12-day longest streak
Low-level software is a language — I read, write, and rewrite it. --- Current Research & Engineering Bin2Bin Obfuscation Engineering (Ent8) rust Compiler Infrastructure & LLVM Internals LLM Systems Integration…
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢀⣀⣀⣀⣀⣀⣠⣼⠂⠀⠀⠀⠀⠙⣦⢀⠀⠀⠀⠀⠀⢶⣤⣀⣀⣀⣀⣀⡀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢀⣠⣴⣶⣿⣿⣿⣿⣿⣿⣿⣿⠷⢦⠀⣹⣶⣿⣦⣿⡘⣇⠀⠀⠀⢰⠾⣿⣿⣿⣟⣻⣿⣿⣿⣷⣦⣄⡀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢀⣤⣾⣿⣿⣿⣿⣿⣿⣿⣿⣿⡟⠀⠀⠀⠀⢺⣿⣿⣿⣿⣿⣿⣿⣆⠀⠀⠀⠀⠀⠀⢹⣿⣿⣿⣿⣿⣿⣿⣿⣿⣷⣦⡀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⠀⢀⣴⢟⣥⣿⣿⣿⣿⣿⣿⣿⣿⣿⣿⡇⠀⠀⠀⠀⢻⣿⣿⡏⢹⣿⣿⣿⣿⠀⠀⠀⠀⠀⠀⠀⣿⣿⣿⣿⣿⣿⣿⣿⣿⣿⣮⣝⢷⣄⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⣴⣿⣿⣿⣿⣿⣿⣿⣿⣿⡿⢛⣿⣿⣿⡇⠀⠀⠀⠀⠛⣿⣿⣷⡀⠘⢿⣧⣻⡷⠀⠀⠀⠀⠀⠀⣿⣿⣿⣟⢿⣿⣿⣿⣿⣿⣿⣿⣿⣝⢧⡀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⢠⣾⣿⠟⣡⣾⣿⣿⣧⣿⡿⣋⣴⣿⣿⣿⣿⣧⠀⠀⠀⠀⠀⢻⣿⣿⣿⣶⡄⠙⠛⠁⠀⠀⠀⠀⠀⢸⣿⣿⣿⣿⣷⣝⢻⣿⣟⣿⣿⣷⣮⡙⢿⣽⣆⠀⠀⠀⠀⠀
⠀⠀⠀⠀⢀⡿⢋⣴⣿⣿⣿⣿⣿⣼⣯⣾⣿⣿⡿⣻⣿⣿⣿⣦⠀⠀⠀⠀⢀⣹⣿⣿⣿⣿⣶⣤⠀⠀⠀⠀⠀⣰⣿⣿⣿⣿⠻⣿⣿⣿⣮⣿⣿⣿⣿⣿⣿⣦⡙⢿⣇⠀⠀⠀⠀
⠀⠀⠀⣠⡏⣰⣿⣿⡿⢿⣿⣿⣿⣿⣿⣿⡿⢋⣼⣿⣿⣿⣿⣿⣷⡤⠀⣠⣿⣿⣿⣿⣿⣿⣿⣿⣷⣄⠀⢠⣾⣿⣿⣿⣿⣿⣷⡜⢿⣿⣿⣿⣿⣿⣿⡿⠿⣿⣿⣦⡙⣦⠀⠀⠀
⠀⠀⣰⢿⣿⣿⠟⠋⣠⣾⣿⣿⣿⣿⣿⠛⢡⣾⡿⢻⣿⣿⣿⣿⣿⣿⣿⣿⡿⠋⠻⣿⡟⣿⣿⣿⠻⢿⣿⣿⣿⣿⣿⣿⣿⣟⠻⣿⣆⠙⢿⣿⣿⣿⣿⣿⣦⡈⠻⣿⣿⣟⣧⠀⠀
⠀⣰⢣⣿⡿⠃⣠⡾⠟⠁⠀⣸⣿⡟⠁⢀⣿⠋⢠⣿⡏⣿⣿⣿⣿⣿⢿⠁⢀⣠⣴⢿⣷⣿⣿⣿⠀⠀⠽⢻⣿⣿⣿⣿⡼⣿⡇⠈⢿⡆⠀⠻⣿⣧⠀⠈⠙⢿⣆⠈⠻⣿⣎⢧⠀
⠀⢣⣿⠟⢀⡼⠋⠀⠀⢀⣴⠿⠋⠀⠀⣾⡟⠀⢸⣿⠙⣿⠃⠘⢿⡟⠀⣰⢻⠟⠻⣿⣿⣿⣿⣿⣀⠀⠀⠘⣿⠋⠀⣿⡇⣿⡇⠀⠸⣿⡄⠀⠈⠻⣷⣄⠀⠀⠙⢷⡀⠙⣿⣆⠁
⢀⣿⡏⠀⡞⠁⢀⡠⠞⠋⠁⠀⠀⠀⠈⠉⠀⠀⠀⠿⠀⠈⠀⠀⠀⠀⠀⣿⣿⣰⣾⣿⣿⣿⣿⣿⣿⣤⠀⠀⠀⠀⠀⠉⠀⠸⠃⠀⠀⠈⠋⠀⠀⠀⠀⠙⠳⢤⣀⠀⠹⡄⠘⣿⡄
⣸⡟⠀⣰⣿⠟⠋⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠈⠛⠿⠿⠿⠟⠁⠀⠹⣿⣷⡄⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠈⠻⣿⣧⠀⢹⣷
⣿⠃⢠⡿⠃⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢠⣄⣤⣀⠀⠀⣿⣿⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠈⢻⡇⠀⣿
⣿⠀⢸⠅⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⣰⡿⠋⠉⢻⣧⢀⣿⡇⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⣿⠀⢸
⡇⠀⠈⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢿⣧⡀⠀⠀⣿⣾⡟⠁⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠈⠀⢸
⢸⡄⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠈⠻⠿⣿⣿⠟⠋⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⡾
⠈⠁⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⣰⡿⠋⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠃
