From 3ef3c6289600e8c691ee6a861c04349a9d60c417 Mon Sep 17 00:00:00 2001 From: NeverSightAI Date: Sat, 20 Jun 2026 00:11:51 +0800 Subject: [PATCH] docs: add new repository link for enhanced syscall tracing to README.md --- description/0x0funky/agent-sprite-forge/description_en.txt | 1 + description/0xDbgMan/DrvEye/description_en.txt | 1 + description/0xMohammedHassan/morphkatz/description_en.txt | 1 + description/0xdea/rhabdomancer/description_en.txt | 1 + description/0xeb/libghidra/description_en.txt | 1 + description/0xjbb/EyYoEtwWhereYouAt/description_en.txt | 1 + description/0xjbb/cet-spoofing-detection/description_en.txt | 1 + description/19h/eac-analysis/description_en.txt | 1 + description/416rehman/DeepZero/description_en.txt | 1 + description/AdvDebug/Brovan/description_en.txt | 1 + description/Anatdx/Kasumi/description_en.txt | 1 + .../Andrea-lyz/oppo_oplus_realme_sm8750/description_en.txt | 1 + description/Bad-Jubies/Exploits/description_en.txt | 1 + description/BepInEx/BepInEx.Utility.IL2CPP/description_en.txt | 1 + description/Bigfoot71/r3d/description_en.txt | 1 + description/Brentdevent/S2x/description_en.txt | 1 + .../Android-kernel-inline-hook-framework/description_en.txt | 1 + description/Coldzer0/LuaDecompiler/description_en.txt | 1 + description/CynicRus/DWARFHelper/description_en.txt | 1 + description/D7EAD/mkPIVM/description_en.txt | 1 + .../DrYenyen/Drive-Cloning-For-PS4-PS5/description_en.txt | 1 + description/Droid-VM/DroidVM/description_en.txt | 1 + description/Duntss/IDA-ZVM-Disassembler/description_en.txt | 1 + description/EpicGames/lore/description_en.txt | 1 + description/GJDuck/e9patch/description_en.txt | 1 + description/GameDevGrzesiek/OptimizationBible/description_en.txt | 1 + description/Hekbas/Luth/description_en.txt | 1 + description/HexRaysSA/rax/description_en.txt | 1 + description/Hydr8gon/3Beans/description_en.txt | 1 + description/JustasMasiulis/ida_buddy/description_en.txt | 1 + description/Kudaes/Puzzle/description_en.txt | 1 + description/LLVMParty/smt-server/description_en.txt | 1 + description/LSPosed/DirtySepolicy/description_en.txt | 1 + description/LeoChen-CoreMind/elf-got-patcher/description_en.txt | 1 + description/LongWayHomie/PolyEngine/description_en.txt | 1 + .../Disable-Call-Recording-BookRestore-/description_en.txt | 1 + description/NotRequiem/antidbg/description_en.txt | 1 + description/PSkinnerTech/3d-asset-factory/description_en.txt | 1 + description/PatchRequest/PeregrineAntiCheat/description_en.txt | 1 + description/RSDKModding/RSDKv5-Decompilation/description_en.txt | 1 + description/ReverseWarrior/IUM-Debugger/description_en.txt | 1 + description/S12cybersecurity/RWXFinder/description_en.txt | 1 + description/Schich/Lucky-Spark/description_en.txt | 1 + description/Sidenai/hyperion-disassembler/description_en.txt | 1 + description/SilentisVox/DoomSyscalls/description_en.txt | 1 + .../static-analyzer-factory/description_en.txt | 1 + description/SwagSoftware/KisakBlack/description_en.txt | 1 + description/ThirteenAG/GTAIV.EFLC.FusionFix/description_en.txt | 1 + description/Valthrun/Valthrun_PUBG/description_en.txt | 1 + description/WsttXm/RiskEngine/description_en.txt | 1 + description/XaFF-XaFF/BugcheckSuppressor/description_en.txt | 1 + description/Zierax/Grafana-Final-Scanner/description_en.txt | 1 + description/adam-040/Enigma/description_en.txt | 1 + description/allenwp/godot-resource-remaps/description_en.txt | 1 + description/ant4g0nist/pyre/description_en.txt | 1 + description/april-ivy/Apwil/description_en.txt | 1 + .../atlas4381/qualcomm_avb_exploit_poc/description_en.txt | 1 + description/azw413/Glass/description_en.txt | 1 + description/bkerler/ida_rpc/description_en.txt | 1 + description/bombaris34/il2cpp-pdb/description_en.txt | 1 + description/boratanrikulu/gecit/description_en.txt | 1 + description/buzzer-re/ToCode/description_en.txt | 1 + description/cocomelonc/pawtrace/description_en.txt | 1 + description/cristeigabriela/bb-viewer/description_en.txt | 1 + description/diabloidyobane/PEReconstruct/description_en.txt | 1 + description/fatalSec/DaliVM/description_en.txt | 1 + description/fsquirt/SEWindows/description_en.txt | 1 + description/gmh5225/MagiskOnWSALocal/description_en.txt | 1 + description/gmh5225/PdFwKrnlMapper/description_en.txt | 1 + description/gmh5225/pdfwkrnl-exploit/description_en.txt | 1 + description/gmh5225/qiomem/description_en.txt | 1 + description/gmh5225/yuzu-android/description_en.txt | 1 + description/iamsopotatoe-coder/TinyLoad/description_en.txt | 1 + description/ioncodes/gecko/description_en.txt | 1 + description/iss4cf0ng/OpenPetya/description_en.txt | 1 + description/jakobfriedl/usb-monitor-bof/description_en.txt | 1 + description/jonny-jhnson/EtwWatcher/description_en.txt | 1 + description/jtang613/gdb-mcp/description_en.txt | 1 + description/kernelstub/Cognitor/description_en.txt | 1 + description/kernelstub/Retract/description_en.txt | 1 + description/kernullist/kn-diff-pool/description_en.txt | 1 + description/kernullist/kn-live-dbg/description_en.txt | 1 + description/leigest519/OpenGame/description_en.txt | 1 + description/litemars/hARMless/description_en.txt | 1 + description/nbulsi/cirsat/description_en.txt | 1 + description/neilsonnn/image-blaster/description_en.txt | 1 + description/neocanable/garlic/description_en.txt | 1 + description/nodiuus/nocturne/description_en.txt | 1 + description/nu1lptr0/CVE-2025-21333/description_en.txt | 1 + description/originsec/pocsmith/description_en.txt | 1 + .../orinimron123/CVE-2026-40369-EXPLOIT/description_en.txt | 1 + description/playcanvas/supersplat/description_en.txt | 1 + description/ps5-linux/ps5-linux-loader/description_en.txt | 1 + description/qiufuyu123/Positron/description_en.txt | 1 + description/qq703048949/event_replay/description_en.txt | 1 + description/radareorg/r2garlic/description_en.txt | 1 + description/redteamfortress/PhantomKiller/description_en.txt | 1 + description/robert-yates/gdbserver9x/description_en.txt | 1 + description/saileaxh/iida-mcp/description_en.txt | 1 + description/sefcom/oxidizer/description_en.txt | 1 + description/shakevsky/keybuster/description_en.txt | 1 + description/smallworld-re/smallworld/description_en.txt | 1 + description/snipcola/ProExt/description_en.txt | 1 + description/stp/stp/description_en.txt | 1 + description/synacktiv/thats_no_pipe/description_en.txt | 1 + description/systemnb/RootSocketKit/description_en.txt | 1 + .../systemnb/android-kernel-hacking-toolkit/description_en.txt | 1 + description/systemnb/compile_android_driver/description_en.txt | 1 + description/t0asts/DIE-engine-web/description_en.txt | 1 + description/trailofbits/idac/description_en.txt | 1 + description/vergamota/KslKatz/description_en.txt | 1 + description/waryas/xign_poc_april_2026/description_en.txt | 1 + description/wesmar/BootBypass/description_en.txt | 1 + description/wesmar/FileRecoveryTool/description_en.txt | 1 + description/wesmar/KernelResearchKit/description_en.txt | 1 + description/wesmar/KeyboardKit/description_en.txt | 1 + description/wesmar/KvcForensic/description_en.txt | 1 + description/wesmar/VaultGuard/description_en.txt | 1 + description/wesmar/WinDefCtl/description_en.txt | 1 + description/wesmar/kvc/description_en.txt | 1 + description/westfox-5/GhidraMetrics/description_en.txt | 1 + description/x86byte/sbox/description_en.txt | 1 + description/xaitax/NTSleuth/description_en.txt | 1 + .../x670e-tomahawk-anticheat-update/description_en.txt | 1 + 124 files changed, 124 insertions(+) create mode 100644 description/0x0funky/agent-sprite-forge/description_en.txt create mode 100644 description/0xDbgMan/DrvEye/description_en.txt create mode 100644 description/0xMohammedHassan/morphkatz/description_en.txt create mode 100644 description/0xdea/rhabdomancer/description_en.txt create mode 100644 description/0xeb/libghidra/description_en.txt create mode 100644 description/0xjbb/EyYoEtwWhereYouAt/description_en.txt create mode 100644 description/0xjbb/cet-spoofing-detection/description_en.txt create mode 100644 description/19h/eac-analysis/description_en.txt create mode 100644 description/416rehman/DeepZero/description_en.txt create mode 100644 description/AdvDebug/Brovan/description_en.txt create mode 100644 description/Anatdx/Kasumi/description_en.txt create mode 100644 description/Andrea-lyz/oppo_oplus_realme_sm8750/description_en.txt create mode 100644 description/Bad-Jubies/Exploits/description_en.txt create mode 100644 description/BepInEx/BepInEx.Utility.IL2CPP/description_en.txt create mode 100644 description/Bigfoot71/r3d/description_en.txt create mode 100644 description/Brentdevent/S2x/description_en.txt create mode 100644 description/ChwnWang0/Android-kernel-inline-hook-framework/description_en.txt create mode 100644 description/Coldzer0/LuaDecompiler/description_en.txt create mode 100644 description/CynicRus/DWARFHelper/description_en.txt create mode 100644 description/D7EAD/mkPIVM/description_en.txt create mode 100644 description/DrYenyen/Drive-Cloning-For-PS4-PS5/description_en.txt create mode 100644 description/Droid-VM/DroidVM/description_en.txt create mode 100644 description/Duntss/IDA-ZVM-Disassembler/description_en.txt create mode 100644 description/EpicGames/lore/description_en.txt create mode 100644 description/GJDuck/e9patch/description_en.txt create mode 100644 description/GameDevGrzesiek/OptimizationBible/description_en.txt create mode 100644 description/Hekbas/Luth/description_en.txt create mode 100644 description/HexRaysSA/rax/description_en.txt create mode 100644 description/Hydr8gon/3Beans/description_en.txt create mode 100644 description/JustasMasiulis/ida_buddy/description_en.txt create mode 100644 description/Kudaes/Puzzle/description_en.txt create mode 100644 description/LLVMParty/smt-server/description_en.txt