual machine host for iOS and macOS based on QEMU. It supports running Windows, Linux, and other operating systems on Apple devices using hardware virtualization (Apple Hypervisor.framework on Apple Silicon) or JIT-powered emulation for x86, ARM, RISC-V, and other architectures. The Swift/Objective-C app provides a native UI for VM creation, configuration, USB device passthrough, and shared directories. It is aimed at developers and researchers needing to run alternative operating systems on Apple devices. diff --git a/description/utoni/PastDSE/description_en.txt b/description/utoni/PastDSE/description_en.txt new file mode 100644 index 00000000..0c8928ac --- /dev/null +++ b/description/utoni/PastDSE/description_en.txt @@ -0,0 +1 @@ +This project is a Windows Driver Signature Enforcement bypass tool that temporarily changes the system date to before the certificate revocation period, signs a driver with leaked certificates, then restores the date. It includes a kernel driver component using BlackBone for PE loading and relocation, a user-mode controller, and VeriSign certificate files. It is mainly useful for kernel security researchers studying DSE bypass techniques and driver signing certificate abuse. diff --git a/description/utziacre/android_kernel_oneplus_sm8250/description_en.txt b/description/utziacre/android_kernel_oneplus_sm8250/description_en.txt new file mode 100644 index 00000000..1d101d52 --- /dev/null +++ b/description/utziacre/android_kernel_oneplus_sm8250/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on onePlus 8/8T/8Pro/(9R?) kernel. +It centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel source area. diff --git a/description/utziacre/android_kernel_xiaomi_pipa/description_en.txt b/description/utziacre/android_kernel_xiaomi_pipa/description_en.txt new file mode 100644 index 00000000..60fd64dc --- /dev/null +++ b/description/utziacre/android_kernel_xiaomi_pipa/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on xiaomi Pad 6 kernel. +It centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel source area. diff --git a/description/uuksu/RPGMakerDecrypter/description_en.txt b/description/uuksu/RPGMakerDecrypter/description_en.txt new file mode 100644 index 00000000..316df9a7 --- /dev/null +++ b/description/uuksu/RPGMakerDecrypter/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on tool for extracting RPG Maker XP, VX and VX Ace encrypted archives. +RPG Maker Decrypter is an advanced CLI application. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/valium007/BareSVM/description_en.txt b/description/valium007/BareSVM/description_en.txt new file mode 100644 index 00000000..64aabcbf --- /dev/null +++ b/description/valium007/BareSVM/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hacked Hypervisor Testing AMD. +It is primarily written in Rust and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/vchelaru/FlatRedBall/description_en.txt b/description/vchelaru/FlatRedBall/description_en.txt new file mode 100644 index 00000000..3f6378d1 --- /dev/null +++ b/description/vchelaru/FlatRedBall/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on .NET 2D. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / source area. diff --git a/description/vctr74/R6-Internal-V3/description_en.txt b/description/vctr74/R6-Internal-V3/description_en.txt new file mode 100644 index 00000000..a2aed28b --- /dev/null +++ b/description/vctr74/R6-Internal-V3/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:r6 and centers on r6 internal v3. +It is primarily written in C/C++ and C++ and centers on modding, SDK generation, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:r6 area. diff --git a/description/veryboreddd/Return-address-spoofer/description_en.txt b/description/veryboreddd/Return-address-spoofer/description_en.txt new file mode 100644 index 00000000..24e4e5a0 --- /dev/null +++ b/description/veryboreddd/Return-address-spoofer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on return-address-spoofer Illustrates the concept of return address spoofing, and how it is used. +It is primarily written in C and C/C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / spoof stack area. diff --git a/description/vfsfitvnm/frida-il2cpp-bridge/description_en.txt b/description/vfsfitvnm/frida-il2cpp-bridge/description_en.txt new file mode 100644 index 00000000..37201022 --- /dev/null +++ b/description/vfsfitvnm/frida-il2cpp-bridge/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on frida dump Il2Cpp. +It should work for any Unity version in the range 5.3.0 - 6000.1.x . +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/visotw/3d9/description_en.txt b/description/visotw/3d9/description_en.txt new file mode 100644 index 00000000..f8fefe7f --- /dev/null +++ b/description/visotw/3d9/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on fixing broken stereoscopic effects in DX11 games. +This is not the end-user version of the tool, this is for people developing the code by fixing bugs, adding new features, or documenting how to use it. +It is mainly useful for graphics programmers and Windows game tooling developers working in the directx / tools area. diff --git a/description/vk-nom/Basic-Fortnite-Cheat-Source-Internal/description_en.txt b/description/vk-nom/Basic-Fortnite-Cheat-Source-Internal/description_en.txt new file mode 100644 index 00000000..eef37e1b --- /dev/null +++ b/description/vk-nom/Basic-Fortnite-Cheat-Source-Internal/description_en.txt @@ -0,0 +1 @@ +This project is a basic Fortnite internal cheat source in C++ that demonstrates core cheat functionality for Unreal Engine 4-based games. It includes player ESP, aimbot, and basic visual modifications implemented through UE4 SDK interaction, GObject/GNames enumeration, and engine function hooking. The codebase shows the typical structure of an internal UE4 game cheat with process-wide hooks. It is aimed at game security researchers studying Fortnite cheat architecture and UE4-based cheat detection patterns. diff --git a/description/vm03/payload_dumper/description_en.txt b/description/vm03/payload_dumper/description_en.txt new file mode 100644 index 00000000..713b7ba8 --- /dev/null +++ b/description/vm03/payload_dumper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android OTA payload dumper. +It is primarily written in Python. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/vmcall/dxgkrnl_hook/description_en.txt b/description/vmcall/dxgkrnl_hook/description_en.txt new file mode 100644 index 00000000..7d8a2c6f --- /dev/null +++ b/description/vmcall/dxgkrnl_hook/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this hooks the graphics kernel subsystem to allow manipulation of the screen buffer, for more info see the write-up. +The player boxes in this video is drawn by using that hook. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/vmcall/owned_alignment/description_en.txt b/description/vmcall/owned_alignment/description_en.txt new file mode 100644 index 00000000..5ace0385 --- /dev/null +++ b/description/vmcall/owned_alignment/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on abusing Alignment. +It is primarily written in C++ and centers on kernel-level work, driver development, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hwid area. diff --git a/description/vmi-rs/ephemera/description_en.txt b/description/vmi-rs/ephemera/description_en.txt new file mode 100644 index 00000000..c92f870b --- /dev/null +++ b/description/vmi-rs/ephemera/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on multiplatform MEMORY.DMP analysis tool with a WinDbg flavor. +Also, even on Windows, WinDbg is notoriously slow. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / winows kernel dump analysis area. diff --git a/description/void-stack/Hypervisor-Detection/description_en.txt b/description/void-stack/Hypervisor-Detection/description_en.txt new file mode 100644 index 00000000..2ba3d28e --- /dev/null +++ b/description/void-stack/Hypervisor-Detection/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on currently implements four techniques. +It is primarily written in C++ and centers on anti-cheat research. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection: hacked hypervisor area. diff --git a/description/vojty/feather-gb/description_en.txt b/description/vojty/feather-gb/description_en.txt new file mode 100644 index 00000000..2afd3db2 --- /dev/null +++ b/description/vojty/feather-gb/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on emulator. +This is my first project in Rust, so many patterns might not be ideal. +It is mainly useful for retro handheld emulator developers and reverse engineers working in the game boy area. diff --git a/description/volatilityfoundation/volatility/description_en.txt b/description/volatilityfoundation/volatility/description_en.txt new file mode 100644 index 00000000..13c5339b --- /dev/null +++ b/description/volatilityfoundation/volatility/description_en.txt @@ -0,0 +1,3 @@ +Volatility is the original Python 2 memory forensics framework for analyzing RAM dumps from Windows, Linux, and macOS systems, providing plugins for process listing (pslist/psscan), DLL enumeration, registry hive extraction, network connection recovery, kernel module detection, rootkit identification, and malware artifact analysis. +The framework supports multiple address space backends (raw dumps, crash dumps, hibernation files, VMware snapshots, FireWire/IEEE 1394), uses profile-based type definitions for OS-version-specific structure parsing, and includes tools for building Linux/Mac kernel profiles from debug symbols. +It is mainly useful for DFIR analysts, malware researchers, and game security researchers performing post-mortem memory analysis to detect injected code, hidden processes, and rootkit artifacts. diff --git a/description/volatilityfoundation/volatility3/description_en.txt b/description/volatilityfoundation/volatility3/description_en.txt new file mode 100644 index 00000000..2c60a3c6 --- /dev/null +++ b/description/volatilityfoundation/volatility3/description_en.txt @@ -0,0 +1 @@ +This project is the third major release of the Volatility memory forensics framework, a complete Python 3 rewrite designed for extracting digital artifacts from volatile memory (RAM) samples. It supports Windows, Linux, and macOS memory images and provides a plugin-based architecture for analyzing process lists, network connections, registry hives, kernel objects, and other runtime artifacts without requiring access to the investigated system. The framework includes symbol table generation, layer-based memory translation, and automagic detection of OS profiles. It is the standard tool for incident responders, forensic analysts, and security researchers performing memory analysis and malware investigation. diff --git a/description/vrolife/android_native_app_imgui/description_en.txt b/description/vrolife/android_native_app_imgui/description_en.txt new file mode 100644 index 00000000..84c41b67 --- /dev/null +++ b/description/vrolife/android_native_app_imgui/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on imgui On Android. +It is primarily written in Java and C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/vrolife/mypower/description_en.txt b/description/vrolife/mypower/description_en.txt new file mode 100644 index 00000000..0e3ac335 --- /dev/null +++ b/description/vrolife/mypower/description_en.txt @@ -0,0 +1 @@ +Cross-platform command-line memory scanner for Android and Linux that features JIT-compiled scan expressions via SLJIT, pointer-chain discovery with configurable depth and offset limits, snapshot-based differential filtering, an ncurses TUI for interactive use, and built-in Unity (U3D) game object inspection support. diff --git a/description/vsaint1/kernel-mouse/description_en.txt b/description/vsaint1/kernel-mouse/description_en.txt new file mode 100644 index 00000000..6840592f --- /dev/null +++ b/description/vsaint1/kernel-mouse/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mouClass. +The driver can be used in any windows 10/11 versions. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / triggerbot & aimbot area. diff --git a/description/vsteffen/woody_woodpacker/description_en.txt b/description/vsteffen/woody_woodpacker/description_en.txt new file mode 100644 index 00000000..8a497b65 --- /dev/null +++ b/description/vsteffen/woody_woodpacker/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eLF. +A new program called “woody” will be generated from this execution. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/vvb2060/KeyAttestation/description_en.txt b/description/vvb2060/KeyAttestation/description_en.txt new file mode 100644 index 00000000..bb10c4a2 --- /dev/null +++ b/description/vvb2060/KeyAttestation/description_en.txt @@ -0,0 +1 @@ +This project is an Android application that performs hardware-backed key attestation to verify device integrity and bootloader status. It interacts with the Android Keymaster and KeyMint HAL interfaces through AIDL bindings to retrieve and validate attestation certificates, checking for locked bootloaders, verified boot states, and provisioned key properties. It is mainly useful for Android security researchers and anti-cheat engineers studying hardware attestation mechanisms and device integrity verification on Android. diff --git a/description/vvb2060/MagiskDetector/description_en.txt b/description/vvb2060/MagiskDetector/description_en.txt new file mode 100644 index 00000000..160ec36f --- /dev/null +++ b/description/vvb2060/MagiskDetector/description_en.txt @@ -0,0 +1 @@ +This project is an archived Android application designed to detect Magisk root framework installations on Android devices. It uses an isolated process via AppZygote and AIDL remote service communication to perform detection checks outside the main application sandbox, testing for Magisk artifacts and mount namespace anomalies. It is mainly useful for anti-cheat engineers and mobile security researchers studying Magisk detection techniques and root detection bypass challenges. diff --git a/description/vxCrypt0r/Voidmaw/description_en.txt b/description/vxCrypt0r/Voidmaw/description_en.txt new file mode 100644 index 00000000..d12d7bba --- /dev/null +++ b/description/vxCrypt0r/Voidmaw/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on vEH + PAGE_GUARD. +It is useful in hiding problematic code that will be flagged by the antivirus vendors. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / page protection area. diff --git a/description/w00tzenheimer/d810-ng/description_en.txt b/description/w00tzenheimer/d810-ng/description_en.txt new file mode 100644 index 00000000..e06dcafc --- /dev/null +++ b/description/w00tzenheimer/d810-ng/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on d-810ng (Next Generation) is an evolution of d810 to deobfuscate code at decompilation time. +It was designed with the following goals in mind. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix ollvm area. diff --git a/description/w1u0u1/kinject/description_en.txt b/description/w1u0u1/kinject/description_en.txt new file mode 100644 index 00000000..4e9befd9 --- /dev/null +++ b/description/w1u0u1/kinject/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on map + APC. +It is primarily written in C and C/C++ and centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / injection:windows area. diff --git a/description/wINfOG/IDA_Easy_Life/description_en.txt b/description/wINfOG/IDA_Easy_Life/description_en.txt new file mode 100644 index 00000000..3db10f16 --- /dev/null +++ b/description/wINfOG/IDA_Easy_Life/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on deobfuscation. +It is primarily written in Python. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/waldo-vision/aimbot-detection-prototype/description_en.txt b/description/waldo-vision/aimbot-detection-prototype/description_en.txt new file mode 100644 index 00000000..47a9fe4c --- /dev/null +++ b/description/waldo-vision/aimbot-detection-prototype/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on deep Learning. +While running, the program will display a window that shows the gameplay that is currently being analyzed along with the number of clips recorded so far. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:triggerbot & aimbot area. diff --git a/description/waldo-vision/waldo/description_en.txt b/description/waldo-vision/waldo/description_en.txt new file mode 100644 index 00000000..6e025597 --- /dev/null +++ b/description/waldo-vision/waldo/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on deep Learning. +The current version is specific to CS2 and must use a user-trained model. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:triggerbot & aimbot area. diff --git a/description/wallds/NoVmpy/description_en.txt b/description/wallds/NoVmpy/description_en.txt new file mode 100644 index 00000000..1493fcd6 --- /dev/null +++ b/description/wallds/NoVmpy/description_en.txt @@ -0,0 +1 @@ +This project is NoVmpy, a Python tool for deobfuscating VMProtect-virtualized code using symbolic execution. It traces through VMProtect's virtual machine handler chains, symbolically executes each handler to extract its semantics, and reconstructs the original instruction sequence from the virtualized bytecode. The tool leverages Triton or similar symbolic execution frameworks for analysis. It is aimed at reverse engineers and malware analysts recovering original code from VMProtect-protected binaries. diff --git a/description/walzer/game-engine-detector/description_en.txt b/description/walzer/game-engine-detector/description_en.txt new file mode 100644 index 00000000..82ce6286 --- /dev/null +++ b/description/walzer/game-engine-detector/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on automatically detect which game engine is an .apk or .ipa using. +It is primarily written in Python. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine detector area. diff --git a/description/waryas/EUPMAccess/description_en.txt b/description/waryas/EUPMAccess/description_en.txt new file mode 100644 index 00000000..70427c63 --- /dev/null +++ b/description/waryas/EUPMAccess/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / rpm and centers on eupmaccess. +It is primarily written in C/C++ and C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rpm area. diff --git a/description/waryas/KACE/description_en.txt b/description/waryas/KACE/description_en.txt new file mode 100644 index 00000000..499533b1 --- /dev/null +++ b/description/waryas/KACE/description_en.txt @@ -0,0 +1 @@ +This project is KACE (Kernel Automated Compatibility Emulator), a Windows kernel emulator that runs kernel-mode drivers in user-mode for analysis. It emulates essential kernel APIs, memory management, IRQL handling, and driver entry point calling conventions, allowing security researchers to load and analyze kernel drivers without risking system stability. The C++ emulator provides a sandboxed environment for studying driver behavior. It is aimed at reverse engineers and anti-cheat analysts who need to safely analyze kernel drivers and anti-cheat components. diff --git a/description/waryas/UMPMLib/description_en.txt b/description/waryas/UMPMLib/description_en.txt new file mode 100644 index 00000000..dae7769e --- /dev/null +++ b/description/waryas/UMPMLib/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / rpm and centers on umpmlib. +It is primarily written in C/C++ and C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rpm area. diff --git a/description/waryas/WaryasSWHE/description_en.txt b/description/waryas/WaryasSWHE/description_en.txt new file mode 100644 index 00000000..40c48da1 --- /dev/null +++ b/description/waryas/WaryasSWHE/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on usermode exploit to bypass any AC using a 0day shatter attack. +It is primarily written in C++ and centers on anti-cheat research, rendering, and modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / rpm area. diff --git a/description/wavestone-cdt/EDRSandblast/description_en.txt b/description/wavestone-cdt/EDRSandblast/description_en.txt new file mode 100644 index 00000000..50ac108b --- /dev/null +++ b/description/wavestone-cdt/EDRSandblast/description_en.txt @@ -0,0 +1 @@ +This project is a C tool for bypassing EDR and ETW-based detection on Windows by exploiting vulnerable signed drivers (BYOVD). It patches kernel callback routines, removes process and thread notification callbacks, disables ETW TI provider feeds, and unhooks ntdll syscall stubs in user mode to blind security products. The tool automates offset resolution for multiple Windows builds, handles driver loading and cleanup, and includes a credential dumping payload as a demonstration. It is aimed at red team operators and security researchers studying EDR evasion techniques and kernel callback manipulation. diff --git a/description/wazuh/wazuh/description_en.txt b/description/wazuh/wazuh/description_en.txt new file mode 100644 index 00000000..77847662 --- /dev/null +++ b/description/wazuh/wazuh/description_en.txt @@ -0,0 +1 @@ +This project is Wazuh, an open-source security monitoring platform that provides intrusion detection, log analysis, file integrity monitoring, vulnerability scanning, and compliance auditing across Linux, Windows, and macOS endpoints. It uses an agent-server architecture with a central manager that correlates events, applies detection rules, and integrates with Elasticsearch for visualization. The C and Python codebase includes real-time alerting, active response capabilities, and a RESTful API. It is aimed at security operations teams deploying enterprise-grade host-based intrusion detection and security information management. diff --git a/description/wbaby/DoubleCallBack/description_en.txt b/description/wbaby/DoubleCallBack/description_en.txt new file mode 100644 index 00000000..4a6d190b --- /dev/null +++ b/description/wbaby/DoubleCallBack/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dWM In Kernel. +It is primarily written in C/C++ and C++ and centers on kernel-level work, rendering, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/wbenny/DetoursNT/description_en.txt b/description/wbenny/DetoursNT/description_en.txt new file mode 100644 index 00000000..e5cfa217 --- /dev/null +++ b/description/wbenny/DetoursNT/description_en.txt @@ -0,0 +1,3 @@ +This project is a simple project with one goal - make Detours dependent only on NTDLL.DLL without any modifications of the original code. +You can look at my project [injdrv][injdrv] to get an idea about how is this done. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / hook area. diff --git a/description/wbenny/KSOCKET/description_en.txt b/description/wbenny/KSOCKET/description_en.txt new file mode 100644 index 00000000..002512f1 --- /dev/null +++ b/description/wbenny/KSOCKET/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel-mode socket library in C that wraps the Windows Sockets Kernel (WSK) API to provide a simplified BSD-style socket interface for kernel drivers. It supports TCP and UDP connections from ring 0 without requiring user-mode components, enabling network communication directly from kernel code. It is aimed at kernel security researchers studying covert kernel-mode network channels and developers building network-capable drivers. diff --git a/description/wbenny/injdrv/description_en.txt b/description/wbenny/injdrv/description_en.txt new file mode 100644 index 00000000..358e04bb --- /dev/null +++ b/description/wbenny/injdrv/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel-mode DLL injector driver in C that injects DLLs into processes using APC (Asynchronous Procedure Call) delivery from kernel space. The driver registers a process creation callback to intercept target process startup, then queues a user-mode APC that loads the specified DLL via LdrLoadDll. This kernel-based approach bypasses user-mode injection detection and anti-cheat hooks. It is aimed at kernel researchers studying kernel-mode injection primitives and their detection from an anti-cheat perspective. diff --git a/description/wbenny/scfw/description_en.txt b/description/wbenny/scfw/description_en.txt new file mode 100644 index 00000000..c8c01d27 --- /dev/null +++ b/description/wbenny/scfw/description_en.txt @@ -0,0 +1,3 @@ +This project is a cross-platform C++ framework for building Windows shellcode. +It is primarily written in C/C++ and C++ and centers on kernel-level work, driver development, and OpenGL. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / shellcode engine & tricks area. diff --git a/description/weak1337/Alcatraz/description_en.txt b/description/weak1337/Alcatraz/description_en.txt new file mode 100644 index 00000000..bc2b8520 --- /dev/null +++ b/description/weak1337/Alcatraz/description_en.txt @@ -0,0 +1,3 @@ +A x64 PE binary obfuscator with an ImGui-based GUI that applies multiple transformation passes to compiled executables: instruction mutation (rewriting MOV, ADD, LEA with equivalent sequences), control-flow flattening (converting branch structures into dispatcher-based state machines), anti-disassembly junk insertion, IAT obfuscation, and custom entry point redirection. +Built on Zydis for disassembly and AsmJit for code generation, it parses PE sections and PDB symbols via a custom PDB parser, applies transformations at the instruction level, and reassembles the modified binary while preserving relocations and imports. +It is mainly useful for game security researchers studying PE-level code obfuscation techniques and anti-cheat developers evaluating binary protection strength. diff --git a/description/weak1337/BE-Shellcode/description_en.txt b/description/weak1337/BE-Shellcode/description_en.txt new file mode 100644 index 00000000..d4909a02 --- /dev/null +++ b/description/weak1337/BE-Shellcode/description_en.txt @@ -0,0 +1,3 @@ +A tool for analyzing BattlEye's user-mode shellcode by dumping, disassembling, and documenting the detection modules that BE injects into protected game processes, including system thread scanning, VEH enumeration, module integrity checks, and signature-based detection routines. +The project implements its own system thread finder (systhreadfinder.cpp), thread scanning logic (thread_scan.cpp), VEH handler enumeration (veh.cpp), and module walking (modules.cpp) to replicate and study the detection techniques BattlEye's shellcode performs at runtime. +It is mainly useful for anti-cheat researchers and reverse engineers studying BattlEye's shellcode-based detection architecture and its specific integrity check implementations. diff --git a/description/weak1337/CEDetector/description_en.txt b/description/weak1337/CEDetector/description_en.txt new file mode 100644 index 00000000..96051a46 --- /dev/null +++ b/description/weak1337/CEDetector/description_en.txt @@ -0,0 +1,3 @@ +A detection tool that identifies running instances of Cheat Engine by scanning for its known window classes, process names, driver presence, and debug artifacts using Windows API calls like FindWindow, CreateToolhelp32Snapshot, and service enumeration. +The ce_detection module implements multiple detection vectors to reliably identify Cheat Engine even when it has been renamed or is running with anti-detection features enabled. +It is mainly useful for anti-cheat developers studying Cheat Engine detection techniques and game security researchers testing CE stealth configurations. diff --git a/description/weak1337/EvCommunication/description_en.txt b/description/weak1337/EvCommunication/description_en.txt new file mode 100644 index 00000000..ffd8fb5a --- /dev/null +++ b/description/weak1337/EvCommunication/description_en.txt @@ -0,0 +1,3 @@ +A kernel-to-usermode communication framework that uses Windows named events (ZwOpenEvent/ZwSetEvent/ZwWaitForSingleObject) for bidirectional signaling between a kernel driver and user-mode client, with the driver hooking NtTokenManager to intercept a kernel callback as the initial trigger point. +The driver establishes a shared event loop where the user-mode client signals requests through a named event object, the kernel handler processes memory read/write operations via MmCopyVirtualMemory, and signals completion back through a second event, avoiding traditional IOCTL-based communication that anti-cheats monitor. +It is mainly useful for game security researchers studying stealthy driver communication channels that bypass IOCTL monitoring by anti-cheat systems like BattlEye and EAC. diff --git a/description/weak1337/ModExMap/description_en.txt b/description/weak1337/ModExMap/description_en.txt new file mode 100644 index 00000000..d10c8ae0 --- /dev/null +++ b/description/weak1337/ModExMap/description_en.txt @@ -0,0 +1,3 @@ +A user-mode DLL injector that manually maps a DLL into a target process by parsing its PE headers, allocating memory with VirtualAllocEx, writing sections via WriteProcessMemory, resolving imports, applying relocations, and executing the entry point through a shellcode stub injected via CreateRemoteThread. +The mapper handles both x86 and x64 targets, supports TLS callbacks, and includes PE structure parsing (pestruct.h) for navigating section tables, import directories, and relocation blocks during the manual mapping process. +It is mainly useful for game security researchers studying user-mode manual mapping injection techniques and PE loading internals for