Skip to content
View vvswift's full-sized avatar
  • 127.0.0.1
  • 21:05 (UTC -10:00)

Block or report vvswift

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
vvswift/README.md

Website Xwitter

V

Just a writer, exposing the weaknesses of certain protection systems.
All projects below are research-only proof-of-concept tools published strictly for authorized security testing, defensive research, and educational purposes.
Any illegal use is expressly prohibited and is entirely at your own risk and responsibility.

Red Team EDR Bypass Rootkits Direct Syscalls HVNC Spyware

Projects Language ⭐ Stars 🔀 Forks
Bypass-Protection0x00 — EDR & AV Bypass Arsenal — a comprehensive collection of tools, patches, and techniques for evading modern EDR and antivirus defenses, including AMSI bypass, ETW patching, unhooking NTDLL, and various evasion methods tailored for red team operations and security research. C Stars Forks
Shellcode-Injector — PoC shellcode injector using clean syscalls to bypass user-mode hooks in ntdll.dll, featuring dynamic syscall resolution, process injection techniques, and support for custom payloads to aid in penetration testing and malware analysis. C Stars Forks
HVNC-windows-remote-toolkit — Remote administration toolkit for Windows based on Hidden VNC, including features like file manager, keystroke logger, PowerShell execution, clipboard monitoring, and stealthy desktop control for remote access scenarios. C++ Stars Forks
blackbox-ave — Linux Rootkit (x86-64 / ARM64) that stealthily hides processes, files, and sockets, hooks syscalls, encrypts network traffic, bypasses SELinux / AppArmor, and provides backdoor access with modular persistence mechanisms for advanced kernel-level evasion. C Stars Forks
Keylogger_Win64 — Stealth Win64 keylogger that logs keyboard input, chat messages, URLs, passwords, and clipboard data using low-level Windows APIs, with no external dependencies, anti-debugging features, and encrypted log transmission for covert monitoring. C++ Stars Forks
Chrome-extension-installer — Chromium extension loader with command support for system control, integrated with two Node.js servers for C2 operations, enabling browser-based persistence, data exfiltration, and remote command execution in web environments. JavaScript Stars Forks

If you like my work and want to support me, you can sponsor me on GitHub

GitHub sponsorship

My toolbox

C C++ x86 Assembler x64 Assembler ARM64 Assembler JavaScript Bash Git CMake Linux

Pinned Loading

  1. Bypass-Protection0x00 Bypass-Protection0x00 Public

    EDR & AV Bypass Arsenal— a comprehensive collection of tools, patches, and techniques for evading modern EDR and antivirus defenses.

    C 37 15

  2. Shellcode-Injector Shellcode-Injector Public

    PoC shellcode injector using clean syscalls to bypass user-mode hooks in ntdll.dll

    C 14 3

  3. HVNC-windows-remote-toolkit HVNC-windows-remote-toolkit Public

    Remote administration toolkit for windows, based on Hidden VNC: file manager, keystroke logger, powershell

    C++ 30 9

  4. blackbox-ave blackbox-ave Public

    Linux Rootkit (x86-64 / ARM64) that stealth hides processes, files, and sockets, hooks syscalls, encrypts traffic, and bypasses SELinux / AppArmor.

    C 16 5

  5. Keylogger_Win64 Keylogger_Win64 Public

    Win64 Keylogger: logs input, chats, URLs, passwords, stealthy, C API, no external dependencies.

    C++ 3

  6. Chrome-extension-installer Chrome-extension-installer Public

    Chromium extension + loader with command support for system control + 2 Node JS servers

    JavaScript 12 5