create mode 100644 description/LSPosed/DirtySepolicy/description_en.txt create mode 100644 description/LeoChen-CoreMind/elf-got-patcher/description_en.txt create mode 100644 description/LongWayHomie/PolyEngine/description_en.txt create mode 100644 description/Nirad-Maharaj/Disable-Call-Recording-BookRestore-/description_en.txt create mode 100644 description/NotRequiem/antidbg/description_en.txt create mode 100644 description/PSkinnerTech/3d-asset-factory/description_en.txt create mode 100644 description/PatchRequest/PeregrineAntiCheat/description_en.txt create mode 100644 description/RSDKModding/RSDKv5-Decompilation/description_en.txt create mode 100644 description/ReverseWarrior/IUM-Debugger/description_en.txt create mode 100644 description/S12cybersecurity/RWXFinder/description_en.txt create mode 100644 description/Schich/Lucky-Spark/description_en.txt create mode 100644 description/Sidenai/hyperion-disassembler/description_en.txt create mode 100644 description/SilentisVox/DoomSyscalls/description_en.txt create mode 100644 description/Static-Analyzer-Factory/static-analyzer-factory/description_en.txt create mode 100644 description/SwagSoftware/KisakBlack/description_en.txt create mode 100644 description/ThirteenAG/GTAIV.EFLC.FusionFix/description_en.txt create mode 100644 description/Valthrun/Valthrun_PUBG/description_en.txt create mode 100644 description/WsttXm/RiskEngine/description_en.txt create mode 100644 description/XaFF-XaFF/BugcheckSuppressor/description_en.txt create mode 100644 description/Zierax/Grafana-Final-Scanner/description_en.txt create mode 100644 description/adam-040/Enigma/description_en.txt create mode 100644 description/allenwp/godot-resource-remaps/description_en.txt create mode 100644 description/ant4g0nist/pyre/description_en.txt create mode 100644 description/april-ivy/Apwil/description_en.txt create mode 100644 description/atlas4381/qualcomm_avb_exploit_poc/description_en.txt create mode 100644 description/azw413/Glass/description_en.txt create mode 100644 description/bkerler/ida_rpc/description_en.txt create mode 100644 description/bombaris34/il2cpp-pdb/description_en.txt create mode 100644 description/boratanrikulu/gecit/description_en.txt create mode 100644 description/buzzer-re/ToCode/description_en.txt create mode 100644 description/cocomelonc/pawtrace/description_en.txt create mode 100644 description/cristeigabriela/bb-viewer/description_en.txt create mode 100644 description/diabloidyobane/PEReconstruct/description_en.txt create mode 100644 description/fatalSec/DaliVM/description_en.txt create mode 100644 description/fsquirt/SEWindows/description_en.txt create mode 100644 description/gmh5225/MagiskOnWSALocal/description_en.txt create mode 100644 description/gmh5225/PdFwKrnlMapper/description_en.txt create mode 100644 description/gmh5225/pdfwkrnl-exploit/description_en.txt create mode 100644 description/gmh5225/qiomem/description_en.txt create mode 100644 description/gmh5225/yuzu-android/description_en.txt create mode 100644 description/iamsopotatoe-coder/TinyLoad/description_en.txt create mode 100644 description/ioncodes/gecko/description_en.txt create mode 100644 description/iss4cf0ng/OpenPetya/description_en.txt create mode 100644 description/jakobfriedl/usb-monitor-bof/description_en.txt create mode 100644 description/jonny-jhnson/EtwWatcher/description_en.txt create mode 100644 description/jtang613/gdb-mcp/description_en.txt create mode 100644 description/kernelstub/Cognitor/description_en.txt create mode 100644 description/kernelstub/Retract/description_en.txt create mode 100644 description/kernullist/kn-diff-pool/description_en.txt create mode 100644 description/kernullist/kn-live-dbg/description_en.txt create mode 100644 description/leigest519/OpenGame/description_en.txt create mode 100644 description/litemars/hARMless/description_en.txt create mode 100644 description/nbulsi/cirsat/description_en.txt create mode 100644 description/neilsonnn/image-blaster/description_en.txt create mode 100644 description/neocanable/garlic/description_en.txt create mode 100644 description/nodiuus/nocturne/description_en.txt create mode 100644 description/nu1lptr0/CVE-2025-21333/description_en.txt create mode 100644 description/originsec/pocsmith/description_en.txt create mode 100644 description/orinimron123/CVE-2026-40369-EXPLOIT/description_en.txt create mode 100644 description/playcanvas/supersplat/description_en.txt create mode 100644 description/ps5-linux/ps5-linux-loader/description_en.txt create mode 100644 description/qiufuyu123/Positron/description_en.txt create mode 100644 description/qq703048949/event_replay/description_en.txt create mode 100644 description/radareorg/r2garlic/description_en.txt create mode 100644 description/redteamfortress/PhantomKiller/description_en.txt create mode 100644 description/robert-yates/gdbserver9x/description_en.txt create mode 100644 description/saileaxh/iida-mcp/description_en.txt create mode 100644 description/sefcom/oxidizer/description_en.txt create mode 100644 description/shakevsky/keybuster/description_en.txt create mode 100644 description/smallworld-re/smallworld/description_en.txt create mode 100644 description/snipcola/ProExt/description_en.txt create mode 100644 description/stp/stp/description_en.txt create mode 100644 description/synacktiv/thats_no_pipe/description_en.txt create mode 100644 description/systemnb/RootSocketKit/description_en.txt create mode 100644 description/systemnb/android-kernel-hacking-toolkit/description_en.txt create mode 100644 description/systemnb/compile_android_driver/description_en.txt create mode 100644 description/t0asts/DIE-engine-web/description_en.txt create mode 100644 description/trailofbits/idac/description_en.txt create mode 100644 description/vergamota/KslKatz/description_en.txt create mode 100644 description/waryas/xign_poc_april_2026/description_en.txt create mode 100644 description/wesmar/BootBypass/description_en.txt create mode 100644 description/wesmar/FileRecoveryTool/description_en.txt create mode 100644 description/wesmar/KernelResearchKit/description_en.txt create mode 100644 description/wesmar/KeyboardKit/description_en.txt create mode 100644 description/wesmar/KvcForensic/description_en.txt create mode 100644 description/wesmar/VaultGuard/description_en.txt create mode 100644 description/wesmar/WinDefCtl/description_en.txt create mode 100644 description/wesmar/kvc/description_en.txt create mode 100644 description/westfox-5/GhidraMetrics/description_en.txt create mode 100644 description/x86byte/sbox/description_en.txt create mode 100644 description/xaitax/NTSleuth/description_en.txt create mode 100644 description/zer0condition/x670e-tomahawk-anticheat-update/description_en.txt diff --git a/description/0x0funky/agent-sprite-forge/description_en.txt b/description/0x0funky/agent-sprite-forge/description_en.txt new file mode 100644 index 00000000..c14329bc --- /dev/null +++ b/description/0x0funky/agent-sprite-forge/description_en.txt @@ -0,0 +1 @@ +Codex skills for generating game-ready 2D sprites and layered maps using AI image generation, with local post-processing pipelines that clean, split, validate, and export assets for Godot, Unity, or raw 2D workflows. \ No newline at end of file diff --git a/description/0xDbgMan/DrvEye/description_en.txt b/description/0xDbgMan/DrvEye/description_en.txt new file mode 100644 index 00000000..e608f7bb --- /dev/null +++ b/description/0xDbgMan/DrvEye/description_en.txt @@ -0,0 +1 @@ +A Windows driver static analysis and bug hunting tool that performs IOCTL dispatch recovery, taint analysis, emulation-based handler tracing, certificate verification, YARA scanning, and PoC generation to find vulnerabilities in kernel drivers. \ No newline at end of file diff --git a/description/0xMohammedHassan/morphkatz/description_en.txt b/description/0xMohammedHassan/morphkatz/description_en.txt new file mode 100644 index 00000000..85b749b1 --- /dev/null +++ b/description/0xMohammedHassan/morphkatz/description_en.txt @@ -0,0 +1 @@ +A polymorphic mutation engine for mimikatz that uses disassembly, CFG analysis, instruction-level morphing (register renaming, junk insertion, equivalent substitution), and data-flow obfuscation to generate unique variants that evade signature-based detection. \ No newline at end of file diff --git a/description/0xdea/rhabdomancer/description_en.txt b/description/0xdea/rhabdomancer/description_en.txt new file mode 100644 index 00000000..6e6e6581 --- /dev/null +++ b/description/0xdea/rhabdomancer/description_en.txt @@ -0,0 +1 @@ +A Rust-based binary auditing tool that locates calls to potentially insecure functions (strcpy, sprintf, system, ioctl, etc.) in compiled binaries to identify candidate vulnerability points for manual review. \ No newline at end of file diff --git a/description/0xeb/libghidra/description_en.txt b/description/0xeb/libghidra/description_en.txt new file mode 100644 index 00000000..162c31e3 --- /dev/null +++ b/description/0xeb/libghidra/description_en.txt @@ -0,0 +1 @@ +A C++/Rust/Python library that wraps Ghidra's native decompiler (SLEIGH + Pcode) for headless binary analysis, providing APIs for disassembly, decompilation, CFG construction, type system manipulation, and cross-reference queries without a JVM. \ No newline at end of file diff --git a/description/0xjbb/EyYoEtwWhereYouAt/description_en.txt b/description/0xjbb/EyYoEtwWhereYouAt/description_en.txt new file mode 100644 index 00000000..10cc0649 --- /dev/null +++ b/description/0xjbb/EyYoEtwWhereYouAt/description_en.txt @@ -0,0 +1 @@ +An ETW-based process monitoring system with a kernel driver that collects thread creation, image load, and memory allocation events, paired with a user-mode analysis engine to detect suspicious behaviors like injection and hollowing. \ No newline at end of file diff --git a/description/0xjbb/cet-spoofing-detection/description_en.txt b/description/0xjbb/cet-spoofing-detection/description_en.txt new file mode 100644 index 00000000..1c59a831 --- /dev/null +++ b/description/0xjbb/cet-spoofing-detection/description_en.txt @@ -0,0 +1 @@ +A proof-of-concept tool that detects stack spoofing in CET-enabled processes by comparing the hardware shadow stack against the user-mode call stack to identify missing or mismatched frames. \ No newline at end of file diff --git a/description/19h/eac-analysis/description_en.txt b/description/19h/eac-analysis/description_en.txt new file mode 100644 index 00000000..f2ebbbec --- /dev/null +++ b/description/19h/eac-analysis/description_en.txt @@ -0,0 +1 @@ +Research project analyzing EasyAntiCheat's Linux userland module, including VM-based obfuscation handler tracing, dispatch table recovery, GDB-assisted dynamic analysis, and control-flow deobfuscation of EAC's protected code. \ No newline at end of file diff --git a/description/416rehman/DeepZero/description_en.txt b/description/416rehman/DeepZero/description_en.txt new file mode 100644 index 00000000..1dbf9d2b --- /dev/null +++ b/description/416rehman/DeepZero/description_en.txt @@ -0,0 +1 @@ +A pipeline-driven identity sanitization framework that strips PII, hardware fingerprints, and telemetry artifacts from machines through configurable YAML-defined cleaning stages with extensible custom pipeline support. \ No newline at end of file diff --git a/description/AdvDebug/Brovan/description_en.txt b/description/AdvDebug/Brovan/description_en.txt new file mode 100644 index 00000000..a996d8ab --- /dev/null +++ b/description/AdvDebug/Brovan/description_en.txt @@ -0,0 +1 @@ +A .NET-based binary analysis and emulation framework using Unicorn Engine that supports x86/x64/ARM Windows and Linux binaries, providing syscall emulation, PE/ELF loading, API hooking, and configurable analysis for reverse engineering. \ No newline at end of file diff --git a/description/Anatdx/Kasumi/description_en.txt b/description/Anatdx/Kasumi/description_en.txt new file mode 100644 index 00000000..1393a5c9 --- /dev/null +++ b/description/Anatdx/Kasumi/description_en.txt @@ -0,0 +1 @@ +A Linux kernel module for Android that hides root access by hooking syscalls, VFS operations, and proc filesystem via ftrace and tracepoints, spoofing mount info, SELinux context, and file attributes to bypass root detection. \ No newline at end of file diff --git a/description/Andrea-lyz/oppo_oplus_realme_sm8750/description_en.txt b/description/Andrea-lyz/oppo_oplus_realme_sm8750/description_en.txt new file mode 100644 index 00000000..a9c0b581 --- /dev/null +++ b/description/Andrea-lyz/oppo_oplus_realme_sm8750/description_en.txt @@ -0,0 +1 @@ +Automated kernel build scripts for OPPO/OnePlus/Realme Snapdragon 8 Elite (SM8750) and Dimensity 9400+ (MT6991) devices, supporting both OKI and GKI compilation modes with f2fs compatibility patches and KernelSU integration. \ No newline at end of file diff --git a/description/Bad-Jubies/Exploits/description_en.txt b/description/Bad-Jubies/Exploits/description_en.txt new file mode 100644 index 00000000..34c2a2ec --- /dev/null +++ b/description/Bad-Jubies/Exploits/description_en.txt @@ -0,0 +1 @@ +A collection of Windows kernel driver exploits including AMD uProf arbitrary file write (CVE-2025-61969), kernel write (CVE-2026-0466), ASIO64 driver exploitation, and MS-BKRP padding oracle decryption. \ No newline at end of file diff --git a/description/BepInEx/BepInEx.Utility.IL2CPP/description_en.txt b/description/BepInEx/BepInEx.Utility.IL2CPP/description_en.txt new file mode 100644 index 00000000..892015f7 --- /dev/null +++ b/description/BepInEx/BepInEx.Utility.IL2CPP/description_en.txt @@ -0,0 +1 @@ +A collection of BepInEx utility plugins for IL2CPP Unity games, providing fullscreen toggle, window resize, graphics settings, mute-in-background, message center overlay, and other runtime tweaks. \ No newline at end of file diff --git a/description/Bigfoot71/r3d/description_en.txt b/description/Bigfoot71/r3d/description_en.txt new file mode 100644 index 00000000..c57b99c7 --- /dev/null +++ b/description/Bigfoot71/r3d/description_en.txt @@ -0,0 +1 @@ +A C/C++ 3D rendering library built on top of raylib, adding PBR materials, deferred/forward rendering, shadow mapping, SSAO, bloom, decals, skeletal animation, particle systems, and a full OpenGL-based render pipeline. \ No newline at end of file diff --git a/description/Brentdevent/S2x/description_en.txt b/description/Brentdevent/S2x/description_en.txt new file mode 100644 index 00000000..258813be --- /dev/null +++ b/description/Brentdevent/S2x/description_en.txt @@ -0,0 +1 @@ +A Call of Duty: Modern Warfare 2 (2009) client modification framework featuring Arxan anti-tamper bypasses, code healing, integrity check neutralization, custom console, server emulation, and modding infrastructure. \ No newline at end of file diff --git a/description/ChwnWang0/Android-kernel-inline-hook-framework/description_en.txt b/description/ChwnWang0/Android-kernel-inline-hook-framework/description_en.txt new file mode 100644 index 00000000..f338e658 --- /dev/null +++ b/description/ChwnWang0/Android-kernel-inline-hook-framework/description_en.txt @@ -0,0 +1 @@ +A lightweight ARM64 kernel inline hook framework for Android that supports full instruction relocation (B/BL/ADRP/LDR literal/CBZ/TBZ etc.), 64-bit long jumps via trampoline, and automatic WP/memory permission bypass. \ No newline at end of file diff --git a/description/Coldzer0/LuaDecompiler/description_en.txt b/description/Coldzer0/LuaDecompiler/description_en.txt new file mode 100644 index 00000000..a2e11f3c --- /dev/null +++ b/description/Coldzer0/LuaDecompiler/description_en.txt @@ -0,0 +1 @@ +A Lua bytecode decompiler written in Pascal supporting Lua 5.1 through 5.5, with SSA-based analysis, control flow reconstruction, boolean expression recovery, and support for custom opcode tables used by game-modified Lua VMs. \ No newline at end of file diff --git a/description/CynicRus/DWARFHelper/description_en.txt b/description/CynicRus/DWARFHelper/description_en.txt new file mode 100644 index 00000000..8d268640 --- /dev/null +++ b/description/CynicRus/DWARFHelper/description_en.txt @@ -0,0 +1 @@ +An x64dbg plugin that parses DWARF debug information from ELF/PE binaries using libdwarf, importing function names, variable types, and source line mappings into the x64dbg debugger. \ No newline at end of file diff --git a/description/D7EAD/mkPIVM/description_en.txt b/description/D7EAD/mkPIVM/description_en.txt new file mode 100644 index 00000000..23b2d85f --- /dev/null +++ b/description/D7EAD/mkPIVM/description_en.txt @@ -0,0 +1 @@ +A process-independent virtual machine code obfuscation engine that lifts x86/x64 instructions into a custom IR, generates polymorphic VM bytecode with encrypted handlers, and embeds the VM dispatcher into PE executables. \ No newline at end of file diff --git a/description/DrYenyen/Drive-Cloning-For-PS4-PS5/description_en.txt b/description/DrYenyen/Drive-Cloning-For-PS4-PS5/description_en.txt new file mode 100644 index 00000000..5b137f03 --- /dev/null +++ b/description/DrYenyen/Drive-Cloning-For-PS4-PS5/description_en.txt @@ -0,0 +1 @@ +Documentation and scripts for cloning PS4/PS5 extended storage drives using dd and sparse images on Linux, enabling transfer of installed applications between consoles via drive imaging. \ No newline at end of file diff --git a/description/Droid-VM/DroidVM/description_en.txt b/description/Droid-VM/DroidVM/description_en.txt new file mode 100644 index 00000000..287a9455 --- /dev/null +++ b/description/Droid-VM/DroidVM/description_en.txt @@ -0,0 +1 @@ +An Android application for running virtual machines on-device using QEMU/KVM and Qualcomm Gunyah hypervisor, supporting ARM64 and x86_64 guest OS images with VNC display and console management. \ No newline at end of file diff --git a/description/Duntss/IDA-ZVM-Disassembler/description_en.txt b/description/Duntss/IDA-ZVM-Disassembler/description_en.txt new file mode 100644 index 00000000..e6667c5c --- /dev/null +++ b/description/Duntss/IDA-ZVM-Disassembler/description_en.txt @@ -0,0 +1 @@ +An IDA Pro processor module and loader for Zeus VM custom bytecode, supporting 69 instructions with XOR key chain decryption, cross-references for branch targets, and auto-comments for instruction semantics. \ No newline at end of file diff --git a/description/EpicGames/lore/description_en.txt b/description/EpicGames/lore/description_en.txt new file mode 100644 index 00000000..06ec82a3 --- /dev/null +++ b/description/EpicGames/lore/description_en.txt @@ -0,0 +1 @@ +Epic Games' open-source Rust-based version control system designed for large-scale game development, featuring content-defined chunking, cloud-native storage backends, and efficient handling of large binary assets. \ No newline at end of file diff --git a/description/GJDuck/e9patch/description_en.txt b/description/GJDuck/e9patch/description_en.txt new file mode 100644 index 00000000..051f6e0e --- /dev/null +++ b/description/GJDuck/e9patch/description_en.txt @@ -0,0 +1 @@ +A powerful static binary rewriting tool for x86_64 Linux ELF binaries that can insert jumps, trampolines, and instrumentation at any instruction without reassembly, using instruction punning and eviction techniques. \ No newline at end of file diff --git a/description/GameDevGrzesiek/OptimizationBible/description_en.txt b/description/GameDevGrzesiek/OptimizationBible/description_en.txt new file mode 100644 index 00000000..1b327748 --- /dev/null +++ b/description/GameDevGrzesiek/OptimizationBible/description_en.txt @@ -0,0 +1 @@ +A comprehensive game optimization reference covering