anti-cheat evasion. diff --git a/description/weak1337/NO_ACCESS_Protection/description_en.txt b/description/weak1337/NO_ACCESS_Protection/description_en.txt new file mode 100644 index 00000000..27c146a6 --- /dev/null +++ b/description/weak1337/NO_ACCESS_Protection/description_en.txt @@ -0,0 +1,3 @@ +A C++ library that protects code sections by marking them as PAGE_NOACCESS using VirtualProtect, then uses a Vectored Exception Handler to catch the resulting access violations and temporarily restore PAGE_EXECUTE_READ permissions for the faulting page, re-protecting it after execution via single-step trap (STATUS_SINGLE_STEP). +This creates a self-defending code region where any external memory scanner or debugger attempting to read the protected pages triggers an access violation, while legitimate execution proceeds transparently through the VEH trampoline. +It is mainly useful for game security researchers studying PAGE_NOACCESS-based anti-tamper techniques and anti-cheat developers evaluating memory protection strategies against external scanners. diff --git a/description/weak1337/NvidiaApi/description_en.txt b/description/weak1337/NvidiaApi/description_en.txt new file mode 100644 index 00000000..f4b8eedd --- /dev/null +++ b/description/weak1337/NvidiaApi/description_en.txt @@ -0,0 +1,3 @@ +A C++ library that interfaces with NVIDIA's undocumented NvAPI to query GPU hardware information including GPU serial numbers, physical GPU handles, board names, and driver versions by dynamically loading nvapi64.dll and resolving internal API function pointers through NvAPI_QueryInterface. +The library wraps both public NvAPI functions (EnumPhysicalGPUs, GetFullName) and internal/private interfaces for accessing hardware identifiers that are not exposed through the standard NvAPI SDK. +It is mainly useful for HWID spoofer developers and game security researchers studying GPU serial number retrieval and NVIDIA hardware fingerprinting methods used by anti-cheat systems. diff --git a/description/weak1337/PresentHookDetection/description_en.txt b/description/weak1337/PresentHookDetection/description_en.txt new file mode 100644 index 00000000..020eb08f --- /dev/null +++ b/description/weak1337/PresentHookDetection/description_en.txt @@ -0,0 +1,3 @@ +A tool that replicates BattlEye's method for detecting IDXGISwapChain::Present hooks by creating a dummy D3D11 device and swap chain, reading the Present function pointer from the vtable, and comparing the code bytes at that address against the original dxgi.dll module to identify inline hooks (JMP patches) or vtable overwrites. +The detection checks whether the Present function's first bytes match the expected prologue or have been modified by cheat overlays that hook Present to render ESP/aimbot visuals. +It is mainly useful for anti-cheat developers implementing Present hook detection and cheat developers testing the stealth of their rendering hooks against BattlEye-style checks. diff --git a/description/weak1337/SkipHook/description_en.txt b/description/weak1337/SkipHook/description_en.txt new file mode 100644 index 00000000..7d36553e --- /dev/null +++ b/description/weak1337/SkipHook/description_en.txt @@ -0,0 +1,3 @@ +A header-only C++ library that creates function call trampolines which skip the first instruction of a target function, bypassing inline hooks (0xE9 JMP) and breakpoint traps (0xCC INT3) placed by anti-cheat systems like BattlEye on WinAPI and game functions. +It uses the HDE (Hacker Disassembly Engine) for x86/x64 instruction length decoding to determine the size of the first instruction, then builds a local trampoline that executes the original first instruction and jumps to instruction+1, so the hooked prologue is never executed and return-address checks see a legitimate call origin. +It is mainly useful for cheat developers bypassing anti-cheat API hooks and game security researchers studying trampoline-based hook evasion techniques. diff --git a/description/weak1337/SystemThreadFinder/description_en.txt b/description/weak1337/SystemThreadFinder/description_en.txt new file mode 100644 index 00000000..97f8bcb8 --- /dev/null +++ b/description/weak1337/SystemThreadFinder/description_en.txt @@ -0,0 +1,3 @@ +A tool that detects hidden and manually mapped system threads by enumerating all threads via NtQuerySystemInformation, checking each kernel thread's start address against loaded driver module ranges, and flagging threads whose start addresses fall outside any legitimate driver's image region. +Created by reverse engineering BattlEye's thread detection logic, it uses undocumented NT APIs to query thread information and cross-references start addresses with the system module list to identify threads spawned from manually mapped or injected kernel code. +It is mainly useful for anti-cheat researchers studying kernel-level thread detection techniques and identifying stealthy driver-based cheats that spawn system threads from unmapped memory regions. diff --git a/description/weak1337/ricochet_deobfuscator/description_en.txt b/description/weak1337/ricochet_deobfuscator/description_en.txt new file mode 100644 index 00000000..39bd9ccf --- /dev/null +++ b/description/weak1337/ricochet_deobfuscator/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / explore anticheat system:ricochet and centers on ricochet deobfuscator. +It is primarily written in C/C++ and C++ and centers on driver development and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:ricochet area. diff --git a/description/weedeej/ValorantCC/description_en.txt b/description/weedeej/ValorantCC/description_en.txt new file mode 100644 index 00000000..cc66b41a --- /dev/null +++ b/description/weedeej/ValorantCC/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on crosshair Setting. +The images, endpoints and other material used in this project are owned by Riot Games. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:valorant area. diff --git a/description/weizhking/PalworldSaved/description_en.txt b/description/weizhking/PalworldSaved/description_en.txt new file mode 100644 index 00000000..ca7ce3a7 --- /dev/null +++ b/description/weizhking/PalworldSaved/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on save. +It centers on rendering and editor tooling. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:palworld [ue5] area. diff --git a/description/whereisr0da/Lumina-Cheat/description_en.txt b/description/whereisr0da/Lumina-Cheat/description_en.txt new file mode 100644 index 00000000..5a7afed5 --- /dev/null +++ b/description/whereisr0da/Lumina-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on internal. +But the point of the cheat is to use mutation to maintain a changing signature. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/whokilleddb/function-collections/description_en.txt b/description/whokilleddb/function-collections/description_en.txt new file mode 100644 index 00000000..1544b843 --- /dev/null +++ b/description/whokilleddb/function-collections/description_en.txt @@ -0,0 +1,3 @@ +This project is a collection of PoCs to do common things in unconventional ways. +It is primarily written in C and centers on asset pipelines and memory analysis. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / windows ring3 callback area. diff --git a/description/whx-prog/The-Seed-Link-Future/description_en.txt b/description/whx-prog/The-Seed-Link-Future/description_en.txt new file mode 100644 index 00000000..69ca1de5 --- /dev/null +++ b/description/whx-prog/The-Seed-Link-Future/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on unity VR. +It is primarily written in C# and centers on driver development, OpenGL, and shader work. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / guide area. diff --git a/description/wietze/HijackLibs/description_en.txt b/description/wietze/HijackLibs/description_en.txt new file mode 100644 index 00000000..5a25fcdd --- /dev/null +++ b/description/wietze/HijackLibs/description_en.txt @@ -0,0 +1 @@ +This project is HijackLibs, a curated collection of DLL hijacking opportunities in Windows applications. It provides a searchable database of executables and their exploitable DLL dependencies, including the specific DLL names, required exports, and exploitation conditions for each entry. The repository includes YAML-formatted vulnerability data and a web interface. It is aimed at penetration testers and red team operators looking for DLL hijacking persistence and privilege escalation opportunities. diff --git a/description/wietze/windows-dll-hijacking/description_en.txt b/description/wietze/windows-dll-hijacking/description_en.txt new file mode 100644 index 00000000..445c9c2b --- /dev/null +++ b/description/wietze/windows-dll-hijacking/description_en.txt @@ -0,0 +1 @@ +This project is a comprehensive database and research on Windows DLL hijacking vulnerabilities. It catalogs hundreds of executables and their vulnerable DLL search paths, documenting which system binaries can be exploited for DLL sideloading, search order hijacking, and phantom DLL loading. The repository includes automated scanning tools and detailed vulnerability data. It is aimed at red team operators, security auditors, and defenders mapping the DLL hijacking attack surface on Windows. diff --git a/description/wilszdev/SteamAntiAntiDebug/description_en.txt b/description/wilszdev/SteamAntiAntiDebug/description_en.txt new file mode 100644 index 00000000..b70837e6 --- /dev/null +++ b/description/wilszdev/SteamAntiAntiDebug/description_en.txt @@ -0,0 +1 @@ +This project is a tool that bypasses Steam's anti-debugging protections to allow attaching debuggers to Steam-protected game processes. It patches Steam's debug detection routines that normally detect and block debuggers like x64dbg, preventing the game from terminating or altering behavior when a debugger is attached. It is aimed at game security researchers and reverse engineers who need to debug Steam-protected games for analysis purposes. diff --git a/description/winsiderss/systeminformer/description_en.txt b/description/winsiderss/systeminformer/description_en.txt new file mode 100644 index 00000000..ae9bede0 --- /dev/null +++ b/description/winsiderss/systeminformer/description_en.txt @@ -0,0 +1,3 @@ +This project is the original name is "Process Hacker". +After cloning the repo run build_init.cmd located in the build directory, this doesn't not run again unless there are updates to the tools or third party libraries. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windows kernel explorer area. diff --git a/description/wiresock/ndisapi/description_en.txt b/description/wiresock/ndisapi/description_en.txt new file mode 100644 index 00000000..7da357ae --- /dev/null +++ b/description/wiresock/ndisapi/description_en.txt @@ -0,0 +1,3 @@ +This project is a comprehensive user-mode interface library designed for seamless interaction with the Windows Packet Filter driver. +It stands out by offering a straightforward, safe, and efficient interface for filtering (inspecting and modifying) raw network packets at the NDIS level of the network stack, ensuring minimal impact on network performance. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / packet sniffer&filter area. diff --git a/description/wmarti/xenia-mac/description_en.txt b/description/wmarti/xenia-mac/description_en.txt new file mode 100644 index 00000000..b4edde6a --- /dev/null +++ b/description/wmarti/xenia-mac/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on macOS Port of the Xbox 360 Emulator. +Lurking is not only fine, but encouraged! +It is mainly useful for console emulator developers and Xbox researchers working in the xbox area. diff --git a/description/wolfpld/tracy/description_en.txt b/description/wolfpld/tracy/description_en.txt new file mode 100644 index 00000000..e66b58f7 --- /dev/null +++ b/description/wolfpld/tracy/description_en.txt @@ -0,0 +1 @@ +This project is Tracy, a real-time frame profiler for C++ applications including games. It provides CPU profiling with zone markup, GPU profiling for OpenGL/Vulkan/Direct3D, memory allocation tracking, lock contention analysis, context switch visualization, and source code annotation. The profiler consists of a lightweight client library embedded in the application and a standalone viewer that displays timeline, flame graph, and statistical views. It is aimed at game developers and performance engineers optimizing frame times and identifying bottlenecks in real-time applications. diff --git a/description/wondeks/unity-mcp/description_en.txt b/description/wondeks/unity-mcp/description_en.txt new file mode 100644 index 00000000..2a7127b7 --- /dev/null +++ b/description/wondeks/unity-mcp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on mCP for unity. +This server is designed to streamline your workflow and enhance your overall Unity development experience. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/wongfei/wda_monitor_trick/description_en.txt b/description/wongfei/wda_monitor_trick/description_en.txt new file mode 100644 index 00000000..f587e6d4 --- /dev/null +++ b/description/wongfei/wda_monitor_trick/description_en.txt @@ -0,0 +1 @@ +This project is a Windows Desktop Automation monitor hooking trick that uses DirectX 9 to intercept and manipulate display output. The C++ implementation includes D3D9 header definitions and Windows utility helpers for screen capture and display manipulation. It is mainly useful for game security researchers studying display capture interception and monitor-level rendering tricks on Windows. diff --git a/description/wpdk/wdutf/description_en.txt b/description/wpdk/wdutf/description_en.txt new file mode 100644 index 00000000..4a9d5668 --- /dev/null +++ b/description/wpdk/wdutf/description_en.txt @@ -0,0 +1,3 @@ +This project is the Windows Driver Unit Test Framework (WDUTF) enables the unit testing of Windows kernel drivers using the Microsoft Unit Testing Framework for C++, which runs in user space. +Running unit tests against code written for the Windows Kernel environment is hard. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / driver unit test framework area. diff --git a/description/wtsxDev/reverse-engineering/description_en.txt b/description/wtsxDev/reverse-engineering/description_en.txt new file mode 100644 index 00000000..00573217 --- /dev/null +++ b/description/wtsxDev/reverse-engineering/description_en.txt @@ -0,0 +1,3 @@ +This project provides a curated list of awesome reversing resources. +It centers on reverse engineering, networking, and editor tooling. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / guide area. diff --git a/description/x1tan/vac3-dumper/description_en.txt b/description/x1tan/vac3-dumper/description_en.txt new file mode 100644 index 00000000..c1289262 --- /dev/null +++ b/description/x1tan/vac3-dumper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dump. +Typically there will be multiple modules which are loaded at different at different times. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:vac area. diff --git a/description/x64dbg/Classroom/description_en.txt b/description/x64dbg/Classroom/description_en.txt new file mode 100644 index 00000000..594a9b64 --- /dev/null +++ b/description/x64dbg/Classroom/description_en.txt @@ -0,0 +1,3 @@ +This project is a x64dbg plugin that helps you analyze an object-oriented application. +You can define member functions and member variables while you are debugging the application, and the class documentation will be saved and displayed whenever you need them. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/x64dbg/DotX64Dbg/description_en.txt b/description/x64dbg/DotX64Dbg/description_en.txt new file mode 100644 index 00000000..fe59f9b5 --- /dev/null +++ b/description/x64dbg/DotX64Dbg/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on create Plugins for X64Dbg with ease DotX64Dbg aims to provide a seamless way to write and test plugins for X64Dbg using .Net 6.0 and C#. +This gif showcases how you debug and edit your plugin at the same time, this also showcases how you can register custom commands for x64Dbg on the fly, the same works also for expressions. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/x64dbg/SlothBP/description_en.txt b/description/x64dbg/SlothBP/description_en.txt new file mode 100644 index 00000000..954f1302 --- /dev/null +++ b/description/x64dbg/SlothBP/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on collaborative Breakpoint Manager. +It is primarily written in C/C++ and C++ and centers on plugin development, modding, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/x64dbg/x64dbg/description_en.txt b/description/x64dbg/x64dbg/description_en.txt new file mode 100644 index 00000000..1dc1ddad --- /dev/null +++ b/description/x64dbg/x64dbg/description_en.txt @@ -0,0 +1,3 @@ +This project is a debugger for Windows x86/64. +There are many features available and a comprehensive plugin system to add your own. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / debugging area. diff --git a/description/x64dbg/x64dbgbinja/description_en.txt b/description/x64dbg/x64dbgbinja/description_en.txt new file mode 100644 index 00000000..1f6ba4bb --- /dev/null +++ b/description/x64dbg/x64dbgbinja/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on binary Ninja. +It is primarily written in Python and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / x64dbg plugins area. diff --git a/description/x86byte/Obfusk8/description_en.txt b/description/x86byte/Obfusk8/description_en.txt new file mode 100644 index 00000000..4bc8deeb --- /dev/null +++ b/description/x86byte/Obfusk8/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on obfusk8: C++17-Based Obfuscation Library. +It achieves this through a diverse set of compile-time and runtime techniques aimed at protecting your code's logic and data. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / compile time area. diff --git a/description/x86matthew/InstrumentationCallbackSyscallLogger/description_en.txt b/description/x86matthew/InstrumentationCallbackSyscallLogger/description_en.txt new file mode 100644 index 00000000..4812918f --- /dev/null +++ b/description/x86matthew/InstrumentationCallbackSyscallLogger/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on instrumentation Callback. +This callback is invoked on every return from a kernel syscall, giving user-mode code the opportunity to inspect each call before execution resumes. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / windows ring3 callback area. diff --git a/description/x86matthew/WinVisor/description_en.txt b/description/x86matthew/WinVisor/description_en.txt new file mode 100644 index 00000000..2adf39cd --- /dev/null +++ b/description/x86matthew/WinVisor/description_en.txt @@ -0,0 +1,3 @@ +This project is a hypervisor-based emulator for Windows x64 user-mode executables using Windows Hypervisor Platform API. +This project takes the concept further, and allows Windows x64 executables to be emulated within a virtualized environment. +It is mainly useful for emulator developers and Windows platform researchers working in the windows emulator area. diff --git a/description/x90skysn3k/x260-lenovo-opencore/description_en.txt b/description/x90skysn3k/x260-lenovo-opencore/description_en.txt new file mode 100644 index 00000000..2f018c98 --- /dev/null +++ b/description/x90skysn3k/x260-lenovo-opencore/description_en.txt @@ -0,0 +1 @@ +This project is a Hackintosh OpenCore EFI configuration for the Lenovo ThinkPad X260. It includes a complete OpenCore bootloader setup with ACPI patches, kexts, and configuration for running macOS on ThinkPad X260 hardware, handling Intel HD 520 graphics, Realtek audio, Intel WiFi, trackpad, and power management. It is aimed at Hackintosh enthusiasts and security researchers needing macOS on non-Apple hardware for testing purposes. diff --git a/description/xBrunoMedeiros/eac-overlay/description_en.txt b/description/xBrunoMedeiros/eac-overlay/description_en.txt new file mode 100644 index 00000000..a3fec958 --- /dev/null +++ b/description/xBrunoMedeiros/eac-overlay/description_en.txt @@ -0,0 +1 @@ +This project is a proof-of-concept overlay renderer that operates alongside EasyAntiCheat-protected games. It demonstrates rendering ESP and other visual overlays through techniques that avoid detection by EAC's overlay monitoring, such as using alternative rendering surfaces or window manipulation. The C++ implementation shows how overlays can be rendered without triggering anti-cheat screenshot or overlay detection. It is aimed at game security researchers studying overlay detection bypass and anti-cheat visual monitoring limitations. diff --git a/description/xM0kht4r/2Pack/description_en.txt b/description/xM0kht4r/2Pack/description_en.txt new file mode 100644 index 00000000..edf393e0 --- /dev/null +++ b/description/xM0kht4r/2Pack/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on rust Based PE & Shellcode Packer. +It supports both PE files (EXE/DLL) and raw shellcode. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/xM0kht4r/AV-EDR-Killer/description_en.txt b/description/xM0kht4r/AV-EDR-Killer/description_en.txt new file mode 100644 index 00000000..e2eebd07 --- /dev/null +++ b/description/xM0kht4r/AV-EDR-Killer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on wsftprm.sys. +The vulnerability is triggered via IOCTL code 0x22201C with a 1036-byte buffer where the first 4 bytes contain the target Process ID as a DWORD. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/xM0kht4r/VEN0m-Ransomware/description_en.txt b/description/xM0kht4r/VEN0m-Ransomware/description_en.txt new file mode 100644 index 00000000..f2dd5f3b --- /dev/null +++ b/description/xM0kht4r/VEN0m-Ransomware/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iMFForceDelete.sys. +AV/EDR Evasion: VEN0m employs the classic BYOVD technique, but unlike the AV-EDR-KILLER, which exploits a vulnerable driver that exposes the kernel function ZwTerminateProcess to unprivileged users, it leverages a vulnerable driver included in IObit Malware Fighter v12.1.0 which is kinda ironic since we are using it for evasion. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/xPasters/.data-ptr-swap/description_en.txt b/description/xPasters/.data-ptr-swap/description_en.txt new file mode 100644 index 00000000..8f2e0c90 --- /dev/null +++ b/description/xPasters/.data-ptr-swap/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on ntSetCompositionSurfaceAnalogExclusive. +It is primarily written in C/C++ and C++ and centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/xProHackerx/imgui-ios-mod-menu/description_en.txt b/description/xProHackerx/imgui-ios-mod-menu/description_en.txt new file mode 100644 index 00000000..3fcfa0b5 --- /dev/null +++ b/description/xProHackerx/imgui-ios-mod-menu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on imgui Menu for IOS. +It centers on modding. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / render/draw area. diff --git a/description/xakepru/x14.08-coverstory-blizzard/description_en.txt b/description/xakepru/x14.08-coverstory-blizzard/description_en.txt new file mode 100644 index 00000000..50cacced --- /dev/null +++ b/description/xakepru/x14.08-coverstory-blizzard/description_en.txt @@ -0,0 +1 @@ +This project is a World of Warcraft cheat framework featuring Warden anti-cheat bypass and script injection capabilities. The C++ codebase includes a modular hack architecture with memory scanning, code patching, Warden loader hooks, and RunScript injection through a plugin-based HacksController system. It is mainly useful for game security researchers studying Warden anti-cheat internals and Blizzard game client manipulation techniques. diff --git a/description/xan105/Mini-Launcher/description_en.txt b/description/xan105/Mini-Launcher/description_en.txt new file mode 100644 index 00000000..8d059827 --- /dev/null +++ b/description/xan105/Mini-Launcher/description_en.txt @@ -0,0 +1 @@ +This project is Mini-Launcher, a lightweight Windows game launcher that bypasses Steam or other platform requirements to launch games directly. It emulates the necessary Steam API calls, sets up the required environment variables, and starts the game executable without the full Steam client running. The tool handles SteamAppID injection and API stub loading. It is aimed at game modders and researchers who need to launch games outside their normal platform constraints for testing. diff --git a/description/xct/windows-kernel-exploits/description_en.txt b/description/xct/windows-kernel-exploits/description_en.txt new file mode 100644 index 00000000..4eba60a7 --- /dev/null +++ b/description/xct/windows-kernel-exploits/description_en.txt @@ -0,0 +1,3 @@ +This project provides guide. +It is organized as documentation and reference material for the cheat / vulnerable driver area rather than as a single standalone runtime codebase. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / vulnerable driver area. diff --git a/description/xehn1337/valorant-dumper/description_en.txt b/description/xehn1337/valorant-dumper/description_en.txt new file mode 100644 index 00000000..afba5b46 --- /dev/null +++ b/description/xehn1337/valorant-dumper/description_en.txt @@ -0,0 +1 @@ +This project is a Valorant offset and SDK dumper that extracts class definitions, function addresses, and memory offsets from the running Valorant game process. It scans Valorant's Unreal Engine structures to dump GObject arrays, GNames, player entity layouts, and weapon data addresses for use in cheat development. It is aimed at game security researchers studying Valorant's memory layout and Vanguard anti-cheat researchers analyzing cheat tooling. diff --git a/description/xemu-project/xemu/description_en.txt b/description/xemu-project/xemu/description_en.txt new file mode 100644 index 00000000..96509c84 --- /dev/null +++ b/description/xemu-project/xemu/description_en.txt @@ -0,0 +1 @@ +This project is xemu, an open-source original Xbox emulator built on a QEMU fork. It emulates the Xbox's NV2A GPU, MCPX audio, NForce chipset, and custom x86 Pentium III CPU to run original Xbox game disc images (ISO/XISO). The C codebase includes LLE (Low-Level Emulation) of hardware components, OpenGL-based GPU rendering, USB controller support, and a cross-platform SDL2 UI. It is aimed at emulation developers, game preservation researchers, and retro gaming enthusiasts studying original Xbox hardware internals. diff --git a/description/xenia-project/xenia/description_en.txt b/description/xenia-project/xenia/description_en.txt new file mode 100644 index 00000000..b428937e --- /dev/null +++ b/description/xenia-project/xenia/description_en.txt @@ -0,0 +1 @@ +This project is Xenia, an Xbox 360 emulator for Windows written in C++. It implements a PowerPC CPU recompiler, Xbox 360 GPU emulation through Direct3D 12 or Vulkan, audio processing, and XAM/kernel service emulation to run Xbox 360 game executables (XEX) on PC. The emulator handles memory management, threading, file system virtualization, and controller input translation. It is aimed at emulation developers, game preservation enthusiasts, and researchers studying console hardware abstraction and binary translation. diff --git a/description/xetzzy/Fortnite-External-Source/description_en.txt b/description/xetzzy/Fortnite-External-Source/description_en.txt new file mode 100644 index 00000000..32ccbe09 --- /dev/null +++ b/description/xetzzy/Fortnite-External-Source/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C++ and C/C++ and centers on driver development and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/xiaoweime/WProtect/description_en.txt b/description/xiaoweime/WProtect/description_en.txt new file mode 100644 index 00000000..75758d4e --- /dev/null +++ b/description/xiaoweime/WProtect/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / obfuscation engine and centers on wprotect. +It is primarily written in C/C++ and C++ and centers on graphics, audio systems, and SDK generation. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/xiaoxindada/magiskboot_ndk_on_linux/description_en.txt b/description/xiaoxindada/magiskboot_ndk_on_linux/description_en.txt new file mode 100644 index 00000000..51bddce4 --- /dev/null +++ b/description/xiaoxindada/magiskboot_ndk_on_linux/description_en.txt @@ -0,0 +1 @@ +This project provides build configurations for compiling Magisk's magiskboot tool using the Android NDK on Linux. It patches the magiskboot source to build standalone with NDK toolchains, producing a native binary for Android boot image unpacking, repacking, and ramdisk manipulation. It is aimed at Android developers and ROM builders who need to compile magiskboot with the NDK for custom recovery and root workflows. diff --git a/description/xinyu-evolutruster/3D-Racing-Game/description_en.txt b/description/xinyu-evolutruster/3D-Racing-Game/description_en.txt new file mode 100644 index 00000000..78016e57 --- /dev/null +++ b/description/xinyu-evolutruster/3D-Racing-Game/description_en.txt @@ -0,0 +1,3 @@ +This project is a racing game based on OpenGL. +The scene can be changed by pressing the key M or N. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / source area. diff --git a/description/xkevio/kevboy/description_en.txt b/description/xkevio/kevboy/description_en.txt new file mode 100644 index 00000000..f06f07b7 --- /dev/null +++ b/description/xkevio/kevboy/description_en.txt @@ -0,0 +1 @@ +This project is a Game Boy emulator written in Rust with a graphical interface. It implements the Game Boy CPU, memory management, graphics rendering, and input handling with support for various ROM formats and custom icon assets. It is mainly useful for emulator developers and retro gaming enthusiasts studying Game Boy hardware emulation and Rust-based emulator architecture. diff --git a/description/xkp95175333/Thetan_ArenaSDK/description_en.txt b/description/xkp95175333/Thetan_ArenaSDK/description_en.txt new file mode 100644 index 00000000..bbe1db31 --- /dev/null +++ b/description/xkp95175333/Thetan_ArenaSDK/description_en.txt @@ -0,0 +1,3 @@ +This project provides thetan arena sdk. +It centers on rendering, audio systems, and physics. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:thetan area. diff --git a/description/xmmword/dpatch/description_en.txt b/description/xmmword/dpatch/description_en.txt new file mode 100644 index 00000000..5a1b64f4 --- /dev/null +++ b/description/xmmword/dpatch/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on syscall Dispatcher Patching PoC. +It does this by first making a mutable/writeable copy of the system call table, overwriting the function pointers in that table with the function pointers that point to the hook functions, and then patching the first several bytes of the dispatcher to make it jump to a custom system call handler. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel explorer area. diff --git a/description/xo1337/steam-overlay-x64/description_en.txt b/description/xo1337/steam-overlay-x64/description_en.txt new file mode 100644 index 00000000..d1015fd2 --- /dev/null +++ b/description/xo1337/steam-overlay-x64/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on steam. +It is primarily written in C and centers on modding, overlays, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / overlay area. diff --git a/description/xqemu/xqemu/description_en.txt b/description/xqemu/xqemu/description_en.txt new file mode 100644 index 00000000..a4000281 --- /dev/null +++ b/description/xqemu/xqemu/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on play original Xbox games. +QEMU is capable of emulating a complete machine in software without any need for hardware virtualization support. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/xsj3n/x64-EXE-Packer/description_en.txt b/description/xsj3n/x64-EXE-Packer/description_en.txt new file mode 100644 index 00000000..6dba5166 --- /dev/null +++ b/description/xsj3n/x64-EXE-Packer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on pE X64. +It is primarily written in C++ and C/C++ and centers on kernel-level work and memory analysis. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/xtremegamer1/vmdevirt-vtil/description_en.txt b/description/xtremegamer1/vmdevirt-vtil/description_en.txt new file mode 100644 index 00000000..1d1790c1 --- /dev/null +++ b/description/xtremegamer1/vmdevirt-vtil/description_en.txt @@ -0,0 +1,3 @@ +This project is the vtil compiler was ripped from and it is a broken demo that needs fixing. +Also, there are multiple vmenters per actual routine and most don't do that much so it would also be nice to stop treating vmenters as functions, instead inserting an unconditional jmp in place of a vmenter to the compiled vtil and then an unconditional jump back so IDA can display it better. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix vmp area. diff --git a/description/xtremegamer1/xigmapper/description_en.txt b/description/xtremegamer1/xigmapper/description_en.txt new file mode 100644 index 00000000..82cc01c0 --- /dev/null +++ b/description/xtremegamer1/xigmapper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eFI Manual Map. +The driver you want to load cannot be on a usb device, because usb devices are discovered and loaded by Windows after Vanguard is. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / efi driver area. diff --git a/description/xuanxuan0/TiEtwAgent/description_en.txt b/description/xuanxuan0/TiEtwAgent/description_en.txt new file mode 100644 index 00000000..95114516 --- /dev/null +++ b/description/xuanxuan0/TiEtwAgent/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on eTW. +The archive includes source code and project documentation that outline the repository structure and main implementation areas. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / detection:injection area. diff --git a/description/xvorost/CS-2-Glow/description_en.txt b/description/xvorost/CS-2-Glow/description_en.txt new file mode 100644 index 00000000..1c2173e8 --- /dev/null +++ b/description/xvorost/CS-2-Glow/description_en.txt @@ -0,0 +1 @@ +This project is an external glow ESP cheat for Counter-Strike 2 that applies visual glow effects to player entities. The C++ codebase includes entity parsing, game state reading, offset management, memory search routines, and process management for reading CS2 game memory externally. It is mainly useful for game security researchers studying CS2 external cheat techniques and entity glow rendering through memory manipulation. diff --git a/description/xxzzddxzd/unitySpeedTools/description_en.txt b/description/xxzzddxzd/unitySpeedTools/description_en.txt new file mode 100644 index 00000000..137ec46c --- /dev/null +++ b/description/xxzzddxzd/unitySpeedTools/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iOS Speed Tools. +It is primarily written in C/C++ and Objective-C and centers on modding, Unity, and IL2CPP analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/yabinc/simpleperf_demo/description_en.txt b/description/yabinc/simpleperf_demo/description_en.txt new file mode 100644 index 00000000..a8a82f32 --- /dev/null +++ b/description/yabinc/simpleperf_demo/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on perf. +It can be used to profile android applications. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel explorer area. diff --git a/description/yardenshafir/SymlinkCallback/description_en.txt b/description/yardenshafir/SymlinkCallback/description_en.txt new file mode 100644 index 00000000..f9d57c0e --- /dev/null +++ b/description/yardenshafir/SymlinkCallback/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on symlinkCallback. +It modifies the symlink object and replaces the LinkTarget string with a callback function which will be called whenever the symlink is accessed. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / windows ring0 callback area. diff --git a/description/yardenshafir/WinDbg_Scripts/description_en.txt b/description/yardenshafir/WinDbg_Scripts/description_en.txt new file mode 100644 index 00000000..69459b2a --- /dev/null +++ b/description/yardenshafir/WinDbg_Scripts/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on winDbg scripts. +It is primarily written in JavaScript and centers on kernel-level work, modding, and debugging. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / windbg plugins area. diff --git a/description/yardenshafir/cet-research/description_en.txt b/description/yardenshafir/cet-research/description_en.txt new file mode 100644 index 00000000..dc4859df --- /dev/null +++ b/description/yardenshafir/cet-research/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cET. +It is primarily written in C. +It is mainly useful for Windows kernel and platform security researchers working in the windows security features area. diff --git a/description/yaxinsn/vermagic/description_en.txt b/description/yaxinsn/vermagic/description_en.txt new file mode 100644 index 00000000..cb300e1f --- /dev/null +++ b/description/yaxinsn/vermagic/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on change vermagic and CRCs of a Linux Kernel Module. +It also supports (not tested) CRC dump and changes. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / re tools area. diff --git a/description/yellowbyte/opaque-predicates-detective/description_en.txt b/description/yellowbyte/opaque-predicates-detective/description_en.txt new file mode 100644 index 00000000..1a4242cc --- /dev/null +++ b/description/yellowbyte/opaque-predicates-detective/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on introduction: Previous approaches to generically identify opaque predicates work by identifying if a conditional branch contains an invariant expression. +The damage is localized at the basic block level (or at the function level) regardless of how an opaque predicate's invariant expression is constructed. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / binary ninja plugins area. diff --git a/description/yhnu/op7t/description_en.txt b/description/yhnu/op7t/description_en.txt new file mode 100644 index 00000000..5e6e3541 --- /dev/null +++ b/description/yhnu/op7t/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on dIY Kernel. +It centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / android kernel explorer area. diff --git a/description/yinleiCoder/cs2-cheat-cpp/description_en.txt b/description/yinleiCoder/cs2-cheat-cpp/description_en.txt new file mode 100644 index 00000000..939ebff6 --- /dev/null +++ b/description/yinleiCoder/cs2-cheat-cpp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on external. +It is primarily written in C/C++ and C++ and centers on rendering, asset pipelines, and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/ymdzq/OFRP-device_xiaomi_mondrian/description_en.txt b/description/ymdzq/OFRP-device_xiaomi_mondrian/description_en.txt new file mode 100644 index 00000000..1fc0fe58 --- /dev/null +++ b/description/ymdzq/OFRP-device_xiaomi_mondrian/description_en.txt @@ -0,0 +1 @@ +OrangeFox Recovery Project (OFRP) device tree for the Xiaomi Redmi K60 Pro (codename mondrian), providing recovery partition configuration, TWRP flags, a prebuilt kernel with Goodix fingerprint kernel module, and vendor HAL binaries (gatekeeper, keymaster, QSEECOM) needed to boot a custom recovery environment on Qualcomm Snapdragon 8 Gen 2 hardware. diff --git a/description/yoavst/ida-ios-helper/description_en.txt b/description/yoavst/ida-ios-helper/description_en.txt new file mode 100644 index 00000000..b1089f36 --- /dev/null +++ b/description/yoavst/ida-ios-helper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on plugin to ease reversing iOS projects. +It requires vtable symbols to be present. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/yoshisaac/CounterStrike2-Linux-Cheat/description_en.txt b/description/yoshisaac/CounterStrike2-Linux-Cheat/description_en.txt new file mode 100644 index 00000000..467dd7cf --- /dev/null +++ b/description/yoshisaac/CounterStrike2-Linux-Cheat/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linux External. +It is primarily written in C++ and centers on memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:cs2 area. diff --git a/description/yoshisaac/CounterStrikeSource-Linux-Trainer/description_en.txt b/description/yoshisaac/CounterStrikeSource-Linux-Trainer/description_en.txt new file mode 100644 index 00000000..17f9147e --- /dev/null +++ b/description/yoshisaac/CounterStrikeSource-Linux-Trainer/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on linux External. +This is a program intended to automate tasks such as movement, and display information to us that wasn't originally intended to be shown. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:css area. diff --git a/description/younasiqw/BattleField-1-Internal/description_en.txt b/description/younasiqw/BattleField-1-Internal/description_en.txt new file mode 100644 index 00000000..59a9c965 --- /dev/null +++ b/description/younasiqw/BattleField-1-Internal/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:battlefield 1 and centers on battle field 1 internal. +It is primarily written in C++ and C/C++ and centers on DirectX, SDK generation, and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:battlefield 1 area. diff --git a/description/yourmnbbn/tiny-csgo-client/description_en.txt b/description/yourmnbbn/tiny-csgo-client/description_en.txt new file mode 100644 index 00000000..37970c3f --- /dev/null +++ b/description/yourmnbbn/tiny-csgo-client/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on tiny csgo client for connecting dedicated server. +It is primarily written in C++ and C/C++ and centers on modding and SDK generation. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:csgo area. diff --git a/description/yrgo/awesome-educational-games/description_en.txt b/description/yrgo/awesome-educational-games/description_en.txt new file mode 100644 index 00000000..0ea0f53c --- /dev/null +++ b/description/yrgo/awesome-educational-games/description_en.txt @@ -0,0 +1,3 @@ +This project provides a curated list of awesome educational games to learn editors, languages, programming, etc. +Educational games are designed to teach people about certain subjects, expand concepts, reinforce development, understand an historical event or culture, or assist them in learning a skill as they play - Wikipedia. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / guide area. diff --git a/description/yring-me/ts-ue4dumper/description_en.txt b/description/yring-me/ts-ue4dumper/description_en.txt new file mode 100644 index 00000000..4bed3ce9 --- /dev/null +++ b/description/yring-me/ts-ue4dumper/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on typeScript and Frida UE4dumper. +But it is more modular, and uses C++ to get offsets, making it easier to read and modify. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unreal area. diff --git a/description/ys1231/MoveCertificate/description_en.txt b/description/ys1231/MoveCertificate/description_en.txt new file mode 100644 index 00000000..50032b44 --- /dev/null +++ b/description/ys1231/MoveCertificate/description_en.txt @@ -0,0 +1,3 @@ +This project is a Magisk/KernelSU/APatch module for moving user certificates to system certificates. +This scenario needs to be preserved. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / magisk area. diff --git a/description/ytk2128/pe32-password/description_en.txt b/description/ytk2128/pe32-password/description_en.txt new file mode 100644 index 00000000..bed89ac6 --- /dev/null +++ b/description/ytk2128/pe32-password/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under anti cheat / binary packer and centers on pe32 password. +It is primarily written in C/C++ and C++ and centers on modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / binary packer area. diff --git a/description/yubie-re/ida-jm-xorstr-decrypt-plugin/description_en.txt b/description/yubie-re/ida-jm-xorstr-decrypt-plugin/description_en.txt new file mode 100644 index 00000000..4f1cfabd --- /dev/null +++ b/description/yubie-re/ida-jm-xorstr-decrypt-plugin/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on attempts to decrypt JM Xorstr in some x64 binaries. +It is primarily written in Python and centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/yucchiy/UniCli/description_en.txt b/description/yucchiy/UniCli/description_en.txt new file mode 100644 index 00000000..5867ac3e --- /dev/null +++ b/description/yucchiy/UniCli/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on cLI to control Unity Editor from terminal — compile, test, build, inspect GameObjects; 80+ commands, AI-agent ready (Claude Code plugin, Agent Skills. +It is primarily written in C# and centers on shader work, rendering, and graphics. +It is mainly useful for game developers, engine programmers, and graphics researchers working in the game engine / game engine plugins:unity area. diff --git a/description/yukiarrr/Il2cppSpy/description_en.txt b/description/yukiarrr/Il2cppSpy/description_en.txt new file mode 100644 index 00000000..a9545746 --- /dev/null +++ b/description/yukiarrr/Il2cppSpy/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on unity IL2CPP Disassembler (for apk. +Select two apks, and the difference between them is displayed. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game engine explorer:unity area. diff --git a/description/yyl-20020115/OpenArk/description_en.txt b/description/yyl-20020115/OpenArk/description_en.txt new file mode 100644 index 00000000..959dfda9 --- /dev/null +++ b/description/yyl-20020115/OpenArk/description_en.txt @@ -0,0 +1 @@ +This project is OpenArk, an open-source Windows kernel analysis and anti-rootkit toolkit with a Qt-based GUI. It provides process, thread, module, driver, and callback enumeration, kernel object inspection, SSDT/shadow SSDT viewing, registry monitoring, network connection listing, and file unlocking capabilities. The tool includes a kernel driver component for deep system inspection and rootkit detection. It is aimed at security analysts, malware researchers, and system administrators performing Windows system analysis and rootkit hunting. diff --git a/description/z1ko/mutaben/description_en.txt b/description/z1ko/mutaben/description_en.txt new file mode 100644 index 00000000..0d3c182e --- /dev/null +++ b/description/z1ko/mutaben/description_en.txt @@ -0,0 +1,3 @@ +This project is a simple mixed-boolean-arithmetic (MBA) generator witten in python. +It is primarily written in Python. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / mixed boolean-arithmetic area. diff --git a/description/za233/IDADeflat/description_en.txt b/description/za233/IDADeflat/description_en.txt new file mode 100644 index 00000000..165a12b4 --- /dev/null +++ b/description/za233/IDADeflat/description_en.txt @@ -0,0 +1 @@ +This project is an IDA Pro plugin for semi-automated removal of control flow flattening obfuscation. The Python-based plugin uses angr as its symbolic execution backend to identify real basic blocks, recover the original control flow graph, and patch the flattened function back to its deobfuscated form. It is mainly useful for reverse engineers and malware analysts dealing with OLLVM-style control flow flattening in protected binaries. diff --git a/description/zboralski/unflutter/description_en.txt b/description/zboralski/unflutter/description_en.txt new file mode 100644 index 00000000..78ce240a --- /dev/null +++ b/description/zboralski/unflutter/description_en.txt @@ -0,0 +1 @@ +This project is unflutter, a tool for reversing compiled Flutter/Dart applications. It extracts Dart snapshot metadata from Flutter APKs and iOS apps, recovers class names, function names, and type information that would otherwise be lost during AOT compilation. The Python tool parses the Dart VM snapshot format and outputs reconstructed symbol information. It is aimed at mobile security researchers and reverse engineers analyzing Flutter-based applications. diff --git a/description/zengfr/XrefsExt/description_en.txt b/description/zengfr/XrefsExt/description_en.txt new file mode 100644 index 00000000..a3b809a2 --- /dev/null +++ b/description/zengfr/XrefsExt/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on xrefsExt plugin. +It centers on plugin development. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ida plugins area. diff --git a/description/zer0condition/BusterCall/description_en.txt b/description/zer0condition/BusterCall/description_en.txt new file mode 100644 index 00000000..8611b993 --- /dev/null +++ b/description/zer0condition/BusterCall/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel research tool that demonstrates techniques for detecting and disabling kernel-mode callbacks and notification routines. It enumerates registered process, thread, image load, and registry callbacks, identifies their owning drivers, and can selectively remove or patch them. The C driver provides insight into how anti-cheat systems register kernel callbacks and how attackers attempt to disable them. It is aimed at kernel security researchers studying callback-based detection and its evasion. diff --git a/description/zer0condition/Demystifying-PatchGuard/description_en.txt b/description/zer0condition/Demystifying-PatchGuard/description_en.txt new file mode 100644 index 00000000..69a54a03 --- /dev/null +++ b/description/zer0condition/Demystifying-PatchGuard/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / patchguard-related and centers on demystifying patch guard. +It is primarily written in C/C++. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / patchguard-related area. diff --git a/description/zer0condition/NTMemory/description_en.txt b/description/zer0condition/NTMemory/description_en.txt new file mode 100644 index 00000000..6dd9ea58 --- /dev/null +++ b/description/zer0condition/NTMemory/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel memory manipulation library in C that provides functions for reading, writing, and allocating memory across process boundaries from kernel mode. It implements process memory access through MDL (Memory Descriptor List) mapping, physical memory translation, and CR3-based page table walking, bypassing standard API-level protections. It is aimed at kernel security researchers studying alternative memory access techniques used in kernel-mode cheats and anti-cheat evasion. diff --git a/description/zer0condition/Ophion/description_en.txt b/description/zer0condition/Ophion/description_en.txt new file mode 100644 index 00000000..e3c53032 --- /dev/null +++ b/description/zer0condition/Ophion/description_en.txt @@ -0,0 +1 @@ +This project is a stealth Intel VT-x Type-2 hypervisor implemented as a Windows x64 WDM kernel driver in C. It sets up VMX operation with EPT management, handles VM exits for events such as CPUID and control-register access, broadcasts processor virtualization across all cores, and includes anti-detection measures like CPUID result caching, CR4.VMXE hiding, TSC offset compensation, and a private host CR3 to avoid leaking hypervisor page tables. It is aimed at kernel security researchers studying lightweight hypervisor construction, anti-cheat hypervisor-detection bypass, and hardware-assisted virtualization internals on Windows. diff --git a/description/zer0condition/ZeroThreadKernel/description_en.txt b/description/zer0condition/ZeroThreadKernel/description_en.txt new file mode 100644 index 00000000..20a54250 --- /dev/null +++ b/description/zer0condition/ZeroThreadKernel/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel communication proof of concept that executes kernel code without creating visible system threads. It abuses existing kernel thread contexts or timer callbacks to run custom code, avoiding detection by anti-cheat systems that enumerate system threads to find manually mapped drivers. The C driver demonstrates threadless kernel execution techniques. It is aimed at kernel researchers studying stealthy code execution and anti-cheat thread detection evasion. diff --git a/description/zer0condition/checkhv_um/description_en.txt b/description/zer0condition/checkhv_um/description_en.txt new file mode 100644 index 00000000..acd3f0c2 --- /dev/null +++ b/description/zer0condition/checkhv_um/description_en.txt @@ -0,0 +1 @@ +This project is a user-mode hypervisor detection tool for Windows that checks for the presence of Type-1 and Type-2 hypervisors using multiple techniques. It tests CPUID hypervisor present bit, timing-based detection through RDTSC/RDTSCP anomalies, VMCS artifact scanning, and known hypervisor signature matching. The C implementation runs entirely from user mode without requiring drivers. It is aimed at anti-cheat developers and security researchers building hypervisor detection capabilities. diff --git a/description/zer0condition/hv/description_en.txt b/description/zer0condition/hv/description_en.txt new file mode 100644 index 00000000..b1a8852c --- /dev/null +++ b/description/zer0condition/hv/description_en.txt @@ -0,0 +1 @@ +This project is a minimal Intel VT-x hypervisor for Windows written in C. It sets up VMX root mode, configures VMCS (Virtual Machine Control Structure), handles VM exits for CPUID, MSR access, and control register operations, and virtualizes the running operating system. The driver operates as a Type-2 hypervisor beneath the existing OS. It is aimed at kernel researchers learning Intel VT-x hypervisor development and studying hardware-assisted virtualization internals. diff --git a/description/zeroxjf/lightsaber/description_en.txt b/description/zeroxjf/lightsaber/description_en.txt new file mode 100644 index 00000000..c59a218e --- /dev/null +++ b/description/zeroxjf/lightsaber/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on iOS 18.4-18.6.2 userland exploit chain with JS injection into SpringBoard and other processes. +It is runtime JS modification through an exploit chain. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / ios jailbreak area. diff --git a/description/zhaodice/proxmox-ve-anti-detection/description_en.txt b/description/zhaodice/proxmox-ve-anti-detection/description_en.txt new file mode 100644 index 00000000..c5987562 --- /dev/null +++ b/description/zhaodice/proxmox-ve-anti-detection/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hidden PVE. +It centers on kernel-level work. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/zhaodice/qemu-anti-detection/description_en.txt b/description/zhaodice/qemu-anti-detection/description_en.txt new file mode 100644 index 00000000..48ad6404 --- /dev/null +++ b/description/zhaodice/qemu-anti-detection/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hidden QEMU. +The "QEMU keyboard" for example is then renamed to "ASUS keyboard". +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / qemu/kvm/pve/vbox area. diff --git a/description/zhitkur/DayZzz/description_en.txt b/description/zhitkur/DayZzz/description_en.txt new file mode 100644 index 00000000..e705b5e0 --- /dev/null +++ b/description/zhitkur/DayZzz/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / game:dayz and centers on day zzz. +It is primarily written in C/C++ and C++ and centers on modding, SDK generation, and overlays. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:dayz area. diff --git a/description/zhizhuodemao/android_proxy_mcp/description_en.txt b/description/zhizhuodemao/android_proxy_mcp/description_en.txt new file mode 100644 index 00000000..bcefe2a3 --- /dev/null +++ b/description/zhizhuodemao/android_proxy_mcp/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on android Proxy MCP — HTTP/HTTPS packet capture for AI assistants, mitmdump + SQLite + natural language query. +It is primarily written in Python and centers on modding. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/zhuowei/cheese/description_en.txt b/description/zhuowei/cheese/description_en.txt new file mode 100644 index 00000000..5a9ba5ec --- /dev/null +++ b/description/zhuowei/cheese/description_en.txt @@ -0,0 +1 @@ +Root exploit for Meta Quest 3 and Quest 3S VR headsets (firmware v79 and below) leveraging CVE-2025-21479, a Qualcomm Adreno GPU vulnerability, to achieve temporary root and install Magisk without modifying the boot partition, building on research from Project Zero's Adrenaline exploit and Freedreno GPU documentation. diff --git a/description/zhuzhu-Top/deobf/description_en.txt b/description/zhuzhu-Top/deobf/description_en.txt new file mode 100644 index 00000000..c8e237b0 --- /dev/null +++ b/description/zhuzhu-Top/deobf/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on libtprt.so. +It is primarily written in Python and centers on plugin development and hooking. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / fix ollvm area. diff --git a/description/zinja-coder/apktool-mcp-server/description_en.txt b/description/zinja-coder/apktool-mcp-server/description_en.txt new file mode 100644 index 00000000..c3032f8e --- /dev/null +++ b/description/zinja-coder/apktool-mcp-server/description_en.txt @@ -0,0 +1,3 @@ +This project is a MCP Server for APK Tool (Part of Android Reverse Engineering MCP Suites. +The following MCP tools are available. +It is mainly useful for game developers, reverse engineers, and tooling builders working in the game develop / mcp server area. diff --git a/description/zinx-YT/Fortnite-Fltokens-and-offsets/description_en.txt b/description/zinx-YT/Fortnite-Fltokens-and-offsets/description_en.txt new file mode 100644 index 00000000..e444a2fd --- /dev/null +++ b/description/zinx-YT/Fortnite-Fltokens-and-offsets/description_en.txt @@ -0,0 +1,3 @@ +This project is the grabber still works so yeah (version 1 or 2 will work fine) - ive havent tested this. +THIS WILL NO LONGER UPDATE YOU COULD USE BUT THIS WILL BE GOING OFFLINE IN THE FUTURE. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / game:fortnite area. diff --git a/description/zoand/BOOM/description_en.txt b/description/zoand/BOOM/description_en.txt new file mode 100644 index 00000000..bd9b5eb1 --- /dev/null +++ b/description/zoand/BOOM/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hijack Beep.sys. +It hides itself and changes the way of communication. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / driver communication area. diff --git a/description/zoand/Injectors/description_en.txt b/description/zoand/Injectors/description_en.txt new file mode 100644 index 00000000..5d2a03bd --- /dev/null +++ b/description/zoand/Injectors/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on injection Testing. +It is primarily written in C/C++ and C++ and centers on driver development, asset pipelines, and modding. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/zodiacon/EtwExplorer/description_en.txt b/description/zodiacon/EtwExplorer/description_en.txt new file mode 100644 index 00000000..31f7b7a4 --- /dev/null +++ b/description/zodiacon/EtwExplorer/description_en.txt @@ -0,0 +1 @@ +This project is ETW Explorer, a Windows GUI tool for browsing and inspecting ETW (Event Tracing for Windows) providers, their event definitions, keywords, and metadata. It enumerates registered ETW providers, displays their manifest-based or TraceLogging event schemas, and allows filtering by provider name or GUID. The C#/WPF application helps analysts discover available telemetry sources. It is aimed at security researchers, system administrators, and EDR developers exploring Windows ETW infrastructure for detection and monitoring. diff --git a/description/zodiacon/QuickAsm/description_en.txt b/description/zodiacon/QuickAsm/description_en.txt new file mode 100644 index 00000000..977a15da --- /dev/null +++ b/description/zodiacon/QuickAsm/description_en.txt @@ -0,0 +1 @@ +This project is QuickAsm, a lightweight x86/x64 assembly editor and executor for Windows. It provides a simple GUI where users can type assembly instructions, assemble them in real time using the Keystone engine, view the resulting machine code bytes, and execute the assembled code within the application's process. The C++ tool is useful for quick assembly experimentation and shellcode testing. It is aimed at reverse engineers, exploit developers, and security researchers who need to rapidly prototype and test assembly code snippets. diff --git a/description/zodiacon/TotalPE2/description_en.txt b/description/zodiacon/TotalPE2/description_en.txt new file mode 100644 index 00000000..baa3b2c8 --- /dev/null +++ b/description/zodiacon/TotalPE2/description_en.txt @@ -0,0 +1 @@ +This project is Total PE 2, a comprehensive PE (Portable Executable) file viewer for Windows with a modern WPF interface. It displays detailed PE structure information including headers, sections, imports, exports, resources, debug directories, relocations, TLS, exception handling, and .NET metadata. The C# application supports drag-and-drop, hex viewing, and resource extraction. It is aimed at reverse engineers, malware analysts, and Windows developers who need a quick visual PE structure inspector. diff --git a/description/zompi2/Static-Variables-Obfuscator-UE4/description_en.txt b/description/zompi2/Static-Variables-Obfuscator-UE4/description_en.txt new file mode 100644 index 00000000..fe03b4db --- /dev/null +++ b/description/zompi2/Static-Variables-Obfuscator-UE4/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on this code plugin for Unreal Engine 4 obfuscates any static (non-dynamic) variable so it is very difficult to locate this variable in the memory. +This makes using tools like Cheat Engine to manipulate in-game data a non trivial task. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / game engine protection:unreal area. diff --git a/description/zorftw/lsass-extend-mapper/description_en.txt b/description/zorftw/lsass-extend-mapper/description_en.txt new file mode 100644 index 00000000..40c5b5a9 --- /dev/null +++ b/description/zorftw/lsass-extend-mapper/description_en.txt @@ -0,0 +1 @@ +This project is a Windows driver mapper that loads unsigned kernel drivers by extending the lsass.exe process's address space and using its context for kernel operations. It abuses lsass's trusted status to map driver code through a technique that avoids standard driver loading traces. The C++ implementation demonstrates process-context-based kernel code execution. It is aimed at kernel researchers studying advanced driver mapping techniques that leverage trusted process contexts. diff --git a/description/zorftw/revert-mapper/description_en.txt b/description/zorftw/revert-mapper/description_en.txt new file mode 100644 index 00000000..393ea193 --- /dev/null +++ b/description/zorftw/revert-mapper/description_en.txt @@ -0,0 +1 @@ +This project is a Windows driver mapper that cleans up traces of manually mapped kernel drivers after execution. It maps an unsigned driver into kernel memory, executes its entry point, and then reverts the mapping by freeing allocated memory, removing pool tags, and clearing references to avoid detection by anti-cheat memory scanners. The C++ tool demonstrates post-execution cleanup techniques for mapped drivers. It is aimed at kernel security researchers studying anti-forensic driver mapping and detection evasion. diff --git a/description/zouxianyu/BlindEye/description_en.txt b/description/zouxianyu/BlindEye/description_en.txt new file mode 100644 index 00000000..4d844a01 --- /dev/null +++ b/description/zouxianyu/BlindEye/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on packet Fucker. +By hooking the ExAllocatePool and ExAllocatePoolWithTag functions imported by the BattlEye kernel module, the memory allocation requests of the "report" function are dropped and the kernel detections are bypassed. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:be area. diff --git a/description/zx0CF1/shredder-rs/description_en.txt b/description/zx0CF1/shredder-rs/description_en.txt new file mode 100644 index 00000000..7d79d235 --- /dev/null +++ b/description/zx0CF1/shredder-rs/description_en.txt @@ -0,0 +1,3 @@ +This project is a high-fidelity x86_64 polymorphic mutation engine focused on instruction-level fragmentation and context preservation. +Overview Shredder-RS implements instruction-level shredding to defeat static analysis. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / obfuscation engine area. diff --git a/description/zxd1994/vt-debuuger/description_en.txt b/description/zxd1994/vt-debuuger/description_en.txt new file mode 100644 index 00000000..1e3fb6a5 --- /dev/null +++ b/description/zxd1994/vt-debuuger/description_en.txt @@ -0,0 +1,3 @@ +This project focuses on hacked Hypervisor Testing. +It is primarily written in C/C++ and C++ and centers on kernel-level work, driver development, and plugin development. +It is mainly useful for anti-cheat engineers and defensive security researchers working in the anti cheat / stress testing area. diff --git a/description/zyhp/vac3_inhibitor/description_en.txt b/description/zyhp/vac3_inhibitor/description_en.txt new file mode 100644 index 00000000..1762d902 --- /dev/null +++ b/description/zyhp/vac3_inhibitor/description_en.txt @@ -0,0 +1,3 @@ +This project is a repository listed under cheat / explore anticheat system:vac and centers on vac3 inhibitor. +It is primarily written in C++ and centers on modding, hooking, and memory analysis. +It is mainly useful for game security researchers and reverse engineers studying offensive techniques working in the cheat / explore anticheat system:vac area. diff --git a/description/zzhouhe/PG1903/description_en.txt b/description/zzhouhe/PG1903/description_en.txt new file mode 100644 index 00000000..7c802797 --- /dev/null +++ b/description/zzhouhe/PG1903/description_en.txt @@ -0,0 +1 @@ +This project is a Windows kernel driver that disables PatchGuard in real-time on Windows 10 version 1903 by manipulating context page NX (no-execute) attributes. The C and x64 assembly codebase includes memory scanning routines to locate PatchGuard context structures and neutralize their integrity checks. It is mainly useful for kernel security researchers studying PatchGuard internals, kernel patch protection bypass techniques, and Windows kernel integrity mechanisms. diff --git a/scripts/fill-missing-descriptions.py b/scripts/fill-missing-descriptions.py new file mode 100644 index 00000000..6e563388 --- /dev/null +++ b/scripts/fill-missing-descriptions.py @@ -0,0 +1,717 @@ +#!/usr/bin/env python3 + +"""Fill missing repository descriptions from README metadata and local archives. + +This script scans GitHub repositories referenced in README.md, then creates +description/{owner}/{repo}/description_en.txt for entries that do not already +have one. It prefers the README annotation, then falls back to the embedded +top-level README inside archive/{owner}/{repo}.txt, and finally category-based +context when little source material is available. +""" + +from __future__ import annotations + +import argparse +import html +import re +from collections import Counter +from dataclasses import dataclass +from pathlib import Path + + +ROOT_DIR = Path(__file__).resolve().parent.parent +README_PATH = ROOT_DIR / "README.md" +ARCHIVE_DIR = ROOT_DIR / "archive" +DESC_DIR = ROOT_DIR / "description" +SCAN_START_MARKER = "## Game Engine" + +REPO_URL_RE = re.compile( + r"https://github\.com/([^/\s\)\]>\"']+)/([^/\s\)\]>\"'#]+)" +) +MARKDOWN_LINK_RE = re.compile(r"\[([^\]]+)\]\((https://github\.com/[^)]+)\)") +README_BLOCK_RE = re.compile( + r"`README[^`]*`:\s*\n\n```(?:\w+)?\n(.*?)\n```", + re.IGNORECASE | re.DOTALL, +) +TREE_BLOCK_RE = re.compile( + r"Source Tree:\s*\n\n```txt\n(.*?)\n```", + re.DOTALL, +) +SENTENCE_SPLIT_RE = re.compile(r"(?<=[.!?])\s+") + + +GENERIC_ANNOTATIONS = { + "unreal", + "unity", + "shader", + "render", + "opengl", + "directx", + "mobile game", + "golang", + "rust", + "2d", + "3d", + "html5", + "c++", + "c#", + ".net", + "gameboy", +} + +EXTENSION_LANGUAGES = { + ".c": "C", + ".cc": "C++", + ".cpp": "C++", + ".cxx": "C++", + ".h": "C/C++", + ".hpp": "C++", + ".hh": "C++", + ".go": "Go", + ".rs": "Rust", + ".cs": "C#", + ".py": "Python", + ".java": "Java", + ".kt": "Kotlin", + ".swift": "Swift", + ".m": "Objective-C", + ".mm": "Objective-C++", + ".js": "JavaScript", + ".jsx": "JavaScript", + ".ts": "TypeScript", + ".tsx": "TypeScript", + ".lua": "Lua", + ".gd": "GDScript", + ".zig": "Zig", + ".sh": "Shell", + ".ps1": "PowerShell", + ".cmake": "CMake", +} + +FEATURE_PATTERNS = [ + ("anti-cheat", "anti-cheat research"), + ("reverse engineering", "reverse engineering"), + ("reverse-engineering", "reverse engineering"), + ("kernel", "kernel-level work"), + ("driver", "driver development"), + ("directx", "DirectX"), + ("opengl", "OpenGL"), + ("vulkan", "Vulkan"), + ("shader", "shader work"), + ("render", "rendering"), + ("graphics", "graphics"), + ("audio", "audio systems"), + ("network", "networking"), + ("physics", "physics"), + ("animation", "animation"), + ("asset", "asset pipelines"), + ("editor", "editor tooling"), + ("plugin", "plugin development"), + ("mod", "modding"), + ("unity", "Unity"), + ("unreal", "Unreal Engine"), + ("godot", "Godot"), + ("il2cpp", "IL2CPP analysis"), + ("sdk", "SDK generation"), + ("hook", "hooking"), + ("overlay", "overlays"), + ("memory", "memory analysis"), + ("emulator", "emulation"), + ("debug", "debugging"), +] + +AUDIENCE_BY_CATEGORY = { + "Game Engine": "game developers, engine programmers, and graphics researchers", + "Mathematics": "engine programmers and gameplay or simulation developers", + "Renderer": "graphics programmers and rendering researchers", + "3D Graphics": "graphics programmers, technical artists, and engine developers", + "AI": "game AI and tooling developers", + "Image Codec": "engine and tooling developers working on asset pipelines", + "Wavefront Obj": "asset pipeline and tooling developers", + "Task Scheduler": "engine programmers building job systems and runtime infrastructure", + "Game Network": "backend, multiplayer, and online game developers", + "PhysX SDK": "physics and gameplay engineers", + "Game Develop": "game developers, reverse engineers, and tooling builders", + "Game Assets": "content pipeline and modding developers", + "Game Hot Patch": "live-update and patching workflow developers", + "Game Testing": "QA automation and testing engineers", + "Game Tools": "tooling developers and reverse engineers", + "Game Manager": "launcher, patcher, and infrastructure developers", + "Game CI": "build, release, and automation engineers", + "DirectX": "graphics programmers and Windows game tooling developers", + "OpenGL": "graphics programmers and cross-platform renderer developers", + "Vulkan": "low-level graphics programmers and performance-focused engine developers", + "Cheat": "game security researchers and reverse engineers studying offensive techniques", + "Anti Cheat": "anti-cheat engineers and defensive security researchers", + "Some Tricks": "low-level Windows, Linux, and mobile researchers", + "Windows Security Features": "Windows kernel and platform security researchers", + "WSL": "Windows subsystem and developer-environment researchers", + "WSA": "Android-on-Windows and platform integration researchers", + "Windows Emulator": "emulator developers and Windows platform researchers", + "Linux Emulator": "emulator developers and Linux platform researchers", + "Android Emulator": "mobile platform and emulator researchers", + "IOS Emulator": "iOS platform and emulator researchers", + "Game Boy": "retro handheld emulator developers and reverse engineers", + "Nintendo Switch": "console emulator developers and Switch researchers", + "Xbox": "console emulator developers and Xbox researchers", + "PlayStation": "console emulator developers and PlayStation researchers", +} + + +@dataclass(frozen=True) +class RepoEntry: + owner: str + repo: str + category: str + subcategory: str + annotation: str + line_text: str + + +def clean_whitespace(text: str) -> str: + return re.sub(r"\s+", " ", text).strip() + + +def ensure_period(text: str) -> str: + text = clean_whitespace(text).rstrip(".;:,") + if not text: + return "" + if text[-1] in ".!?": + return text + return f"{text}." + + +def strip_markdown(text: str) -> str: + text = re.sub(r"!\[[^\]]*\]\([^)]*\)", " ", text) + text = re.sub(r"\[([^\]]+)\]\(([^)]+)\)", r"\1", text) + text = re.sub(r"<[^>]+>", " ", text) + text = re.sub(r"`([^`]*)`", r"\1", text) + text = re.sub(r"https?://\S+", " ", text) + text = text.replace("**", " ").replace("__", " ") + text = text.replace("*", " ") + text = html.unescape(text) + return clean_whitespace(text) + + +def is_generic_annotation(text: str) -> bool: + lowered = clean_whitespace(text).lower() + return lowered in GENERIC_ANNOTATIONS or len(lowered.split()) <= 2 and lowered in GENERIC_ANNOTATIONS + + +def normalize_fragment(fragment: str) -> str: + fragment = strip_markdown(fragment).strip() + fragment = fragment.strip("[]() ") + fragment = clean_whitespace(fragment) + return fragment.rstrip(".") + + +def sentence_case(fragment: str) -> str: + fragment = clean_whitespace(fragment) + if not fragment: + return "" + return fragment[0].lower() + fragment[1:] + + +def natural_case(fragment: str) -> str: + fragment = clean_whitespace(fragment) + if not fragment: + return "" + + words: list[str] = [] + for word in fragment.split(): + if word.lower() in {"a", "an", "the"}: + words.append(word.lower()) + continue + if any(char.isdigit() for char in word): + words.append(word) + continue + if any(char.islower() for char in word) and any(char.isupper() for char in word[1:]): + words.append(word) + continue + if word.isupper() or "#" in word or "+" in word: + words.append(word) + continue + words.append(word.lower()) + return " ".join(words) + + +def mostly_ascii_letters(text: str) -> bool: + letters = [char for char in text if char.isalpha()] + if not letters: + return True + ascii_letters = sum(char.isascii() for char in letters) + return ascii_letters / len(letters) >= 0.8 + + +def humanize_repo_name(repo: str) -> str: + repo = repo.replace("-", " ").replace("_", " ") + repo = re.sub(r"(?