--- title: Game Hacking kind: overview topics: [game-hacking] sources: - wiki/sources/skills/game-hacking.md - wiki/sources/README-categories.md - wiki/sources/descriptions/zyhp__vac3_inhibitor.md - wiki/sources/descriptions/x1tan__vac3-dumper.md - wiki/sources/descriptions/shuruk421__VACKeyRetrieval.md - wiki/sources/descriptions/nevioo1337__VAC-ModuleDumper.md - wiki/sources/descriptions/Gingerbeard5773__dino-printer.md - wiki/sources/descriptions/GJR787878__DeviceResetSpoofer.md - wiki/sources/descriptions/jafarm189__MOABile.md - wiki/sources/descriptions/gmh5225__Vac-Emulator.md - wiki/sources/descriptions/gmh5225__VACDumper.md - wiki/sources/descriptions/gmh5225__PreventVAC.md - wiki/sources/descriptions/gmh5225__Ponce.md - wiki/sources/descriptions/shefben__VALVeAntiCheat1.md - wiki/sources/descriptions/ianveig29__como-funciona-vac.md - wiki/sources/descriptions/kouzhudong__AntiHook.md - wiki/sources/descriptions/januwA__game-reversed-study.md - wiki/sources/descriptions/janisslsm__ida-ps4-helper.md - wiki/sources/descriptions/kovidomi__game-reversing.md - wiki/sources/descriptions/krakensuit__ZenWare.cc.md - wiki/sources/descriptions/krampus-nuggets__ce-tutorial.md - wiki/sources/descriptions/kotae4__intro-to-gamehacking.md - wiki/sources/descriptions/jbro129__android-modding.md - wiki/sources/descriptions/1401199262__RemoteCall.md - wiki/sources/descriptions/0xenia__remem.md - wiki/sources/descriptions/0xPrimo__KMDllInjector.md - wiki/sources/descriptions/0xGREG__registry-callbacks.md - wiki/sources/descriptions/0dayatday0__BattleFN-cheat-analysis.md - wiki/sources/descriptions/0x5abe__vifterpreter.md - wiki/sources/descriptions/0xricksanchez__Shellcoder.md - wiki/sources/descriptions/1hAck-0__UE4-Cheat-Source-Code.md - wiki/sources/descriptions/kotae4__lab-esp-and-aimbot.md - wiki/sources/descriptions/korcankaraokcu__PINCE.md - wiki/sources/descriptions/krispybyte__Simple-Rust-Base.md - wiki/sources/descriptions/krispybyte__Simple-EFT-Base.md - wiki/sources/descriptions/krispybyte__Vook.md - wiki/sources/descriptions/danbrodsky__GFred.md - wiki/sources/descriptions/danielkrupinski__Osiris.md - wiki/sources/descriptions/danielkrupinski__vac-hooks.md - wiki/sources/descriptions/danielkrupinski__VAC-Bypass.md - wiki/sources/descriptions/danielkrupinski__VAC-Bypass-Loader.md - wiki/sources/descriptions/Jackbail4__VAC-Bypass.md - wiki/sources/descriptions/JackBro__SmiteESPAimbot.md - wiki/sources/descriptions/JackBro__BetaShield.md - wiki/sources/descriptions/J0xna__Kernel-Overlay-Hider.md - wiki/sources/descriptions/JGonz1337__kernel-eac-be-injector.md - wiki/sources/descriptions/JGonz1337__kernel-eac-be-comm.md - wiki/sources/descriptions/JGonz1337__r6-internal.md - wiki/sources/descriptions/JUS7205__cheatguard.md - wiki/sources/descriptions/danielkrupinski__MemJect.md - wiki/sources/descriptions/danielkrupinski__GOESP.md - wiki/sources/descriptions/danielkrupinski__Anubis.md - wiki/sources/descriptions/zodiacon__TotalPE2.md - wiki/sources/descriptions/zodiacon__QuickAsm.md - wiki/sources/descriptions/skylot__raung.md - wiki/sources/descriptions/zoand__Injectors.md - wiki/sources/descriptions/zoand__BOOM.md - wiki/sources/descriptions/Zetolac__FortniteOffsetsAndSigs.md - wiki/sources/descriptions/zinx-YT__Fortnite-Fltokens-and-offsets.md - wiki/sources/descriptions/zhuzhu-Top__deobf.md - wiki/sources/descriptions/zhuowei__cheese.md - wiki/sources/descriptions/zhitkur__DayZzz.md - wiki/sources/descriptions/zhaodice__proxmox-ve-anti-detection.md - wiki/sources/descriptions/zhaodice__qemu-anti-detection.md - wiki/sources/descriptions/kila58__qemu-patched.md - wiki/sources/descriptions/batteryshark__batteryshark.github.io.md - wiki/sources/descriptions/banteg__bn.md - wiki/sources/descriptions/basil00__Divert.md - wiki/sources/descriptions/batusan__Hardened-qemu.md - wiki/sources/descriptions/ScriptWare-Software__native-predicate-solver.md - wiki/sources/descriptions/S12cybersecurity__FrankensteinAPCInjection.md - wiki/sources/descriptions/S12cybersecurity__RWXFinder.md - wiki/sources/descriptions/Schich__Lucky-Spark.md - wiki/sources/descriptions/Saxmason__Interic-Fortnite-External-Cheat.md - wiki/sources/descriptions/Saxmason__Subzero-Fortnite-Cheat.md - wiki/sources/descriptions/CasualX__apexdream.md - wiki/sources/descriptions/CasualX__apexbot.md - wiki/sources/descriptions/Coldzer0__RE4F.md - wiki/sources/descriptions/CheaterRehab__GodFather-Fortnite-Cheat-Cracked.md - wiki/sources/descriptions/Chase1803__UCMiraka-ValorantExternal.md - wiki/sources/descriptions/Sandspeare__ida2llvm.md - wiki/sources/descriptions/SamuelTulach__rainbow.md - wiki/sources/descriptions/SamuelTulach__negativespoofer.md - wiki/sources/descriptions/SamuelTulach__PwnedBoot.md - wiki/sources/descriptions/SamuelTulach__mutante.md - wiki/sources/descriptions/SamuelTulach__unxorer.md - wiki/sources/descriptions/SamuelTulach__efi-memory.md - wiki/sources/descriptions/SamuelTulach__LightHook.md - wiki/sources/descriptions/SamuelTulach__BetterTiming.md - wiki/sources/descriptions/Scrut1ny__Hypervisor-Phantom.md - wiki/sources/descriptions/SingularityCloud__KVM.Performance.md - wiki/sources/descriptions/airbus-seclab__qemu_blog.md - wiki/sources/descriptions/bad-antics__rce-shield.md - wiki/sources/descriptions/badabing2005__PixelFlasher.md - wiki/sources/descriptions/ShivamXD6__ROM-Shifter.md - wiki/sources/descriptions/alex193a__Root-My-Pixel.md - wiki/sources/descriptions/BuSung-dev__Root-My-Galaxy.md - wiki/sources/descriptions/Colorful-glassblock__duchamp-root.md - wiki/sources/descriptions/Y33Tcoder__EzApexDMAAimbot.md - wiki/sources/descriptions/Yayoi-cs__fastDbg.md - wiki/sources/descriptions/XMCVE__import-kallsyms.md - wiki/sources/descriptions/XRadius__project-tanya.md - wiki/sources/descriptions/XuanXuan-ZhengGui__Minecraft-Anti-Cheat.md - wiki/sources/descriptions/YcbrYL1__YCBR-AntiCheat.md - wiki/sources/descriptions/YimMenu__YimMenu.md - wiki/sources/descriptions/YuKongA__ghostlock-app.md - wiki/sources/descriptions/hzqst__VmwareHardenedLoader.md - wiki/sources/descriptions/d35ha__DumpPE.md - wiki/sources/descriptions/d4em0n__exrop.md - wiki/sources/descriptions/d4rksystem__VMwareCloak.md - wiki/sources/descriptions/k3v1n1990s__docker-win.md - wiki/sources/descriptions/tteck__Proxmox.md - wiki/sources/descriptions/tenclass__mvisor.md - wiki/sources/descriptions/quic__gunyah-hypervisor.md - wiki/sources/descriptions/Droid-VM__DroidVM.md - wiki/sources/descriptions/Chinaapps__ZN-Toolbox.md - wiki/sources/descriptions/DrYenyen__Drive-Cloning-For-PS4-PS5.md - wiki/sources/descriptions/qemu-gvm__qemu-gvm.md - wiki/sources/descriptions/Qemu-Gang__Escape-from-TuxKov.md - wiki/sources/descriptions/jwmcglynn__android-emulator.md - wiki/sources/descriptions/anbox__anbox.md - wiki/sources/descriptions/anasfanani__Magisk-Tailscaled.md - wiki/sources/descriptions/amosshi__binaryinternals.md - wiki/sources/descriptions/alexbevi__ghidra-manager.md - wiki/sources/descriptions/alexhude__FRIEND.md - wiki/sources/descriptions/airbus-seclab__AutoResolv.md - wiki/sources/descriptions/airbus-cert__comida.md - wiki/sources/descriptions/alexkrnl__Kernel-dll-injector.md - wiki/sources/descriptions/ktock__qemu-wasm.md - wiki/sources/descriptions/xqemu__xqemu.md - wiki/sources/descriptions/xkevio__kevboy.md - wiki/sources/descriptions/vojty__feather-gb.md - wiki/sources/descriptions/pudii__gba-ghidra-loader.md - wiki/sources/descriptions/kroy-the-rabbit__openfpga-GBC-cheats-ui.md - wiki/sources/descriptions/zer0condition__NTMemory.md - wiki/sources/descriptions/zengfr__XrefsExt.md - wiki/sources/descriptions/za233__IDADeflat.md - wiki/sources/descriptions/z1ko__mutaben.md - wiki/sources/descriptions/nhpcc502__MBA-Obfuscator.md - wiki/sources/descriptions/yubie-re__ida-jm-xorstr-decrypt-plugin.md - wiki/sources/descriptions/ys1231__MoveCertificate.md - wiki/sources/descriptions/yourmnbbn__tiny-csgo-client.md - wiki/sources/descriptions/whereisr0da__Lumina-Cheat.md - wiki/sources/descriptions/spirthack__CSGOSimple.md - wiki/sources/descriptions/seksea__gamesneeze.md - wiki/sources/descriptions/geekrainian__killingfloor-bot-client.md - wiki/sources/descriptions/gavz__Jektor.md - wiki/sources/descriptions/gamozolabs__mempeek.md - wiki/sources/descriptions/gameplug-labs__gameplug.md - wiki/sources/descriptions/5paceman__nightshade.md - wiki/sources/descriptions/fuqiuluo__rnidbg.md - wiki/sources/descriptions/fuqiuluo__ovo.md - wiki/sources/descriptions/fuqiuluo__android-wuwa.md - wiki/sources/descriptions/fuzzypickles14__BetterStringAnalyzer.md - wiki/sources/descriptions/freezato__LocalAnticheat-1.8.9.md - wiki/sources/descriptions/winzysss__JarAnalyzer.md - wiki/sources/descriptions/Sutaigne__alibi.md - wiki/sources/descriptions/StelGR__ArrowAntiCheat.md - wiki/sources/descriptions/Squalr__Squalr-Sharp.md - wiki/sources/descriptions/Squalr__Squally.md - wiki/sources/descriptions/SurgeGotTappedAgain__Window-Hijack.md - wiki/sources/descriptions/PlinKuuu__DanisNightmare.md - wiki/sources/descriptions/Octowolve__Unity-ImGUI-Android.md - wiki/sources/descriptions/Polarmods__PolarImGui.md - wiki/sources/descriptions/SsageParuders__CheatUnityGames.md - wiki/sources/descriptions/Super-Cssdiv__ChinaPubg.md - wiki/sources/descriptions/MiCode__kernel_devicetree.md - wiki/sources/descriptions/MiCode__Xiaomi_Kernel_OpenSource.md - wiki/sources/descriptions/MMRLApp__WebUI-X-Portable.md - wiki/sources/descriptions/MlgmXyysd__Xiaomi-HyperOS-BootLoader-Bypass.md - wiki/sources/descriptions/Mood-Coding__pubgm_shitty_source.md - wiki/sources/descriptions/Suprcode__mir2.md - wiki/sources/descriptions/eksses__EAFE.md - wiki/sources/descriptions/ekknod__apex_linux.md - wiki/sources/descriptions/ekknod__vm.md - wiki/sources/descriptions/ekknod__usbsn.md - wiki/sources/descriptions/ekknod__sumap.md - wiki/sources/descriptions/ekknod__efi-monitor.md - wiki/sources/descriptions/Spuckwaffel__Simple-MmcopyMemory-Hook.md - wiki/sources/descriptions/Spuckwaffel__Kernel-Thread-Driver.md - wiki/sources/descriptions/SpiroHappy__Warzone-MW-Internal.md - wiki/sources/descriptions/Spelchure__CSGO-Internal.md - wiki/sources/descriptions/FreeER__CE-Examples.md - wiki/sources/descriptions/FreeER__CE-Extensions.md - wiki/sources/descriptions/Fr0go1__Aeonix-Cs2.md - wiki/sources/descriptions/Skyrimfus__CE-lua-extensions.md - wiki/sources/descriptions/Skotschia__hwid_spoofer.md - wiki/sources/descriptions/Scrut1ny__Windows-Spoofer.md - wiki/sources/descriptions/Speedi13__ROP-COMPILER.md - wiki/sources/descriptions/Splitx12__eft.md - wiki/sources/descriptions/Splitx12__StrongSteam.md - wiki/sources/descriptions/ekknod__KiSystemStartupMeme.md - wiki/sources/descriptions/ekknod__SubGetVariable.md - wiki/sources/descriptions/ekknod__SetWindowHookEx.md - wiki/sources/descriptions/ekknod__smm.md - wiki/sources/descriptions/ekknod__logitech-cve.md - wiki/sources/descriptions/Bartis1313__csgo.md - wiki/sources/descriptions/BataBo__ACEPatcher.md - wiki/sources/descriptions/BatogiX__logitech-cve.md - wiki/sources/descriptions/ekknod__MouseClassServiceCallbackTrick.md - wiki/sources/descriptions/ekknod__MouseClassServiceCallbackMeme.md - wiki/sources/descriptions/a1ext__auto_re.md - wiki/sources/descriptions/a2x__cs2-dumper.md - wiki/sources/descriptions/Salvatore-Als__cs2-signature-list.md - wiki/sources/descriptions/H1d3r__GPU_ShellCode.md - wiki/sources/descriptions/FrySimpl3__SDK_CS2.md - wiki/sources/descriptions/Fewnity__Counter-Strike-Nintendo-DS.md - wiki/sources/descriptions/Fewnity__Counter-Strike-DS-Unity-Project.md - wiki/sources/descriptions/HLND2T__CS2_VibeSignatures.md - wiki/sources/descriptions/aahmad097__AlternativeShellcodeExec.md - wiki/sources/descriptions/adde88__SkyEngine.md - wiki/sources/descriptions/adde88__WoWDumpFix.md - wiki/sources/descriptions/adem-hosni__AtomicShieldClient.md - wiki/sources/descriptions/adrianyy__rw_socket_driver.md - wiki/sources/descriptions/addrianyy__ios_packager.md - wiki/sources/descriptions/adanainv3-creator__OxClient.md - wiki/sources/descriptions/adspro15__DirectInput.md - wiki/sources/descriptions/ekknod__nv_v2.md - wiki/sources/descriptions/ekknod__G37OBS.md - wiki/sources/descriptions/ekknod__EC_PRO-LAN.md - wiki/sources/descriptions/ekknod__EC.md - wiki/sources/descriptions/ekknod__CSGO-AC.md - wiki/sources/descriptions/ekknod__csf_w.md - wiki/sources/descriptions/ekknod__csf.md - wiki/sources/descriptions/enis1enis2__Windfall-AntiCheat.md - wiki/sources/descriptions/frasten__ida-genpatch.md - wiki/sources/descriptions/fr0gger__awesome-ida-x64-olly-plugin.md - wiki/sources/descriptions/fosdickio__binary_ninja_mcp.md - wiki/sources/descriptions/Invoke-RE__binja-lattice-mcp.md - wiki/sources/descriptions/cycraft-corp__BinaryAnalysisMCPs.md - wiki/sources/descriptions/cyberus-technology__virtualbox-kvm.md - wiki/sources/descriptions/fdrechsler__mcp-server-idapro.md - wiki/sources/descriptions/facebookresearch__CUTracer.md - wiki/sources/descriptions/fail46__OHack.md - wiki/sources/descriptions/fksvs__inject.md - wiki/sources/descriptions/fmagin__ghidra-openai.md - wiki/sources/descriptions/evyatar9__GptHidra.md - wiki/sources/descriptions/evilashz__ProxyAPICall.md - wiki/sources/descriptions/fortra__hw-call-stack.md - wiki/sources/descriptions/frkngksl__NimicStack.md - wiki/sources/descriptions/gcarmix__HexWalk.md - wiki/sources/descriptions/gigbh__d-process.md - wiki/sources/descriptions/otvv__csgo-linux-cheat-sdk.md - wiki/sources/descriptions/94q__Valorant-Internal.md - wiki/sources/descriptions/AimTuxOfficial__AimTux.md - wiki/sources/descriptions/ALittlePatate__ezfrags.md - wiki/sources/descriptions/ALittlePatate__TaxiDriver.md - wiki/sources/descriptions/Accenture__protobuf-finder.md - wiki/sources/descriptions/s3pt3mb3r__Dainsleif.md - wiki/sources/descriptions/martinjanas__Sensum.md - wiki/sources/descriptions/jfmaes__LazySign.md - wiki/sources/descriptions/secretsquirrel__SigThief.md - wiki/sources/descriptions/Sentient111__Csgo-Full-kernel.md - wiki/sources/descriptions/Sentient111__StealingSignatures.md - wiki/sources/descriptions/rbmm__LockFile-Poc.md - wiki/sources/descriptions/scrt__avdebugger.md - wiki/sources/descriptions/secrary__idenLibX.md - wiki/sources/descriptions/secrary__idenLib.md - wiki/sources/descriptions/seifreed__r2SMT.md - wiki/sources/descriptions/seifreed__xrefgen.md - wiki/sources/descriptions/0liverFlow__CVE2PoC.md - wiki/sources/descriptions/0xGotcha__XrefXpert.md - wiki/sources/descriptions/push0ebp__sig-database.md - wiki/sources/descriptions/soyware__heck_csgo_external.md - wiki/sources/descriptions/gmh5225__meowsense.md - wiki/sources/descriptions/gmh5225__mhxy_kernel.md - wiki/sources/descriptions/gmh5225__mhxy.md - wiki/sources/descriptions/gmh5225__maplestory-artale-explab.md - wiki/sources/descriptions/gmh5225__LostArk.md - wiki/sources/descriptions/gmh5225__LostArkLogger.md - wiki/sources/descriptions/gmh5225__LostArkDumper.md - wiki/sources/descriptions/gmh5225__LOST-ARK-SDK.md - wiki/sources/descriptions/gmh5225__Mandragora.md - wiki/sources/descriptions/gmh5225__Map-file-in-system-space.md - wiki/sources/descriptions/gmh5225__MapleStoryAutoLevelUp.md - wiki/sources/descriptions/gmh5225__maplestory-v83MaplestoryCPP.md - wiki/sources/descriptions/gmh5225__RustMS.md - wiki/sources/descriptions/gmh5225__Rebirth.md - wiki/sources/descriptions/gmh5225__MapleStory-v113-Server-Eimulator.md - wiki/sources/descriptions/gmh5225__JMSv186.md - wiki/sources/descriptions/gmh5225__AzureV316.md - wiki/sources/descriptions/Blaumaus__le_chiffre.md - wiki/sources/descriptions/manka81__csgo_cheat.md - wiki/sources/descriptions/BossKoopa__BWSR.md - wiki/sources/descriptions/Boyan-MILANOV__ropium.md - wiki/sources/descriptions/Bratah123__ElectronMS.md - wiki/sources/descriptions/gmh5225__MapleStory-Server.md - wiki/sources/descriptions/gmh5225__maplestory-packer-ModPacker.md - wiki/sources/descriptions/gmh5225__MapleStoryDetectionSampleGenerator.md - wiki/sources/descriptions/gmh5225__WzComparerR2.md - wiki/sources/descriptions/gmh5225__WinAPI_MapleStory.md - wiki/sources/descriptions/gmh5225__MapleStory-HeavenClient.md - wiki/sources/descriptions/gmh5225__MapleStory-Client.md - wiki/sources/descriptions/gmh5225__MapleStory-GM-Client.md - wiki/sources/descriptions/gmh5225__MapleNecrocer.md - wiki/sources/descriptions/gmh5225__LibreMaple-Client.md - wiki/sources/descriptions/gmh5225__GameEngine-MapleEngine.md - wiki/sources/descriptions/gmh5225__MapleStory-CMS95-Client-Address.md - wiki/sources/descriptions/gmh5225__MapleServerAndroid.md - wiki/sources/descriptions/gmh5225__TWMS-Hacking-Data.md - wiki/sources/descriptions/gmh5225__Call-Of-Duty-Vanguard-Hack-Esp-AImbot-Unlock-All.md - wiki/sources/descriptions/gmh5225__Call-Of-Duty-Warzone-Hack-Esp-Slient-Aimbot-Internal-Unlock-ALL.md - wiki/sources/descriptions/gmh5225__COD-boiii.md - wiki/sources/descriptions/gmh5225__CODM-ESP-Aimbot-Mod-Menu.md - wiki/sources/descriptions/gmh5225__-Modern-Warfare-Warzone-Cheat.md - wiki/sources/descriptions/gmh5225__Warzone-internal-Cheat.md - wiki/sources/descriptions/gmh5225__maniac.md - wiki/sources/descriptions/gmh5225__mnwvs196.md - wiki/sources/descriptions/gmh5225__minecpp.md - wiki/sources/descriptions/gmh5225__memory_server.md - wiki/sources/descriptions/gmh5225__memcs.md - wiki/sources/descriptions/gmh5225__MemWars.md - wiki/sources/descriptions/gmh5225__EasyRe.md - wiki/sources/descriptions/gmh5225__MMFCodeInjection.md - wiki/sources/descriptions/gmh5225__job_communication.md - wiki/sources/descriptions/gmh5225__Common-Registry-Jmp-RCX.md - wiki/sources/descriptions/gmh5225__Comm-data-ptr-driver.md - wiki/sources/descriptions/gmh5225__Comm-Data-Pointer-Swap.md - wiki/sources/descriptions/gmh5225__custom_data_ptr_swap_sample.md - wiki/sources/descriptions/gmh5225__DataPtrSwap-driver.md - wiki/sources/descriptions/gmh5225__avhook.md - wiki/sources/descriptions/gmh5225__autismware.md - wiki/sources/descriptions/gmh5225__CSGO-aw-v5.1.13.md - wiki/sources/descriptions/gmh5225__CSGO-Alphen.md - wiki/sources/descriptions/gmh5225__CSGO-Loader.md - wiki/sources/descriptions/gmh5225__CSGO-NIXWARE-CSGO.md - wiki/sources/descriptions/gmh5225__cs16-trigger-kvm.md - wiki/sources/descriptions/gmh5225__kvm-csgo-cheat.md - wiki/sources/descriptions/gmh5225__nebulite-external.md - wiki/sources/descriptions/gmh5225__NlsCodeInjectionThroughRegistry.md - wiki/sources/descriptions/gmh5225__NullDriverCheat.md - wiki/sources/descriptions/gmh5225__NtUserInjectMouseInput-syscall.md - wiki/sources/descriptions/gmh5225__legit-csgo-cheat-menu.md - wiki/sources/descriptions/gmh5225__csgo_sdk.md - wiki/sources/descriptions/gmh5225__csgo-sdk.md - wiki/sources/descriptions/gmh5225__csgo-sdk-improved.md - wiki/sources/descriptions/gmh5225__csgo-offsets.md - wiki/sources/descriptions/gmh5225__csgo2-cheat.md - wiki/sources/descriptions/gmh5225__cs2_webradar.md - wiki/sources/descriptions/clauadv__cs2_webradar.md - wiki/sources/descriptions/ch4ncellor__CSGO-P2C-Dumper.md - wiki/sources/descriptions/charliewolfe__Stealthy-Kernelmode-Injector.md - wiki/sources/descriptions/chaycee__CS2Internal.md - wiki/sources/descriptions/cazzwastaken__kakhack.md - wiki/sources/descriptions/bmax121__KernelPatch.md - wiki/sources/descriptions/bobalkkagi__bobalkkagi.md - wiki/sources/descriptions/boylin0__AVA-Hack.md - wiki/sources/descriptions/boltgolt__boltobserv.md - wiki/sources/descriptions/bliutech__mbased.md - wiki/sources/descriptions/blacktop__ida-mcp-rs.md - wiki/sources/descriptions/bkerler__ida_rpc.md - wiki/sources/descriptions/blackhades00__PareidoliaTriggerbot.md - wiki/sources/descriptions/block__stoic.md - wiki/sources/descriptions/binkynz__cstrike-hack.md - wiki/sources/descriptions/bbfox0703__Mydev-Cheat-Engine-Tables.md - wiki/sources/descriptions/beans42__epic-r6-v9.md - wiki/sources/descriptions/beamstar__cheatengine-mcp-bridge.md - wiki/sources/descriptions/5ec1cff__TrickyStore.md - wiki/sources/descriptions/beakthoven__TrickyStore.md - wiki/sources/descriptions/binarly-io__idapcode.md - wiki/sources/descriptions/bloesway__csgo_sdk.md - wiki/sources/descriptions/boowampp__ApexDmaCheatUpdated.md - wiki/sources/descriptions/ccsimplyspolit__CS2-P2C-TEMPLATES.md - wiki/sources/descriptions/chztbby__RebirthGuard.md - wiki/sources/descriptions/gmh5225__cs2_things.md - wiki/sources/descriptions/gmh5225__cs2_sdk.md - wiki/sources/descriptions/gmh5225__cs2-sdk.md - wiki/sources/descriptions/bruhmoment21__cs2-sdk.md - wiki/sources/descriptions/clouddss__cs2-internal-sdk.md - wiki/sources/descriptions/click4dylan__CSGO_AnimationCode_Reversed.md - wiki/sources/descriptions/cragson__a53-code-exec.md - wiki/sources/descriptions/cragson__osmium.md - wiki/sources/descriptions/crifan__AutoRename.md - wiki/sources/descriptions/cellebrite-labs__FunctionInliner.md - wiki/sources/descriptions/cpkt9762__ida-cli.md - wiki/sources/descriptions/cpkt9762__solana-sbpf-rlib.md - wiki/sources/descriptions/crmulliner__adbi.md - wiki/sources/descriptions/cs1ime__AndroidSuperInject.md - wiki/sources/descriptions/cs1ime__ceserver-rawmem.md - wiki/sources/descriptions/cs1ime__blacksun-framework.md - wiki/sources/descriptions/NurdAlert__flirtnite.md - wiki/sources/descriptions/Nuxar1__DecryptionDumper.md - wiki/sources/descriptions/Oliver-1-1__MouseDetection.md - wiki/sources/descriptions/Oliver-1-1__EtwKeyboardDetection.md - wiki/sources/descriptions/Oliver-1-1__SmmInfect.md - wiki/sources/descriptions/Oliver-1-1__UEFI-Graphic.md - wiki/sources/descriptions/OFFTKP__felix86.md - wiki/sources/descriptions/OALabs__hashdb-ida.md - wiki/sources/descriptions/Omega172__OmegaWare-Framework.md - wiki/sources/descriptions/cnitlrt__headless-ida-mcp-server.md - wiki/sources/descriptions/clementine44613__seiun-ac.md - wiki/sources/descriptions/XuJun05__FairCount.md - wiki/sources/descriptions/cklsit__AdvancedAntiCheat.md - wiki/sources/descriptions/cocomelonc__pawtrace.md - wiki/sources/descriptions/CookiePLMonster__UptimeFaker.md - wiki/sources/descriptions/CorrM__CleanCheat.md - wiki/sources/descriptions/crvvdev__intraceptor.md - wiki/sources/descriptions/crtdll__ida-gameguard-str-dec.md - wiki/sources/descriptions/crazythecoder__IW4MAdmin-SebzAntiCheat.md - wiki/sources/descriptions/cs2-server-plugins__cs2-calladmin.md - wiki/sources/descriptions/Omn1z__Counter-Strike2-SDK.md - wiki/sources/descriptions/Pintuzoft__OSAntiCheat.md - wiki/sources/descriptions/Source2ZE__CS2Fixes.md - wiki/sources/descriptions/gmh5225__CS2-SDK-Source2Gen.md - wiki/sources/descriptions/gmh5225__CS2-External-1.md - wiki/sources/descriptions/ZEROWyt__Overwatch-2-TOPE-EXTERNAL-CHEAT.md - wiki/sources/descriptions/Zckyy__CS2-External.md - wiki/sources/descriptions/ZZZ-Monster__bloodhunt_External.md - wiki/sources/descriptions/PhysX1337__BloodHunt-v1.1.md - wiki/sources/descriptions/gmh5225__CS2-Cheat.md - wiki/sources/descriptions/gmh5225__CS2-Cheat-Base.md - wiki/sources/descriptions/gmh5225__Alaa-8ball-pool-source-exposed.md - wiki/sources/descriptions/gmh5225__AssaultCubeCheat.md - wiki/sources/descriptions/201580ag__AssaultCube_Cheat.md - wiki/sources/descriptions/gmh5225__Astra.md - wiki/sources/descriptions/gmh5225__Ark.md - wiki/sources/descriptions/gmh5225__Aurora.md - wiki/sources/descriptions/chao-shushu__CS2-DMA.md - wiki/sources/descriptions/eden13378__CS2-DMA-Cheat.md - wiki/sources/descriptions/gmh5225__CS2-Dma-Radar.md - wiki/sources/descriptions/MoZiHao__CS2_DMA_Radar.md - wiki/sources/descriptions/MoZiHao__CS2_DMA_Extrnal.md - wiki/sources/descriptions/MisterY52__apex_dma_kvm_pub.md - wiki/sources/descriptions/Miffyli__gan-aimbots.md - wiki/sources/descriptions/Midi12__ow_unpack.md - wiki/sources/descriptions/gmh5225__cs2-fov-changer.md - wiki/sources/descriptions/gmh5225__csgo_external_ahk_hack.md - wiki/sources/descriptions/gmh5225__ceserver-ios.md - wiki/sources/descriptions/0xiuks__ceserver-ios.md - wiki/sources/descriptions/H5GG__H5GG.md - wiki/sources/descriptions/vaenshine__VansonMod.md - wiki/sources/descriptions/gmh5225__KittyMemory-IOS.md - wiki/sources/descriptions/MJx0__KittyMemory.md - wiki/sources/descriptions/M3351AN__AimStar.md - wiki/sources/descriptions/M3351AN__Echinoidea.md - wiki/sources/descriptions/M3351AN__saphire.md - wiki/sources/descriptions/M3351AN__Samidare.md - wiki/sources/descriptions/M3351AN__Shirakumo.md - wiki/sources/descriptions/M3351AN__UkiaRPM.md - wiki/sources/descriptions/M3351AN__Usugumo.md - wiki/sources/descriptions/M3351AN__ZhangBing-Injector.md - wiki/sources/descriptions/M1fisto__nullptr-apex-external.md - wiki/sources/descriptions/cheat-engine__cheat-engine.md - wiki/sources/descriptions/NulledNah__cheat-engine-undetectable.md - wiki/sources/descriptions/NullTerminatorr__NullBase.md - wiki/sources/descriptions/NullHooks__NullHooks.md - wiki/sources/descriptions/NullTerminatorr__NullHook.md - wiki/sources/descriptions/NullTerminatorr__ThreadHijackingInjector.md - wiki/sources/descriptions/Nou4r__pKernelInterface-EFT.md - wiki/sources/descriptions/Nou4r__PresentInjector.md - wiki/sources/descriptions/NepMods__InjectARM64.md - wiki/sources/descriptions/NotOfficer__cs2-sdk.md - wiki/sources/descriptions/orphannn__hoozi-cs2-dma.md - wiki/sources/descriptions/cheat-engine__UnrealEngineTools.md - wiki/sources/descriptions/cheat-engine__ControllerMode.md - wiki/sources/descriptions/gmh5225__cheat-engine-ceserver-pcileech.md - wiki/sources/descriptions/gmh5225__cheap-engine.md - wiki/sources/descriptions/andoridcharlyroot-debug__charlyengine.md - wiki/sources/descriptions/dbcyyds__MemDbg.md - wiki/sources/descriptions/danielkrupinski__x86RetSpoof.md - wiki/sources/descriptions/aclist__aclist.github.io.md - wiki/sources/descriptions/dazi2011__crossover-patcher.md - wiki/sources/descriptions/daveymcq__SimpleMemoryEditor.md - wiki/sources/descriptions/digital-dev__Apprentice.md - wiki/sources/descriptions/ValveSoftware__Proton.md - wiki/sources/descriptions/TASEmulators__BizHawk.md - wiki/sources/descriptions/TuncorReUnion__TLAC-MODERN-LOCAL-ANTI-CHEAT-REUNIONED.md - wiki/sources/descriptions/TOSTcRa__vigil.md - wiki/sources/descriptions/mikio815__linux-anticheat.md - wiki/sources/descriptions/gmh5225__cfclap.md - wiki/sources/descriptions/gmh5225__blood-hunt.md - wiki/sources/descriptions/gmh5225__bootlicker.md - wiki/sources/descriptions/gmh5225__-Rainbow---EFI.md - wiki/sources/descriptions/gmh5225__Driver-efi-bootkit.md - wiki/sources/descriptions/gmh5225__byfron-bypass.md - wiki/sources/descriptions/gmh5225__PAGE_NO_ACCESS-not-byfron.md - wiki/sources/descriptions/gmh5225__X64DBG-ViewDllNotification.md - wiki/sources/descriptions/gmh5225__X64DBG-MapLdr.md - wiki/sources/descriptions/CynicRus__DWARFHelper.md - wiki/sources/descriptions/gmh5225__cartmanv2.md - wiki/sources/descriptions/gmh5225__compiler-binary-richprint.md - wiki/sources/descriptions/colinsenner__PECleaner.md - wiki/sources/descriptions/codereversing__hl2esp.md - wiki/sources/descriptions/codereversing__hl2aimbot.md - wiki/sources/descriptions/attilathedud__CoD_Hacks.md - wiki/sources/descriptions/si1kyyy__csgo_cheat_external.md - wiki/sources/descriptions/rrpvm__csgo-external-cheat.md - wiki/sources/descriptions/forceinline__csgo-external-esp.md - wiki/sources/descriptions/0TheSpy__SpyExternal1337hax.md - wiki/sources/descriptions/0TheSpy__Seaside.md - wiki/sources/descriptions/flowxrc__csgo-xenforo-loader.md - wiki/sources/descriptions/b1scoito__cozinha_loader.md - wiki/sources/descriptions/sneakyevilSK__CSGO_BacktrackPatch.md - wiki/sources/descriptions/sneakyevil__ida_functioncolor.md - wiki/sources/descriptions/richor1042__IDAFuncOutline.md - wiki/sources/descriptions/sean2077__big5-decode-ida.md - wiki/sources/descriptions/kubo__plthook.md - wiki/sources/descriptions/kristofhracza__tim_apple.md - wiki/sources/descriptions/kweatherman__yara4ida.md - wiki/sources/descriptions/gmh5225__Fedoraware.md - wiki/sources/descriptions/gmh5225__Classy.md - wiki/sources/descriptions/gmh5225__FindFunc.md - wiki/sources/descriptions/gmh5225__findyara-ida.md - wiki/sources/descriptions/gmh5225__findcrypt-yara.md - wiki/sources/descriptions/TorgoTorgo__ghidra-findcrypt.md - wiki/sources/descriptions/kweatherman__ida_missinglink.md - wiki/sources/descriptions/sengi12__ghidra-hexEditor.md - wiki/sources/descriptions/senko37__yarascan-ida.md - wiki/sources/descriptions/senator715__IDA-Fusion.md - wiki/sources/descriptions/somewhatpublicacc__wellsanticheat.md - wiki/sources/descriptions/Ghostleadie__CheatManagerMenu.md - wiki/sources/descriptions/GhostNgEnd__Ghost-AntiCheat.md - wiki/sources/descriptions/Eangly99__AstroX-AntiCheat.md - wiki/sources/descriptions/GameHackingBook__GameHackingCode.md - wiki/sources/descriptions/GameCrashProject__UE4-Hacking-Guideline.md - wiki/sources/descriptions/GAMMACASE__PltPatcher.md - wiki/sources/descriptions/Gekkio__GhidraBoy.md - wiki/sources/descriptions/GiannBart__BanMod.md - wiki/sources/descriptions/ricardoofnl__open.mp-anticheat.md - wiki/sources/descriptions/oomph-ac__oomph.md - wiki/sources/descriptions/nsharp-collab__AvAAntiCheat.md - wiki/sources/descriptions/norbertbaricz__DakotaAC.md - wiki/sources/descriptions/younasiqw__BattleField-1-Internal.md - wiki/sources/descriptions/yoshisaac__CounterStrikeSource-Linux-Trainer.md - wiki/sources/descriptions/yoshisaac__CounterStrike2-Linux-Cheat.md - wiki/sources/descriptions/ymdzq__OFRP-device_xiaomi_mondrian.md - wiki/sources/descriptions/Ctapchuk__android_bootable_recovery-OFRP.md - wiki/sources/descriptions/flakeforever__device_xiaomi_mondrian.md - wiki/sources/descriptions/yinleiCoder__cs2-cheat-cpp.md - wiki/sources/descriptions/sezzyaep__CS2-OFFSETS.md - wiki/sources/descriptions/ro0ti__CS2-Offsets.md - wiki/sources/descriptions/snipcola__ProExt.md - wiki/sources/descriptions/sFIsAnExpert__CS2-External-Cheat.md - wiki/sources/descriptions/tiansongyu__cs2_cheat.md - wiki/sources/descriptions/xfi0__Titled-Gui-CS2.md - wiki/sources/descriptions/xvorost__CS-2-Glow.md - wiki/sources/descriptions/yhnu__op7t.md - wiki/sources/descriptions/fuqiuluo__rnidbg.md - wiki/sources/descriptions/fuqiuluo__ovo.md - wiki/sources/descriptions/huawei-mediatek-devs__android_kernel_huawei_mt6761.md - wiki/sources/descriptions/hualuoo__palworld-helper.md - wiki/sources/descriptions/NattKh__PalWorld-Tools.md - wiki/sources/descriptions/byPreaZy__.palmods.md - wiki/sources/descriptions/utziacre__android_kernel_xiaomi_pipa.md - wiki/sources/descriptions/fiqri19102002__android_kernel_xiaomi_sweet.md - wiki/sources/descriptions/LowTension__android_kernel_xiaomi_sm8475.md - wiki/sources/descriptions/utziacre__android_kernel_oneplus_sm8250.md - wiki/sources/descriptions/psavarmattas__android_kernel_oneplus_sm7250-WKSU.md - wiki/sources/descriptions/mylove90__pc_ginkgo.md - wiki/sources/descriptions/mrphrazer__obfuscation_detection.md - wiki/sources/descriptions/mrphrazer__obfuscation_analysis.md - wiki/sources/descriptions/mrphrazer__ghidra-headless-mcp.md - wiki/sources/descriptions/bethington__ghidra-mcp.md - wiki/sources/descriptions/LaurieWired__GhidraMCP.md - wiki/sources/descriptions/LING71671__open-reverselab.md - wiki/sources/descriptions/justfoxing__ghidra_bridge.md - wiki/sources/descriptions/mutinylaboratories__ghidra_svr_bridge.md - wiki/sources/descriptions/moyix__gpt-wpre.md - wiki/sources/descriptions/MxIris-Reverse-Engineering__ida-mcp-server.md - wiki/sources/descriptions/mrexodia__ida-pro-mcp.md - wiki/sources/descriptions/Genymobile__genymotion-kernel.md - wiki/sources/descriptions/GrapheneOS-Archive__kernel_msm-coral.md - wiki/sources/descriptions/msnx__KernelSU-Pixel4XL.md - wiki/sources/descriptions/msd0pe-1__cve-maker.md - wiki/sources/descriptions/Zierax__Grafana-Final-Scanner.md - wiki/sources/descriptions/universal5433__android_kernel_samsung_universal5433.md - wiki/sources/descriptions/pascua28__android_kernel_samsung_sm7150.md - wiki/sources/descriptions/gmh5225__A146B-KSU.md - wiki/sources/descriptions/yabinc__simpleperf_demo.md - wiki/sources/descriptions/yellowbyte__opaque-predicates-detective.md - wiki/sources/descriptions/yaxinsn__vermagic.md - wiki/sources/descriptions/marin-m__vmlinux-to-elf.md - wiki/sources/descriptions/marakew__syser.md - wiki/sources/descriptions/ikhsanprasetyo__dota2dumped.md - wiki/sources/descriptions/gmh5225__dota-cheat.md - wiki/sources/descriptions/gmh5225__Dota2Cheat.md - wiki/sources/descriptions/gmh5225__Dota2-Overlay-OffsetUpdater.md - wiki/sources/descriptions/LWSS__Ape-ex-Abominations.md - wiki/sources/descriptions/LWSS__McDota.md - wiki/sources/descriptions/gmh5225__DWM-DwmDraw.md - wiki/sources/descriptions/gmh5225__DevourMenu.md - wiki/sources/descriptions/gmh5225__DevourClient.md - wiki/sources/descriptions/igromanru__R6-Chams-public.md - wiki/sources/descriptions/igromanru__Dark-Souls-III-Cheat-Engine-Guide.md - wiki/sources/descriptions/imadr__Unity-game-hacking.md - wiki/sources/descriptions/imnotdatguy__csgo2-cheat.md - wiki/sources/descriptions/imugee__xdv.md - wiki/sources/descriptions/sad0p__venom.md - wiki/sources/descriptions/cloudfuzz__android-kernel-exploitation.md - wiki/sources/descriptions/ManInMyVan__Minecraft-Anticheat-List.md - wiki/sources/descriptions/Marisa-Chan__GhidrOrean.md - wiki/sources/descriptions/Markakd__bad_io_uring.md - wiki/sources/descriptions/systemnb__compile_android_driver.md - wiki/sources/descriptions/gmh5225__android-kernel-driver-template.md - wiki/sources/descriptions/aosp-mirror__kernel_common.md - wiki/sources/descriptions/gmh5225__AndroidDriveSignity.md - wiki/sources/descriptions/gmh5225__AndroidCheatTemplate.md - wiki/sources/descriptions/gmh5225__Android-DLL-Injector.md - wiki/sources/descriptions/gmh5225__Android-MemoryTool.md - wiki/sources/descriptions/Anonym0ose__JitDumper.md - wiki/sources/descriptions/Anatdx__Kasumi.md - wiki/sources/descriptions/Anonym0usWork1221__C-Android-Memory-Tool.md - wiki/sources/descriptions/Enum0x539__Qvoid-Token-Grabber.md - wiki/sources/descriptions/ExploitTheLoop__writemem.md - wiki/sources/descriptions/Eruditi__CE-MCP-Plugin.md - wiki/sources/descriptions/Enzo0721__ExternalCheatV3.md - wiki/sources/descriptions/EternityX__DEADCELL-CSGO.md - wiki/sources/descriptions/ExWhyZed9__android_kernel_gki_common_5.10.md - wiki/sources/descriptions/gmh5225__Android-ModGamesByInjectZygote.md - wiki/sources/descriptions/Android1337__Fortnite-Offsets.md - wiki/sources/descriptions/AndroidModLoader__AndroidModLoader.md - wiki/sources/descriptions/systemnb__android-kernel-hacking-toolkit.md - wiki/sources/descriptions/systemnb__RootSocketKit.md - wiki/sources/descriptions/rogxo__kernel_hack.md - wiki/sources/descriptions/Poko-Apps__MemKernel.md - wiki/sources/descriptions/JeanToBinks__Fortnite-Cheato-UD-EAC-BE.md - wiki/sources/descriptions/JasonGoemaat__CheatEngineMonoHelper.md - wiki/sources/descriptions/Jackiemin233__Gemini-Genius.md - wiki/sources/descriptions/Jamesits__BGRTInjector.md - wiki/sources/descriptions/Jesewe__VioletWing.md - wiki/sources/descriptions/Jiang-Night__Kernel_driver_hack.md - wiki/sources/descriptions/JoinChang__ghostlock-oneplus.md - wiki/sources/descriptions/PierreCiholas__GetPixel-vs-BitBlt_GetDIBits.md - wiki/sources/descriptions/PierreCiholas__NotAnOverlay.md - wiki/sources/descriptions/abcz316__rwProcMem33.md - wiki/sources/descriptions/abcz316__SKRoot-linuxKernelRoot.md - wiki/sources/descriptions/ri-char__rwMem.md - wiki/sources/descriptions/miscusi-peek__cheatengine-mcp-bridge.md - wiki/sources/descriptions/mrcang09__Android-Mem-Edit.md - wiki/sources/descriptions/rogxo__ReadPhys.md - wiki/sources/descriptions/synacktiv__dotNIET.md - wiki/sources/descriptions/xtremegamer1__vmdevirt-vtil.md - wiki/sources/descriptions/stuxnet147__Themida-Research.md - wiki/sources/descriptions/sodareverse__TDE.md - wiki/sources/descriptions/smallworld-re__smallworld.md - wiki/sources/descriptions/panda-re__panda.md - wiki/sources/descriptions/nyx-fuzz__QEMU-Nyx.md - wiki/sources/descriptions/ex0dus-0x__fuzzable.md - wiki/sources/descriptions/googleprojectzero__winafl.md - wiki/sources/descriptions/0vercl0k__rp.md - wiki/sources/descriptions/0vercl0k__wtf.md - wiki/sources/descriptions/ispras__qemu.md - wiki/sources/descriptions/sefcom__oxidizer.md - wiki/sources/descriptions/pandaadir05__re-architect.md - wiki/sources/descriptions/stijnherfst__HiveWE.md - wiki/sources/descriptions/wallds__NoVmpy.md - wiki/sources/descriptions/can1357__NoVmp.md - wiki/sources/descriptions/angr__angrop.md - wiki/sources/descriptions/anpa1200__Unpacker.md - wiki/sources/descriptions/antaresjay__freeplay.md - wiki/sources/descriptions/abhijeetadarsh__CTTrainer.md - wiki/sources/descriptions/BepInEx__BepInEx.md - wiki/sources/descriptions/BepInEx__BepInEx.Utility.IL2CPP.md - wiki/sources/descriptions/BaconToaster__UC-Apex-Remastered.md - wiki/sources/descriptions/BigAnteater__KVM-GPU-Passthrough.md - wiki/sources/descriptions/BlaMacfly__ArchMod.md - wiki/sources/descriptions/april-ivy__Apwil.md - wiki/sources/descriptions/10HEAD__ValorantOffsets.md - wiki/sources/descriptions/apekros__valorant_offsets.md - wiki/sources/descriptions/apekros__binja_sigmaker.md - wiki/sources/descriptions/TrackAndTruckDevs__SPF_GhidraPatternHelper.md - wiki/sources/descriptions/ahaggard2013__binaryninja-ollama.md - wiki/sources/descriptions/WhatTheFuzz__binaryninja-openai.md - wiki/sources/descriptions/apkunpacker__IDA-Gepetto.md - wiki/sources/descriptions/JustasMasiulis__ida_buddy.md - wiki/sources/descriptions/DanielRTeixeira__injectAllTheThings.md - wiki/sources/descriptions/DarthTon__Blackbone.md - wiki/sources/descriptions/DeiVid-12__SmKernel-CSGO.md - wiki/sources/descriptions/DennyDai__headless-ida.md - wiki/sources/descriptions/Jordan231111__lsposed-universal-template.md - wiki/sources/descriptions/JosefNemec__Playnite.md - wiki/sources/descriptions/JusticeRage__Gepetto.md - wiki/sources/descriptions/aqilc__chasm.md - wiki/sources/descriptions/archercreat__titan.md - wiki/sources/descriptions/JonathanEke__DayZ-Server-Battleye-Remover.md - wiki/sources/descriptions/JonathanSalwan__Triton.md - wiki/sources/descriptions/JonathanSalwan__ROPgadget.md - wiki/sources/descriptions/poppopjmp__VMDragonSlayer.md - wiki/sources/descriptions/void-stack__VMUnprotect.md - wiki/sources/descriptions/void-stack__VMUnprotect.Dumper.md - wiki/sources/descriptions/xp987__symbridge.md - wiki/sources/descriptions/thalium__symless.md - wiki/sources/descriptions/thalium__rumba.md - wiki/sources/descriptions/teemu-l__execution-trace-viewer.md - wiki/sources/descriptions/techiew__EldenRingMods.md - wiki/sources/descriptions/skMetinek__Non-Newtonian-New-York.md - wiki/sources/descriptions/gmh5225__neotty.md - wiki/sources/descriptions/NeoTerrm__NeoTerm.md - wiki/sources/descriptions/termux__termux-app.md - wiki/sources/descriptions/jackpal__Android-Terminal-Emulator.md - wiki/sources/descriptions/gmh5225__AdbFileManager.md - wiki/sources/descriptions/pgp__XFiles.md - wiki/sources/descriptions/SysAdminDoc__FileExplorer.md - wiki/sources/descriptions/R4YVEN__raybot-zero.md - wiki/sources/descriptions/Raival-e__File-Explorer.md - wiki/sources/descriptions/d4rken-org__butler.md - wiki/sources/descriptions/nzcv__note.md - wiki/sources/descriptions/tangsilian__android-vuln.md - wiki/sources/descriptions/jiayy__android_vuln_poc-exp.md - wiki/sources/descriptions/jcalabres__hook-updater.md - wiki/sources/descriptions/musabcel__android_rom_list.md - wiki/sources/descriptions/PixelOS-AOSP__official_devices.md - wiki/sources/descriptions/tamirzb__CVE-2021-1961.md - wiki/sources/descriptions/nahid0x1__CVE-2024-0044.md - wiki/sources/descriptions/gmh5225__Android-privilege-CVE-2022-20452-LeakValue.md - wiki/sources/descriptions/xsslize__idarem.md - wiki/sources/descriptions/giladreich__ida_migrator.md - wiki/sources/descriptions/matteyeux__IDArling.md - wiki/sources/descriptions/matheusbranhann__taskbarhero-bot.md - wiki/sources/descriptions/trailofbits__idac.md - wiki/sources/descriptions/taida957789__ida-mcp-server-plugin.md - wiki/sources/descriptions/rand-tech__pcm.md - wiki/sources/descriptions/stuxnet147__IDA-Assistant.md - wiki/sources/descriptions/sigwl__AiDA.md - wiki/sources/descriptions/trailofbits__CoBRA.md - wiki/sources/descriptions/stp__stp.md - wiki/sources/descriptions/LLVMParty__smt-server.md - wiki/sources/descriptions/nbulsi__cirsat.md - wiki/sources/descriptions/stolevchristian__LUDA.md - wiki/sources/descriptions/xoxor4d__gta4-rtx.md - wiki/sources/descriptions/xo1337__steam-overlay-x64.md - wiki/sources/descriptions/gogo9211__Discord-Overlay-Hook.md - wiki/sources/descriptions/SamuelTulach__OverlayCord.md - wiki/sources/descriptions/univrsal__input-overlay.md - wiki/sources/descriptions/muturikaranja__overlay.md - wiki/sources/descriptions/samuelgr__Xidi.md - wiki/sources/descriptions/skrixx68__Dota2-Overlay-2.0.md - wiki/sources/descriptions/storycraft__asdf-overlay.md - wiki/sources/descriptions/umpolungfish__byvalver.md - wiki/sources/descriptions/iofomo__abyss.md - wiki/sources/descriptions/xmmword__dpatch.md - wiki/sources/descriptions/xkp95175333__Thetan_ArenaSDK.md - wiki/sources/descriptions/xiaoxindada__magiskboot_ndk_on_linux.md - wiki/sources/descriptions/svoboda18__magiskboot.md - wiki/sources/descriptions/ookiineko__magiskboot_build.md - wiki/sources/descriptions/gmh5225__magiskboot-linux.md - wiki/sources/descriptions/cfig__Android_boot_image_editor.md - wiki/sources/descriptions/longpoxin__hideroot.md - wiki/sources/descriptions/gmh5225__MagiskHide.md - wiki/sources/descriptions/xetzzy__Fortnite-External-Source.md - wiki/sources/descriptions/xenia-project__xenia.md - wiki/sources/descriptions/wmarti__xenia-mac.md - wiki/sources/descriptions/rexdex__recompiler.md - wiki/sources/descriptions/aroxby__dynre-x86.md - wiki/sources/descriptions/exploits-forsale__collateral-damage.md - wiki/sources/descriptions/eset__DelphiHelper.md - wiki/sources/descriptions/ergrelet__dll-hot-reload.md - wiki/sources/descriptions/ergrelet__themida-spotter-bn.md - wiki/sources/descriptions/ergrelet__themida-unmutate.md - wiki/sources/descriptions/ergrelet__unlicense.md - wiki/sources/descriptions/erfur__linjector-rs.md - wiki/sources/descriptions/eteran__edb-debugger.md - wiki/sources/descriptions/execnone__simple-cs-16-multihack.md - wiki/sources/descriptions/bit-paper__sakura.md - wiki/sources/descriptions/binsnake__KUBERA.md - wiki/sources/descriptions/eversinc33__1.6_C2.md - wiki/sources/descriptions/experienceds__pubg-p2c-re.md - wiki/sources/descriptions/momo5502__levo.md - wiki/sources/descriptions/xemu-project__xemu.md - wiki/sources/descriptions/xan105__Mini-Launcher.md - wiki/sources/descriptions/xakepru__x14.08-coverstory-blizzard.md - wiki/sources/descriptions/xPasters__.data-ptr-swap.md - wiki/sources/descriptions/oakboat__DataPtrHookWin11.md - wiki/sources/descriptions/0mWindyBug__DataptrHooks.md - wiki/sources/descriptions/muturikaranja__AfdIrpCallDispatch.md - wiki/sources/descriptions/mut1234__BYPASS-PUBG-MOBILE-IMGUI.md - wiki/sources/descriptions/x64dbg__x64dbgbinja.md - wiki/sources/descriptions/skr0x1c0__binja_kc.md - wiki/sources/descriptions/jmprdi__binja-division-deoptimization.md - wiki/sources/descriptions/seekbytes__ptxNinja.md - wiki/sources/descriptions/seeinglogic__ariadne.md - wiki/sources/descriptions/pd0wm__binaryninja-pcode.md - wiki/sources/descriptions/Pusty__BinaryNinjaPlugins.md - wiki/sources/descriptions/otter-sec__bn-ebpf-solana.md - wiki/sources/descriptions/x64dbg__x64dbg.md - wiki/sources/descriptions/x64dbg__SlothBP.md - wiki/sources/descriptions/x64dbg__DotX64Dbg.md - wiki/sources/descriptions/x64dbg__Classroom.md - wiki/sources/descriptions/jdavidberger__chaiScriptPlugin.md - wiki/sources/descriptions/herosi__PyClassInformer.md - wiki/sources/descriptions/horsicq__x64dbg-Plugin-Manager.md - wiki/sources/descriptions/horsicq__stringsx64dbg.md - wiki/sources/descriptions/glmcdona__strings2.md - wiki/sources/descriptions/horsicq__nfdx64dbg.md - wiki/sources/descriptions/horsicq__Nauz-File-Detector.md - wiki/sources/descriptions/horsicq__XVolkolak.md - wiki/sources/descriptions/morsisko__xFindOut.md - wiki/sources/descriptions/mgeeky__ThreadStackSpoofer.md - wiki/sources/descriptions/Kudaes__Unwinder.md - wiki/sources/descriptions/Krietz7__IDA-DataExportPlus.md - wiki/sources/descriptions/Kruziikrel1__CSGO-FindMDL.md - wiki/sources/descriptions/klezVirus__SilentMoonwalk.md - wiki/sources/descriptions/klezVirus__BYOUD.md - wiki/sources/descriptions/mibho__x64dbgTraceReader.md - wiki/sources/descriptions/m417z__x64dbg-xfg-marker.md - wiki/sources/descriptions/m417z__Multiline-Ultimate-Assembler.md - wiki/sources/descriptions/legendabrn__AutoAttach.md - wiki/sources/descriptions/m417z__thread-call-stack-scanner.md - wiki/sources/descriptions/notpidgey__ManyTypes.md - wiki/sources/descriptions/x-spy__CVE-2026-43499-popsicle.md - wiki/sources/descriptions/xscope0__xkvm-ios-injector.md - wiki/sources/descriptions/villager1314__CVE-2026-64560-Analysis.md - wiki/sources/descriptions/crazymind90__CVE-2026-XNU-AIO-KEVENT-UAF.md - wiki/sources/descriptions/farazsth98__poc-CVE-2025-38352.md - wiki/sources/descriptions/jsirichai__CVE-2019-2215.md - wiki/sources/descriptions/j4nn__CVE-2020-0041.md - wiki/sources/descriptions/bluefrostsecurity__CVE-2020-0041.md - wiki/sources/descriptions/jseclab__obj2shellcode.md - wiki/sources/descriptions/wtsxDev__reverse-engineering.md - wiki/sources/descriptions/wiresock__ndisapi.md - wiki/sources/descriptions/IamSanjid__ce_speed_hack.md - wiki/sources/descriptions/IamFriendly0242u__The-Dreamers-Guards.md - wiki/sources/descriptions/IcyModz420__X360GameHack2025.md - wiki/sources/descriptions/IMXNOOBX__cs2-external-esp.md - wiki/sources/descriptions/Idov31__Venom.md - wiki/sources/descriptions/hasaneyldrm__webcheat.md - wiki/sources/descriptions/harlamism__IdaClu.md - wiki/sources/descriptions/hasherezade__thread_namecalling.md - wiki/sources/descriptions/hercul3s__Packet-Sniffer.md - wiki/sources/descriptions/gmh5225__Akebi-PacketSniffer.md - wiki/sources/descriptions/gmh5225__LostArk.md - wiki/sources/descriptions/gmh5225__LostArkLogger.md - wiki/sources/descriptions/gmh5225__LostArkDumper.md - wiki/sources/descriptions/gmh5225__LOST-ARK-SDK.md - wiki/sources/descriptions/hendodev__cs2-ext.md - wiki/sources/descriptions/helpsystems__Agafi.md - wiki/sources/descriptions/helpsystems__turbodiff.md - wiki/sources/descriptions/adde88__SkyEngine.md - wiki/sources/descriptions/adde88__WoWDumpFix.md - wiki/sources/descriptions/helloobaby__wow-IAT-fix.md - wiki/sources/descriptions/gmh5225__ds4-tools.md - wiki/sources/descriptions/gmh5225__dumpwow.md - wiki/sources/descriptions/gmh5225__WOW-WowAutoFishing.md - wiki/sources/descriptions/gmh5225__osu-aac.md - wiki/sources/descriptions/gmh5225__ntminhook.md - wiki/sources/descriptions/gmh5225__nzPerspective.md - wiki/sources/descriptions/gmh5225__overwatch-iat-fixer.md - wiki/sources/descriptions/gmh5225__Ow-Outlines.md - wiki/sources/descriptions/dhanax26__Apex-Legends-Offset-Dumper.md - wiki/sources/descriptions/dNop90__dOffset.md - wiki/sources/descriptions/designer1337__csgo-cheat-base.md - wiki/sources/descriptions/dword64__Apex-Legends-SDK-Remaster.md - wiki/sources/descriptions/dword64__Ow-FOV.md - wiki/sources/descriptions/dword64__Ow-Anti-Flag.md - wiki/sources/descriptions/atombottle__cs2_kvm_dma.md - wiki/sources/descriptions/azerothcore__azerothcore-wotlk.md - wiki/sources/descriptions/TrinityCore__TrinityCore.md - wiki/sources/descriptions/arlyon__awesome-wow-rust.md - wiki/sources/descriptions/arlyon__azerust.md - wiki/sources/descriptions/dufernst__LegionCore-7.3.5.md - wiki/sources/descriptions/SkyFire__MopCore547.md - wiki/sources/descriptions/dretax__GarHal_CSGO.md - wiki/sources/descriptions/divodeuxsevres__gvmp-anticheat.md - wiki/sources/descriptions/dqforgive-sudo__pubg-ai-yolov4.md - wiki/sources/descriptions/dslee2022__SignatureKid.md - wiki/sources/descriptions/dsasmblr__game-hacking.md - wiki/sources/descriptions/dsasmblr__hacking-online-games.md - wiki/sources/descriptions/dumbasPL__fumo_loader.md - wiki/sources/descriptions/gmh5225__OpenCV-SmartAimBot.md - wiki/sources/descriptions/gmh5225__ClickPic.md - wiki/sources/descriptions/gmh5225__OffsetStreaming.md - wiki/sources/descriptions/gmh5225__DVRT.md - wiki/sources/descriptions/gmh5225__Overwatch2-colorbot-Cheats.md - wiki/sources/descriptions/gmh5225__Overwatch-2-Cheat-Aimbot-Esp.md - wiki/sources/descriptions/gmh5225__Overwatch-1-cheat-source.md - wiki/sources/descriptions/gmh5225__OW2-wardenrekter.md - wiki/sources/descriptions/gmh5225__OW-Aeternum.md - wiki/sources/descriptions/seladb__PcapPlusPlus.md - wiki/sources/descriptions/nmap__npcap.md - wiki/sources/descriptions/quarkslab__peetch.md - wiki/sources/descriptions/quarkslab__AERoot.md - wiki/sources/descriptions/newbit1__rootAVD.md - wiki/sources/descriptions/gmh5225__MagiskOnWSALocal.md - wiki/sources/descriptions/LSPosed__MagiskOnWSALocal.md - wiki/sources/descriptions/cinit__WSAPatch.md - wiki/sources/descriptions/alesimula__wsa_pacman.md - wiki/sources/descriptions/WSA-Community__WSA-Linux-Kernel.md - wiki/sources/descriptions/KiruyaMomochi__wsa-kernel-build.md - wiki/sources/descriptions/MrDiamond64__Scythe-AntiCheat.md - wiki/sources/descriptions/MustardChef__WSABuilds.md - wiki/sources/descriptions/LSPosed__WSA-Kernel-SU.md - wiki/sources/descriptions/K3V1991__How-to-download-and-install-WSA.md - wiki/sources/descriptions/willy92wins__dayz-mcp.md - wiki/sources/descriptions/wilszdev__SteamAntiAntiDebug.md - wiki/sources/descriptions/wietze__windows-dll-hijacking.md - wiki/sources/descriptions/wietze__HijackLibs.md - wiki/sources/descriptions/redteamsocietegenerale__DLLirant.md - wiki/sources/descriptions/Sh0ckFR__DLLirant.md - wiki/sources/descriptions/knight0x07__ImpulsiveDLLHijack.md - wiki/sources/descriptions/gmh5225__DLL-Hijack-ExportDumper.md - wiki/sources/descriptions/anhkgg__SuperDllHijack.md - wiki/sources/descriptions/csgohacks__master-guide.md - wiki/sources/descriptions/cseagle__blc.md - wiki/sources/descriptions/crytic__ida-evm.md - wiki/sources/descriptions/ctxis__DLLHSC.md - wiki/sources/descriptions/westfox-5__GhidraMetrics.md - wiki/sources/descriptions/securityjoes__ThreatResearch.md - wiki/sources/descriptions/wesmar__KeyboardKit.md - wiki/sources/descriptions/vs-sr-dev__pc-wackywheels-doc.md - wiki/sources/descriptions/vsaint1__kernel-mouse.md - wiki/sources/descriptions/wesmar__EfiTool.md - wiki/sources/descriptions/wesmar__UnderVolter.md - wiki/sources/descriptions/wesjian__GenericGameDetourAPIHook.md - wiki/sources/descriptions/sa413x__UEFI-Bootloader.md - wiki/sources/descriptions/mrexodia__AppInitHook.md - wiki/sources/descriptions/mrexodia__EfiCMake.md - wiki/sources/descriptions/Th3Spl__SimpleUEFI.md - wiki/sources/descriptions/Th3Spl__PerfectSMBios.md - wiki/sources/descriptions/gmh5225__Driver-read_write.md - wiki/sources/descriptions/gmh5225__Driver-RPM-DirectPageManipulation.md - wiki/sources/descriptions/ryan-weil__ReadWriteDriver.md - wiki/sources/descriptions/cheahjs__palworld-save-tools.md - wiki/sources/descriptions/Duntss__IDA-ZVM-Disassembler.md - wiki/sources/descriptions/DysonCheng__PalWorldSettingGenerator.md - wiki/sources/descriptions/EternalWraith__PalEdit.md - wiki/sources/descriptions/weizhking__PalworldSaved.md - wiki/sources/descriptions/localcc__PalworldModdingKit.md - wiki/sources/descriptions/lkeai2007__yolov5_PUBG.md - wiki/sources/descriptions/leap0x7b__luaboot.md - wiki/sources/descriptions/lehmenkuehler__camera-triggerbot.md - wiki/sources/descriptions/leeqwind__PESignAnalyzer.md - wiki/sources/descriptions/levifrsn63__krunker-loader.md - wiki/sources/descriptions/Murka007__Glotus-Client.md - wiki/sources/descriptions/shalzuth__PalWorldAntiCheat.md - wiki/sources/descriptions/loqix__Fortnite.md - wiki/sources/descriptions/krxdev-kaan__AqHax-CSGO.md - wiki/sources/descriptions/Kwansy98__ApiBreakpoint.md - wiki/sources/descriptions/Kwansy98__x64dbgCallFinder.md - wiki/sources/descriptions/KuryCat__GhostJoin.md - wiki/sources/descriptions/KuhakuPixel__AceTheGame.md - wiki/sources/descriptions/Kix48__R6Updater.md - wiki/sources/descriptions/KANKOSHEV__face-injector-v2.md - wiki/sources/descriptions/KGB-1337__memmap.md - wiki/sources/descriptions/K4ryuu__IDA-VTableExplorer.md - wiki/sources/descriptions/Katharsas__ghidra-struct-importer.md - wiki/sources/descriptions/K-cazb__pubg-public.md - wiki/sources/descriptions/KaylinOwO__Project-Branthium.md - wiki/sources/descriptions/Ke4ton__hardware_bypass.md - wiki/sources/descriptions/Keyzp1337__Fortnite.md - wiki/sources/descriptions/KeyzpOnTheFluxxx__Fortnite-External.md - wiki/sources/descriptions/KelvinMsft__ThreadSpy.md - wiki/sources/descriptions/KisSsArt__CS2-Cheat-Base.md - wiki/sources/descriptions/KitchenGun__UE4_FPS.md - wiki/sources/descriptions/KooroshRZ__Windows-DLL-Injector.md - wiki/sources/descriptions/Kurok00__R3nzSkin.md - wiki/sources/descriptions/KyleBing__retro-game-console-icons.md - wiki/sources/descriptions/kyojig__csgo_kns.md - wiki/sources/descriptions/lstrsrt__csgo_internal_base.md - wiki/sources/descriptions/lstaroth__AntiXorstr.md - wiki/sources/descriptions/ls361664056__GameAI-paper-list.md - wiki/sources/descriptions/luciouskami__palworld_rcon.md - wiki/sources/descriptions/A1RM4X__HowTo-Palworld.md - wiki/sources/descriptions/jammsen__docker-palworld-dedicated-server.md - wiki/sources/descriptions/gmh5225__Paladins-internal-Cheat.md - wiki/sources/descriptions/gmh5225__Palworld-Server-Modding.md - wiki/sources/descriptions/gmh5225__PalWorld-ServerInjector.md - wiki/sources/descriptions/gmh5225__PalWorld-NetCrack.md - wiki/sources/descriptions/gmh5225__Palworld-SDK-Dump.md - wiki/sources/descriptions/weedeej__ValorantCC.md - wiki/sources/descriptions/weak1337__SkipHook.md - wiki/sources/descriptions/weak1337__NvidiaApi.md - wiki/sources/descriptions/vmcall__owned_alignment.md - wiki/sources/descriptions/weak1337__ModExMap.md - wiki/sources/descriptions/illegal-instruction-co__CountHook.md - wiki/sources/descriptions/hotline1337__page_no_access.md - wiki/sources/descriptions/svespalec__faultline.md - wiki/sources/descriptions/weak1337__EvCommunication.md - wiki/sources/descriptions/weak1337__CEDetector.md - wiki/sources/descriptions/gmh5225__Detection-CheatEngine.md - wiki/sources/descriptions/wbenny__scfw.md - wiki/sources/descriptions/wbenny__KSOCKET.md - wiki/sources/descriptions/MiroKaku__libwsk.md - wiki/sources/descriptions/microsoft__D3D9On12.md - wiki/sources/descriptions/microsoft__Detours.md - wiki/sources/descriptions/wbenny__DetoursNT.md - wiki/sources/descriptions/waryas__WaryasSWHE.md - wiki/sources/descriptions/waryas__UMPMLib.md - wiki/sources/descriptions/waryas__EUPMAccess.md - wiki/sources/descriptions/waldo-vision__waldo.md - wiki/sources/descriptions/waldo-vision__aimbot-detection-prototype.md - wiki/sources/descriptions/tgillam__HumanMouseMovement.md - wiki/sources/descriptions/petercunha__Pine.md - wiki/sources/descriptions/wINfOG__IDA_Easy_Life.md - wiki/sources/descriptions/timetravelthree__IDARustDemangler.md - wiki/sources/descriptions/kkent030315__IDARustCargo.md - wiki/sources/descriptions/JANlittle__IDARustHelper.md - wiki/sources/descriptions/nico__demumble.md - wiki/sources/descriptions/threatlabz__pikabot-deobfuscator.md - wiki/sources/descriptions/w00tzenheimer__d810-ng.md - wiki/sources/descriptions/obpo-project__obpo-plugin.md - wiki/sources/descriptions/vrolife__mypower.md - wiki/sources/descriptions/vk-nom__Basic-Fortnite-Cheat-Source-Internal.md - wiki/sources/descriptions/pastor-ritz__ritz-amazing-fortnite-internal.md - wiki/sources/descriptions/jooola00__fortnite-cheat-source-internal.md - wiki/sources/descriptions/joeyjurjens__iOS-Mod-Menu-Template-for-Theos.md - wiki/sources/descriptions/simply-codes__Fortnite-External-P2C.md - wiki/sources/descriptions/vctr74__R6-Internal-V3.md - wiki/sources/descriptions/hadevn__apex_full_cheat.md - wiki/sources/descriptions/ekknod__apex_linux.md - wiki/sources/descriptions/ales-drnz__vocem-overlay.md - wiki/sources/descriptions/gmh5225__ayypex.md - wiki/sources/descriptions/gmh5225__apex_legends_sdk.md - wiki/sources/descriptions/gmh5225__Apex-ApexCheat.md - wiki/sources/descriptions/gmh5225__Apex-ApexCheeseTest.md - wiki/sources/descriptions/gmh5225__Apex-CHEAT-FIXED.md - wiki/sources/descriptions/gmh5225__Apex_ESP_Old_Project.md - wiki/sources/descriptions/gmh5225__Apex-SIMPLE-AIMBOT-GLOW-APEX.md - wiki/sources/descriptions/gmh5225__Apex-Legends-External-Esp-Aimbot-Skinchanger.md - wiki/sources/descriptions/gmh5225__Apex-Spoofer.md - wiki/sources/descriptions/hadevn__Valorant-SDK-2024.md - wiki/sources/descriptions/hooksteroid__ApexD3D_External.md - wiki/sources/descriptions/hooksteroid__R6Table_Internal.md - wiki/sources/descriptions/hkx3upper__Karlann.md - wiki/sources/descriptions/halloweeks__pubg-mobile-pak-extract.md - wiki/sources/descriptions/gmh5225__pubgm_sdk_and_offsets.md - wiki/sources/descriptions/gmh5225__pubg_mobile_memory_hacking_examples.md - wiki/sources/descriptions/atulkunal999__pubg_mobile_memory_hacking.md - wiki/sources/descriptions/ant4g0nist__lisa.py.md - wiki/sources/descriptions/ant4g0nist__pyre.md - wiki/sources/descriptions/atlas0fd00m__viv-ghidra-decompiler.md - wiki/sources/descriptions/atlas4381__qualcomm_avb_exploit_poc.md - wiki/sources/descriptions/astrelsky__Ghidra-Cpp-Class-Analyzer.md - wiki/sources/descriptions/astrelsky__GhidraOrbis.md - wiki/sources/descriptions/gmh5225__PUBGM-PUBGPatcher.md - wiki/sources/descriptions/gmh5225__PTFakeTouch.md - wiki/sources/descriptions/gmh5225__LastIslandOfSurvival-iOSCheat-Source.md - wiki/sources/descriptions/gmh5225__pubg.md - wiki/sources/descriptions/gmh5225__pubg_dump_offset.md - wiki/sources/descriptions/gmh5225__pubg-dumper.md - wiki/sources/descriptions/gmh5225__pubg-external-cheat.md - wiki/sources/descriptions/a0yark__Duckov_marketmod.md - wiki/sources/descriptions/a0yark__DXInject-UC.md - wiki/sources/descriptions/a0yark__ArcRaidersRadar-dma-Radar.md - wiki/sources/descriptions/a0yark__Pubg-demo.md - wiki/sources/descriptions/Valthrun__Valthrun.md - wiki/sources/descriptions/Valthrun__Valthrun_PUBG.md - wiki/sources/descriptions/gmh5225__Pubg-Lite-ESP.md - wiki/sources/descriptions/gmh5225__pHake.md - wiki/sources/descriptions/gmh5225__SpookiMystic-GTA-Leak.md - wiki/sources/descriptions/gmh5225__gta5view.md - wiki/sources/descriptions/gmh5225__gta5cheat_qt.md - wiki/sources/descriptions/gmh5225__gta5cheat.md - wiki/sources/descriptions/fmc999__GTA5-DMA-CHEAT.md - wiki/sources/descriptions/Akatsyk__2k17-club.md - wiki/sources/descriptions/AkitaYui__AkHeartbeat-BE.md - wiki/sources/descriptions/gmh5225__Goose_Goose_Duck_Hack.md - wiki/sources/descriptions/gmh5225__GrandTheftAutoV-Cheat.md - wiki/sources/descriptions/gmh5225__GTAV_DragResize.md - wiki/sources/descriptions/gmh5225__GTAIII-DE-GoldHook.md - wiki/sources/descriptions/gmh5225__GTA-5-SIGS-1.59.md - wiki/sources/descriptions/gmh5225__BattleriteBot.md - wiki/sources/descriptions/gmh5225__BetterHI3Launcher.md - wiki/sources/descriptions/gmh5225__BigBaseV2.md - wiki/sources/descriptions/gmh5225__BF4-Internal-overlay.md - wiki/sources/descriptions/gmh5225__BepInEx-IL2CPPBase.md - wiki/sources/descriptions/gmh5225__BLOCKPOST-Cheat.md - wiki/sources/descriptions/gmh5225__alt-V-Anticheat-Guide.md - wiki/sources/descriptions/gmh5225__gd-internal.md - wiki/sources/descriptions/rushzzz-max__r6-external.md - wiki/sources/descriptions/baldspots440__R6Intel.md - wiki/sources/descriptions/gmh5225__R6S-internal-Cheat.md - wiki/sources/descriptions/gmh5225__R6S-External-V2.md - wiki/sources/descriptions/gmh5225__Rainbow-Six-Siege-Rs6-External-Esp-Aimbot-Hack-Cheat.md - wiki/sources/descriptions/gmh5225__Rainbow-6-Siege-Cheat.md - wiki/sources/descriptions/gmh5225__R6-Cheat-Dumper.md - wiki/sources/descriptions/veryboreddd__Return-address-spoofer.md - wiki/sources/descriptions/susMdT__LoudSunRun.md - wiki/sources/descriptions/xec412__NocturneLdr.md - wiki/sources/descriptions/supermanc88__Document.md - wiki/sources/descriptions/not-matthias__Nemesis.md - wiki/sources/descriptions/unsafeblackcat__MapleStoryEx.md - wiki/sources/descriptions/ellermister__MapleStory.md - wiki/sources/descriptions/mrzhqiang__ms079.md - wiki/sources/descriptions/mefistotelis__ida-pro-loadmap.md - wiki/sources/descriptions/mfthomps__RESimGhidraPlugins.md - wiki/sources/descriptions/jonpalmisc__ida_screenshot.md - wiki/sources/descriptions/joren485__bndb2pat.md - wiki/sources/descriptions/idkhidden__DrawIDA.md - wiki/sources/descriptions/hyuunnn__Hyara.md - wiki/sources/descriptions/AzzOnFire__yarka.md - wiki/sources/descriptions/hyuunnn__ida-slides.md - wiki/sources/descriptions/dyussekeyev__ida-spotlight.md - wiki/sources/descriptions/mdilai__Shtreeba.md - wiki/sources/descriptions/med0x2e__SigFlip.md - wiki/sources/descriptions/medievalghoul__hwid-checker-mg.md - wiki/sources/descriptions/milankovo__ida_enums_helper.md - wiki/sources/descriptions/junron__auto-enum.md - wiki/sources/descriptions/juniorjacob__readwrite-kernel-stable.md - wiki/sources/descriptions/milankovo__ida-search.md - wiki/sources/descriptions/milankovo__YaraVM.md - wiki/sources/descriptions/masterpastaa__AutoOffsets.md - wiki/sources/descriptions/mimilewis__MapleStory143.md - wiki/sources/descriptions/johnsonjason__MapleStoryBuildFramework.md - wiki/sources/descriptions/ixty__mandibule.md - wiki/sources/descriptions/itaymigdal__awesome-injection.md - wiki/sources/descriptions/issuimo__UnityResolve.hpp.md - wiki/sources/descriptions/isiddique2024__Page-Table-Injector.md - wiki/sources/descriptions/isoadam__gina_public.md - wiki/sources/descriptions/inuNorii__Elden-Ring-CT-TGA.md - wiki/sources/descriptions/gmh5225__EASY-HWID-SPOOFER.md - wiki/sources/descriptions/gmh5225__Driver-HWID-btbd-modified.md - wiki/sources/descriptions/btbd__access.md - wiki/sources/descriptions/bootmgfw__apex-external-cheat.md - wiki/sources/descriptions/bootmgfw__EFT-Tarkov-Internal-Cheat.md - wiki/sources/descriptions/bootmgfw__lithium-kernel.md - wiki/sources/descriptions/bootmgfw__Valorant-External-Cheat.md - wiki/sources/descriptions/bootmgfw__Rust-External-Cheat.md - wiki/sources/descriptions/LeoChen-CoreMind__elf-got-patcher.md - wiki/sources/descriptions/L4ys__IDA-WPP-Remover.md - wiki/sources/descriptions/L-Spiro__MhsX.md - wiki/sources/descriptions/LGLTeam__Android-Mod-Menu.md - wiki/sources/descriptions/LargoScript__n0xis.md - wiki/sources/descriptions/Leksa667__YOLOv8-Overlay-CS2.md - wiki/sources/descriptions/Lavender-exe__Shellcrypt.md - wiki/sources/descriptions/Letomaniy__Speed-Hack.md - wiki/sources/descriptions/Lexikos__AutoHotkey_L.md - wiki/sources/descriptions/LloydLabs__shellcode-plain-sight.md - wiki/sources/descriptions/LloydLabs__ntqueueapcthreadex-ntdll-gadget-injection.md - wiki/sources/descriptions/LordAbbot__Rust-External-Cheat.md - wiki/sources/descriptions/LooperSalty__cs2-tracker.md - wiki/sources/descriptions/bootmgfw__Fortnite-External-Cheat-Base.md - wiki/sources/descriptions/bootmgfw__CS2-Cheat-Source.md - wiki/sources/descriptions/AsfhtgkDavid__windmouse.md - wiki/sources/descriptions/Antelcat__ida_copilot.md - wiki/sources/descriptions/AntonKukoba1__BetterCallStack.md - wiki/sources/descriptions/AlfredIU__Spoofer.md - wiki/sources/descriptions/Alex3434__wmi-static-spoofer.md - wiki/sources/descriptions/Archie-osu__PowerHook.md - wiki/sources/descriptions/Arctium__WoW-Launcher.md - wiki/sources/descriptions/ArtemisDevGroup__Artemis.md - wiki/sources/descriptions/AryuInka__Valorant-Cheat-External.md - wiki/sources/descriptions/Astronaut00__DoubleDataPointer.md - wiki/sources/descriptions/Astronaut00__apex-external.md - wiki/sources/descriptions/Atmosphere-NX__Atmosphere.md - wiki/sources/descriptions/Atonl200__ProjectNexus-CSGO.md - wiki/sources/descriptions/BrufelFX__RabsztynCC-CS2-Internal.md - wiki/sources/descriptions/Broihon__GH-Injector-Library.md - wiki/sources/descriptions/Brentdevent__S2x.md - wiki/sources/descriptions/Bratah123__BattleAnalysis176.md - wiki/sources/descriptions/Bratah123__SpiritIDAPlugin.md - wiki/sources/descriptions/Bratah123__GojoTheSpire.md - wiki/sources/descriptions/Bratah123__Spirit-PTCGO.md - wiki/sources/descriptions/Brattlof__D3DOverlay-Nvidia-Hijack.md - wiki/sources/descriptions/DragonMinded__bemaniutils.md - wiki/sources/descriptions/bromoket__access_updated.md - wiki/sources/descriptions/boratanrikulu__gecit.md - wiki/sources/descriptions/btbd__umap.md - wiki/sources/descriptions/btbd__smap.md - wiki/sources/descriptions/btbd__modmap.md - wiki/sources/descriptions/btbd__wpp.md - wiki/sources/descriptions/btbd__hwid.md - wiki/sources/descriptions/BuddyBoi__KernelMoveMouse.md - wiki/sources/descriptions/gmh5225__EfiDump.md - wiki/sources/descriptions/gmh5225__Elden-Ring-Debug-Tool.md - wiki/sources/descriptions/gmh5225__EldenRingLauncher.md - wiki/sources/descriptions/inflation__goldberg_emulator.md - wiki/sources/descriptions/AnarchDevelopment__aegledll.md - wiki/sources/descriptions/inpeacedTeams__phantom-client.md - wiki/sources/descriptions/u8012146108-bit__anticheat-qa.md - wiki/sources/descriptions/unleg1t__Yuri.md - wiki/sources/descriptions/lolizei__Lenrete-Mod.md - wiki/sources/descriptions/NaiJii__Apex-Mizu-Base.md - wiki/sources/descriptions/NMan1__apex-legends-cheat.md - wiki/sources/descriptions/NMan1__warzone-internal.md - wiki/sources/descriptions/NMan1__external-warzone-cheat.md - wiki/sources/descriptions/NMan1__Rainbow-Six-Cheat.md - wiki/sources/descriptions/NMan1__OverflowRust.md - wiki/sources/descriptions/NMan1__OverflowR6V2.md - wiki/sources/descriptions/NMan1__Internal-Rainbow-Six-Cheat-V3.md - wiki/sources/descriptions/N-T33__UE4-Silent-Aim.md - wiki/sources/descriptions/Neaxic__CSGO-MAIN-INTERNAL.md - wiki/sources/descriptions/NekoRem__apex-external.md - wiki/sources/descriptions/NekoyaHouse__Epsilon.md - wiki/sources/descriptions/icelemon1314__mapleLemon.md - wiki/sources/descriptions/izarooni__MapleEzorsia.md - wiki/sources/descriptions/kvnxiao__storytime.md - wiki/sources/descriptions/codingben__maple-fighters.md - wiki/sources/descriptions/milk-analyzer__vmpunpack.md - wiki/sources/descriptions/mike1k__VMPImportFixer.md - wiki/sources/descriptions/rathena__rathena.md - wiki/sources/descriptions/un4ckn0wl3z__MemMCP.md - wiki/sources/descriptions/toneillcodes__windows-process-injection.md - wiki/sources/descriptions/nettitude__Tartarus-TpAllocInject.md - wiki/sources/descriptions/SDXT__MMInject.md - wiki/sources/descriptions/SafeBreach-Labs__PoolParty.md - wiki/sources/descriptions/can1357__ThePerfectInjector.md - wiki/sources/descriptions/tomhamidi97-arch__vmp-devirtualization-lab.md - wiki/sources/descriptions/tomhamidi97-arch__frida-vmp-bypass.md - wiki/sources/descriptions/MrOplus__frida-ide.md - wiki/sources/descriptions/tomvita__SE-tools.md - wiki/sources/descriptions/tomrus88__OpenLumina.md - wiki/sources/descriptions/tomasz-lisowski__swsim.md - wiki/sources/descriptions/tiann__KernelSU.md - wiki/sources/descriptions/tiann__DirtyPipeRoot.md - wiki/sources/descriptions/polygraphene__DirtyPipe-Android.md - wiki/sources/descriptions/thesecretclub__window_hijack.md - wiki/sources/descriptions/gmh5225__WindowProtect.md - wiki/sources/descriptions/thesecretclub__callout-poc.md - wiki/sources/descriptions/tmr232__Sark.md - wiki/sources/descriptions/arizvisa__ida-minsc.md - wiki/sources/descriptions/tingwei1111__maplestory-worlds-automation.md - wiki/sources/descriptions/tingwei1111__MapleStory-YOLOv8-Training.md - wiki/sources/descriptions/Twobot7__advanced-efi-driver-with-gdi-and-kernel-mouse-input.md - wiki/sources/descriptions/stevemk14ebr__RETools.md - wiki/sources/descriptions/mentebinaria__retoolkit.md - wiki/sources/descriptions/lilyco-42__rev-tools-setup.md - wiki/sources/descriptions/mandiant__flare-vm.md - wiki/sources/descriptions/mandiant__GoReSym.md - wiki/sources/descriptions/mahaloz__DAILA.md - wiki/sources/descriptions/MayerDaniel__ida_gpt.md - wiki/sources/descriptions/lzyddf__IDA_Plugin_PCodeGPT.md - wiki/sources/descriptions/ke0z__VulChatGPT.md - wiki/sources/descriptions/loyaltypollution__ida2llvm.md - wiki/sources/descriptions/mahmoudimus__ida-sigmaker.md - wiki/sources/descriptions/mahmoudimus__ida-taskr.md - wiki/sources/descriptions/stevemk14ebr__PolyHook_2_0.md - wiki/sources/descriptions/stevemk14ebr__PolyHook.md - wiki/sources/descriptions/regomne__ilhook-rs.md - wiki/sources/descriptions/nelfo__PGHooker.md - wiki/sources/descriptions/sterrasec__genpatch.md - wiki/sources/descriptions/gmh5225__IDA2Obj.md - wiki/sources/descriptions/gmh5225__IDA-MapSymbolParser.md - wiki/sources/descriptions/gmh5225__IDA-Pro-SigMaker.md - wiki/sources/descriptions/patois__genmc.md - wiki/sources/descriptions/gaasedelen__microavx.md - wiki/sources/descriptions/ssmugabi__IDAPlugins.md - wiki/sources/descriptions/st4ckh0und__hook-buster.md - wiki/sources/descriptions/mike1k__HookHunter.md - wiki/sources/descriptions/stdhu__windows-kernel-pagehook.md - wiki/sources/descriptions/Xyrem__Yumekage.md - wiki/sources/descriptions/brew02__FastPFHook.md - wiki/sources/descriptions/gmh5225__Hook-KdTrap.md - wiki/sources/descriptions/gmh5225__Driver-KDtour.md - wiki/sources/descriptions/misc0110__PTEditor.md - wiki/sources/descriptions/spyder1g__a-pasted-rust-script.md - wiki/sources/descriptions/spudgy__UnrealEngine4-SwissKnife.md - wiki/sources/descriptions/shalzuth__UnrealSharp.md - wiki/sources/descriptions/shalzuth__NativeNetSharp.md - wiki/sources/descriptions/singhhdev__Spoofer-AMIDEWIN.md - wiki/sources/descriptions/semihcevik__hwidspoofer.md - wiki/sources/descriptions/goseungduk__CE_Tracer-IDA.md - wiki/sources/descriptions/gravemaulr__MLAntiCheat.md - wiki/sources/descriptions/KaelusAI__Shard.md - wiki/sources/descriptions/gregkh__kernel-development.md - wiki/sources/descriptions/djolertrk__kLLDB.md - wiki/sources/descriptions/guoxing2024__magicmida-rs.md - wiki/sources/descriptions/Half-People__HPCS2.md - wiki/sources/descriptions/Halen84__ImGuiRDR2Hook.md - wiki/sources/descriptions/Hendi48__Magicmida.md - wiki/sources/descriptions/HeathHowren__Pointer-Lab.md - wiki/sources/descriptions/HeathHowren__CSGO-Cheats.md - wiki/sources/descriptions/Hellonihaohh__yolo-v8s.md - wiki/sources/descriptions/Hellonihaohh__yolo-v8m.md - wiki/sources/descriptions/gmh5225__vscript_lua51.md - wiki/sources/descriptions/gmh5225__wasm-ceserver.md - wiki/sources/descriptions/gmh5225__Wizard-Loader.md - wiki/sources/descriptions/gmh5225__wizard101-spoofer.md - wiki/sources/descriptions/gmh5225__Full-Hwid-Spoofer-V6.md - wiki/sources/descriptions/gmh5225__hwid-spoofer.md - wiki/sources/descriptions/gmh5225__Hwid-Spoofer-EAC-BE.md - wiki/sources/descriptions/gmh5225__HWID-EclipsedSpoofer-EAC-BE.md - wiki/sources/descriptions/gmh5225__HWID-Kernel-Spoofer.md - wiki/sources/descriptions/gmh5225__HWID-Permanent-HWID-Spoofer.md - wiki/sources/descriptions/gmh5225__HWID-Pasted-Hwid-Spoofer.md - wiki/sources/descriptions/gmh5225__HWID-Spoofer-UD-Fortnite-WarZone-Apex-Rust-Escape-From-Tarkov-and-all-EAC-BE-Games-IMGUI-Loader-Base.md - wiki/sources/descriptions/gmh5225__HWID-SteamSpywareTerminator.md - wiki/sources/descriptions/gmh5225__PrecisionSpoofer-CPP.md - wiki/sources/descriptions/gmh5225__Uncloaking-RAID0-HWID-Serials.md - wiki/sources/descriptions/UCFoxi__Shared-FlushFileBuffers-Communication.md - wiki/sources/descriptions/gmh5225__UCFoxi-Shared-FlushFileBuffers-Communication-Update.md - wiki/sources/descriptions/gmh5225__UltraDriver-Game-Cheat.md - wiki/sources/descriptions/gupr0x4__HWID-Spoofer-for-Fortnite-and-Valorant.md - wiki/sources/descriptions/guidedhacking__GH_AntiDebug_Bypass_Practice_Tool.md - wiki/sources/descriptions/guided-hacking__GuidedHacking-Injector.md - wiki/sources/descriptions/guided-hacking__GH-Offset-Dumper.md - wiki/sources/descriptions/guided-hacking__GH-Entity-List-Finder.md - wiki/sources/descriptions/gopro2027__ParadiseBO2.md - wiki/sources/descriptions/namazso__hdd_serial_spoofer.md - wiki/sources/descriptions/roomyoni__Nvidia-GPU-Spoof.md - wiki/sources/descriptions/sina85__hide-file.md - wiki/sources/descriptions/zensenzay__memfilter-fn-driver-.md - wiki/sources/descriptions/nbqofficial__HideDriver.md - wiki/sources/descriptions/gmh5225__HideDriverTesting.md - wiki/sources/descriptions/naorhaziz__irql.md - wiki/sources/descriptions/signal-slot__mcp-gdb.md - wiki/sources/descriptions/sevaa__dwex.md - wiki/sources/descriptions/serjam__mwclap.md - wiki/sources/descriptions/es3n1n__ida-wakatime-py.md - wiki/sources/descriptions/es3n1n__nvidia-overlay-renderer.md - wiki/sources/descriptions/emanuele-f__PCAPdroid.md - wiki/sources/descriptions/damanoreshkan-beep__rtl8852au-userspace.md - wiki/sources/descriptions/emilyinure__solace-csgo.md - wiki/sources/descriptions/Calvin-LLC__nvidia-overlay-hijack.md - wiki/sources/descriptions/gmh5225__NVIDIA-OVERLAY.md - wiki/sources/descriptions/gmh5225__nvidia-overlay-hijack.md - wiki/sources/descriptions/gmh5225__Steam-Hook-Render-PoC.md - wiki/sources/descriptions/Unkn0wnH4ck3r__GameOverlayUIHook.md - wiki/sources/descriptions/gmh5225__StealthAPCDispatcher.md - wiki/sources/descriptions/gmh5225__Kernel-Special-APC-ReadProcessMemory.md - wiki/sources/descriptions/sailro__EscapeFromTarkov-Trainer.md - wiki/sources/descriptions/roger1337__JDBG.md - wiki/sources/descriptions/robert-yates__gdbserver9x.md - wiki/sources/descriptions/noword__GDB-Windows-Binaries.md - wiki/sources/descriptions/notsnakesilent__VMPStatic.md - wiki/sources/descriptions/gmh5225__VMP-Vmp3_64bit_disasm-prerelease-.md - wiki/sources/descriptions/gmh5225__Vmp3_utils.md - wiki/sources/descriptions/gmh5225__VMAttack.md - wiki/sources/descriptions/rmusser01__Infosec_Reference.md - wiki/sources/descriptions/ridpath__gamehacking-cheatsheet.md - wiki/sources/descriptions/mytechnotalent__Reverse-Engineering.md - wiki/sources/descriptions/mytechnotalent__Hacking-Windows.md - wiki/sources/descriptions/mytechnotalent__hacking-rust.md - wiki/sources/descriptions/mytechnotalent__go-hacking.md - wiki/sources/descriptions/mytechnotalent__Embedded-Hacking.md - wiki/sources/descriptions/mytechnotalent__embedded-hacking.md - wiki/sources/descriptions/ritz-1337__fortnite-external-evo.gj.md - wiki/sources/descriptions/raivoansa__fortnite-external-base-source.md - wiki/sources/descriptions/ricencheese__csgo-bot.md - wiki/sources/descriptions/revsic__cpp-veh-dbi.md - wiki/sources/descriptions/redthing1__w1tn3ss.md - wiki/sources/descriptions/redbg__CS2-Internal.md - wiki/sources/descriptions/Byrom90__XenonDumper.md - wiki/sources/descriptions/ByNameModding__BNM-Android.md - wiki/sources/descriptions/ByteCorum__DragonBurn.md - wiki/sources/descriptions/maecry__asphyxia-cs2.md - wiki/sources/descriptions/mactec0__Kernelmode-manual-mapping-through-IAT.md - wiki/sources/descriptions/papstuc__counterstrike2.md - wiki/sources/descriptions/nezu-cc__BakaWare4.md - wiki/sources/descriptions/FBlackBox__BlackBox.md - wiki/sources/descriptions/reveny__Android-Virtual-Inject.md - wiki/sources/descriptions/reveny__Android-Ptrace-Injector.md - wiki/sources/descriptions/reveny__Android-LD-Preload-Injector.md - wiki/sources/descriptions/jiqiu2022__Zygisk-MyInjector.md - wiki/sources/descriptions/ohchase__yaui.md - wiki/sources/descriptions/opa334__opainject.md - wiki/sources/descriptions/reveny__Android-Library-Remap-Hide.md - wiki/sources/descriptions/repnz__ida-plugins.md - wiki/sources/descriptions/repnz__apc-research.md - wiki/sources/descriptions/rem0obb__rtti-parser.md - wiki/sources/descriptions/realTristan__Reborn.md - wiki/sources/descriptions/Read1dno__vesta.md - wiki/sources/descriptions/ReallReaper__Fortnite-Offsets-Sigs-and-more.md - wiki/sources/descriptions/rdbo__libmem.md - wiki/sources/descriptions/razixNew__CompiledProtection.md - wiki/sources/descriptions/dariushoule__x64dbg-rippy.md - wiki/sources/descriptions/dariushoule__x64dbg-automate-pyclient.md - wiki/sources/descriptions/AgentSmithers__x64DbgMCPServer.md - wiki/sources/descriptions/bromoket__x64dbg_mcp.md - wiki/sources/descriptions/Elinam03__Signature-Forge.md - wiki/sources/descriptions/EliseZeroTwo__SEH-Helper.md - wiki/sources/descriptions/EgeBalci__amber.md - wiki/sources/descriptions/ElvisBlue__x64dbgpython.md - wiki/sources/descriptions/0ffffffffh__yummyPaste.md - wiki/sources/descriptions/Ahmadmansoor__x64dbgScript.md - wiki/sources/descriptions/dnakov__radare2-mcp.md - wiki/sources/descriptions/radareorg__radius2.md - wiki/sources/descriptions/radareorg__r2ai.md - wiki/sources/descriptions/radareorg__r2a.md - wiki/sources/descriptions/radareorg__iaito.md - wiki/sources/descriptions/s7shvets7s__simple_ac_internal_cheat.md - wiki/sources/descriptions/rabbitfishy__sdk.md - wiki/sources/descriptions/perilouswithadollarsign__cstrike15_src.md - wiki/sources/descriptions/quickemu-project__quickemu.md - wiki/sources/descriptions/jakcron__nstool.md - wiki/sources/descriptions/StudentBlake__XCI-Explorer.md - wiki/sources/descriptions/CTCaer__hekate.md - wiki/sources/descriptions/Logboy2000__yuzu-archive.md - wiki/sources/descriptions/qqq26__nuzu.md - wiki/sources/descriptions/gmh5225__yuzu-android.md - wiki/sources/descriptions/RemiPelloux__OpenSw.md - wiki/sources/descriptions/brunodev85__winlator.md - wiki/sources/descriptions/qq703048949__event_replay.md - wiki/sources/descriptions/wchunlin1006__LocusMimic.md - wiki/sources/descriptions/cxOrz__AnyWhere.md - wiki/sources/descriptions/Xposed-Modules-Repo__com.fuck.iab.md - wiki/sources/descriptions/Xposed-Modules-Repo__com.wowsoftware.hidemyandroid.md - wiki/sources/descriptions/mekos2772__ios-location-spoofer.md - wiki/sources/descriptions/YouNeverKnow00__Kernelmode-DLL-Injector.md - wiki/sources/descriptions/YouNeverKnow00__Rust-Auto-Weapon-Detection-OpenCV-Example.md - wiki/sources/descriptions/Yu9191__wloc.md - wiki/sources/descriptions/muchenspace__android_virtualTouch.md - wiki/sources/descriptions/qiufuyu123__Positron.md - wiki/sources/descriptions/ps5-linux__ps5-linux-loader.md - wiki/sources/descriptions/cryonumb__elfloader.md - wiki/sources/descriptions/cursey__regenny.md - wiki/sources/descriptions/cursey__sdkgenny.md - wiki/sources/descriptions/praydog__luagenny.md - wiki/sources/descriptions/praydog__Source2Gen.md - wiki/sources/descriptions/neverlosecc__source2gen.md - wiki/sources/descriptions/neverlosecc__source2sdk.md - wiki/sources/descriptions/kali11211__valorant-internal-cheat.md - wiki/sources/descriptions/gmh5225__valorant-internal.md - wiki/sources/descriptions/gmh5225__valorant-internal-base.md - wiki/sources/descriptions/gmh5225__Interep-Driver-Leak.md - wiki/sources/descriptions/gmh5225__IOS-jailbreak--Fugu15.md - wiki/sources/descriptions/Kc57__iHide.md - wiki/sources/descriptions/KpwnZ__Def1nit3lyN0tAJa1lbr3akTool.md - wiki/sources/descriptions/gmh5225__Internal-Valorant-Cheat.md - wiki/sources/descriptions/gmh5225__Valorant-cheat-internal.md - wiki/sources/descriptions/gmh5225__Valorant-Aimbot-Bypass.md - wiki/sources/descriptions/gmh5225__Valorant-Cheat.md - wiki/sources/descriptions/gmh5225__Valorant-Esp-Aimbot-Hack.md - wiki/sources/descriptions/gmh5225__Valorant-Esp-Aimbot-Cheat-Hack.md - wiki/sources/descriptions/gmh5225__VALORANT-HACK-ESP-AIMBOT-SKINCHANGER.md - wiki/sources/descriptions/gmh5225__VALORANT-HACK-ESP-AIMBOT-SKINCHANGER-SOURCE.md - wiki/sources/descriptions/gmh5225__valorant-gui-imgui-remake.md - wiki/sources/descriptions/gmh5225__valorant-externals.md - wiki/sources/descriptions/gmh5225__valorant-esp-hack-with-driver.md - wiki/sources/descriptions/gmh5225__valo-driver.md - wiki/sources/descriptions/gmh5225__ValorantCheatExternal.md - wiki/sources/descriptions/gmh5225__Valorant-CheatExternal.md - wiki/sources/descriptions/gmh5225__Valorant.External.md - wiki/sources/descriptions/gmh5225__Valorant-External-Source.md - wiki/sources/descriptions/gmh5225__Valorant-External-P2C-Leaked.md - wiki/sources/descriptions/gmh5225__Valorant-External-1.md - wiki/sources/descriptions/gmh5225__lol_patcher.md - wiki/sources/descriptions/gmh5225__LoLClient.md - wiki/sources/descriptions/gmh5225__lol-offset-dumper.md - wiki/sources/descriptions/gmh5225__LeagueDumper.md - wiki/sources/descriptions/gmh5225__League-Unpacker.md - wiki/sources/descriptions/gmh5225__lol-unpackman.md - wiki/sources/descriptions/gmh5225__league-base.md - wiki/sources/descriptions/gmh5225__hh-lol-prophet.md - wiki/sources/descriptions/gmh5225__ayaya-league-external.md - wiki/sources/descriptions/gmh5225__VanderLeague.md - wiki/sources/descriptions/gmh5225__TFT-OCR-BOT.md - wiki/sources/descriptions/gmh5225__QQTangCheatEngine.md - wiki/sources/descriptions/gmh5225__QQTang.md - wiki/sources/descriptions/gmh5225__R3nzSkinTFT.md - wiki/sources/descriptions/gmh5225__LeagueSkinChanger.md - wiki/sources/descriptions/gmh5225__LeagueSharp.md - wiki/sources/descriptions/gmh5225__LeagueSharp.Loader.md - wiki/sources/descriptions/gmh5225__L-Assemblies.md - wiki/sources/descriptions/gmh5225__EloBuddy-Addons.md - wiki/sources/descriptions/gmh5225__League-DirectX11-Internal.md - wiki/sources/descriptions/gmh5225__Lazysight.md - wiki/sources/descriptions/gmh5225__fortnite-triadz.md - wiki/sources/descriptions/gmh5225__fortnite-internal-updated-ritz.md - wiki/sources/descriptions/DontCry361x__ritz-amazing-fortnite-internal-updated.md - wiki/sources/descriptions/gmh5225__Fortnite-Internal-Cheat-Fixed-and-Updated.md - wiki/sources/descriptions/gmh5225__Fortnite-3.5.md - wiki/sources/descriptions/gmh5225__Fortnite-Leak5.md - wiki/sources/descriptions/Makk5__FortConsole.md - wiki/sources/descriptions/MISP__bsimvis.md - wiki/sources/descriptions/MahmoudZohdy__Process-Injection-Techniques.md - wiki/sources/descriptions/gmh5225__Fortnite-Masterpasta-ihack-Source-Leak.md - wiki/sources/descriptions/gmh5225__ZeroGui-Fortnite-Internal.md - wiki/sources/descriptions/gmh5225__fortnite-exploits.md - wiki/sources/descriptions/gmh5225__VOLTO-EXTERNAL-SPOWAR-UD-EAC-BE-FORTNITE-EXTERNAL-CHEAT.md - wiki/sources/descriptions/gmh5225__Apple-Lite-Fortnite-Cheat.md - wiki/sources/descriptions/gmh5225__Serenity.gg-FN-and-Loader.md - wiki/sources/descriptions/gmh5225__Fortnite-VoyagerTF.md - wiki/sources/descriptions/gmh5225__Fortnite-EFI-External.md - wiki/sources/descriptions/gmh5225__Fortnite-External.md - wiki/sources/descriptions/gmh5225__Fortnite-External-5.md - wiki/sources/descriptions/gmh5225__Fortnite-Esp-Aimbot-Exploits-Hwid-Spoofer-Cleaner-Hack-Cheat.md - wiki/sources/descriptions/gmh5225__Fortnite-External-Cheat-Source-Code.md - wiki/sources/descriptions/gmh5225__Fortnite-Evo.cc-Source-External-Cheat.md - wiki/sources/descriptions/gmh5225__Fortnite-External-Cheat-WinSense-Leak.md - wiki/sources/descriptions/gmh5225__Fortnite-UD-External.md - wiki/sources/descriptions/gmh5225__SeaOfChoros.md - wiki/sources/descriptions/gmh5225__fortnite-virtual-offsets.md - wiki/sources/descriptions/gmh5225__fortnite-sigs.md - wiki/sources/descriptions/F0NDO__fortnite-sigs.md - wiki/sources/descriptions/gmh5225__Fortnite-SigsUpdatedEveryUpdate.md - wiki/sources/descriptions/gmh5225__fortnite-offsets.md - wiki/sources/descriptions/Trydos__fortnite-offsets.md - wiki/sources/descriptions/gmh5225__Fortnite-Offset-dumper.md - wiki/sources/descriptions/gmh5225__Flying-Guys-fully-modified.md - wiki/sources/descriptions/gmh5225__FlyingGuys.md - wiki/sources/descriptions/gmh5225__FallGuys.md - wiki/sources/descriptions/gmh5225__FallGuysSharp.md - wiki/sources/descriptions/gmh5225__fortnite-W2S-offset-Fortnite.md - wiki/sources/descriptions/gmh5225__frank.md - wiki/sources/descriptions/gmh5225__t7-linker.md - wiki/sources/descriptions/gmh5225__star_rail.md - wiki/sources/descriptions/gmh5225__StarRailCopilot.md - wiki/sources/descriptions/gmh5225__AutoOpenCAK.md - wiki/sources/descriptions/gmh5225__AutoGunfireReborn.md - wiki/sources/descriptions/gmh5225__Auto_Simulated_Universe.md - wiki/sources/descriptions/gmh5225__StarRail-S-GC.md - wiki/sources/descriptions/gmh5225__POLYGON_UE5.md - wiki/sources/descriptions/gmh5225__CE-remap-plugin.md - wiki/sources/descriptions/gmh5225__CReadMemory.md - wiki/sources/descriptions/gmh5225__CheatIt.md - wiki/sources/descriptions/gmh5225__Pom-Pom.md - wiki/sources/descriptions/gmh5225__titancf.md - wiki/sources/descriptions/gmh5225__the-finals-interior-cheat.md - wiki/sources/descriptions/gmh5225__subhook.md - wiki/sources/descriptions/gmh5225__spoof-stack-SafeCall.md - wiki/sources/descriptions/gmh5225__StackSpoofer_Macro.md - wiki/sources/descriptions/gmh5225__STB.md - wiki/sources/descriptions/gmh5225__SetWindowsHookEx-Injector.md - wiki/sources/descriptions/gmh5225__sigmakerex.md - wiki/sources/descriptions/gmh5225__shootergame-Hack.md - wiki/sources/descriptions/cqcallaw__shootergame.md - wiki/sources/descriptions/gmh5225__sapphire.md - wiki/sources/descriptions/gmh5225__simple-rust-hack.md - wiki/sources/descriptions/gmh5225__rust-dll-crab.md - wiki/sources/descriptions/gmh5225__idasdk-collection.md - wiki/sources/descriptions/gmh5225__ida-sdk.md - wiki/sources/descriptions/gmh5225__HappyIDA.md - wiki/sources/descriptions/gmh5225__idawilli.md - wiki/sources/descriptions/gmh5225__idaplugins-list.md - wiki/sources/descriptions/gmh5225__ida-plugins.md - wiki/sources/descriptions/gmh5225__idacode.md - wiki/sources/descriptions/gmh5225__ida_ps5_elf_plugin.md - wiki/sources/descriptions/gmh5225__ida_names.md - wiki/sources/descriptions/gmh5225__ida_export_functions.md - wiki/sources/descriptions/gmh5225__ida-function-string-associate.md - wiki/sources/descriptions/gmh5225__ida-find-.data-ptr.md - wiki/sources/descriptions/cristeigabriela__IDAFind.md - wiki/sources/descriptions/gmh5225__ida-sigmaker.md - wiki/sources/descriptions/gmh5225__ida_medigate.md - wiki/sources/descriptions/gmh5225__golang_loader_assist.md - wiki/sources/descriptions/SentineLabs__AlphaGolang.md - wiki/sources/descriptions/ghidragolf__ghidra_scripts.md - wiki/sources/descriptions/gmh5225__ghidra.md - wiki/sources/descriptions/gmh5225__GhidraDec.md - wiki/sources/descriptions/gmh5225__injection.md - wiki/sources/descriptions/gmh5225__executor.md - wiki/sources/descriptions/gmh5225__egui-d3d11.md - wiki/sources/descriptions/rabbanyhmm__ImOverlay-DX11.md - wiki/sources/descriptions/rabbanyhmm__DnSpyMCP.md - wiki/sources/descriptions/gmh5225__ExtendedCameraSettings.md - wiki/sources/descriptions/gmh5225__DayZ-Cheat.md - wiki/sources/descriptions/gmh5225__External-Dayz-Cheat.md - wiki/sources/descriptions/gmh5225__External-ImGui-Android.md - wiki/sources/descriptions/gmh5225__Android-Mod-Menu-ImGui.md - wiki/sources/descriptions/gmh5225__External-imgui-Cheat-Menu-Example-2023.md - wiki/sources/descriptions/adam-040__Enigma.md - wiki/sources/descriptions/adamhlt__ImGui-Standalone.md - wiki/sources/descriptions/3a1__Evelion.md - wiki/sources/descriptions/3a1__Zodiak.md - wiki/sources/descriptions/3nolan5__R5Apex-UserMode.md - wiki/sources/descriptions/3r4y__imgui-external-overlay.md - wiki/sources/descriptions/Reodus__CBS.md - wiki/sources/descriptions/RequestFX__ImGUI-Advanced-Cheat-Menu.md - wiki/sources/descriptions/gmh5225__eft-dma-radar-1.md - wiki/sources/descriptions/bytemyass__EFTLeecher.md - wiki/sources/descriptions/gmh5225__Nathans-Tarkov-Radar-Public.md - wiki/sources/descriptions/frankie-11__eft-external.md - wiki/sources/descriptions/fcancelog__EftStreamedCheat.md - wiki/sources/descriptions/frankelitoc__UE4-c-.md - wiki/sources/descriptions/gmh5225__eft-internal.md - wiki/sources/descriptions/gmh5225__EFT-Veil-EFT.md - wiki/sources/descriptions/gmh5225__EFT-NewTarkovCheatProject.md - wiki/sources/descriptions/gmh5225__EFT-MonoEFT.md - wiki/sources/descriptions/gmh5225__ethersplay.md - wiki/sources/descriptions/gmh5225__immortal-rust.md - wiki/sources/descriptions/gmh5225__rust-external-1.md - wiki/sources/descriptions/gmh5225__Rust-Cheat-External.md - wiki/sources/descriptions/gmh5225__Rust-External.md - wiki/sources/descriptions/gmh5225__Rust-External-Source.md - wiki/sources/descriptions/gmh5225__Rust-ExternaL-and-Driver-AlienCheats.md - wiki/sources/descriptions/gmh5225__Rico-Cheat-rust-external.md - wiki/sources/descriptions/gmh5225__rust-internal.md - wiki/sources/descriptions/gmh5225__Rust-RustInternal.md - wiki/sources/descriptions/gmh5225__MatScan.md - wiki/sources/descriptions/gmh5225__r69-driver.md - wiki/sources/descriptions/gmh5225__rAthenaCN.md - wiki/sources/descriptions/gmh5225__retdec.md - wiki/sources/descriptions/gmh5225__RemnantESP.md - wiki/sources/descriptions/gmh5225__Super-People-Esp-Aimbot-Magic-Hack.md - wiki/sources/descriptions/gmh5225__superpeople-client.md - wiki/sources/descriptions/gmh5225__teamfortress2_internal.md - wiki/sources/descriptions/gmh5225__tim_apple.md - wiki/sources/descriptions/gmh5225__unispectDMAPlugin.md - wiki/sources/descriptions/kem0x__FortKit.md - wiki/sources/descriptions/kirovgrad__Renamaida.md - wiki/sources/descriptions/keowu__sourceengineexplorer.md - wiki/sources/descriptions/praydog__AutomataMP.md - wiki/sources/descriptions/khang06__genshinjumpfixer2.md - wiki/sources/descriptions/khang06__misc.md - wiki/sources/descriptions/khang06__mhynot2.md - wiki/sources/descriptions/360NENZ__Taiga74164-Akebi-GC.md - wiki/sources/descriptions/gmh5225__Akebi-Cheat-3.3.md - wiki/sources/descriptions/gmh5225__EasyPeasy-GC.md - wiki/sources/descriptions/gmh5225__Genshin-Akebi-GC.md - wiki/sources/descriptions/gmh5225__Genshin-Cheetos.md - wiki/sources/descriptions/gmh5225__GenshinDebuggerBypass.md - wiki/sources/descriptions/gmh5225__Genshin-EasyPeasy-Bypass.md - wiki/sources/descriptions/gmh5225__GenshinImpact-Base.md - wiki/sources/descriptions/gmh5225__Genshin-GenshinData.md - wiki/sources/descriptions/0x5abe__vifterpreter.md - wiki/sources/descriptions/Goatman13__ps2_ida_vu_micro.md - wiki/sources/descriptions/Goatman13__spu2c.md - wiki/sources/descriptions/BoondockSulfur__BS-AntiCheat.md - wiki/sources/descriptions/EpicLizard05013__UltimateMeteorAntiCheat.md - wiki/sources/descriptions/boggymc__PetalAntiFreecam.md - wiki/sources/descriptions/trevorftp__ServerGuard.md - wiki/sources/descriptions/Pryaxis__TShock.md - wiki/sources/descriptions/realkyx29-design__LarpingAntiCheat.md - wiki/sources/descriptions/Charlie328402__Sentinel-Anti-Cheat.md - wiki/sources/descriptions/Gitex68__Katapult-AntiCheat.md - wiki/sources/descriptions/sodium-CrispyWafer__CrispyWafer-Anti-Cheat-Assistant-WaferACA.md - wiki/sources/descriptions/Fraysa__Destiny.md - wiki/sources/descriptions/Grasscutters__Grasscutter.md - wiki/sources/descriptions/gmh5225__genshin-cheat.md - wiki/sources/descriptions/gmh5225__genshin-remove-banner.md - wiki/sources/descriptions/gmh5225__YaeAchievement.md - wiki/sources/descriptions/phonowell__genshin-impact-script.md - wiki/sources/descriptions/pgarba__ptrace_read_teb.md - wiki/sources/descriptions/pgarba__ida-llm-explainer.md - wiki/sources/descriptions/jtang613__GhidrAssistMCP.md - wiki/sources/descriptions/jtang613__GhidrAssist.md - wiki/sources/descriptions/jtang613__IDAssist.md - wiki/sources/descriptions/buzzer-re__Rikugan.md - wiki/sources/descriptions/buzzer-re__NineS.md - wiki/sources/descriptions/percpopper__VX-It.md - wiki/sources/descriptions/LagradOst__ProjectD-Win64-Shipping.md - wiki/sources/descriptions/LabGuy94__OxideDumper.md - wiki/sources/descriptions/percpopper__UE4-Freecam.md - wiki/sources/descriptions/percpopper__Splitgate-Internal.md - wiki/sources/descriptions/percpopper__Fortnite-FNameEntry.md - wiki/sources/descriptions/percpopper__Fortnite-CameraCachePOV.md - wiki/sources/descriptions/Pycatchown__ClassMaker.md - wiki/sources/descriptions/PrinceFroggy__MSC.md - wiki/sources/descriptions/PrinceFroggy__MSB.md - wiki/sources/descriptions/Noelo-Lab__kuna.md - wiki/sources/descriptions/DMaroo__GhidRust.md - wiki/sources/descriptions/NaC-L__Mergen.md - wiki/sources/descriptions/NeverSight__NeverD.md - wiki/sources/descriptions/Neurosisccc__Apex-ItemGlow.md - wiki/sources/descriptions/NoneShell__IDAComments.md - wiki/sources/descriptions/NoCheatPlus__NoCheatPlus.md - wiki/sources/descriptions/Noosh404__Maplestory-V179-Cheat-Engine.md - wiki/sources/descriptions/Maxcloud__MapleResearch.md - wiki/sources/descriptions/pbiernat__ripr.md - wiki/sources/descriptions/patrickcjk__TOG.md - wiki/sources/descriptions/lfreist__hwinfo.md - wiki/sources/descriptions/lainswork__shellcode-factory.md - wiki/sources/descriptions/n1h-nb__Shellcode-Obfuscation.md - wiki/sources/descriptions/lauralex__fn-dma-cheat.md - wiki/sources/descriptions/lavoiesl__osx-cpu-temp.md - wiki/sources/descriptions/paradoxwastaken__WindowsHardwareInfo.md - wiki/sources/descriptions/openhardwaremonitor__openhardwaremonitor.md - wiki/sources/descriptions/openeggbert__free-direct.md - wiki/sources/descriptions/paradoxwastaken__Poseidon.md - wiki/sources/descriptions/paradiseduo__IPAPatch.md - wiki/sources/descriptions/paul01784__MeatyEFTRelease.md - wiki/sources/descriptions/jjolano__shadow.md - wiki/sources/descriptions/opa334__TrollStore.md - wiki/sources/descriptions/oureveryday__VMPUnpacker.md - wiki/sources/descriptions/oxiKKK__ida-vtable-tools.md - wiki/sources/descriptions/oxiKKK__oxware.md - wiki/sources/descriptions/gmh5225__hpp-hack.md - wiki/sources/descriptions/gmh5225__CSHackCreator-2-Demo.md - wiki/sources/descriptions/orinimron123__CVE-2026-40369-EXPLOIT.md - wiki/sources/descriptions/nu1lptr0__CVE-2025-21333.md - wiki/sources/descriptions/gmh5225__CVE-2024-35250.md - wiki/sources/descriptions/gmh5225__CVE-2024-26229.md - wiki/sources/descriptions/gmh5225__CVE-2024-21338.md - wiki/sources/descriptions/MrAle98__CVE-2024-49138-POC.md - wiki/sources/descriptions/gmh5225__CVE-2022-42046.md - wiki/sources/descriptions/gmh5225__CVE-2022-42045.md - wiki/sources/descriptions/gmh5225__CVE-2021-21551.md - wiki/sources/descriptions/gmh5225__CVE-2022-3699.md - wiki/sources/descriptions/gmh5225__CVE-2025-21333-POC.md - wiki/sources/descriptions/ntfargo__CSSFontFace-Exploit.md - wiki/sources/descriptions/ArabPixel__PSFree-Enhanced.md - wiki/sources/descriptions/orange-cpp__omath.md - wiki/sources/descriptions/ofDataa__offsets.md - wiki/sources/descriptions/ocornut__imgui_club.md - wiki/sources/descriptions/ocornut__imgui.md - wiki/sources/descriptions/notgoodusename__OsirisAndExtra.md - wiki/sources/descriptions/notahacker8__RobloxCheats.md - wiki/sources/descriptions/LyeDevGit__WonTree-RBLX-Dumper.md - wiki/sources/descriptions/Lucyferek-nunu__vmp-unpacker.md - wiki/sources/descriptions/nologic__idaref.md - wiki/sources/descriptions/samaBR85__OcarinaCTRComposer.md - wiki/sources/descriptions/samaBR85__CTRComposer.md - wiki/sources/descriptions/ReClassNET__ReClass.NET.md - wiki/sources/descriptions/niemand-sec__ReClass.NET-DriverReader.md - wiki/sources/descriptions/niemand-sec__AntiCheat-Testing-Framework.md - wiki/sources/descriptions/palepine__GDDumper.md - wiki/sources/descriptions/GDPatch__GDPatch.md - wiki/sources/descriptions/nice-sprite__COD7-Tools.md - wiki/sources/descriptions/SwagSoftware__KisakCOD.md - wiki/sources/descriptions/SwagSoftware__KisakBlack.md - wiki/sources/descriptions/ndrewh__pyda.md - wiki/sources/descriptions/nbqofficial__norsefire.md - wiki/sources/descriptions/nbqofficial__kernel-csgo.md - wiki/sources/descriptions/narumii__Deobfuscator.md - wiki/sources/descriptions/gmh5225__deobfuscator.md - wiki/sources/descriptions/lzghzr__APatch_kpm.md - wiki/sources/descriptions/lockedbyte__so_loader.md - wiki/sources/descriptions/icculus__mojoelf.md - wiki/sources/descriptions/iCollin__pubg-internal.md - wiki/sources/descriptions/ajkhoury__pubg_internal.md - wiki/sources/descriptions/ajkhoury__UEFI-Bootkit.md - wiki/sources/descriptions/ajkhoury__ReClassEx.md - wiki/sources/descriptions/IChooseYou__Reclass.md - wiki/sources/descriptions/gmh5225__PUBG_Internal.md - wiki/sources/descriptions/gmh5225__PUBGSTAR.md - wiki/sources/descriptions/kirides__screencapture.md - wiki/sources/descriptions/kernelstub__Retract.md - wiki/sources/descriptions/katahiromz__RisohEditor.md - wiki/sources/descriptions/jmpews__Dobby.md - wiki/sources/descriptions/jnastarot__ice9.md - wiki/sources/descriptions/gmh5225__L4D2-Cheat.md - wiki/sources/descriptions/gmh5225__Cunthook.md - wiki/sources/descriptions/gmh5225__CyberAntLoader.md - wiki/sources/descriptions/frk1__hazedumper.md - wiki/sources/descriptions/Akandesh__blazedumper.md - wiki/sources/descriptions/clearbluejar__ghidriff.md - wiki/sources/descriptions/changeofpace__MouHidInputHook.md - wiki/sources/descriptions/assaultcube__AC.md - wiki/sources/descriptions/aliyunav__Finger.md - wiki/sources/descriptions/allthingsida__idasql.md - wiki/sources/descriptions/absoIute__Speedhack.md - wiki/sources/descriptions/ZoondEngine__NoBastian_v2.md - wiki/sources/descriptions/Zurek0x__NuremX.md - wiki/sources/descriptions/Zpes__mouse-input-injection.md - wiki/sources/descriptions/M3351AN__mouse_input_injection.md - wiki/sources/descriptions/ZhaoKunqi__simple-eft-superman-training-bot.md - wiki/sources/descriptions/ZeromaXHe__MapleStoryCopy.md - wiki/sources/descriptions/ZentifyZ__Kors_lol.md - wiki/sources/descriptions/ZentifyZ__CRC32.md - wiki/sources/descriptions/ZehMatt__zyemu.md - wiki/sources/descriptions/ZehMatt__x64dbgPlaytime.md - wiki/sources/descriptions/Zebratic__UE4Injector.md - wiki/sources/descriptions/Vis-Wing__Binoculars.md - wiki/sources/descriptions/VirusTotal__vt-ida-plugin.md - wiki/sources/descriptions/Veuqx0__ImGui-Spoofer-Leaked.md - wiki/sources/descriptions/ViRb3__swift-ida.md - wiki/sources/descriptions/Steesha__CodeCleaner.md - wiki/sources/descriptions/SteamDatabase__Protobufs.md - wiki/sources/descriptions/VenTaz__Themidie.md - wiki/sources/descriptions/VollRagm__ghostdebug.md - wiki/sources/descriptions/VeroFess__PalWorld-Server-Unoffical-Fix.md - wiki/sources/descriptions/Visual1mpact__Paradox_AntiCheat.md - wiki/sources/descriptions/ViddeBoiiii__CSGO-Ormbunke-x86.md - wiki/sources/descriptions/Vatrials__League-of-Legends-Visuals-Cheat.md - wiki/sources/descriptions/UnnamedZ03__CS2-external-base.md - wiki/sources/descriptions/Tokyodidit__cs2External.md - wiki/sources/descriptions/TKazer__CS2_External.md - wiki/sources/descriptions/TindalosKorone__dsh-cheatengine.md - wiki/sources/descriptions/GalaxyBatMan111__dsh-plugins.md - wiki/sources/descriptions/ThirteenAG__GTAIV.EFLC.FusionFix.md - wiki/sources/descriptions/Theordernarkoz__Hwid-Spoofer.md - wiki/sources/descriptions/TheCruZ__EFI_Driver_Access.md - wiki/sources/descriptions/TheCruZ__Apex_Legends_Driver_Cheat.md - wiki/sources/descriptions/TheCruZ__Direct-EFI-Apex-Cheat.md - wiki/sources/descriptions/TheCruZ__FindXrefs.md - wiki/sources/descriptions/TheCruZ__Simple-Manual-Map-Injector.md - wiki/sources/descriptions/TheHeadphonesAreNeeded__VoltClient.md - wiki/sources/descriptions/TheMille-Dev__AntiGuard.md - wiki/sources/descriptions/TheZong__Game-Hacking.md - wiki/sources/descriptions/TheWildJames__kernel_build_scripts.md - wiki/sources/descriptions/Vekor64__PythonCS2.md - wiki/sources/descriptions/VitorMob__GHInterfacesCSGO.md - wiki/sources/descriptions/Vector35__scc.md - wiki/sources/descriptions/Vector35__official-plugins.md - wiki/sources/descriptions/Vector35__community-plugins.md - wiki/sources/descriptions/Vector35__OpaquePredicatePatcher.md - wiki/sources/descriptions/Vu1nT0tal__firmeye.md - wiki/sources/descriptions/WerWolv__ImHex.md - wiki/sources/descriptions/Washi1337__ghidra-nativeaot.md - wiki/sources/descriptions/WenzWenzWenz__DelphiReSym.md - wiki/sources/descriptions/WoahToasty__ToastyLink.md - wiki/sources/descriptions/WPeace-HcH__WPeChatGPT.md - wiki/sources/descriptions/WPO-Foundation__win-shaper.md - wiki/sources/descriptions/WopsS__RenHook.md - wiki/sources/descriptions/Wra7h__FlavorTown.md - wiki/sources/descriptions/Fahersto__code_injection.md - wiki/sources/descriptions/Francesco149__uwpinject.md - wiki/sources/descriptions/Francesco149__uwpspy.md - wiki/sources/descriptions/AMXZzzz__SF_TRT_61.md - wiki/sources/descriptions/Fragmentaim__Auto_aim.md - wiki/sources/descriptions/Wunkolo__UWPDumper.md - wiki/sources/descriptions/WRXinYue__STS2-KitLib.md - wiki/sources/descriptions/W1lliam1337__digital-sdk.md - wiki/sources/descriptions/W1lliam1337__cstrike2-hack.md - wiki/sources/descriptions/Waihbe__Fortnite-External-Cheat-Leak.md - wiki/sources/descriptions/YMY1666527646__ue4_base.md - wiki/sources/descriptions/YMY1666527646__nigusFN.md - wiki/sources/descriptions/YMY1666527646__Phoenix-Valorant-Cheat.md - wiki/sources/descriptions/YMY1666527646__Fortnite-Hack-Esp-Exploits-With-Menu.md - wiki/sources/descriptions/YMY1666527646__Call-of-Duty-Warzone-MW-HACK-ESP-AIMBOT.md - wiki/sources/descriptions/WeiNaYongQ__OmniClutch.md - wiki/sources/descriptions/Skengdo__mordhau-simple-auto-block-cheat.md - wiki/sources/descriptions/Skengdo__battlefield-2042-internal-sdk.md - wiki/sources/descriptions/Skengdo__arma3-external-variable-manager.md - wiki/sources/descriptions/Skarbo__CSGOCrosshair.md - wiki/sources/descriptions/Sizeable-Bingus__BingusLdr.md - wiki/sources/descriptions/Ricardonacif__launcher-abuser.md - wiki/sources/descriptions/Remus3__Lanternlight.md - wiki/sources/descriptions/RiseShieldDev__AntiXrayViewer.md - wiki/sources/descriptions/RavenOfTime__Apex-Legends-Esp.md - wiki/sources/descriptions/Rythorndoran__Naraka-Hack.md - wiki/sources/descriptions/RussellJerome__UnrealModLoader.md - wiki/sources/descriptions/Rprop__And64InlineHook.md - wiki/sources/descriptions/RootKit-Org__AI-Aimbot.md - wiki/sources/descriptions/Passer1072__RookieAI_yolov8.md - wiki/sources/descriptions/no1qq__RustBlox.md - wiki/sources/descriptions/no1qq__UAGC.md - wiki/sources/descriptions/Lazyzouo__ICUAC.md - wiki/sources/descriptions/Inndy__MSDoggy.md - wiki/sources/descriptions/IntelSDM__7DTD.md - wiki/sources/descriptions/irembo337__Fusion-AntiCheat.md - wiki/sources/descriptions/IntelSDM__RustDMACheat.md - wiki/sources/descriptions/Hydr8gon__3Beans.md - wiki/sources/descriptions/HulkOperator__Spoof-RetAddr.md - wiki/sources/descriptions/Hexze__anticheat.md - wiki/sources/descriptions/Hexorg__CheatEngineTables.md - wiki/sources/descriptions/Hexorg__Ouroboros.md - wiki/sources/descriptions/HexRaysSA__rax.md - wiki/sources/descriptions/HexRaysSA__ida-cyberchef.md - wiki/sources/descriptions/HexRaysSA__ida-claude-code-plugins.md - wiki/sources/descriptions/Gezine__BD-UN-JB.md - wiki/sources/descriptions/GLX-ILLUSION__valorant-offsets-autoupdater.md - wiki/sources/descriptions/DeNA__mempatch.md - wiki/sources/descriptions/Compiled-Code__be-injector.md - wiki/sources/descriptions/Compiled-Code__external-il2cpp.md - wiki/sources/descriptions/CodeCracker-Tools__MegaDumper.md - wiki/sources/descriptions/Codeusa__Borderless-Gaming.md - wiki/sources/descriptions/CoderYiXin__PalOpsWeb.md - wiki/sources/descriptions/Ckateowm__ModernWarfare2-Cpp-External.md - wiki/sources/descriptions/Chaoses-Ib__IbInputSimulator.md - wiki/sources/descriptions/ChwnWang0__Android-kernel-inline-hook-framework.md - wiki/sources/descriptions/Cracked5pider__earlycascade-injection.md - wiki/sources/descriptions/Cracked5pider__KaynStrike.md - wiki/sources/descriptions/D3DXVECTOR2__NtUserUpdateWindowTrackingInfo.md - wiki/sources/descriptions/Dead-Scripts__Dead_antiCheat.md - wiki/sources/descriptions/Berk000x__BinaryLens.md - wiki/sources/descriptions/TheAustinUS__LuminaryDMA.md - wiki/sources/descriptions/Maxamedxasa__SakoREStudio.md - wiki/sources/descriptions/danigargu__deREferencing.md - wiki/sources/descriptions/AshrafMorningstar__hayday-bot.md - wiki/sources/descriptions/lsxll666__AntiCheatToggle.md - wiki/sources/descriptions/IZxMD__ac-compat-research.md updated: 2026-09-15 confidence: high --- # Game Hacking Map what an attacker observes or controls, the required capability, the trust boundary crossed, and where defenders have evidence or authority. User-mode, kernel, hypervisor, device, visual, and network threats are **alternative or combined paths**, not a mandatory escalation ladder. Treat stealth rankings, latency figures, and detection claims as versioned examples—apply [[research-rigor]] before converting README samples into enforcement or factual claims. (source: wiki/sources/skills/game-hacking.md) ## Topic routing | Question lane | Route | |---------------|-------| | Threat-family taxonomy, objective/boundary before tools | [[cheat-attack-surface]] | | Privilege levels, injection, cheat categories | Escalation model below; [[byovd]], [[present-hook]] | | Overlays, memory paths, driver comm, W2S, input | [[world-to-screen]], [[driver-communication]], [[hardware-input-injection]]; [[overviews/graphics-api]] | | EFI, HWID, stack spoofing, anti-detection | [[hwid-spoofing]], [[stack-spoofing]]; [[overviews/windows-kernel]] | | Engine-specific surfaces, RE workflows | [[overviews/game-engine]], [[overviews/reverse-engineering]] | | PCIe/DMA memory access | [[overviews/dma-attack]], [[memory-acquisition-path]] | | Backend authority, transactional correctness | game-server-security skill topic | | Build, update, mod-distribution trust | game-supply-chain-security skill topic | | Input telemetry trust, visual aim pipelines | [[input-provenance]], [[ai-aimbot-detection]] | | Network association, rate limits vs sanctions | [[network-environment-evidence]] | | Evidence and source selection | [[resource-selection]], [[repository-navigation]] | | Disputed implementation or detectability claims | [[research-rigor]] | Use sibling skill topics when one boundary dominates the question; keep recommendations defensive and within authorized scope. (source: wiki/sources/skills/game-hacking.md) ## Attacker capability and defensive coverage For each relevant attack family, state the **objective and boundary** before naming tools. Record what the defender can observe, which control limits the behavior, and what remains uncertain. Distinguish read-only information abuse from state modification, and synthetic input from evidence of human intent—a missing artifact is not proof an attack is undetectable. (source: wiki/sources/skills/game-hacking.md) Cross-skill boundaries: - Backend authority and transactional correctness → game-server-security skill (not duplicated here) - Build/release/mod trust → game-supply-chain-security skill - Host-driver vs device memory access → [[overviews/dma-attack]] / [[memory-acquisition-path]] - Account/device association and reported restrictions → [[network-environment-evidence]] - Input telemetry trust → [[input-provenance]] / [[ai-aimbot-detection]] Use [[resource-selection]] when choosing README, engine source, packet captures, or diagnostic UI as evidence for a proposed capability. ## Cheat taxonomy | Category | Examples | Notes | |----------|----------|-------| | Visual (ESP) | Box/skeleton ESP, radar, item highlight | Needs [[world-to-screen]] + entity lists or vision models; audio-derived **sound ESP** such as [[nv-v2]] (ekknod; C/C++; hooking; cheat / game:csgo [Sound ESP]) uses hooked game audio instead of overlay draw paths (source: wiki/sources/descriptions/ekknod__nv_v2.md) | | Aim assistance | Memory aimbot, triggerbot, silent aim, no-recoil, physics-derived shot guides | Server-side replay targets memory-based paths; see [[ai-aimbot-detection]] for CV pipelines; billiard titles may expose trajectory from physics reads such as [[alaa-8ball-pool-source-exposed]] (source: wiki/sources/descriptions/gmh5225__Alaa-8ball-pool-source-exposed.md) | | AI visual | OBS/YOLO capture → HID output | May avoid process attach; capture, model, and input artifacts remain; CS:GO Lua OBS plugins such as [[g37obs]] (ekknod; OBS Studio plugin; cheat / game:csgo) sit in the same capture-based lane (source: wiki/sources/descriptions/ekknod__G37OBS.md) | | Movement | Speedhack, fly, noclip, bhop scripts | Often server-authoritative or physics-constrained | | Misc | Wallhack, skin changer, economy edits | Mix of client-only and networked state | ## Memory access - **User-mode** — `OpenProcess` + RPM/WPM, `NtReadVirtualMemory`, mapped sections; blocked by handle stripping on protected titles. Alternative user-mode cross-process read primitives without conventional `ReadProcessMemory` are collected in libraries such as [[creadmemory]] (gmh5225; multiple UM remote-read methods; base for external cheat memory access; cheat / RPM) (source: wiki/sources/descriptions/gmh5225__CReadMemory.md). Lightweight usermode PE dumpers such as [[dumpepe]] (OpenProcess/ReadProcessMemory; mapped-image `SizeOfImage` reconstruction; x86/x64; packed/protected EXE post-unpack dump; d35ha) sit in the same RPM lane for static RE after runtime unpack. (source: wiki/sources/descriptions/d35ha__DumpPE.md) NT syscall interception redirected to a kernel driver for handle-protection bypass such as [[intraceptor]] (crvvdev; C/C++; kernel driver + hooking; cheat / access) complements usermode elevation libs such as [[libelevate]]. (source: wiki/sources/descriptions/crvvdev__intraceptor.md) Named-pipe external memory toolkit such as [[nobastian-v2]] (ZoondEngine; C++ client/server; handle-state inspection before cross-process RPM/WPM; Elevating Handle By LSASS lane) (source: wiki/sources/descriptions/ZoondEngine__NoBastian_v2.md). Process-separated RPM/WPM proxy PoCs such as [[shirakumo]] (M3351AN; C++; named-pipe forwarding; read/write execution in separate process; optional DLL proxy deployment; experimental x64-only, not thread-safe; process-separated memory access for game tooling and evasion research; cheat / RPM for Windows) extend that lane. (source: wiki/sources/descriptions/M3351AN__Shirakumo.md) Handleless kernel syscall-wrapper research such as [[access]] (btbd; kernel `.data` syscall hook + transparent usermode DLL; `PROCESS_ALL_ACCESS` on protected processes without real handles; no SEH; Fortnite-tested; cheat / access) extends that process-protection bypass lane. (source: wiki/sources/descriptions/btbd__access.md) Updated fork [[access-updated]] (bromoket; Zydis pattern scan; Win10 1607+–Win11 24H2; `xKdEnumerateDebuggingDevices` `.data` hook; handleless KM process ops) extends that lane with version-independent offset discovery. (source: wiki/sources/descriptions/bromoket__access_updated.md) AVX2 VPGATHER + VEH stealth address-validity probes such as [[vpgather]] (Peribunt; pre-fault accessibility checks with reduced target memory side effects; external memory recon / AC bypass research) extend that user-mode lane beside conventional RPM. (source: wiki/sources/descriptions/Peribunt__VPGATHER.md) - **Kernel-mode** — driver RPM/WPM, MDL copy, `KeStackAttachProcess`, physical reads via vulnerable or research drivers ([[byovd]], [[ntmemory]]). C++ IOCTL kernel driver samples such as [[driver-physical-rw]] (Vekor64; phys/virt R/W, alloc/protect, module-base lookup, process helpers via DeviceIoControl; cheat-oriented driver communication study; Kernel-mode W/RPM for Windows) illustrate standalone KM memory primitives in that lane. (source: wiki/sources/descriptions/Vekor64__Driver-physical-rw.md) DIRECT_IO IRP kernel proxy samples such as [[usugumo]] (M3351AN; C/C++ + MASM; RPM/WPM, process/module lookup, mouse/keyboard injection via usermode client; anti-capture + communication examples; non-production PoC; Kernel-mode W/RPM/mouse_event for Windows) illustrate combined KM memory + input proxying beside standalone IOCTL primitives. (source: wiki/sources/descriptions/M3351AN__Usugumo.md) C++ kernel drivers with dxgkrnl hook context such as [[rigel-driver]] (Lynnette177; cross-process R/W, module-base/export lookup, protected-region writes, mapper-based load; README `[NtGdiDdDDINetDispGetNextChunkInfo]`; driver-assisted memory access research) sit in the same KM primitive lane. (source: wiki/sources/descriptions/Lynnette177__Rigel-Driver.md) Minimalist usermode BYOVD kernel driver mappers such as [[umap]] (btbd; C; physmem primitive → pool alloc, sections, relocs, imports, entry; no registry / standard load-path traces; stealthy manual-map detection research; cheat / EFI Manual Map) extend that lane. (source: wiki/sources/descriptions/btbd__umap.md) BTBD shellcode mappers such as [[smap]] (C; raw PIC shellcode → kernel pool + vulnerable-driver exec primitive; avoids PE manual-map signatures; Scatter Manual Map / detection evasion research) complement full PE mappers in the same lane. (source: wiki/sources/descriptions/btbd__smap.md) - **Below OS** — [[dma]] FPGA/PCIe, hypervisor introspection, EFI runtime before DSE, SMM cheat research such as [[smm]] (ekknod; C/C++; driver development / graphics / networking; cheat / EFI driver area) (source: wiki/sources/descriptions/ekknod__smm.md), SMM backdoor frameworks such as [[smm-infect]] (Oliver-1-1; firmware SMI handler + user-mode clients; UEFI/EDK2; BIOS patch workflows; cheat / SMM Driver) (source: wiki/sources/descriptions/Oliver-1-1__SmmInfect.md), external second machine. - **Unified transport libraries** — [[vm]] (ekknod; C/C++ `vm.h`; swap kernel EPROCESS walks, RPM/WPM, Linux `/proc/pid/mem`, [[pcileech]] VMMDLL/LeechCore DMA, KVM guest introspection, Proton, or EFI-variable kernel comms without changing game-facing logic; CR3 translation, PEB/LDR module walk, pattern scan) (source: wiki/sources/descriptions/ekknod__vm.md). Focused EFI **GetVariable** RPM research such as [[sub-get-variable]] (ekknod; C/C++; kernel-level driver development / graphics; cheat / EFI RPM; README `[EFI RPM]`) sits in the same below-OS RPM lane beside [[efi-monitor]] and [[sumap]]. (source: wiki/sources/descriptions/ekknod__SubGetVariable.md) Pattern scan → pointer chains → structure reconstruction is the usual external workflow; internals read game objects directly after injection. Title-specific Arma 3 external mission-variable tooling such as [[arma3-external-variable-manager]] (Skengdo; C++; dump/read/edit active mission variables including server economy fields; targets BE-disabled servers; online BE-protected use documented as requiring extra bypass; cheat / game:arma3 [External]) extends that external runtime-data manipulation lane. (source: wiki/sources/descriptions/Skengdo__arma3-external-variable-manager.md) ## AI visual pipeline Screen-capture → object detection → coordinate transform → mouse delta → execution. Single-machine setups run OBS (Game Capture injects a hook DLL; Window Capture uses DXGI duplication) plus a YOLO model on the same PC; dual-machine setups send frames over NDI/capture card and inject from a second box via [[hardware-input-injection]]. Read-only console-rig forensic attestation such as [[alibi]] (Sutaigne; PowerShell; capture-card stack / vision-aimbot / XIM·Cronus·ReaSnow inspection plus separate PC cheat/DMA/HWID-spoofer scan; offline text/HTML verdict reports for tournament/Discord review; accused-player defensive evidence) complements [[ai-aimbot-detection]] server-side signals. (source: wiki/sources/descriptions/Sutaigne__alibi.md) Training: collect screenshots → label (YOLO txt) → Ultralytics train → export ONNX/TensorRT; measure latency on the exact capture path, model, and hardware. Distributed-GPU deep learning framework [[ark]] (gmh5225; optimized multi-GPU training; cheat / Tool) supports larger-scale offensive/defensive model work beside single-machine Ultralytics flows. (source: wiki/sources/descriptions/gmh5225__Ark.md) Defensive counterpart: [[ai-aimbot-detection]]. Corpus: [[pine]], [[maplestory-worlds-automation]], [[maplestory-detection-sample-generator]] (gmh5225; synthetic MapleStory cheat-detection / object-detection training samples in multiple formats; anti-cheat development) (source: wiki/sources/descriptions/gmh5225__MapleStoryDetectionSampleGenerator.md), [[yolov5-pubg]] (PUBG YOLOv5; Python; cheat / triggerbot & aimbot) (source: wiki/sources/descriptions/lkeai2007__yolov5_PUBG.md), [[pubg-ai-yolov4]] (PUBG YOLOv4/Darknet; screenshot-trained; YOLOv4-tiny/YOLOv7 configs; label tools; image/video detection; dqforgive-sudo) (source: wiki/sources/descriptions/dqforgive-sudo__pubg-ai-yolov4.md), [[camera-triggerbot]] (movement/color around crosshair; cheat / triggerbot & aimbot) (source: wiki/sources/descriptions/lehmenkuehler__camera-triggerbot.md), [[opencv-smart-aimbot]] (OpenCV + triggerbot; C++; cheat / triggerbot & aimbot; gmh5225) (source: wiki/sources/descriptions/gmh5225__OpenCV-SmartAimBot.md), [[ai-fps-b00m-h3adsh0t]] (Python/C++; external screen capture + YOLO player detection + mouse aim; cheat / Neural Network; gmh5225) (source: wiki/sources/descriptions/gmh5225__AI-FPS-b00m-h3adsh0t.md), [[ai-aimbot]] (RootKit-Org; Python; Conda-managed YOLOv5 screen-capture aimbot; per-game Fortnite/Rust models; configurable detection sensitivity + aim parameters; cheat / Machine Learning YOLOv5) (source: wiki/sources/descriptions/RootKit-Org__AI-Aimbot.md), [[gan-aimbots]] (Miffyli; Python; ViZDoom FPS scenarios; ML aimbot data collection, GAN training/evaluation, classifier plots, experiment orchestration; reproduces published GAN-aimbot pipelines with shared group parameters; offensive + defensive ML research; cheat / Machine Learning) (source: wiki/sources/descriptions/Miffyli__gan-aimbots.md), [[rookieai-yolov8]] (Passer1072; Python; YOLOv8 Ultralytics real-time aim-assist; multi-process capture/inference; PyTorch/TensorRT/ONNX; Win32/Logitech/kmNet input backends; configurable aim/trigger; cheat / Machine Learning YOLOv8) (source: wiki/sources/descriptions/Passer1072__RookieAI_yolov8.md), [[auto-aim]] (Fragmentaim; C++; DXGI Desktop Duplication + YOLO ONNX Runtime/TensorRT + OpenCV; driver-level mouse simulation; real-time AI aiming assistant core for CV game-automation research; DXGI + TensorRT + driver-level input) (source: wiki/sources/descriptions/Fragmentaim__Auto_aim.md), [[sf-trt-61]] (AMXZzzz; C++; DXGI capture + OpenCV + ImGui config; TensorRT and DirectML/ONNX inference; YOLO-style models; PID/FOV movement + trigger logic + multiple input injection backends; AI-assisted game automation + AC evasion research; cheat / Machine Learning YOLO) (source: wiki/sources/descriptions/AMXZzzz__SF_TRT_61.md), [[nuremx]] (Python; Apex Legends YOLOv5 screen-capture enemy detection + overlay/aim; trained weights; Windows/Linux workflows; no process memory hooking; cheat / [AI]; Zurek0x) (source: wiki/sources/descriptions/Zurek0x__NuremX.md), [[clickpic]] (screen pixel color detection + auto-click; OpenCV + triggerbot; gmh5225) (source: wiki/sources/descriptions/gmh5225__ClickPic.md), [[rust-auto-weapon-detection-opencv-example]] (Facepunch Rust; C++; OpenCV color filtering + weapon index mapping; screen-based state recognition; YouNeverKnow00) (source: wiki/sources/descriptions/YouNeverKnow00__Rust-Auto-Weapon-Detection-OpenCV-Example.md), [[overwatch2-colorbot-cheats]] (Overwatch 2 Python colorbot + Arduino Leonardo serial HID; purple enemy-outline pixel detection; cheat / game:overwatch2) (source: wiki/sources/descriptions/gmh5225__Overwatch2-colorbot-Cheats.md), [[human-mouse-movement]], [[waldo]]; Windows capture library [[screencapture]] (DXGI Desktop Duplication; C++/C#; README `[DX11]`) (source: wiki/sources/descriptions/kirides__screencapture.md); GDI capture benchmarks such as [[getpixel-vs-bitblt-getdibits]] (PierreCiholas; C++; GetPixel vs BitBlt+GetDIBits switchable Win32 capture; BitBlt bulk read orders of magnitude faster than per-pixel polling; external frame capture for AI visual pipelines and tooling; README `[GetPixel]`) (source: wiki/sources/descriptions/PierreCiholas__GetPixel-vs-BitBlt_GetDIBits.md); curated game-AI paper bibliography [[gameai-paper-list]] (zh; modding/tooling research background). (source: wiki/sources/skills/game-hacking.md) (source: wiki/sources/descriptions/ls361664056__GameAI-paper-list.md) ## Input simulation Software: `SendInput`, `mouse_event`, RawInput hooks, MouClass filter drivers ([[kernel-mouse]]). WDK-style relative-movement driver skeletons such as [[kernel-move-mouse]] (BuddyBoi; C++; version checks + per-build kernel offset handling; intentionally limited low-level input demo—not robust evasion; driver development / game input control learning) sit in the same ring-0 mouse lane. (source: wiki/sources/descriptions/BuddyBoi__KernelMoveMouse.md) Script automation platforms such as [[autohotkey-l]] (Lexikos; open-source Windows hotkey/macro language + C/C++ interpreter; self-contained script runtime + experimental DLL embed; task automation and game-adjacent macro experimentation / defensive script-behavior analysis) underpin script-based externals like [[csgo-external-ahk-hack]]. (source: wiki/sources/descriptions/Lexikos__AutoHotkey_L.md) Multi-backend driver input libraries such as [[ib-input-simulator]] (Chaoses-Ib; C/C++ + AHK; unified init/send across Logitech software, Razer Synapse, MouClassInputInjection, and DD virtual devices; automation / game tooling / AC evasion research when standard input APIs are insufficient) extend that script and vendor-driver lane. (source: wiki/sources/descriptions/Chaoses-Ib__IbInputSimulator.md) MouClass ServiceCallback trick samples such as [[mouseclassservicecallbacktrick]] (ekknod; C; cheat / triggerbot & aimbot; kernel mouse-class callback injection) sit in the same ring-0 input lane. (source: wiki/sources/descriptions/ekknod__MouseClassServiceCallbackTrick.md) Meme-variant PoCs such as [[mouseclassservicecallbackmeme]] (ekknod; C; cheat / triggerbot & aimbot; MouseClassServiceCallback meme) complement that lane. (source: wiki/sources/descriptions/ekknod__MouseClassServiceCallbackMeme.md) MouHid **CONNECT_DATA** hook research such as [[mouhid-input-hook]] (changeofpace; C; kernel driver; filter/modify/inject mouse packets via MouHid ClassService without filter-device attachment; PatchGuard-safe; cheat / triggerbot & aimbot input-path study) extends that ring-0 mouse lane. (source: wiki/sources/descriptions/changeofpace__MouHidInputHook.md) Win32k syscall-path reference such as [[ntuserinjectmouseinput-syscall]] (gmh5225; user-mode **NtUserInjectMouseInput** through win32k; preserved reference for input-injection / triggerbot detection research) sits in the same user-mode input lane. (source: wiki/sources/descriptions/gmh5225__NtUserInjectMouseInput-syscall.md) C++ implementation PoCs such as [[mouse-input-injection]] (Zpes; custom input structures + interface layer; M3351AN; header-only **`mouse_event`-like** wrappers via single include; both use undocumented **NtUserInjectMouseInput**; automation / input emulation / cheat-adjacent research) extend that lane. (source: wiki/sources/descriptions/Zpes__mouse-input-injection.md) (source: wiki/sources/descriptions/M3351AN__mouse_input_injection.md) Kernel keyboard injection PoCs such as [[karlann]] (`Kbd.c` simulation + WSK network from ring 0; cheat / Keyboard) sit in the same ring-0 input lane. (source: wiki/sources/descriptions/hkx3upper__Karlann.md) Combined keyboard+mouse class-service injection samples such as [[directinput]] (adspro15; C/C++ WDK driver + UM module; discover kbd/mou class stacks, capture service callbacks, inject without `SendInput`; game automation / AC input-path research) extend that lane. (source: wiki/sources/descriptions/adspro15__DirectInput.md) Title-specific rhythm-game anti-cheat bypass samples such as [[osu-aac]] (gmh5225; examines/circumvents osu! client AC for auto-play bots, input simulation, time manipulation, and memory modification; Anti Anti Cheat; cheat / game:osu) sit in the input-simulation / bot-detection evasion lane beside the official [[osu]] client. (source: wiki/sources/descriptions/gmh5225__osu-aac.md) External