Skip to content

Instantly share code, notes, and snippets.

View strazzere's full-sized avatar
hacking intensifies

Tim Strazzere strazzere

hacking intensifies
View GitHub Profile
package main
import (
strazzere / Makefile
Created July 14, 2017 21:40
Decryption for most Kony
gcc decrypt.c -I/usr/local/opt/boringssl/include -L/usr/local/opt/boringssl/lib -lcrypto -o kony_decrypt
strazzere / detect.go
Created July 7, 2017 19:52
Quick test for Otto VM detection techniques
package main
import (
func main() {
vm := otto.New()
strazzere / example.go
Created June 27, 2017 20:45
safer unsafe otto run
package main
import (
strazzere /
Created August 18, 2016 21:50 — forked from williballenthin/
generate a yara rule that matches the basic blocks of the current function in IDA Pro
IDAPython script that generates a YARA rule to match against the
basic blocks of the current function. It masks out relocation bytes
and ignores jump instructions (given that we're already trying to
match compiler-specific bytes, this is of arguable benefit).
If python-yara is installed, the IDAPython script also validates that
the generated rule matches at least one segment in the current file.
author: Willi Ballenthin <>
strazzere / gist:195b439480eab1de3c43f73781d5502a
Created July 23, 2016 02:24
osx + irssi + chinese utf-8 characters
screen -U -S irc
/set term_charset utf-8
/set recode_autodetect_utf8 ON
/set recode_fallback ISO-8859-15
/set recode_out_default_charset ISO-8859-15
/set recode_transliterate ON
/set recode ON
[54%]diff@rocksteady:[repo] $ git clone --verbose
Cloning into 'veracrypt'...
POST git-upload-pack (gzip 1440 to 623 bytes)
remote: Counting objects: 8996, done.
remote: Compressing objects: 100% (6843/6843), done.
remote: Total 8996 (delta 7179), reused 2812 (delta 2010)
Receiving objects: 100% (8996/8996), 43.16 MiB | 1.46 MiB/s, done.
error: RPC failed; curl 56 SSLRead() return error -9806
Resolving deltas: 100% (7179/7179), done.
.class public final Lcom/google/grandcentral/api2/Api2$ApiPhoneCall;
.super Lcom/google/protobuf/GeneratedMessageLite;
.source ""
# annotations
.annotation system Ldalvik/annotation/EnclosingClass;
value = Lcom/google/grandcentral/api2/Api2;
.end annotation
strazzere /
Last active July 21, 2023 14:11
Dump encoded compress powershell stream
# Decompling something being loaded in through powershell
# diff <>
strazzere / Makefile
Created October 2, 2015 22:30
UREE toy
LOCAL_PATH := $(call my-dir)
include $(CLEAR_VARS)
LOCAL_C_INCLUDE := ${ANDROID_NDK_ROOT}/platforms/android-14/arch-arm/usr/include/
LOCAL_MODULE := uree_toy