Unity and Unreal Engine performance profiling, console hardware specs and PC equivalents, rendering pipeline optimization, and engine-specific tooling guides. \ No newline at end of file diff --git a/description/Hekbas/Luth/description_en.txt b/description/Hekbas/Luth/description_en.txt new file mode 100644 index 00000000..56505171 --- /dev/null +++ b/description/Hekbas/Luth/description_en.txt @@ -0,0 +1 @@ +A custom C++ game engine built with Vulkan rendering, featuring a render graph, PBR materials, cascaded shadow maps, GTAO, skeletal animation with GPU skinning, ECS scene management, fiber-based job system, and an integrated editor. \ No newline at end of file diff --git a/description/HexRaysSA/rax/description_en.txt b/description/HexRaysSA/rax/description_en.txt new file mode 100644 index 00000000..b8fe94d0 --- /dev/null +++ b/description/HexRaysSA/rax/description_en.txt @@ -0,0 +1 @@ +Hex-Rays' Rust-based multi-architecture CPU emulator supporting x86, x64, ARM32, and AArch64 with JIT compilation, designed for binary analysis, fuzzing, and integration with IDA Pro decompilation workflows. \ No newline at end of file diff --git a/description/Hydr8gon/3Beans/description_en.txt b/description/Hydr8gon/3Beans/description_en.txt new file mode 100644 index 00000000..87dbd48a --- /dev/null +++ b/description/Hydr8gon/3Beans/description_en.txt @@ -0,0 +1 @@ +A Nintendo 3DS emulator written in C++ with ARM9/ARM11 and Teak DSP interpreter cores, HLE/LLE audio, hardware-accelerated GPU rendering, and cross-platform support for Windows, macOS, Linux, and Android. \ No newline at end of file diff --git a/description/JustasMasiulis/ida_buddy/description_en.txt b/description/JustasMasiulis/ida_buddy/description_en.txt new file mode 100644 index 00000000..1ada664e --- /dev/null +++ b/description/JustasMasiulis/ida_buddy/description_en.txt @@ -0,0 +1 @@ +A Python CLI companion for IDA Pro that connects to running IDA instances via a worker plugin, providing commands for disassembly, cross-references, type queries, memory reads, and annotation directly from the terminal. \ No newline at end of file diff --git a/description/Kudaes/Puzzle/description_en.txt b/description/Kudaes/Puzzle/description_en.txt new file mode 100644 index 00000000..3b3806a8 --- /dev/null +++ b/description/Kudaes/Puzzle/description_en.txt @@ -0,0 +1 @@ +A collection of Rust-based Windows persistence and evasion tools using bind links, ID mapping, cloud file sync providers, and WIM hash manipulation for stealthy post-exploitation techniques. \ No newline at end of file diff --git a/description/LLVMParty/smt-server/description_en.txt b/description/LLVMParty/smt-server/description_en.txt new file mode 100644 index 00000000..ae0071c1 --- /dev/null +++ b/description/LLVMParty/smt-server/description_en.txt @@ -0,0 +1 @@ +A Rust-based SMT solver server for QF_BV (quantifier-free bitvector) logic with SMT-LIB 2 parsing, bit-blasting to SAT, and C++/Python client libraries for integration with binary analysis and deobfuscation tools. \ No newline at end of file diff --git a/description/LSPosed/DirtySepolicy/description_en.txt b/description/LSPosed/DirtySepolicy/description_en.txt new file mode 100644 index 00000000..36d0994c --- /dev/null +++ b/description/LSPosed/DirtySepolicy/description_en.txt @@ -0,0 +1 @@ +An Android app that exploits app zygote services to inject permissive SELinux policy rules at runtime without requiring root or kernel modifications, demonstrating SEPolicy manipulation via AIDL service binding. \ No newline at end of file diff --git a/description/LeoChen-CoreMind/elf-got-patcher/description_en.txt b/description/LeoChen-CoreMind/elf-got-patcher/description_en.txt new file mode 100644 index 00000000..dd16a7af --- /dev/null +++ b/description/LeoChen-CoreMind/elf-got-patcher/description_en.txt @@ -0,0 +1 @@ +A tool that patches ELF binary GOT (Global Offset Table) entries to redirect function calls, injecting custom shellcode for hooking shared library functions in ARM/ARM64 Android native binaries. \ No newline at end of file diff --git a/description/LongWayHomie/PolyEngine/description_en.txt b/description/LongWayHomie/PolyEngine/description_en.txt new file mode 100644 index 00000000..f58b1a83 --- /dev/null +++ b/description/LongWayHomie/PolyEngine/description_en.txt @@ -0,0 +1 @@ +A polymorphic PE packer/crypter engine with mutation capabilities including junk code insertion, instruction substitution, XTEA encryption, RunPE process hollowing, stack spoofing, module stomping, and Hell's Gate syscall invocation. \ No newline at end of file diff --git a/description/Nirad-Maharaj/Disable-Call-Recording-BookRestore-/description_en.txt b/description/Nirad-Maharaj/Disable-Call-Recording-BookRestore-/description_en.txt new file mode 100644 index 00000000..c7101d3a --- /dev/null +++ b/description/Nirad-Maharaj/Disable-Call-Recording-BookRestore-/description_en.txt @@ -0,0 +1 @@ +An iOS tool that uses the bl_sbx exploit to suppress call-recording notification sounds, allowing silent call recording by replacing system audio assets on jailbroken devices. \ No newline at end of file diff --git a/description/NotRequiem/antidbg/description_en.txt b/description/NotRequiem/antidbg/description_en.txt new file mode 100644 index 00000000..e8a65346 --- /dev/null +++ b/description/NotRequiem/antidbg/description_en.txt @@ -0,0 +1 @@ +A comprehensive Windows anti-debugging library in C implementing multiple detection techniques including API-based checks, timing attacks, process environment queries, hardware breakpoint detection, exception-based tricks, and direct syscall evasion. \ No newline at end of file diff --git a/description/PSkinnerTech/3d-asset-factory/description_en.txt b/description/PSkinnerTech/3d-asset-factory/description_en.txt new file mode 100644 index 00000000..59e7fc7f --- /dev/null +++ b/description/PSkinnerTech/3d-asset-factory/description_en.txt @@ -0,0 +1 @@ +A pipeline for generating 3D assets from text descriptions using AI image generation and Trellis 3D reconstruction, with cloud inference support (Modal/Replicate/RunPod) and export to GLB/USDZ/STL formats. \ No newline at end of file diff --git a/description/PatchRequest/PeregrineAntiCheat/description_en.txt b/description/PatchRequest/PeregrineAntiCheat/description_en.txt new file mode 100644 index 00000000..538bec55 --- /dev/null +++ b/description/PatchRequest/PeregrineAntiCheat/description_en.txt @@ -0,0 +1 @@ +A game anti-cheat system using a DLL injected into the game process that performs YARA signature scanning, call stack validation, hardware breakpoint monitoring, and named pipe IPC for reporting detected cheats to a backend service. \ No newline at end of file diff --git a/description/RSDKModding/RSDKv5-Decompilation/description_en.txt b/description/RSDKModding/RSDKv5-Decompilation/description_en.txt new file mode 100644 index 00000000..9c25b2fd --- /dev/null +++ b/description/RSDKModding/RSDKv5-Decompilation/description_en.txt @@ -0,0 +1 @@ +A decompilation of the Retro Engine (RSDKv5/v5U) used by Sonic Mania and other Retro Engine games, providing cross-platform support with modding API, multiple audio/rendering backends, and legacy engine compatibility. \ No newline at end of file diff --git a/description/ReverseWarrior/IUM-Debugger/description_en.txt b/description/ReverseWarrior/IUM-Debugger/description_en.txt new file mode 100644 index 00000000..378a2c3c --- /dev/null +++ b/description/ReverseWarrior/IUM-Debugger/description_en.txt @@ -0,0 +1 @@ +A .NET-based debugger for Windows Isolated User Mode (IUM/Trustlet) processes that uses Hyper-V hypercalls to read/write trustlet memory and disassemble protected code running in VSM secure enclaves. \ No newline at end of file diff --git a/description/S12cybersecurity/RWXFinder/description_en.txt b/description/S12cybersecurity/RWXFinder/description_en.txt new file mode 100644 index 00000000..8f8a9c5c --- /dev/null +++ b/description/S12cybersecurity/RWXFinder/description_en.txt @@ -0,0 +1 @@ +A Windows tool that scans process memory regions using VirtualQueryEx to find RWX (Read-Write-Execute) memory pages suitable for code injection, returning addresses of exploitable memory regions. \ No newline at end of file diff --git a/description/Schich/Lucky-Spark/description_en.txt b/description/Schich/Lucky-Spark/description_en.txt new file mode 100644 index 00000000..a8924b39 --- /dev/null +++ b/description/Schich/Lucky-Spark/description_en.txt @@ -0,0 +1 @@ +A Windows shellcode loader using fiber-based execution, JIT decryption, custom cipher routines, and WinHTTP staging to download and execute payloads with manual API resolution via PEB walking. \ No newline at end of file diff --git a/description/Sidenai/hyperion-disassembler/description_en.txt b/description/Sidenai/hyperion-disassembler/description_en.txt new file mode 100644 index 00000000..3299bc64 --- /dev/null +++ b/description/Sidenai/hyperion-disassembler/description_en.txt @@ -0,0 +1 @@ +A native C++ disassembler and decompiler with multi-architecture support (x86/x64/ARM/AArch64), featuring CFG analysis, FLIRT signatures, PDB loading, BinDiff comparison, RTTI recovery, packer detection, Lua scripting, and an ImGui-based UI. \ No newline at end of file diff --git a/description/SilentisVox/DoomSyscalls/description_en.txt b/description/SilentisVox/DoomSyscalls/description_en.txt new file mode 100644 index 00000000..25bb314b --- /dev/null +++ b/description/SilentisVox/DoomSyscalls/description_en.txt @@ -0,0 +1 @@ +A direct syscall invocation technique for Windows x64 that resolves syscall numbers at runtime from ntdll and executes them via inline assembly, bypassing user-mode API hooks for evasion. \ No newline at end of file diff --git a/description/Static-Analyzer-Factory/static-analyzer-factory/description_en.txt