osu! samples such as [[maniac]] (gmh5225; out-of-process; cheat / game:osu [External]; start osu! before use; avoid `-debug` unless troubleshooting) sit in the same rhythm-game offensive lane. (source: wiki/sources/descriptions/gmh5225__maniac.md) Geometry Dash internal samples such as [[gd-internal]] (gmh5225; in-process ImGui menu; Comfortaa font from `menu.cpp`; signatures in `hookmgr.cpp`; cheat / game:geometry dash) extend that lane with signature-driven internal hooking. (source: wiki/sources/descriptions/gmh5225__gd-internal.md) DualShock 4 HID protocol scripts such as [[ds4-tools]] (gmh5225; read input, LED, touchpad, motion, rumble over HID; play + reverse-engineer DS4 on PC; input-device research) sit in the peripheral controller / HID lane beside [[hardware-input-injection]]. (source: wiki/sources/descriptions/gmh5225__ds4-tools.md) Hardware/filter: KMBox Net/B Pro, Arduino/Teensy HID, Logitech G HUB/LGS internal APIs (version-dependent), Logitech driver/CVE research such as [[logitech-cve]] spans ekknod C/C++ driver-development PoCs (cheat / triggerbot & aimbot) and BatogiX Rust typed libraries over Logitech virtual driver IOCTL handles (input-emulation research, automation, vulnerable-driver attack-surface analysis) (source: wiki/sources/descriptions/ekknod__logitech-cve.md) (source: wiki/sources/descriptions/BatogiX__logitech-cve.md), FACEIT-oriented stacks such as [[ec-pro-lan]] (ekknod; C++/C; anti-cheat research / driver development / OpenGL; cheat / explore anticheat system:faceit; Win10 1607 LTSB + Ryzen B350–B450 + Logitech G HUB) (source: wiki/sources/descriptions/ekknod__EC_PRO-LAN.md), interception.sys, HDMI KVM middlemen—see [[hardware-input-injection]] for detection-surface ordering. Parametric smoothing (Bézier, jitter, reaction delay) does not establish human equivalence. Python WindMouse path generators such as [[windmouse]] (AsfhtgkDavid; WindMouse algorithm; curved non-linear trajectories with variable speed; AutoHotkey/PyAutoGUI backends; movement-physics tuning; UI automation / game-scripting bot-behavior evasion research) extend that user-mode script lane. (source: wiki/sources/descriptions/AsfhtgkDavid__windmouse.md) Defensive input-validation PoCs such as [[mousedetection]] (Oliver-1-1; Windows C++; monitors movement behavior to distinguish software-generated vs hardware mouse motion; includes simulated motion APIs for testing; README [Mouse]) sit opposite the offensive injection lane. (source: wiki/sources/descriptions/Oliver-1-1__MouseDetection.md) ETW USB-telemetry keyboard integrity PoCs such as [[etw-keyboard-detection]] (Oliver-1-1; C++; ETW traces distinguish physical vs emulated key presses; manual setup + keyboard tuning; README [ETW]) extend that defensive lane. (source: wiki/sources/descriptions/Oliver-1-1__EtwKeyboardDetection.md) ## Overlays & rendering Present hooks ([[present-hook]]): D3D9/11/12, Vulkan `vkQueuePresentKHR`, OpenGL `wglSwapBuffers`; alternatives include DWM, transparent external windows, Steam/NVIDIA/Discord overlay hijacks ([[steam-overlay-x64]], [[steam-hook-render-poc]], [[game-overlay-ui-hook]], [[strongsteam]], [[mwclap]], [[nvidia-overlay]], [[nvidia-overlay-hijack]], [[d3doverlay-nvidia-hijack]], [[nvidia-overlay-renderer]], [[discord-overlay-hook]], [[overlaycord]]). C++ Steam overlay VGUI UI samples such as [[game-overlay-ui-hook]] (Unkn0wnH4ck3r; `PaintTraverse` hook + shared-memory render data; overlay-hook / AC research; README `[Steam]`) extend the Steam hijack lane beside render-pipeline PoCs. (source: wiki/sources/descriptions/Unkn0wnH4ck3r__GameOverlayUIHook.md) Kernel-assisted Steam overlay GDI samples such as [[strongsteam]] (Splitx12; C++/ASM; GDI draw through Steam-overlay-style presentation; cheat UI / overlay rendering research; README `[GDI + Steam]`) sit in that lane beside user-mode hijacks. (source: wiki/sources/descriptions/Splitx12__StrongSteam.md) NVIDIA GeForce Experience overlay hijack samples such as [[nvidia-overlay-hijack]] (Calvin-LLC; C++ DirectX 11 + ImGui custom menu through NVIDIA in-game overlay path; helper drawing, menu animation, input handling, x86/x64; practical integration—not stealth; explicit anti-cheat detection risk; overlay prototyping and cheat UI research; README `[Hijack Nvidia]`) sit in the NVIDIA hijack lane beside [[nvidia-overlay-renderer]]. (source: wiki/sources/descriptions/Calvin-LLC__nvidia-overlay-hijack.md) Direct3D9 GeForce overlay framework samples such as [[d3doverlay-nvidia-hijack]] (Brattlof; overlay HWND discovery, click-through, per-frame ImGui + draw helpers; external tooling scaffold; README `[Hijack Nvidia]`) extend that lane beside DX11 hijacks. (source: wiki/sources/descriptions/Brattlof__D3DOverlay-Nvidia-Hijack.md) D3D9 hook samples such as [[nz-perspective]] (C/C++; hooking; cheat / game:tgame; gmh5225) sit in the legacy DirectX Present/EndScene lane. (source: wiki/sources/descriptions/gmh5225__nzPerspective.md) UI substrate: [[imgui]] and extensions ([[imgui-club]]); Rust egui-on-D3D11 Present-hook libraries such as [[egui-d3d11]] (gmh5225; HLSL textured triangles + Win32 input; README `[Menu]`) offer an immediate-mode alternative for DX11 internal menus. (source: wiki/sources/descriptions/gmh5225__egui-d3d11.md) External SDL/OpenGL ImGui menu templates such as [[external-imgui-cheat-menu-example-2023]] (gmh5225; hooks `SDL_GL_SwapWindow` with SDL+OpenGL ImGui backends; GL context management to avoid flicker; README `[External Imgui Menu]`) illustrate swap-path external overlay menus beside layered-window externals. (source: wiki/sources/descriptions/gmh5225__External-imgui-Cheat-Menu-Example-2023.md) Standalone D3D11 ImGui frameworks such as [[imgui-standalone]] (adamhlt; own rendering window as EXE/DLL; game tooling and external menu prototyping when targets lack hookable Present paths) complement swap-hook and layered external menu templates. (source: wiki/sources/descriptions/adamhlt__ImGui-Standalone.md) DirectX9 external overlay templates such as [[imgui-external-overlay]] (3r4y; C++ Visual Studio; ready-made overlay window + rendering flow; ImGui + DirectX SDK integration notes; ESP/HUD/diagnostics prototyping; README `[imgui overlay]`) extend that lane with a DX9-focused external scaffold beside D3D11 standalone and layered-window samples. (source: wiki/sources/descriptions/3r4y__imgui-external-overlay.md) Modular SFML-backed ImGui cheat-menu starter templates such as [[imgui-advanced-cheat-menu]] (RequestFX; C++; ESP, aim assist, recoil control, HUD modules, hotkey settings panels; custom widgets + in-memory fonts; README `[Imgui Menu]`) illustrate organized feature-module menu scaffolding beside standalone D3D11 and SDL/OpenGL externals. (source: wiki/sources/descriptions/RequestFX__ImGUI-Advanced-Cheat-Menu.md) External Win32/DX11 transparent multi-window overlay frameworks such as [[imoverlay-dx11]] (rabbanyhmm; C++20; two drop-in files; layered HWNDs + DXGI swapchains + ImGui; smart click-through hit testing, parent-child hierarchy, multi-monitor anchoring; optional CFG/ASLR hardening) illustrate hardware-accelerated external overlay UI without Present hooks. (source: wiki/sources/descriptions/rabbanyhmm__ImOverlay-DX11.md) Win32 GDI screen-duplication PoCs such as [[not-an-overlay]] (PierreCiholas; C++; regular window instead of transparent always-on-top overlay; `BitBlt`/`StretchBlt` clones screen regions; external ESP rendering / AC overlay-visibility research; README `[Duplicating with GDI]`) explore less conspicuous external draw surfaces beside classic layered HWNDs. (source: wiki/sources/descriptions/PierreCiholas__NotAnOverlay.md) Basic Win32 topmost-window detection utilities such as [[topmost-detection]] (Oliver-1-1; C++; enumerate visible windows; flag `WS_EX_TOPMOST` always-on-top overlays; companion console marks self topmost via `SetWindowPos` for testing; AC prototyping / overlay-detection experiments) complement external overlay heuristics beside [[window-hijack-overlay]]. (source: wiki/sources/descriptions/Oliver-1-1__TOPMOST-Detection.md) Kernel-assisted overlay window-handle hiding PoCs such as [[kernel-overlay-hider]] (J0xna; Windows kernel driver + user-mode tests; DKOM-style win32k TAGWND manipulation to omit HWNDs from enumeration; DirectX overlay trigger examples; overlay visibility / AC evasion research) extend that defensive overlay-enumeration lane from the attacker side. (source: wiki/sources/descriptions/J0xna__Kernel-Overlay-Hider.md) Android external ImGui mod-menu scaffolds such as [[external-imgui-android]] (gmh5225; OpenGL ES 3.0 overlay outside the game process via SurfaceView + NDK JNI; Unreal memory tools; README `[External Imgui Menu for Android]`) extend that lane to mobile GLES externals. (source: wiki/sources/descriptions/gmh5225__External-ImGui-Android.md) In-process Android native C++ ImGui mod-menu templates such as [[android-mod-menu-imgui]] (gmh5225; OpenGL ES overlay + touch/JNI game hooks; configurable menu layouts/toggles; README `[Imgui For Unity]`) sit beside [[imgui-native-modmenu]] and Unity-on-Android menus. (source: wiki/sources/descriptions/gmh5225__Android-Mod-Menu-ImGui.md) Java UI + native hook floating-menu scaffolds such as [[android-mod-menu]] (LGLTeam; IL2CPP + native Android; KittyMemory / MSHook / And64InlineHook; ARMv7/ARM64; cheat / Floating mod menu for Android) sit beside ImGui and Kotlin overlay templates. (source: wiki/sources/descriptions/LGLTeam__Android-Mod-Menu.md) C++20 Android IL2CPP name-based modding libraries such as [[bnm-android]] (ByNameModding; runtime class/method/field APIs + patching; hook-framework integration; cheat / `[Modding il2cpp games]`) complement overlay scaffolds when building reusable native Unity mod modules. (source: wiki/sources/descriptions/ByNameModding__BNM-Android.md) Multi-API proxy-DLL overlay/plugin frameworks such as [[gameplug]] (gameplug-labs; C++23; D3D9–12 + Vulkan via dinput8/version/winmm proxies; unified plugin system with shared ImGui context; MinHook/SafetyHook; D3D9 texture replace/dump + resolution override; x86/x64; modding / DirectX Hook) sit in the same internal Present-hook overlay lane. (source: wiki/sources/descriptions/gameplug-labs__gameplug.md) Windows internal game frameworks such as [[5paceman-nightshade]] (5paceman; C++; D3D render hooks, DirectInput interception, pattern scan, memory patch, shellcode remote exec; module manager with keybind hot-toggle; inject tool / RE + cheat or AC research on user-mode internals) extend that modular in-process lane. (source: wiki/sources/descriptions/5paceman__nightshade.md) ## Stack spoofing & driver I/O [[stack-spoofing]] — return-address replacement and synthetic frames to evade `RtlWalkFrameChain` / thread stack inspection; must pass `.pdata` / `RtlVirtualUnwind` checks. WithSecure Labs syscall stack-spoof PoCs such as [[callstackspoofer]] (C++; spoof arbitrary call stacks on Windows syscalls; selectable stack profiles; telemetry/debugger validation; EDR/stack-detection research) (source: wiki/sources/descriptions/WithSecureLabs__CallStackSpoofer.md), reusable return-address spoofing libraries such as [[spoof-stack-safecall]] (gmh5225/SafeCall; fake legitimate module return addresses before API calls; EDR/AC stack-walk evasion) (source: wiki/sources/descriptions/gmh5225__spoof-stack-SafeCall.md), x64 assembly-trampoline implementations such as [[callstackspoofer-2]] (gmh5225; custom ASM stubs forge return addresses and clean stack frames for EDR/AC stack-walk evasion; MSVC inline ASM) (source: wiki/sources/descriptions/gmh5225__CallStackSpoofer-2.md), C++ user/kernel call-stack spoofing toolkits such as [[callstack-spoofer]] (Barracudach; macros/templates forge frames + proxy calls via generated shellcode; x64; compiler/CET constraints; anti-analysis / AC stack-walk evasion research) (source: wiki/sources/descriptions/Barracudach__CallStack-Spoofer.md), minimal x64 return-address spoofing without exception handlers such as [[ret-spoofing]] (Peribunt; C++ + ASM stubs; low-overhead fake return targets; Windows x64 nonvolatile-register assumptions; Cheat Spoof Stack) (source: wiki/sources/descriptions/Peribunt__Ret-Spoofing.md), exception-handler-based x64 return-address spoofing such as [[exception-ret-spoofing]] (Peribunt; C++ PoC; spoofed call paths via exception flow + gadget chaining; calling-convention reliability/performance tradeoffs; anti-cheat evasion / control-flow research) (source: wiki/sources/descriptions/Peribunt__Exception-Ret-Spoofing.md), x86 (32-bit) return-address spoofing such as [[x86-ret-spoof]] (danielkrupinski; header-only C++; `JMP DWORD PTR [EBX]` gadget in target module; stdcall/cdecl/fastcall/thiscall; Cheat Spoof Stack) (source: wiki/sources/descriptions/danielkrupinski__x86RetSpoof.md), compact x64 WinAPI return-address spoofing PoCs such as [[spoof-ret-addr]] (HulkOperator; C + NASM; stack manipulation to spoof WinAPI return addresses; call-stack obfuscation education; Cheat Spoof Stack) (source: wiki/sources/descriptions/HulkOperator__Spoof-RetAddr.md), invoker-integrated return-address spoofing such as [[return-address-spoofing]] (Apex-master; C++ templates + x64 ASM stubs; native function invocation bypass; lightweight invoker-pipeline integration; anti-detection evasion research; Cheat Spoof Stack) (source: wiki/sources/descriptions/Apex-master__return-address-spoofing.md), macro helpers such as [[stack-spoofer-macro]] (gmh5225; easy-to-use C/C++ stack-spoofing macros) (source: wiki/sources/descriptions/gmh5225__StackSpoofer_Macro.md), compile-time stack-trace helpers such as [[stb-gmh5225]] (gmh5225/STB; IDA-style string-to-array for stack trace building / spoofing research) (source: wiki/sources/descriptions/gmh5225__STB.md), thread call-stack spoof PoCs such as [[thread-stack-spoofer]] (mgeeky; in-memory evasion to bypass thread-based memory examination and hide in-process shellcode) (source: wiki/sources/descriptions/mgeeky__ThreadStackSpoofer.md), [[silent-moonwalk]] (klezVirus; TRUE call-stack spoofer from joint stack-spoofing research) (source: wiki/sources/descriptions/klezVirus__SilentMoonwalk.md), Rust call-stack spoofing crates such as [[unwinder]] (Kudaes; SilentMoonWalk-inspired; macros for regular functions + indirect syscalls with stable spoofed traces; argument/return capture; chained spoof without linear stack growth; Rust + ASM; Cheat Spoof Stack / thread stack spoofing) (source: wiki/sources/descriptions/Kudaes__Unwinder.md), and Nim call-stack spoof samples such as [[nimic-stack]] (frkngksl; pure Nim; WithSecure Labs PoC lineage; mimic legitimate program stacks) (source: wiki/sources/descriptions/frkngksl__NimicStack.md), CET-compatible reflective DLL loaders such as [[bingusldr]] (Sizeable-Bingus; Crystal Palace; mingw-w64 C; EAF-compatible API resolution; heap/image masking; Cobalt Strike `.cna` + LinkSpec; PIC DLL wrap; reflective loading / call-stack evasion research) (source: wiki/sources/descriptions/Sizeable-Bingus__BingusLdr.md), Go + assembly reflective PE loaders such as [[amber]] (EgeBalci; EXE/DLL/SYS in-memory map; payload encoding, API resolution obfuscation, staged delivery, memory cleanup; reflective loading / scanner-evasion research) (source: wiki/sources/descriptions/EgeBalci__amber.md), Cobalt Strike Beacon reflective loaders such as [[kayn-strike]] (Cracked5pider; C + ASM; thread start-address spoof + post-entry loader memory cleanup; Aggressor script for stageless builds; in-memory payload execution / detection-evasion research; Cheat Spoof Thread Start Address) (source: wiki/sources/descriptions/Cracked5pider__KaynStrike.md), HWBP-based call-stack spoofing such as [[hw-call-stack]] (fortra; debug-register breakpoints forge stacks on syscalls and API calls; C/C++; Cheat Spoof Stack / HWBP) (source: wiki/sources/descriptions/fortra__hw-call-stack.md), and custom-stack-call API proxies such as [[proxy-api-call]] (evilashz; C/C++; proxy API calls through fabricated stacks; Cheat Spoof Stack / Custom stack call) (source: wiki/sources/descriptions/evilashz__ProxyAPICall.md) sit in the same `Cheat > Spoof Stack` lane; [[byoud]] (klezVirus; x64 unwind-metadata manipulation to hide call-chain segments from debuggers/EDRs) extends that lane with the opposite approach from classic frame spoofing. (source: wiki/sources/descriptions/klezVirus__BYOUD.md) Driver communication spans IOCTL, data-pointer swaps on win32k/nt calls ([[poseidon]], [[read-write-driver]], [[data-ptr-swap]]), shared sections, callbacks, pipes, WSK ([[ksocket]]), and network-socket KM RPM channels such as [[rw-socket-driver]] (adrianyy; manual-map friendly; protected-process memory R/W over kernel sockets; external cheat comm without in-process hooks; cheat / Socket)—40+ README entries under `Cheat > Driver Communication`. (source: wiki/sources/descriptions/adrianyy__rw_socket_driver.md) dxgkrnl export-hook driver cheat samples such as [[nulldriver-cheat]] (gmh5225; Win11 Null-pattern reimplementation; structured kernel comms without device IOCTLs; optional GDI overlay helpers from win32k) extend that lane beside composition-surface hooks. (source: wiki/sources/descriptions/gmh5225__NullDriverCheat.md) ## EFI/UEFI threat boundaries Classify boot-component tampering, runtime firmware behavior, and device-originated memory access as **separate capabilities**. Record boot stage, affected component, required privilege or trust failure, persistence evidence, and observation point—runtime residency alone does not prove persistence across reboot. (source: wiki/sources/skills/game-hacking.md) Secure Boot, Windows startup integrity, and measured-boot appraisal address different trust-chain links. Claims that code runs before the OS, is test-signed, or uses a firmware interface do not establish acceptance by the active policy; preserve firmware/build identity, revocation policy, and available measurement evidence. Microsoft Kernel DMA Protection and firmware responsibilities during boot are **separate stages**—do not extend a runtime DMA policy conclusion backward through the boot process. See [[overviews/windows-kernel]], [[overviews/dma-attack]], [[hvci]]. Sources reviewed: 2026-09-09. ## HWID spoofing Account/device bans fingerprint disk serial, NIC MAC, SMBIOS fields, GPU/monitor identifiers, volume serial, and TPM EK. Techniques include filter-driver IOCTL interception, registry cache patching, raw SMBIOS edits, NDIS MAC replacement, and coordinated multi-identifier spoofers. See [[hwid-spoofing]] for targets, techniques, and defensive limits—identifier substitution alone does not establish cheat attribution. (source: wiki/sources/skills/game-hacking.md) ## Engine-specific surfaces | Engine | Entry points | Wiki | |--------|--------------|------| | Unreal | GObjects/GNames, UWorld, SDK dumps | [[unreal-object-model]] | | Unity IL2CPP | `GameAssembly` + metadata, native hooks | [[il2cpp]] | | Unity Mono | `Assembly-CSharp`, JIT hooks | [[il2cpp]] (contrast Mono path) | | Source | ClientClass/RecvTable, ConVars | [[source-netvars]] | C++ Unity cheat frameworks such as [[unityresolve-hpp]] (rendering / physics / modding; cheat / game engine explorer:Unity) sit in the Unity offensive lane beside [[il2cpp]] resolvers and runtime inspectors. (source: wiki/sources/descriptions/issuimo__UnityResolve.hpp.md) C# external Unity IL2CPP trainers such as [[taskbarhero-bot]] (TaskbarHero; WPF dashboard; batch memory reads, AOB scan, ACTk bypass, automation bot; cheat / game engine explorer:Unity) sit in the external trainer lane beside [[unity202x-externalresolve]]. (source: wiki/sources/descriptions/matheusbranhann__taskbarhero-bot.md) C++ external IL2CPP runtime resolvers such as [[il2cpp-resolver-external]] (extremeblackliu; `global-metadata.dat` + IL2CPP binary parse via RPM; class/method/field/type resolution without injection; cheat / game engine explorer:Unity) sit in that same no-inject external lane beside [[mono-external-lib]]. (source: wiki/sources/descriptions/extremeblackliu__IL2CPP_Resolver_External.md) C++ external IL2CPP metadata frameworks such as [[external-il2cpp]] (Compiled-Code; WinAPI + RPM; assembly/image/class/field enumeration by name; static/instance field address resolution from `GameAssembly` offsets; [Il2Cpp]) extend that lane for Unity IL2CPP RE and external tooling. (source: wiki/sources/descriptions/Compiled-Code__external-il2cpp.md) External Unity IL2CPP **NARAKA: BLADEPOINT** samples such as [[naraka-hack]] (Rythorndoran; C++; maintained offset tables; entity/player state RPM; ESP