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢰⡏⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠘⣧⢀⣾⣤⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⣀⡼⣿⣿⣾⣤⣠⡼⠀⠀⠀
Low-level software is a language — I read, write, and rewrite it.
---
Current Research & Engineering
- Bin2Bin Obfuscation Engineering (Ent8)
- rust
- Compiler Infrastructure & LLVM Internals
- LLM Systems Integration (C++ / Python)
- Retrieval-Augmented Generation (RAG) Systems
- Compiler Design & Backend Engineering
- Interpreter Design & Runtime Development
- Autonomous Systems & Drone Software Engineering
- Pathfinding, Simulation & Systems Visualization
Core Expertise
Reverse Engineering & Threat Analysis
Software Security & Obfuscation
Systems Internals & Tooling
---
Featured Projects
| Project | Release | Description |
| --------------------------------------------- | ---------------------------------------------------------------------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Obfusk8 | v1.0 | Obfusk8 is a source level C++ compile-time and runtime obfuscation library for anti reverse engineering and binary hardening on Windows |
| Sbox | v1.2.0 (Latest) | Compile-time string shredding framework using constexpr AES blocks that eliminates plaintext artifacts from binaries, preventing static extraction and reverse engineering |
| Ent8 | In Development | Native Bin2Bin obfuscation engine focused on instruction rewriting, control-flow transformation, binary mutation, and semantic-preserving anti-analysis techniques |
| 13SQL | Private Organization Repository | Contributed to a self-contained serverless SQL database engine, implementing the execution backend (Executor Layer) as part of a modular ACID-compliant embedded database architecture |
---
> ### ~"Reversing is about reduction, not reconstruction — exposing truth, not wrapping it."
---
---
-
Obfusk8 ★ PINNED
Obfusk8: lightweight Obfuscation library based on C++17 / Header Only for windows binaries
C++ ★ 779 24d agoExplain → -
llvm-msvc ★ PINNED ⑂
LLVM fork with explicit compatibility with MSVC 2022 features.