b/description/Static-Analyzer-Factory/static-analyzer-factory/description_en.txt new file mode 100644 index 00000000..223f3538 --- /dev/null +++ b/description/Static-Analyzer-Factory/static-analyzer-factory/description_en.txt @@ -0,0 +1 @@ +A Rust-based static analysis framework providing multi-language support with abstract interpretation, points-to analysis, taint tracking, call graph construction, and SARIF/HTML report export for vulnerability detection in compiled binaries. \ No newline at end of file diff --git a/description/SwagSoftware/KisakBlack/description_en.txt b/description/SwagSoftware/KisakBlack/description_en.txt new file mode 100644 index 00000000..2f1aece8 --- /dev/null +++ b/description/SwagSoftware/KisakBlack/description_en.txt @@ -0,0 +1 @@ +A Call of Duty: Black Ops dedicated server reimplementation based on leaked source code, including DemonWare networking stack, zone/asset loading, and game server infrastructure for community hosting. \ No newline at end of file diff --git a/description/ThirteenAG/GTAIV.EFLC.FusionFix/description_en.txt b/description/ThirteenAG/GTAIV.EFLC.FusionFix/description_en.txt new file mode 100644 index 00000000..085a49c7 --- /dev/null +++ b/description/ThirteenAG/GTAIV.EFLC.FusionFix/description_en.txt @@ -0,0 +1 @@ +A comprehensive fix and enhancement mod for GTA IV and Episodes from Liberty City that patches rendering bugs, improves graphics quality, fixes gameplay issues, and adds configurable visual settings through ASI plugin injection. \ No newline at end of file diff --git a/description/Valthrun/Valthrun_PUBG/description_en.txt b/description/Valthrun/Valthrun_PUBG/description_en.txt new file mode 100644 index 00000000..e7eb23c2 --- /dev/null +++ b/description/Valthrun/Valthrun_PUBG/description_en.txt @@ -0,0 +1 @@ +A Rust-based PUBG external cheat framework using kernel driver communication for memory read/write, featuring player ESP, radar, and process protection bypass through CR3 manipulation and keyboard/mouse input injection. \ No newline at end of file diff --git a/description/WsttXm/RiskEngine/description_en.txt b/description/WsttXm/RiskEngine/description_en.txt new file mode 100644 index 00000000..d371d67b --- /dev/null +++ b/description/WsttXm/RiskEngine/description_en.txt @@ -0,0 +1 @@ +An Android risk detection SDK that identifies rooted devices, emulators, hooking frameworks (Frida/Xposed), debuggers, VPN connections, and other security threats through native JNI checks and system property analysis. \ No newline at end of file diff --git a/description/XaFF-XaFF/BugcheckSuppressor/description_en.txt b/description/XaFF-XaFF/BugcheckSuppressor/description_en.txt new file mode 100644 index 00000000..7bcd3e57 --- /dev/null +++ b/description/XaFF-XaFF/BugcheckSuppressor/description_en.txt @@ -0,0 +1 @@ +A Windows kernel driver that suppresses blue screen crashes (BSODs) by hooking bugcheck callbacks and performing SEH-based recovery under HVCI, using CET-compatible assembly stubs to survive kernel exceptions. \ No newline at end of file diff --git a/description/Zierax/Grafana-Final-Scanner/description_en.txt b/description/Zierax/Grafana-Final-Scanner/description_en.txt new file mode 100644 index 00000000..a6bff90d --- /dev/null +++ b/description/Zierax/Grafana-Final-Scanner/description_en.txt @@ -0,0 +1 @@ +A Grafana vulnerability scanner that checks for multiple CVEs (path traversal, SSRF, auth bypass, information disclosure) with parallel scanning, authentication support, and HTML/CSV/JSON report generation. \ No newline at end of file diff --git a/description/adam-040/Enigma/description_en.txt b/description/adam-040/Enigma/description_en.txt new file mode 100644 index 00000000..42c98710 --- /dev/null +++ b/description/adam-040/Enigma/description_en.txt @@ -0,0 +1 @@ +A standalone native decompiler engine extracted from Ghidra's SLEIGH/Pcode framework, reimplemented in C++ with BFD integration for multi-architecture binary analysis without requiring Java or the full Ghidra installation. \ No newline at end of file diff --git a/description/allenwp/godot-resource-remaps/description_en.txt b/description/allenwp/godot-resource-remaps/description_en.txt new file mode 100644 index 00000000..ebc99edc --- /dev/null +++ b/description/allenwp/godot-resource-remaps/description_en.txt @@ -0,0 +1 @@ +A Godot Engine plugin that enables platform-specific resource remapping, allowing developers to swap textures, audio, scenes, and other assets per target platform (Windows, Android, iOS, Web) during export. \ No newline at end of file diff --git a/description/ant4g0nist/pyre/description_en.txt b/description/ant4g0nist/pyre/description_en.txt new file mode 100644 index 00000000..87003fd4 --- /dev/null +++ b/description/ant4g0nist/pyre/description_en.txt @@ -0,0 +1 @@ +A WebAssembly-compiled Ghidra decompiler that runs entirely in the browser, providing binary decompilation for multiple architectures without server-side processing using the SLEIGH framework compiled to WASM. \ No newline at end of file diff --git a/description/april-ivy/Apwil/description_en.txt b/description/april-ivy/Apwil/description_en.txt new file mode 100644 index 00000000..e47fbdeb --- /dev/null +++ b/description/april-ivy/Apwil/description_en.txt @@ -0,0 +1 @@ +A Rust game hacking library for Windows providing inline/IAT/VMT/VEH/hardware breakpoint hooks, memory manipulation, PE parsing, PEB walking, process/thread hijacking, DirectX overlay rendering, and math utilities for cheat development. \ No newline at end of file diff --git a/description/atlas4381/qualcomm_avb_exploit_poc/description_en.txt b/description/atlas4381/qualcomm_avb_exploit_poc/description_en.txt new file mode 100644 index 00000000..c80e5e3b --- /dev/null +++ b/description/atlas4381/qualcomm_avb_exploit_poc/description_en.txt @@ -0,0 +1 @@ +A proof-of-concept exploit for a Qualcomm Android Verified Boot (AVB) vulnerability that bypasses boot image verification through crafted partition data to achieve persistent code execution on Qualcomm-based devices. \ No newline at end of file diff --git a/description/azw413/Glass/description_en.txt b/description/azw413/Glass/description_en.txt new file mode 100644 index 00000000..f0dfa913 --- /dev/null +++ b/description/azw413/Glass/description_en.txt @@ -0,0 +1 @@ +A Rust-based multi-architecture binary analysis toolkit supporting ARM64, x86-64, ELF, Mach-O, DEX, and PE formats, with disassembly, CFG construction, cross-references, pattern matching, and binary patching capabilities. \ No newline at end of file diff --git a/description/bkerler/ida_rpc/description_en.txt b/description/bkerler/ida_rpc/description_en.txt new file mode 100644 index 00000000..36f32824 --- /dev/null +++ b/description/bkerler/ida_rpc/description_en.txt @@ -0,0 +1 @@ +An IDA Pro RPC server plugin that exposes IDA's analysis capabilities (disassembly, decompilation, cross-references, patching, type system) over a network protocol, enabling remote scripting and AI agent integration. \ No newline at end of file diff --git a/description/bombaris34/il2cpp-pdb/description_en.txt b/description/bombaris34/il2cpp-pdb/description_en.txt new file mode 100644 index 00000000..e0d6a657 --- /dev/null +++ b/description/bombaris34/il2cpp-pdb/description_en.txt @@ -0,0 +1 @@ +An IL2CPP dumper extension that generates PDB debug symbol files from IL2CPP metadata, mapping method addresses and type information back to original .NET symbols for debugger integration. \ No newline at end of file diff --git a/description/boratanrikulu/gecit/description_en.txt b/description/boratanrikulu/gecit/description_en.txt new file mode 100644 index 00000000..f3cfa6e3 --- /dev/null +++ b/description/boratanrikulu/gecit/description_en.txt @@ -0,0 +1 @@ +A cross-platform transparent proxy and network interception tool written in Go, using eBPF on Linux for traffic redirection, with TUN-based routing and DNS manipulation for network security testing. \ No newline at end of file diff --git a/description/buzzer-re/ToCode/description_en.txt b/description/buzzer-re/ToCode/description_en.txt new file mode 100644 index 00000000..a1b188e7 --- /dev/null +++ b/description/buzzer-re/ToCode/description_en.txt @@ -0,0 +1 @@ +A binary-to-source analysis tool that uses IDA Pro or radare2 backends to decompile functions, cluster them by similarity, generate meaningful names, and export structured analysis results with Semgrep rule integration. \ No newline at end of file diff --git a/description/cocomelonc/pawtrace/description_en.txt b/description/cocomelonc/pawtrace/description_en.txt new file mode 100644 index 00000000..efdda4cf --- /dev/null +++ b/description/cocomelonc/pawtrace/description_en.txt @@ -0,0 +1 @@ +A lightweight Linux process tracer using ptrace that attaches to running processes or spawns new ones, decodes x86_64 syscalls with argument inspection, and supports remote tracing via TCP socket connections. \ No newline at end of file diff --git a/description/cristeigabriela/bb-viewer/description_en.txt b/description/cristeigabriela/bb-viewer/description_en.txt new file mode 100644 index 00000000..5d908f39 --- /dev/null +++ b/description/cristeigabriela/bb-viewer/description_en.txt @@ -0,0 +1 @@ +A web-based viewer for Windows kernel structures (ntoskrnl, hal, etc.) that displays functions, types, constants, IRQL annotations, and type relationship graphs with search, filtering, and dataset switching. \ No newline at end of file diff --git a/description/diabloidyobane/PEReconstruct/description_en.txt b/description/diabloidyobane/PEReconstruct/description_en.txt new file mode 100644 index 00000000..5e207c0d --- /dev/null +++ b/description/diabloidyobane/PEReconstruct/description_en.txt @@ -0,0 +1 @@ +A Python toolkit for reconstructing