<=[a-z0-9])(?=[A-Z])", " ", repo) + return clean_whitespace(repo) + + +def normalized_compare(text: str) -> str: + text = humanize_repo_name(text) + text = re.sub(r"[^a-zA-Z0-9]+", " ", text) + return clean_whitespace(text).lower() + + +def is_descriptive_sentence(sentence: str) -> bool: + lowered = sentence.lower() + prefixes = ( + "a ", + "an ", + "the ", + "this ", + "it ", + "curated ", + "comprehensive ", + "lightweight ", + "small ", + "simple ", + "open-source ", + "open source ", + ) + tokens = ( + " is ", + " are ", + " provides", + " provide", + " offers", + " includes", + " contains", + " supports", + " allows", + " helps", + " enables", + " documents", + " collects", + " implements", + " uses", + " written in", + " built with", + " designed for", + " based on", + " moved to", + ) + return lowered.startswith(prefixes) or any(token in lowered for token in tokens) + + +def fragment_to_sentence(fragment: str, repo: str) -> str: + fragment = normalize_fragment(fragment) + fragment = SENTENCE_SPLIT_RE.split(fragment, maxsplit=1)[0] + if not fragment: + return "" + + repo_name = repo.replace("-", " ").replace("_", " ") + lowered = fragment.lower() + cleaned_fragment = natural_case(fragment.replace("&", "and")) + + if lowered.startswith("awesome "): + topic = natural_case(fragment[8:]) + return ensure_period(f"This project is a curated resource collection for {topic}") + + if "lists" in lowered: + return ensure_period(f"This project collects {cleaned_fragment}") + + if any(token in lowered for token in ("list", "guide", "tutorial", "notes", "reference", "cheat sheet", "book")): + if lowered.startswith(("curated ", "comprehensive ")): + return ensure_period(f"This project is a {cleaned_fragment}") + return ensure_period(f"This project provides {cleaned_fragment}") + + if lowered.startswith(("a ", "an ", "the ")): + return ensure_period(f"This project is {sentence_case(fragment)}") + + repo_prefix = re.compile(rf"^{re.escape(repo_name)}\s+is\s+", re.IGNORECASE) + if repo_prefix.match(fragment): + return ensure_period("This project is " + repo_prefix.sub("", fragment)) + + repo_token_prefix = re.compile(rf"^{re.escape(repo)}\s+is\s+", re.IGNORECASE) + if repo_token_prefix.match(fragment): + return ensure_period("This project is " + repo_token_prefix.sub("", fragment)) + + leading_verb = re.compile( + r"^(provides|offers|implements|contains|collects|documents|explains|generates|includes|showcases|serves as|acts as|helps|enables|focuses on|targets)\b", + re.IGNORECASE, + ) + if leading_verb.match(fragment): + return ensure_period(f"This project {sentence_case(fragment)}") + + return ensure_period(f"This project focuses on {sentence_case(fragment)}") + + +def pretty_repo_name(repo: str) -> str: + return humanize_repo_name(repo) + + +def context_focus(category: str, subcategory: str) -> str: + focus = f"{category}" + if subcategory: + focus = f"{category} / {subcategory}" + return focus + + +def extract_annotation(line: str, repo_url: str) -> str: + annotation = "" + for label, url in MARKDOWN_LINK_RE.findall(line): + if url.rstrip("/)") == repo_url.rstrip("/"): + annotation = normalize_fragment(label) + break + + if annotation: + return annotation + + after = line.split(repo_url, 1)[1] + match = re.search(r"\[([^\]]+)\]", after) + if match: + return normalize_fragment(match.group(1)) + return "" + + +def parse_readme_entries(text: str) -> list[RepoEntry]: + marker_pos = text.find(SCAN_START_MARKER) + scan_text = text[marker_pos:] if marker_pos != -1 else text + + category = "Uncategorized" + subcategory = "" + seen: set[tuple[str, str]] = set() + entries: list[RepoEntry] = [] + + for line in scan_text.splitlines(): + stripped = line.strip() + if stripped.startswith("## "): + category = stripped[3:].strip() + subcategory = "" + continue + if stripped.startswith(">"): + subcategory = stripped[1:].strip() + continue + + for match in REPO_URL_RE.finditer(line): + owner = match.group(1) + repo = match.group(2).rstrip(".,;:") + if owner == "gmh5225" and repo == "awesome-game-security": + continue + if owner == "stars": + continue + + key = (owner.lower(), repo.lower()) + if key in seen: + continue + seen.add(key) + + repo_url = match.group(0).rstrip(".,;:") + entries.append( + RepoEntry( + owner=owner, + repo=repo, + category=category, + subcategory=subcategory, + annotation=extract_annotation(line, repo_url), + line_text=clean_whitespace(line), + ) + ) + return entries + + +def archive_path(owner: str, repo: str) -> Path: + return ARCHIVE_DIR / owner / f"{repo}.txt" + + +def description_path(owner: str, repo: str) -> Path: + return DESC_DIR / owner / repo / "description_en.txt" + + +def read_archive_text(owner: str, repo: str) -> str: + path = archive_path(owner, repo) + if not path.exists(): + return "" + return path.read_text(encoding="utf-8", errors="ignore") + + +def extract_archive_readme(archive_text: str) -> str: + match = README_BLOCK_RE.search(archive_text) + if not match: + return "" + return match.group(1) + + +def extract_source_tree(archive_text: str) -> str: + match = TREE_BLOCK_RE.search(archive_text) + if not match: + return "" + return match.group(1) + + +def paragraph_candidates(readme_text: str) -> list[str]: + if not readme_text: + return [] + + lines: list[str] = [] + in_code = False + for raw in readme_text.splitlines(): + stripped = raw.strip() + if stripped.startswith("```"): + in_code = not in_code + continue + if in_code: + continue + if stripped.startswith(("- ", "* ", "+ ")): + continue + if stripped.startswith("|") and stripped.endswith("|"): + continue + + plain = strip_markdown(stripped) + plain = re.sub(r"^#+\s*", "", plain) + plain = re.sub(r"^>\s*", "", plain) + plain = re.sub(r"^[-*+]\s+", "", plain) + plain = re.sub(r"^\d+\.\s+", "", plain) + plain = clean_whitespace(plain) + + if not plain: + lines.append("") + continue + + lowered = plain.lower() + if lowered in {"license", "contributing", "credits", "faq", "todo", "usage", "installation"}: + lines.append("") + continue + if plain.startswith(":"): + continue + if len(plain) <= 4: + continue + if plain.isupper() and len(plain.split()) <= 6: + continue + if plain.startswith("Project Path:") or plain.startswith("Source Tree:"): + continue + lines.append(plain) + + paragraphs: list[str] = [] + current: list[str] = [] + for line in lines: + if not line: + if current: + paragraphs.append(clean_whitespace(" ".join(current))) + current = [] + continue + current.append(line) + if current: + paragraphs.append(clean_whitespace(" ".join(current))) + return paragraphs + + +def sentence_candidates(readme_text: str, repo: str) -> list[str]: + candidates: list[str] = [] + repo_name = normalized_compare(repo) + + for paragraph in paragraph_candidates(readme_text): + if len(paragraph) < 25: + continue + for sentence in SENTENCE_SPLIT_RE.split(paragraph): + sentence = clean_whitespace(sentence) + if not sentence: + continue + lowered = sentence.lower().strip(". ") + if lowered == repo_name: + continue + if normalized_compare(sentence) == repo_name: + continue + if lowered.startswith(("license", "copyright", "install", "usage", "contributing")): + continue + if any(token in lowered for token in ("sponsored by", "discord", "patreon", "telegram", "donate", "buy me a coffee", "follow me")): + continue + if len(sentence) < 25: + continue + if sentence[0].islower(): + continue + if not mostly_ascii_letters(sentence): + continue + if sentence.count(":") > 2: + continue + if sum(sentence.count(symbol) for symbol in "*_|") > 2: + continue + if not is_descriptive_sentence(sentence): + continue + candidates.append(ensure_period(sentence)) + if len(candidates) >= 4: + break + + return candidates[:4] + + +def top_languages(source_tree: str) -> list[str]: + counts: Counter[str] = Counter() + for raw_line in source_tree.splitlines(): + line = raw_line.strip() + if not line or line.endswith("/"): + continue + _, ext = Path(line).suffix.lower(), Path(line).suffix.lower() + if not ext: + continue + language = EXTENSION_LANGUAGES.get(ext) + if not language: + continue + counts[language] += 1 + + ordered = [name for name, _ in counts.most_common() if name not in {"Shell", "CMake"}] + return ordered[:3] + + +def top_features(text: str) -> list[str]: + lowered = text.lower() + features: list[str] = [] + for token, label in FEATURE_PATTERNS: + if token in lowered and label not in features: + features.append(label) + return features[:4] + + +def join_natural(items: list[str]) -> str: + if not items: + return "" + if len(items) == 1: + return items[0] + if len(items) == 2: + return f"{items[0]} and {items[1]}" + return f"{', '.join(items[:-1])}, and {items[-1]}" + + +def fallback_summary(entry: RepoEntry) -> str: + repo_name = pretty_repo_name(entry.repo).lower() + if any(token in repo_name for token in ("guide", "notes", "tutorial", "book", "cheat sheet", "reference", "awesome", "list", "tips")): + return ensure_period(f"This project provides {repo_name}") + if any(token in repo_name for token in ("engine", "framework", "plugin", "tool", "tools", "sdk", "server", "emulator", "renderer", "library")): + return ensure_period(f"This project provides {repo_name}") + + focus = context_focus(entry.category, entry.subcategory).lower() + return ensure_period( + f"This project is a repository listed under {focus} and centers on {repo_name}" + ) + + +def resource_sentence(entry: RepoEntry, languages: list[str], features: list[str], archive_exists: bool) -> str: + annotation = entry.annotation + lowered = annotation.lower() + if any(token in lowered for token in ("list", "guide", "awesome", "tutorial", "cheat sheet", "notes", "book", "reference", "tips")): + focus = context_focus(entry.category, entry.subcategory).lower() + return ensure_period( + f"It is organized as documentation and reference material for the {focus} area rather than as a single standalone runtime codebase" + ) + + parts: list[str] = [] + if languages: + parts.append(f"It is primarily written in {join_natural(languages[:2])}") + if features: + verb = "centers on" if parts else "It centers on" + parts.append(f"{verb} {join_natural(features[:3])}") + if parts: + return ensure_period(" and ".join(parts)) + if archive_exists: + return "The archive includes source code and project documentation that outline the repository structure and main implementation areas." + return "The README entry provides the main context for the project even though no local archive snapshot is available." + + +def audience_sentence(entry: RepoEntry, features: list[str]) -> str: + audience = AUDIENCE_BY_CATEGORY.get(entry.category, "game security and tooling researchers") + focus = context_focus(entry.category, entry.subcategory) + return ensure_period( + f"It is mainly useful for {audience} working in the {focus.lower()} area" + ) + + +def build_description(entry: RepoEntry, archive_text: str) -> str: + archive_readme = extract_archive_readme(archive_text) + source_tree = extract_source_tree(archive_text) + readme_sentences = sentence_candidates(archive_readme, entry.repo) + languages = top_languages(source_tree) + features = top_features(" ".join([entry.annotation, entry.line_text, archive_readme, source_tree])) + archive_exists = bool(archive_text) + + sentences: list[str] = [] + + if entry.annotation and not is_generic_annotation(entry.annotation): + sentences.append(fragment_to_sentence(entry.annotation, entry.repo)) + elif readme_sentences: + sentences.append(fragment_to_sentence(readme_sentences[0], entry.repo)) + else: + sentences.append(fallback_summary(entry)) + + if readme_sentences: + for candidate in readme_sentences[1:]: + candidate = ensure_period(candidate) + lowered = candidate.lower() + if lowered not in {sentence.lower() for sentence in sentences}: + sentences.append(candidate) + if len(sentences) >= 2: + break + + if len(sentences) < 2: + sentences.append(resource_sentence(entry, languages, features, archive_exists)) + + if len(sentences) < 3: + sentences.append(audience_sentence(entry, features)) + + deduped: list[str] = [] + seen: set[str] = set() + for sentence in sentences: + normalized = clean_whitespace(sentence).lower() + if not normalized or normalized in seen: + continue + seen.add(normalized) + deduped.append(ensure_period(sentence)) + + if len(deduped) < 3: + deduped.append(audience_sentence(entry, features)) + + return "\n".join(deduped[:4]) + + +def collect_entries() -> list[RepoEntry]: + return parse_readme_entries(README_PATH.read_text(encoding="utf-8")) + + +def missing_entries(entries: list[RepoEntry], overwrite: bool) -> list[RepoEntry]: + result: list[RepoEntry] = [] + for entry in entries: + if overwrite or not description_path(entry.owner, entry.repo).exists(): + result.append(entry) + return result + + +def write_description(entry: RepoEntry, description: str, dry_run: bool) -> None: + path = description_path(entry.owner, entry.repo) + if dry_run: + return + path.parent.mkdir(parents=True, exist_ok=True) + path.write_text(description + "\n", encoding="utf-8") + + +def main() -> None: + parser = argparse.ArgumentParser(description="Fill missing repo descriptions from README and local archives") + parser.add_argument("--limit", type=int, default=0, help="Only process the first N matching repositories") + parser.add_argument("--overwrite", action="store_true", help="Rebuild descriptions even if they already exist") + parser.add_argument("--dry-run", action="store_true", help="Preview output without writing files") + parser.add_argument("--show", type=int, default=0, help="Print the first N generated descriptions") + args = parser.parse_args() + + entries = collect_entries() + targets = missing_entries(entries, args.overwrite) + if args.limit: + targets = targets[: args.limit] + + written = 0 + for index, entry in enumerate(targets, start=1): + archive_text = read_archive_text(entry.owner, entry.repo) + description = build_description(entry, archive_text) + if args.show and index <= args.show: + print(f"[{entry.owner}/{entry.repo}]") + print(description) + print() + write_description(entry, description, args.dry_run) + written += 1 + + print(f"processed={len(targets)}") + print(f"written={0 if args.dry_run else written}") + + +if __name__ == "__main__": + main() \ No newline at end of file