LLVM ★ 4 15d agoExplain → -
sbox ★ PINNED
Compile-time AES string obfuscation for C++
C++ ★ 109 1mo agoExplain → -
RE-MA-Roadmap ★ PINNED
Reverse Engineering and Malware Analysis Roadmap
★ 855 9mo agoExplain → -
Stuxnet-Rootkit ★ PINNED
Stuxnet extracted binaries by reversing & Stuxnet Rootkit Analysis
C ★ 103 1y agoExplain → -
LummaC2-Stealer ★ PINNED
LummaC2 extracted binaries by reversing & LummaC2 Stealer Analysis
C ★ 123 1y agoExplain → -
Inline_Hooking
Let's dive deeper into some key aspects of Inline Hooking in C++
★ 11 2y agoExplain → -
ROPme
Windows Exploit development : Bypass Data Execution Prevention (DEP) using ROP chains manually hard code
Python ★ 9 1y agoExplain → -
lnk2pwn ⑂
Malicious Shortcut(.lnk) Generator
★ 4 7y agoExplain → -
qmu-ios
iOS 12.1 in QEMU - Docker Wrapper
Shell ★ 4 2mo agoExplain → -
InterObfu ⑂
Intermediate x86 instruction representation for use in obfuscation/deobfuscation.
★ 4 1y agoExplain → -
sogen ⑂
🪅 Windows User Space Emulator
★ 4 9mo agoExplain → -
cave_miner ⑂
Search for code cave in all binaries
★ 4 2y agoExplain → -
APTnotes ⑂
Various public documents, whitepapers and articles about APT campaigns
★ 4 2y agoExplain → -
VX-API ⑂
Collection of various malicious functionality to aid in malware development
★ 3 2y agoExplain → -
APT_CyberCriminal_Campagin_Collections ⑂
APT & CyberCriminal Campaign Collection
★ 3 2y agoExplain → -
android-malware-source-code-samples ⑂
Android malware source code dataset collected from public resources.
★ 3 3y agoExplain → -
cia-archive ⑂
Curated archive of tools from the Wikileaks CIA hacking tool leak, pull requests welcome https://wikileaks.org/ciav7p1/
★ 2 9y agoExplain → -
Mobile-Security-Framework-MobSF ⑂
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
★ 2 1y agoExplain → -
cve ⑂
Gather and update all available and newest CVEs with their PoC.
★ 2 1y agoExplain → -
DeClang ⑂
An anti-hacking compiler forked from the ollvm (https://github.com/obfuscator-llvm/obfuscator)
★ 2 1y agoExplain → -
awesome-ml-for-cybersecurity ⑂
:octocat: Machine Learning for Cyber Security
★ 2 2y agoExplain → -
XiebroC2 ⑂
渗透测试C2、支持Lua插件扩展、域前置/CDN上线、自定义profile、前置sRDI、文件管理、进程管理、内存加载、截图、反向代理、分组管理
★ 1 1y agoExplain → -
random_thoughts
ill learn here more about asmjit, rust (am not a femboy but ill learn rust), zig, java, zydis
C++ ★ 1 12d agoExplain → -
Satana-Bootkit ⑂
Satana Bootkit ransomware
★ 1 9y agoExplain → -
ring-1.io ⑂
Deobfuscation and Analysis of Ring-1.io
★ 1 5mo agoExplain → -
lifting_results_much_love_llvm_community
x86_x64 to LLVM IR lifting Results
LLVM ★ 1 1mo agoExplain → -
Mergen ⑂
Deobfuscation via optimization with usage of LLVM IR and parsing assembly.
C++ ★ 1 1mo agoExplain → -
pegasus-JB-PoC ⑂
Pegasus exploit port to iOS
★ 1 6y agoExplain → -
Env_forDeveloping_x64dbg-Windbg-Ida_Plugins_nd_extensions
No description.
C++ ★ 1 1y agoExplain → -
SysCaller ⑂
SysCaller: SDK for WindowsAPI via syscalls. Dynamic Resolution, Obfuscation, Multi-Language Bindings, & more!
★ 1 8mo agoExplain → -
metafunc ⑂
C++17 Functional Template Metaprogramming Library
★ 1 5y agoExplain → -
sigbreaker-llvm-lit ⑂
All LLVM binaries scrambled with SigBreaker and used to test against llvm-lit
★ 1 1y agoExplain → -
snowman ⑂
Snowman Decompiler for x64dbg (LOOKING FOR MAINTAINER)
★ 1 6y agoExplain → -
AndroidMalware_2020 ⑂
Popular Android malware seen in 2020
★ 1 5y agoExplain → -
winsdk-10 ⑂
No description.