manually-mapped PE images from process memory, including deep PE scanning, contiguous memory dumping, headerless PE rebuilding, hook analysis, and export table resolution. \ No newline at end of file diff --git a/description/fatalSec/DaliVM/description_en.txt b/description/fatalSec/DaliVM/description_en.txt new file mode 100644 index 00000000..26c8ba9e --- /dev/null +++ b/description/fatalSec/DaliVM/description_en.txt @@ -0,0 +1 @@ +A Python-based Dalvik virtual machine emulator that executes DEX bytecode with opcode interpretation, class loading, Android API mocking, static analysis, and dependency tracing for Android malware analysis and reverse engineering. \ No newline at end of file diff --git a/description/fsquirt/SEWindows/description_en.txt b/description/fsquirt/SEWindows/description_en.txt new file mode 100644 index 00000000..4bd1393d --- /dev/null +++ b/description/fsquirt/SEWindows/description_en.txt @@ -0,0 +1 @@ +A Windows TPM measured boot analysis and remote attestation tool that parses TCG event logs, verifies PCR values, analyzes WBCL boot policy, and performs EK/AK-based remote attestation with security feature reporting. \ No newline at end of file diff --git a/description/gmh5225/MagiskOnWSALocal/description_en.txt b/description/gmh5225/MagiskOnWSALocal/description_en.txt new file mode 100644 index 00000000..f7a4739e --- /dev/null +++ b/description/gmh5225/MagiskOnWSALocal/description_en.txt @@ -0,0 +1 @@ +Scripts to integrate Magisk root and Google Apps (GApps) into Windows Subsystem for Android (WSA) locally, enabling rooted Android environment with Play Store support on Windows 11. \ No newline at end of file diff --git a/description/gmh5225/PdFwKrnlMapper/description_en.txt b/description/gmh5225/PdFwKrnlMapper/description_en.txt new file mode 100644 index 00000000..235bcda6 --- /dev/null +++ b/description/gmh5225/PdFwKrnlMapper/description_en.txt @@ -0,0 +1 @@ +A kernel driver mapper that exploits the PdFwKrnl.sys (BitLocker) driver vulnerability to bypass Driver Signature Enforcement (DSE) and map unsigned drivers into kernel space via SeValidateImageData/Header patching. \ No newline at end of file diff --git a/description/gmh5225/pdfwkrnl-exploit/description_en.txt b/description/gmh5225/pdfwkrnl-exploit/description_en.txt new file mode 100644 index 00000000..3d931109 --- /dev/null +++ b/description/gmh5225/pdfwkrnl-exploit/description_en.txt @@ -0,0 +1 @@ +An exploit for the PdFwKrnl.sys (BitLocker) driver vulnerability that achieves arbitrary kernel code execution by abusing the driver's IOCTL interface to load and execute unsigned kernel code. \ No newline at end of file diff --git a/description/gmh5225/qiomem/description_en.txt b/description/gmh5225/qiomem/description_en.txt new file mode 100644 index 00000000..555a7e19 --- /dev/null +++ b/description/gmh5225/qiomem/description_en.txt @@ -0,0 +1 @@ +A tool that exploits the Qualcomm QCI0701 ACPI driver (QIOMem.sys) by creating a virtual software device to gain access to physical memory read/write primitives through the driver's IOCTL interface. \ No newline at end of file diff --git a/description/gmh5225/yuzu-android/description_en.txt b/description/gmh5225/yuzu-android/description_en.txt new file mode 100644 index 00000000..d6a0310b --- /dev/null +++ b/description/gmh5225/yuzu-android/description_en.txt @@ -0,0 +1 @@ +An Android port of the yuzu Nintendo Switch emulator, providing ARM64 JIT recompilation, Vulkan/OpenGL rendering, and full Switch game compatibility on Android devices. \ No newline at end of file diff --git a/description/iamsopotatoe-coder/TinyLoad/description_en.txt b/description/iamsopotatoe-coder/TinyLoad/description_en.txt new file mode 100644 index 00000000..3071f0a1 --- /dev/null +++ b/description/iamsopotatoe-coder/TinyLoad/description_en.txt @@ -0,0 +1 @@ +A minimal Windows PE loader that manually maps executables into memory, resolves imports, applies relocations, and executes the entry point without using the standard Windows loader APIs. \ No newline at end of file diff --git a/description/ioncodes/gecko/description_en.txt b/description/ioncodes/gecko/description_en.txt new file mode 100644 index 00000000..106376a9 --- /dev/null +++ b/description/ioncodes/gecko/description_en.txt @@ -0,0 +1 @@ +A Rust-based Game Boy and Game Boy Color emulator with cycle-accurate CPU, PPU, and APU emulation, wgpu-based rendering, and a desktop GUI application for game library management and playback. \ No newline at end of file diff --git a/description/iss4cf0ng/OpenPetya/description_en.txt b/description/iss4cf0ng/OpenPetya/description_en.txt new file mode 100644 index 00000000..d3fbf52c --- /dev/null +++ b/description/iss4cf0ng/OpenPetya/description_en.txt @@ -0,0 +1 @@ +An open-source implementation of the Petya ransomware bootloader for educational purposes, featuring MBR replacement, NTFS encryption with Salsa20, custom bootloader with keyboard input, and key derivation functions. \ No newline at end of file diff --git a/description/jakobfriedl/usb-monitor-bof/description_en.txt b/description/jakobfriedl/usb-monitor-bof/description_en.txt new file mode 100644 index 00000000..759dd5a0 --- /dev/null +++ b/description/jakobfriedl/usb-monitor-bof/description_en.txt @@ -0,0 +1 @@ +A Cobalt Strike Beacon Object File (BOF) that monitors USB device insertion/removal events on Windows using WM_DEVICECHANGE messages, reporting connected USB devices back to the operator. \ No newline at end of file diff --git a/description/jonny-jhnson/EtwWatcher/description_en.txt b/description/jonny-jhnson/EtwWatcher/description_en.txt new file mode 100644 index 00000000..adfaf14f --- /dev/null +++ b/description/jonny-jhnson/EtwWatcher/description_en.txt @@ -0,0 +1 @@ +A web-based tool for browsing, comparing, and diffing Windows ETW (Event Tracing for Windows) provider manifests across different OS versions, with snapshot tracking and change visualization. \ No newline at end of file diff --git a/description/jtang613/gdb-mcp/description_en.txt b/description/jtang613/gdb-mcp/description_en.txt new file mode 100644 index 00000000..ab3af965 --- /dev/null +++ b/description/jtang613/gdb-mcp/description_en.txt @@ -0,0 +1 @@ +An MCP (Model Context Protocol) server that bridges GDB to AI assistants, enabling LLMs to control GDB debugging sessions with commands for breakpoints, memory inspection, register reads, and stepping through code. \ No newline at end of file diff --git a/description/kernelstub/Cognitor/description_en.txt b/description/kernelstub/Cognitor/description_en.txt new file mode 100644 index 00000000..9ae3c095 --- /dev/null +++ b/description/kernelstub/Cognitor/description_en.txt @@ -0,0 +1 @@ +A Go-based Windows kernel driver static analysis tool that parses IDA/Ghidra exports to identify IOCTL handlers, access check gaps, ALPC issues, COM vulnerabilities, and unsafe native API usage patterns with configurable rules. \ No newline at end of file diff --git a/description/kernelstub/Retract/description_en.txt b/description/kernelstub/Retract/description_en.txt new file mode 100644 index 00000000..a9a0f13d --- /dev/null +++ b/description/kernelstub/Retract/description_en.txt @@ -0,0 +1 @@ +A Go-based PE binary analysis and reverse engineering tool with x86/x64 disassembly, CFG construction, decompilation, entropy analysis, string extraction, import/export analysis, YARA scanning, and a web-based UI. \ No newline at end of file diff --git a/description/kernullist/kn-diff-pool/description_en.txt b/description/kernullist/kn-diff-pool/description_en.txt new file mode 100644 index 00000000..9ff4eb7e --- /dev/null +++ b/description/kernullist/kn-diff-pool/description_en.txt @@ -0,0 +1 @@ +A Windows kernel pool memory diffing toolkit with a kernel driver that snapshots pool allocations and a user-mode Go tool that compares snapshots to detect new allocations, useful for finding kernel object leaks and forensics. \ No newline at end of file diff --git a/description/kernullist/kn-live-dbg/description_en.txt b/description/kernullist/kn-live-dbg/description_en.txt new file mode 100644 index 00000000..93cd9fad --- /dev/null +++ b/description/kernullist/kn-live-dbg/description_en.txt @@ -0,0 +1 @@ +A Windows kernel-level live debugging toolkit with a kernel driver for memory inspection, module enumeration, disassembly via Zydis, and a user-mode CLI for interactive kernel debugging without requiring a traditional kernel debugger setup. \ No newline at end of file diff --git a/description/leigest519/OpenGame/description_en.txt b/description/leigest519/OpenGame/description_en.txt new file mode 100644 index 00000000..41478286 --- /dev/null +++ b/description/leigest519/OpenGame/description_en.txt @@ -0,0 +1 @@ +An open-source game testing and debugging framework with agent-driven test automation, protocol-based seed evolution, diagnostic loops, and generalization capabilities for automated game QA workflows. \ No newline at end of file diff --git a/description/litemars/hARMless/description_en.txt b/description/litemars/hARMless/description_en.txt new file mode 100644 index 00000000..6fd1919c --- /dev/null +++ b/description/litemars/hARMless/description_en.txt @@ -0,0 +1 @@ +An ARM64/AArch64 ELF packer and in-memory loader for Linux that encrypts executables, generates custom stub code, and performs fileless execution via memfd_create for evasion. \ No newline at end of file diff --git a/description/nbulsi/cirsat/description_en.txt b/description/nbulsi/cirsat/description_en.txt new file mode 100644 index 00000000..d26bdaf1 --- /dev/null +++ b/description/nbulsi/cirsat/description_en.txt @@ -0,0 +1 @@ +A circuit-based SAT solver that operates directly on AIG (And-Inverter Graph) representations, using circuit-aware reasoning with AIGER format support for hardware verification and combinational equivalence checking. \ No newline at end of file diff --git a/description/neilsonnn/image-blaster/description_en.txt b/description/neilsonnn/image-blaster/description_en.txt new file mode 100644 index 00000000..8fd04560 --- /dev/null +++ b/description/neilsonnn/image-blaster/description_en.txt @@ -0,0 +1 @@ +A 3D web application built with React and Three.js that renders interactive panoramic image worlds with spatial audio, animated butterflies, touch controls, and world-switching via a sidebar interface. \ No newline at end of file diff --git a/description/neocanable/garlic/description_en.txt b/description/neocanable/garlic/description_en.txt new file mode 100644 index 00000000..d19ef0ef --- /dev/null +++ b/description/neocanable/garlic/description_en.txt @@ -0,0 +1 @@ +A multi-format binary analysis tool written in C supporting PE, ELF, Mach-O, DEX, APK, and ARM disassembly, with file structure parsing, opcode decoding, and cross-platform command-line interface. \ No newline at end of file diff --git a/description/nodiuus/nocturne/description_en.txt b/description/nodiuus/nocturne/description_en.txt new file mode 100644 index 00000000..5f8782f2 --- /dev/null +++ b/description/nodiuus/nocturne/description_en.txt @@ -0,0 +1 @@ +An x64 code virtualization obfuscator that translates native instructions into custom VM bytecode with polymorphic handlers, junk code insertion, register mapping, PDB-guided function selection, and PE section rewriting. \ No newline at end of file diff --git a/description/nu1lptr0/CVE-2025-21333/description_en.txt b/description/nu1lptr0/CVE-2025-21333/description_en.txt new file mode 100644 index 00000000..ab700176 --- /dev/null +++ b/description/nu1lptr0/CVE-2025-21333/description_en.txt @@ -0,0 +1 @@ +An exploit for CVE-2025-21333, a Windows Hyper-V virtualization stack heap-based buffer overflow vulnerability, achieving local privilege escalation through IoRing-based pool spraying and pipe attribute arbitrary read/write primitives. \ No newline at end of file diff --git a/description/originsec/pocsmith/description_en.txt b/description/originsec/pocsmith/description_en.txt new file mode 100644 index 00000000..8aa26456 --- /dev/null +++ b/description/originsec/pocsmith/description_en.txt @@ -0,0 +1 @@ +An AI-driven PoC (Proof of Concept) exploit generation framework that uses LLM agents with MCP tools to automatically analyze CVEs, compile test code, and iteratively develop working exploits with budget tracking and reporting. \ No newline at end of file diff --git a/description/orinimron123/CVE-2026-40369-EXPLOIT/description_en.txt b/description/orinimron123/CVE-2026-40369-EXPLOIT/description_en.txt new file mode 100644 index 00000000..c2ea810f --- /dev/null +++ b/description/orinimron123/CVE-2026-40369-EXPLOIT/description_en.txt @@ -0,0 +1 @@ +A privilege escalation exploit for CVE-2026-40369, an arbitrary kernel address increment vulnerability in NtQuerySystemInformation (class 253) on Windows 11 24H2-25H2, reachable from Chrome sandbox with 100% reliability. \ No newline at end of file diff --git a/description/playcanvas/supersplat/description_en.txt b/description/playcanvas/supersplat/description_en.txt new file mode 100644 index 00000000..5d0a68ef --- /dev/null +++ b/description/playcanvas/supersplat/description_en.txt @@ -0,0 +1 @@ +A web-based 3D Gaussian Splatting editor built on PlayCanvas engine for viewing, editing, and optimizing 3D Gaussian splat scenes with selection tools, animation tracks, camera poses, and PLY/splat export. \ No newline at end of file diff --git a/description/ps5-linux/ps5-linux-loader/description_en.txt b/description/ps5-linux/ps5-linux-loader/description_en.txt new file mode 100644 index 00000000..9f4cbc44 --- /dev/null +++ b/description/ps5-linux/ps5-linux-loader/description_en.txt @@ -0,0 +1 @@ +A PS5 Linux loader that exploits kernel and hypervisor vulnerabilities to boot Linux on PlayStation 5, with IOMMU setup, GPU initialization, hypervisor defeat shellcode, and TMR (Trusted Memory Region) handling. \ No newline at end of file diff --git a/description/qiufuyu123/Positron/description_en.txt b/description/qiufuyu123/Positron/description_en.txt new file mode 100644 index 00000000..e44984a8 --- /dev/null +++ b/description/qiufuyu123/Positron/description_en.txt @@ -0,0 +1 @@ +A Windows game modding framework that injects a JavaScript runtime (QuickJS) into target processes via DLL injection, providing scripting APIs for memory manipulation, function hooking, and game automation through named pipe IPC. \ No newline at end of file diff --git a/description/qq703048949/event_replay/description_en.txt b/description/qq703048949/event_replay/description_en.txt new file mode 100644 index 00000000..bc7cf6c2 --- /dev/null +++ b/description/qq703048949/event_replay/description_en.txt @@ -0,0 +1 @@ +An Android input event recorder and replayer that captures touchscreen and key events via /dev/input and replays them with precise timing, packaged as a Magisk module for automated game input simulation. \ No newline at end of file diff --git a/description/radareorg/r2garlic/description_en.txt b/description/radareorg/r2garlic/description_en.txt new file mode 100644 index 00000000..e9e60cb1 --- /dev/null +++ b/description/radareorg/r2garlic/description_en.txt @@ -0,0 +1 @@ +A radare2 plugin that integrates the garlic binary format parser, enabling analysis of Android DEX, APK, ELF, PE, and Mach-O files through radare2's IO and analysis framework with in-memory stream support. \ No newline at end of file diff --git a/description/redteamfortress/PhantomKiller/description_en.txt b/description/redteamfortress/PhantomKiller/description_en.txt new file mode 100644 index 00000000..97c4ee80 --- /dev/null +++ b/description/redteamfortress/PhantomKiller/description_en.txt @@ -0,0 +1 @@ +A Windows tool that uses a kernel driver to terminate protected processes (such as antivirus and EDR) by bypassing process protection mechanisms through direct kernel-level process object manipulation. \ No newline at end of file diff --git a/description/robert-yates/gdbserver9x/description_en.txt b/description/robert-yates/gdbserver9x/description_en.txt new file mode 100644 index 00000000..bd4fd928 --- /dev/null +++ b/description/robert-yates/gdbserver9x/description_en.txt @@ -0,0 +1 @@ +A minimal GDB remote stub server for debugging 32-bit executables on legacy Windows (9x/XP), implementing GDB RSP protocol with breakpoints, memory reads, register queries, and thread support for Binary Ninja integration. \ No newline at end of file diff --git a/description/saileaxh/iida-mcp/description_en.txt b/description/saileaxh/iida-mcp/description_en.txt new file mode 100644 index 00000000..939a1afa --- /dev/null +++ b/description/saileaxh/iida-mcp/description_en.txt @@ -0,0 +1 @@ +An IDA Pro MCP server with a companion kernel driver that extends IDA's analysis capabilities with live kernel memory access, enabling AI agents to perform both static and dynamic reverse engineering through a unified protocol. \ No newline at end of file diff --git a/description/sefcom/oxidizer/description_en.txt b/description/sefcom/oxidizer/description_en.txt new file mode 100644 index 00000000..ef591b2b --- /dev/null +++ b/description/sefcom/oxidizer/description_en.txt @@ -0,0 +1 @@ +A fork of angr (the binary analysis framework) with Rust-accelerated core components, providing symbolic execution, CFG recovery, data-flow analysis, and vulnerability detection with improved performance through native Rust modules. \ No newline at end of file diff --git a/description/shakevsky/keybuster/description_en.txt b/description/shakevsky/keybuster/description_en.txt new file mode 100644 index 00000000..35ac5136 --- /dev/null +++ b/description/shakevsky/keybuster/description_en.txt @@ -0,0 +1 @@ +A Samsung TrustZone Keymaster attack tool that exploits vulnerabilities in the S-Keymaster trusted application to extract hardware-protected cryptographic keys from Samsung Galaxy devices via the TEE interface. \ No newline at end of file diff --git a/description/smallworld-re/smallworld/description_en.txt b/description/smallworld-re/smallworld/description_en.txt new file mode 100644 index 00000000..31a87e48 --- /dev/null +++ b/description/smallworld-re/smallworld/description_en.txt @@ -0,0 +1 @@ +A multi-emulator binary analysis framework that provides a unified interface for running code snippets through angr, Ghidra, PANDA, and Unicorn, supporting coverage analysis, crash triage, and cross-platform firmware testing. \ No newline at end of file diff --git a/description/snipcola/ProExt/description_en.txt b/description/snipcola/ProExt/description_en.txt new file mode 100644 index 00000000..e9d5d8a5 --- /dev/null +++ b/description/snipcola/ProExt/description_en.txt @@ -0,0 +1 @@ +A Rust-based external CS2 (Counter-Strike 2) cheat featuring ESP, aimbot, triggerbot, radar, RCS (recoil control), bomb timer, spectator list, and crosshair overlay with a configurable egui-based UI. \ No newline at end of file diff --git a/description/stp/stp/description_en.txt b/description/stp/stp/description_en.txt new file mode 100644 index 00000000..7b0113d4 --- /dev/null +++ b/description/stp/stp/description_en.txt @@ -0,0 +1 @@ +STP (Simple Theorem Prover), a constraint solver for bitvector and array theories used in binary analysis, symbolic execution, and verification, with SMT-LIB 2 support and SAT solver backends (MiniSat, CryptoMiniSat). \ No newline at end of file diff --git a/description/synacktiv/thats_no_pipe/description_en.txt b/description/synacktiv/thats_no_pipe/description_en.txt new file mode 100644 index 00000000..7c692286 --- /dev/null +++ b/description/synacktiv/thats_no_pipe/description_en.txt @@ -0,0 +1 @@ +A Frida-based