★ 1 8y agoExplain → -
azureOutlookC2 ⑂
Azure Outlook Command & Control (C2) - Remotely control a compromised Windows Device from your Outlook mailbox. Threat Emulation Tool for North Korean APT InkySquid / ScarCruft / APT37. TTP: Use Microsoft Graph API for C2 Operations.
★ 1 3y agoExplain → -
manjusaka ⑂
牛屎花 一款基于WEB界面的远程主机管理工具
★ 1 3y agoExplain → -
Apt_t00ls ⑂
高危漏洞利用工具
★ 1 2y agoExplain → -
nso ⑂
No description.
★ 1 2y agoExplain → -
data ⑂
APTnotes data
★ 1 1y agoExplain → -
APT_REPORTS ⑂
Interesting APT Report Collection And Some Special IOC
★ 1 1y agoExplain → -
pwn-- ⑂
pwn++ is a Windows & Linux library oriented for exploit dev but mostly used to play with modern C++ features (17->26)
★ 1 1y agoExplain → -
docker-havoc ⑂
Déploiement of Havoc C2 in docker
★ 0 2y agoExplain → -
x86byte
No description.
★ 0 21d agoExplain → -
cp_submissions
My CP Problems Submissions
C++ ★ 0 1mo agoExplain → -
windows_kernel_address_leaks ⑂
Examples of leaking Kernel Mode information from User Mode on Windows
★ 0 9y agoExplain → -
striga ⑂
Striga is an experimental lifter from x86_64 to LLVM IR written in Python.
★ 0 1mo agoExplain → -
cp_tmp
codeforcing our self until reaching (C++ what ?)
C++ ★ 0 3mo agoExplain → -
CVE-2025-26125 ⑂
(0day) Local Privilege Escalation in IObit Malware Fighter
★ 0 1y agoExplain → -
alive2-https-alive2.llvm.org-ce- ⑂
Automatic verification of LLVM optimizations
★ 0 1y agoExplain → -
mp ⑂
C++20 Meta-Programming library
★ 0 1y agoExplain → -
PluginDevHelper ⑂
Simple utility that allows you to automatically unload/reload an x64dbg plugin while developing with Visual Studio.
★ 0 4y agoExplain → -
docs ⑂
Documentation repository.
★ 0 1y agoExplain → -
PluginTemplate ⑂
Plugin template for x64dbg.
★ 0 1y agoExplain → -
Pixel_GPU_Exploit ⑂
Android 14 kernel exploit for Pixel7/8 Pro
★ 0 2y agoExplain → -
reactos ⑂
A free Windows-compatible Operating System
★ 0 1y agoExplain → -
memhv ⑂
Minimalistic AMD-V/SVM hypervisor with memory introspection capabilities
★ 0 1y agoExplain → -
MacOS-S ⑂
MacOS S
★ 0 1y agoExplain → -
TinyXPB ⑂
Windows XP 32-Bit Bootkit
★ 0 11y agoExplain → -
mbr-boot-manager ⑂
💾 Master Boot Record with a boot menu written in Assembly
★ 0 8y agoExplain → -
bricks ⑂
A game of bricks and paddle on one boot sector (510 bytes)
★ 0 6y agoExplain → -
MyDocs ⑂
各种乱七八糟的收集, 51pwn.com大数据平台模糊查询
★ 0 2y agoExplain → -
Exploit-Dev ⑂
Advanced Windows Exploitation (AWE) preparation
★ 0 6y agoExplain → -
JOP_ROCKET ⑂
This framework enables user to discover JOP gagdets and can automate building a complete JOP chain to bypass DEP. JOP ROCKET is the ultimate solution for Windows jump-oriented programming. JOP ROCKET also finds the novel two-gadget dispatcher, which greatly expands what is possible with JOP.
★ 0 3y agoExplain → -
peda ⑂
PEDA - Python Exploit Development Assistance for GDB
★ 0 7y agoExplain → -
Havoc ⑂
The Havoc Framework.
★ 0 1y agoExplain →
No repos match these filters.