Windows named pipe I/O interception toolkit that hooks NtReadFile, NtWriteFile, NtWaitForSingleObject, and IoQueue operations to monitor, record, and manipulate pipe communications for protocol analysis and fuzzing. \ No newline at end of file diff --git a/description/systemnb/RootSocketKit/description_en.txt b/description/systemnb/RootSocketKit/description_en.txt new file mode 100644 index 00000000..c2376ab3 --- /dev/null +++ b/description/systemnb/RootSocketKit/description_en.txt @@ -0,0 +1 @@ +An Android kernel module and companion app that provides root-level process memory read/write access through a custom socket-based IPC protocol, with a GUI for memory searching, editing, and game value modification. \ No newline at end of file diff --git a/description/systemnb/android-kernel-hacking-toolkit/description_en.txt b/description/systemnb/android-kernel-hacking-toolkit/description_en.txt new file mode 100644 index 00000000..cf71aa55 --- /dev/null +++ b/description/systemnb/android-kernel-hacking-toolkit/description_en.txt @@ -0,0 +1 @@ +A collection of Android kernel modules for security research including process hiding via task_struct unlinking, file copy through kernel VFS, property editing, and syscall table hijacking on ARM64. \ No newline at end of file diff --git a/description/systemnb/compile_android_driver/description_en.txt b/description/systemnb/compile_android_driver/description_en.txt new file mode 100644 index 00000000..d040623f --- /dev/null +++ b/description/systemnb/compile_android_driver/description_en.txt @@ -0,0 +1 @@ +A guide and build system for compiling out-of-tree Android kernel drivers with proper ABI symbol management, including a sample file copy module and Kadeflow CI/CD integration for automated builds. \ No newline at end of file diff --git a/description/t0asts/DIE-engine-web/description_en.txt b/description/t0asts/DIE-engine-web/description_en.txt new file mode 100644 index 00000000..b98ab489 --- /dev/null +++ b/description/t0asts/DIE-engine-web/description_en.txt @@ -0,0 +1 @@ +A WebAssembly port of Detect It Easy (DIE) that runs the PE/ELF/Mach-O binary identification engine entirely in the browser, compiled from the original Qt-based C++ codebase via Emscripten with a web frontend. \ No newline at end of file diff --git a/description/trailofbits/idac/description_en.txt b/description/trailofbits/idac/description_en.txt new file mode 100644 index 00000000..3ec89423 --- /dev/null +++ b/description/trailofbits/idac/description_en.txt @@ -0,0 +1 @@ +Trail of Bits' IDA Pro client library and CLI tool that connects to IDA instances for batch analysis, function listing, decompilation, cross-references, and type queries, with MCP server integration for AI-assisted reverse engineering. \ No newline at end of file diff --git a/description/vergamota/KslKatz/description_en.txt b/description/vergamota/KslKatz/description_en.txt new file mode 100644 index 00000000..66f8059b --- /dev/null +++ b/description/vergamota/KslKatz/description_en.txt @@ -0,0 +1 @@ +A kernel-mode credential dumper that reads LSASS process memory through a vulnerable driver to extract WDigest plaintext passwords and encrypted LSA credentials, bypassing PPL and antivirus protections. \ No newline at end of file diff --git a/description/waryas/xign_poc_april_2026/description_en.txt b/description/waryas/xign_poc_april_2026/description_en.txt new file mode 100644 index 00000000..7375ea8f --- /dev/null +++ b/description/waryas/xign_poc_april_2026/description_en.txt @@ -0,0 +1 @@ +A public disclosure PoC for multiple vulnerabilities in the XIGNCODE3/xhunter anti-cheat kernel driver, demonstrating arbitrary physical memory read/write, kernel address leak, and arbitrary process termination through IRP_MJ_WRITE commands. \ No newline at end of file diff --git a/description/wesmar/BootBypass/description_en.txt b/description/wesmar/BootBypass/description_en.txt new file mode 100644 index 00000000..6fd96413 --- /dev/null +++ b/description/wesmar/BootBypass/description_en.txt @@ -0,0 +1 @@ +A Windows Secure Boot bypass tool that patches boot manager security checks, disables DSE (Driver Signature Enforcement), and loads unsigned kernel drivers by manipulating boot configuration and CI.dll validation routines. \ No newline at end of file diff --git a/description/wesmar/FileRecoveryTool/description_en.txt b/description/wesmar/FileRecoveryTool/description_en.txt new file mode 100644 index 00000000..747baecf --- /dev/null +++ b/description/wesmar/FileRecoveryTool/description_en.txt @@ -0,0 +1 @@ +A disk forensics and file recovery tool supporting NTFS, FAT32, and ExFAT file systems, with file carving by signature detection, fragmented file reassembly, and sector-level scanning for deleted file recovery. \ No newline at end of file diff --git a/description/wesmar/KernelResearchKit/description_en.txt b/description/wesmar/KernelResearchKit/description_en.txt new file mode 100644 index 00000000..27a046da --- /dev/null +++ b/description/wesmar/KernelResearchKit/description_en.txt @@ -0,0 +1 @@ +A comprehensive Windows kernel research toolkit bundling boot bypass, DSE disabling, unsigned driver loading, CI patching, and multiple driver loading methods (manual map, IRP hijack, BYOVD) for kernel security research. \ No newline at end of file diff --git a/description/wesmar/KeyboardKit/description_en.txt b/description/wesmar/KeyboardKit/description_en.txt new file mode 100644 index 00000000..e24bc633 --- /dev/null +++ b/description/wesmar/KeyboardKit/description_en.txt @@ -0,0 +1 @@ +A Windows keylogger research project using a kernel filter driver that intercepts keyboard input via IRP hooking, with a user-mode component for UDP-based log transmission and ExplorerFrame DLL hijacking persistence. \ No newline at end of file diff --git a/description/wesmar/KvcForensic/description_en.txt b/description/wesmar/KvcForensic/description_en.txt new file mode 100644 index 00000000..0c2ba326 --- /dev/null +++ b/description/wesmar/KvcForensic/description_en.txt @@ -0,0 +1 @@ +A cross-platform LSASS credential forensics tool that extracts Windows authentication secrets (WDigest, Kerberos, DPAPI keys) from live memory or process dumps using signature scanning and crypto decryption, supporting both Windows and Linux. \ No newline at end of file diff --git a/description/wesmar/VaultGuard/description_en.txt b/description/wesmar/VaultGuard/description_en.txt new file mode 100644 index 00000000..645a366c --- /dev/null +++ b/description/wesmar/VaultGuard/description_en.txt @@ -0,0 +1 @@ +A Windows process protection tool written entirely in x64 MASM assembly that uses a kernel driver to monitor and block suspicious process access, providing anti-debugging and anti-tampering capabilities with a system tray GUI. \ No newline at end of file diff --git a/description/wesmar/WinDefCtl/description_en.txt b/description/wesmar/WinDefCtl/description_en.txt new file mode 100644 index 00000000..695a12a5 --- /dev/null +++ b/description/wesmar/WinDefCtl/description_en.txt @@ -0,0 +1 @@ +A Windows Defender control tool that disables/enables Defender real-time protection and tamper protection using a kernel driver for privilege escalation, with stealth techniques to avoid detection. \ No newline at end of file diff --git a/description/wesmar/kvc/description_en.txt b/description/wesmar/kvc/description_en.txt new file mode 100644 index 00000000..418fe1ea --- /dev/null +++ b/description/wesmar/kvc/description_en.txt @@ -0,0 +1 @@ +A Windows kernel vulnerability controller that disables Driver Signature Enforcement (DSE) by patching CI.dll options via a signed Microsoft driver, with certificate-based code signing and multiple loader strategies for unsigned driver loading. \ No newline at end of file diff --git a/description/westfox-5/GhidraMetrics/description_en.txt b/description/westfox-5/GhidraMetrics/description_en.txt new file mode 100644 index 00000000..df01b329 --- /dev/null +++ b/description/westfox-5/GhidraMetrics/description_en.txt @@ -0,0 +1 @@ +A Ghidra extension that computes code complexity metrics (cyclomatic complexity, function size, call depth, etc.) for analyzed binaries, with batch processing via headless Ghidra scripts and JSON/report export. \ No newline at end of file diff --git a/description/x86byte/sbox/description_en.txt b/description/x86byte/sbox/description_en.txt new file mode 100644 index 00000000..916a9bbb --- /dev/null +++ b/description/x86byte/sbox/description_en.txt @@ -0,0 +1 @@ +A C++ string obfuscation library using S-box substitution cipher with compile-time encryption macros, providing encode/decode APIs to protect strings from static analysis in compiled binaries. \ No newline at end of file diff --git a/description/xaitax/NTSleuth/description_en.txt b/description/xaitax/NTSleuth/description_en.txt new file mode 100644 index 00000000..5a5fe8a3 --- /dev/null +++ b/description/xaitax/NTSleuth/description_en.txt @@ -0,0 +1 @@ +A Windows syscall number extractor that parses ntdll/win32u modules with PDB symbol resolution and instruction disassembly to dump complete syscall tables, outputting results in JSON and C header formats for security research. \ No newline at end of file diff --git a/description/zer0condition/x670e-tomahawk-anticheat-update/description_en.txt b/description/zer0condition/x670e-tomahawk-anticheat-update/description_en.txt new file mode 100644 index 00000000..1ba6b19d --- /dev/null +++ b/description/zer0condition/x670e-tomahawk-anticheat-update/description_en.txt @@ -0,0 +1 @@ +Reverse engineering analysis of MSI MAG X670E TOMAHAWK WIFI BIOS v1KB's anti-cheat update, documenting two DXE-phase changes: PCI option-ROM attribute stripping to block DMA cheat hardware and NX memory protection policy adjustments. \ No newline at end of file