boxes/names via NVIDIA overlay; hotkey menu + combat-assist automation; cheat-dev / runtime-structure RE) sit in that external Unity lane beside [[dummy-dlls-naraka-1-9-21]] metadata scaffolding. (source: wiki/sources/descriptions/Rythorndoran__Naraka-Hack.md) Unity IL2CPP internal samples such as [[goose-goose-duck-hack]] (Goose Goose Duck; IL2CPP runtime manipulation + ImGui overlay; dumped Assembly-CSharp + Anti-Cheat Toolkit bypasses for ESP/role reveal; gmh5225) sit in the in-process Unity lane beside [[rust-rustinternal]]. (source: wiki/sources/descriptions/gmh5225__Goose_Goose_Duck_Hack.md) The canonical [[bepinex]] plugin/modding framework (BepInEx; C# chainloading, preloading, logging, configuration, and Harmony patching/detour tooling for Unity Mono, IL2CPP, and other .NET games on Windows/Linux/macOS; plugin/modding framework) anchors that in-process Unity loader lane for mod authors and RE communities. (source: wiki/sources/descriptions/BepInEx__BepInEx.md) Reusable BepInEx IL2CPP mod-menu base scaffolds such as [[bepinex-il2cppbase]] (gmh5225; C# rendering/audio/physics hooks; cheat / `[IL2CPP Menu]`) sit downstream of that host upstream of title-specific Unity IL2CPP menu samples in that in-process lane. (source: wiki/sources/descriptions/gmh5225__BepInEx-IL2CPPBase.md) Official BepInEx IL2CPP utility plugin packs such as [[bepinex-utility-il2cpp]] (BepInEx; fullscreen toggle, window resize, graphics settings, mute-in-background, Message Center, ByteFiddler, ProcessAffinityOverride; runtime QoL tweaks) sit beside those mod-menu scaffolds in that in-process Unity lane. (source: wiki/sources/descriptions/BepInEx__BepInEx.Utility.IL2CPP.md) Devour co-op horror IL2CPP mod-menu samples such as [[devour-menu]] (toggleable gameplay mods via ImGui overlay injected in-process; cheat / `[Menu]`; gmh5225) extend that in-process Unity lane on horror co-op titles. (source: wiki/sources/descriptions/gmh5225__DevourMenu.md) Sibling Devour client memory-modification samples such as [[devour-client]] (Unity QoL/cheat features via in-process memory manipulation; gmh5225) complement that overlay mod-menu pattern on the same co-op horror title. (source: wiki/sources/descriptions/gmh5225__DevourClient.md) Title-specific BLOCKPOST FPS IL2CPP cheat samples such as [[blockpost-cheat]] (gmh5225; C/C++; Unity IL2CPP analysis + native hooking; cheat / game:blockpost) extend that in-process Unity lane on browser/standalone FPS titles. (source: wiki/sources/descriptions/gmh5225__BLOCKPOST-Cheat.md) Gunfire Reborn Unity IL2CPP runtime module-injection samples such as [[autogunfire-reborn]] (gmh5225; C#; inject Unity modules at runtime; cheat / game:gunfire reborn) extend that in-process Unity lane on roguelike-FPS titles. (source: wiki/sources/descriptions/gmh5225__AutoGunfireReborn.md) Unispect-style Mono dump over external DMA such as [[unispect-dma-plugin]] (Razchek fork fix; Memory Plugin dispose after dump; cheat / game engine explorer:Unity [DMA]) extends that lane below the OS beside [[cheat-engine-dma-plugin]]. (source: wiki/sources/descriptions/gmh5225__unispectDMAPlugin.md) Compact Unity asset/code extraction guides such as [[unity-game-hacking]] (asset pipelines / modding; cheat / guide) sit in the Unity guide lane beside runtime explorers. (source: wiki/sources/descriptions/imadr__Unity-game-hacking.md) ## Development workflows **External** — pattern scan → RPM in separate process → overlay or input inject. General-purpose C++ external cheat scaffolds such as [[osmium]] (cragson; cheat / guide; offensive technique study—not a best-practices reference) illustrate that workflow for researchers. (source: wiki/sources/descriptions/cragson__osmium.md) **Internal** — inject → hook render path → direct object access in-process. Pair either with SDK codegen ([[luagenny]], [[source2gen]]) and offset dumps that rot per patch. Multi-engine internal cheat scaffolds such as [[omegaware-framework]] (Omega172; Xmake proxy + internal DLL; Unity/Unreal/generic DirectX engine profiles; auto D3D11/D3D12 detection; graphics pipeline + WndProc hooks; ImGui overlay/dev console; plugin features with JSON config and compile-time CRC64 string hashing; cheat framework) illustrate that workflow without per-title boilerplate. (source: wiki/sources/descriptions/Omega172__OmegaWare-Framework.md) Modular C++ cheat foundations such as [[clean-cheat]] (CorrM; data providers, feature modules, runners, shared state; sample projects incl. Unreal internal example; maintainable cheat prototype architecture; cheat / Game cheat base) emphasize layered internal scaffolding over monolithic feature code. (source: wiki/sources/descriptions/CorrM__CleanCheat.md) ## Escalation model 1. **User-mode** — RPM/WPM, DLL/shellcode injection, graphics/input hooks; usermode memory-analysis libs such as [[umpmlib]] (C/C++; cheat / RPM lane) (source: wiki/sources/descriptions/waryas__UMPMLib.md); related RPM / memory-analysis samples such as [[eupmaccess]] (C/C++; cheat / RPM) (source: wiki/sources/descriptions/waryas__EUPMAccess.md); cross-platform memory/hook libraries such as [[libmem]] (Win/Linux/FreeBSD; C/C++ + Rust/Python/Lua; scan / VMT hook / Capstone·Keystone) (source: wiki/sources/descriptions/rdbo__libmem.md); Windows memory-hacking libraries such as [[blackbone]] (DarthTon; C++; x86/x64 process manipulation; alloc/R/W/protect, module enum, manual PE map, WOW64 thread control; user-mode + kernel-related APIs; RE / game-security / AC tooling experiments) (source: wiki/sources/descriptions/DarthTon__Blackbone.md); header-only C++ Windows RPM helpers such as [[remem]] (0xenia; typed R/W with pointer validation, optional exception handling/logging, pattern scan, calling-convention call wrappers; RE tools / game memory research; cheat / RPM for Windows) (source: wiki/sources/descriptions/0xenia__remem.md); Rust Windows game-hacking libraries such as [[apwil]] (inline/IAT/VMT/VEH/HWBP hooks; PE/PEB; process/thread hijack; DirectX overlay; scan; syscall/input/window; internal & external) (source: wiki/sources/descriptions/april-ivy__Apwil.md); Windows memory-analysis / process-manipulation C++ frameworks such as [[memwars]] (gmh5225; scan / pattern search / module enum / injection / memory edit; Testing Framework; cheat-dev library) (source: wiki/sources/descriptions/gmh5225__MemWars.md); general RE helper toolkit such as [[easyre]] (pattern scan, memory dump, structure reconstruction; Trace Execution; gmh5225) (source: wiki/sources/descriptions/gmh5225__EasyRe.md); shatter-attack AC bypass research such as [[waryasswhe]] (usermode 0day shatter → AC bypass; cheat / RPM lane) (source: wiki/sources/descriptions/waryas__WaryasSWHE.md) 2. **Kernel-mode** — signed/vulnerable drivers ([[byovd]]), callback/page-table work; cross-process R/W via MDL/CR3 helpers such as [[ntmemory]] (source: wiki/sources/descriptions/zer0condition__NTMemory.md); combined KM W/RPM + mouse_event samples such as [[norsefire]] (C++; cheat / RPM) (source: wiki/sources/descriptions/nbqofficial__norsefire.md); stable kernel read/write driver samples such as [[readwrite-kernel-stable]] (C/C++; cheat / RPM; driver development / modding) (source: wiki/sources/descriptions/juniorjacob__readwrite-kernel-stable.md); kernel driver cheat frameworks such as [[ultra-driver-game-cheat]] (custom Windows driver; physical translate / MDL mapping; KM↔UM comm; bypasses AC handle protections; Cheat Driver; gmh5225) (source: wiki/sources/descriptions/gmh5225__UltraDriver-Game-Cheat.md); integrated KM+UM cheat frameworks with **DBVM** hypervisor access such as [[lilypublic]] (dot1991; physical memory R/W, pattern scan, object callbacks, shellcode injection, compile-time obfuscation; DirectComposition/DirectDraw/DX9/11 + ImGui overlays; cheat framework) (source: wiki/sources/descriptions/dot1991__lilypublic.md); modular KM+UM driver frameworks such as [[lithium-kernel]] (bootmgfw; custom IOCTL phys/virt memory R/W, page-table walk, pattern scan, MouClass mouse IOCTL, thread hide + NMI suppression + pool-tracker clean; cheat-driver research primitives) (source: wiki/sources/descriptions/bootmgfw__lithium-kernel.md); modular multi-backend C++ cheat frameworks such as [[blacksun-framework]] (cs1ime; user-mode / kernel / DMA access backends separated from cheat logic; pattern scan, hooking, overlay rendering, comm layers; cheat framework) (source: wiki/sources/descriptions/cs1ime__blacksun-framework.md); system-space file-section driver loaders such as [[map-file-in-system-space]] (gmh5225; `MmCreateSection` / `MiMapViewInSystemSpace`; stealthy unsigned kernel PE map without standard file I/O; windows kernel explorer) (source: wiki/sources/descriptions/gmh5225__Map-file-in-system-space.md); ReClass.NET driver-backed readers such as [[reclass-net-driverreader]] (C#/C++ plugin; kernel mem vs RPM for AC-protected structure analysis) (source: wiki/sources/descriptions/niemand-sec__ReClass.NET-DriverReader.md); per-process PTE hooks such as [[windows-kernel-pagehook]] (shared kernel VA, distinct CR3; Some Tricks / Ring0) (source: wiki/sources/descriptions/stdhu__windows-kernel-pagehook.md); KPRCB **`IdlePreselect`** callback hook PoCs such as [[powerhook]] (Archie-osu; KMDF driver; kernel-context interception + thread/process logging; Windows internals / low-level game security research) (source: wiki/sources/descriptions/Archie-osu__PowerHook.md); hidden/shadowed memory region PoCs such as [[yumekage]] (Xyrem; guarded-region + context-switch semantics; PTE Hook; anti-cheat bypass RE) (source: wiki/sources/descriptions/Xyrem__Yumekage.md); **#PF page-fault hooks** such as [[fast-pf-hook]] (brew02; instruction parse/relocate to shadow page; #PF exception-handler dispatch; Some Tricks / Ring0) (source: wiki/sources/descriptions/brew02__FastPFHook.md); KdTrap exception-path hooks such as [[hook-kdtrap]] (gmh5225; global first-chance handler hijack via `HalpStallCounter`; null-deref and reserved CR3-bit fault interception; Some Tricks / Ring0) (source: wiki/sources/descriptions/gmh5225__Hook-KdTrap.md); compact KM inline detour library samples such as [[driver-kdtour]] (gmh5225; MDL-backed patch + absolute jump stub; `KeAttachProcess` sample; no external deps; Easy Kernel Detour / Some Tricks) (source: wiki/sources/descriptions/gmh5225__Driver-KDtour.md); cross-platform page-table editors such as [[pteditor]] (Linux LKM + Windows driver; PGD/PUD/PMD/PTE R/W, VA→PA, PAT/NX/TLB) (source: wiki/sources/descriptions/misc0110__PTEditor.md); page-table injection samples such as [[page-table-injector]] (C/C++; kernel driver; cheat / injection:windows) (source: wiki/sources/descriptions/isiddique2024__Page-Table-Injector.md); PTE.User page-table injection samples such as [[executor]] (C/C++; pTE.User; driver development; cheat / injection:windows; gmh5225) (source: wiki/sources/descriptions/gmh5225__executor.md) and [[fumo-loader]] (C/C++; pTE.User; kernel driver; anti-cheat research; cheat / injection:windows; dumbasPL) (source: wiki/sources/descriptions/dumbasPL__fumo_loader.md); kernel-assisted Present-pointer injection such as [[present-injector]] (Nou4r; C/C++; PTE.User; graphics Present pointer swap + PFN memory handling; protected-process DLL map; cheat / injection:windows) (source: wiki/sources/descriptions/Nou4r__PresentInjector.md); physical reads via manual PTE map without `MmCopyMemory`/`MmMapIoSpace` such as [[readphys]] (reversed from `AXE-BASE.sys`; ACE explore) (source: wiki/sources/descriptions/rogxo__ReadPhys.md); minimal PTE-PFN rewrite cross-process RPM teaching samples such as [[driver-rpm-direct-page-manipulation]] (gmh5225; manual page-table walk + PFN remap; no documented copy helpers; cheat / RPM) (source: wiki/sources/descriptions/gmh5225__Driver-RPM-DirectPageManipulation.md); Windows Driver Development learning docs such as [[document]] in the Cheat / Windows kernel explorer lane (source: wiki/sources/descriptions/supermanc88__Document.md); Rust compile-time IRQL-safe pool allocators such as [[irql]] (`irql_alloc` Box/Vec for KM drivers) (source: wiki/sources/descriptions/naorhaziz__irql.md); kernel-space process dumpers such as [[nemesis]] in that same explorer / dump lane (source: wiki/sources/descriptions/not-matthias__Nemesis.md); first-party OS LPE / Chrome-sandbox escape via `NtQuerySystemInformation` class 253 such as [[cve-2026-40369-exploit]] (Win11 24H2–25H2) (source: wiki/sources/descriptions/orinimron123__CVE-2026-40369-EXPLOIT.md); Hyper-V stack heap-overflow LPE such as [[cve-2025-21333]] (`vskrnlintvsp.sys` integer truncation; IoRing pool spray + pipe-attribute R/W) (source: wiki/sources/descriptions/nu1lptr0__CVE-2025-21333.md); alternate Win11 23H2 PoC [[cve-2025-21333-poc]] (gmh5225; `vkrnlintvsp.sys`; ITW-exploited) (source: wiki/sources/descriptions/gmh5225__CVE-2025-21333-POC.md); kernel streaming `ks.sys` untrusted-pointer LPE [[cve-2024-35250]] (gmh5225; `KSPROPERTY`; Win10/11) (source: wiki/sources/descriptions/gmh5225__CVE-2024-35250.md); Client Side Caching `csc.sys` improper-address-validation LPE [[cve-2024-26229]] (gmh5225; `METHOD_NEITHER` IOCTL; Win11 22H2) (source: wiki/sources/descriptions/gmh5225__CVE-2024-26229.md); Application Identity `appid.sys` IOCTL LPE [[cve-2024-21338]] (gmh5225; Win11 22H2 Build 22621; XSS PWN-Day) (source: wiki/sources/descriptions/gmh5225__CVE-2024-21338.md); Common Log File System `CLFS.sys` LPE [[cve-2024-49138-poc]] (MrAle98; kernel R/W + token swap → SYSTEM; Win11; VS C++ PoC) (source: wiki/sources/descriptions/MrAle98__CVE-2024-49138-POC.md); `wfshbr64.sys` IOCTL improper-access-control LPE [[cve-2022-42046]] (gmh5225; SYSTEM) (source: wiki/sources/descriptions/gmh5225__CVE-2022-42046.md); Zemana `amsdk.sys` in-driver stub injection [[cve-2022-42045]] (gmh5225; IOCTL chain → kernel code exec / DSE-bypass lane) (source: wiki/sources/descriptions/gmh5225__CVE-2022-42045.md); Lenovo `LenovoDiagnosticsDriver.sys` IOCTL LPE [[cve-2022-3699]] (gmh5225; arbitrary kernel memory access / privilege escalation) (source: wiki/sources/descriptions/gmh5225__CVE-2022-3699.md); Dell **`dbutil_2_3.sys`** LPE [[cve-2021-21551]] (gmh5225; CVE-2021-21551; kernel R/W IOCTLs → SYSTEM token overwrite / elevated shell) (source: wiki/sources/descriptions/gmh5225__CVE-2021-21551.md) 3. **Below the OS** — hypervisor, PCIe DMA, external devices / second machines ## Key sub-areas - Memory, injection, hooking (inline/IAT/VTable/HWBP); injection-testing samples such as [[injectors]] for AC stress evaluation. (source: wiki/sources/descriptions/zoand__Injectors.md) Defensive AC stacks that manual-map their own engine in-process such as [[atomicshieldclient]] (EngineLoader/RuntimeLoader + named pipes; FiveM operator client; contrasts cheat injectors under AC evaluation) (source: wiki/sources/descriptions/adem-hosni__AtomicShieldClient.md) FiveM server-side Lua anticheat resources such as [[dead-anticheat]] (Dead-Scripts; CitizenFX client–server checks for mod menus, entity abuse, and injected Lua; Discord webhook enforcement) contrast with client-native FiveM AC stacks. (source: wiki/sources/descriptions/Dead-Scripts__Dead_antiCheat.md) Offline FiveM PC-check evidence tools such as [[aeterna-rongroi]] (aeterna; Rust/Tauri 2; YAML rules + read-only collectors; Found/NotFound/Unmeasured results without auto-ban verdicts; screenshare self-check with path redaction) complement enforcement stacks for moderator screenshare workflows. (source: wiki/sources/descriptions/aeterna__aeterna-rongroi.md) Client-side integrity and process-monitoring references such as [[betashield]] (JackBro; C++/Boost; tamper detection + Boost.Asio networking; open-source client protection design study) complement that defensive lane. (source: wiki/sources/descriptions/JackBro__BetaShield.md) Loaded-module risk scorers such as [[cheatguard]] (JUS7205; Rust; JSON ruleset + Win32 module enumeration; 0–100 CLEAN/SUSPICIOUS/MALICIOUS verdicts; library + CLI; defensive process-integrity / AC forensics workflows) extend that blue-team evaluation lane. (source: wiki/sources/descriptions/JUS7205__cheatguard.md) Rust Windows DLL injectors such as [[rust-dll-crab]] (multiple methods; Rust system programming; Injection Testing; gmh5225) extend that evaluation lane. (source: wiki/sources/descriptions/gmh5225__rust-dll-crab.md) C++ Visual Studio multi-method DLL injectors such as [[windows-dll-injector]] (KooroshRZ; CreateRemoteThread, native thread-creation variants, QueueUserAPC, SetWindowsHookEx, RtlCreateUserThread; x86/x64; injector + payload DLL projects; simplicity vs compatibility vs detection-surface trade-offs; Injection Testing) extend that lane. (source: wiki/sources/descriptions/KooroshRZ__Windows-DLL-Injector.md) Educational Visual Studio per-file DLL injection study samples such as [[inject-all-the-things]] (DanielRTeixeira; CreateRemoteThread, NtCreateThreadEx, QueueUserAPC, SetWindowsHookEx, RtlCreateUserThread, SetThreadContext, reflective DLL load; x86/x64; isolated source per technique; Injection Testing) extend that lane. (source: wiki/sources/descriptions/DanielRTeixeira__injectAllTheThings.md) SetWindowsHookExW injection-testing PoCs such as [[setwindowshookex-injector]] (C/C++; hooking / modding / Unreal Engine; Injection Testing; gmh5225) extend that lane for message-hook DLL load coverage. (source: wiki/sources/descriptions/gmh5225__SetWindowsHookEx-Injector.md) Skengdo's [[simple-setwindowshookexw-injector]] (C++; PE parsing + registry helpers + optional cert spoofing; payload + target window-class workflow; Injection Testing:SetWindowsHookExW; user-mode inject pipeline study) extends that lane. (source: wiki/sources/descriptions/Skengdo__simple-SetWindowsHookExW-injector.md) Preinjected-DLL **SetWindowHookEx** research such as [[setwindowhookex]] (ekknod; C; hooking; Some Tricks / Windows Ring3; README `[Using SetWindowHookEx for preinjected DLL's]`) extends that message-hook lane. (source: wiki/sources/descriptions/ekknod__SetWindowHookEx.md) MMF User APC + file-mapping injection PoCs such as [[mmf-code-injection]] (shared memory-mapped executable sections; stealthy DLL load avoiding conventional inject detection; User APC + File Mapping Testing; gmh5225) extend that lane. (source: wiki/sources/descriptions/gmh5225__MMFCodeInjection.md) Large Windows injection-testing corpora such as [[injection]] (Conhost ExtraBytes, PROPagate, Print Spooler/ALPC, KernelCallbackTable, KnownDlls cache poisoning, and related named PoCs; Injection Testing; gmh5225) extend that lane. (source: wiki/sources/descriptions/gmh5225__injection.md) Broader modular AC coverage harnesses such as [[anti-cheat-testing-framework]] (process memory R/W, DLL injection, overlay, input simulation, driver ops; Testing Framework) sit in the same evaluation lane. (source: wiki/sources/descriptions/niemand-sec__AntiCheat-Testing-Framework.md) Broader Windows injection tradecraft collections such as [[windows-process-injection]] (local/remote shellcode, PEB/EAT walk, direct/indirect syscalls, module stomping, thread-pool/fiber inject, PPID + call-stack spoof) sit in the same cheat / injection research lane. (source: wiki/sources/descriptions/toneillcodes__windows-process-injection.md) Windows shellcode injection toolkit samples such as [[jektor]] (CreateThread, CreateRemoteThread, QueueUserAPC/`NtTestAlert`, EnumTimeFormatsEx callback, CreateFiber; GetProcAddress dynamic resolve; XOR-encrypted msfvenom + NOP sled; Injection/Shellcode Testing; gavz) extend that lane. (source: wiki/sources/descriptions/gavz__Jektor.md) Stealthy HTTP-staged shellcode loaders such as [[lucky-spark]] (Schich; fiber execution + JIT decryption + custom cipher + WinHTTP staging + PEB-walk API resolve; Sliver-like tradecraft; cheat / shellcode loader) extend that lane. (source: wiki/sources/descriptions/Schich__Lucky-Spark.md) Process-fork reflection injection PoCs such as [[dirty-vanity]] (deepinstinct; `RtlCreateProcessReflection`; shellcode in target inherited by fork; redirect forked copy entry; avoids WPM-based inject heuristics; EDR-evasion research) extend that lane. (source: wiki/sources/descriptions/deepinstinct__Dirty-Vanity.md) GPU-assisted process-hollowing PoCs such as [[dxinject-uc]] (a0yark; D3D11 shared-buffer payload transport + HLSL compute-shader decode; Injector/Target split; named events + DXGI shared handles + shared memory; injection:windows research) extend that lane for GPU-based shellcode staging study. (source: wiki/sources/descriptions/a0yark__DXInject-UC.md) Curated injection resource indexes such as [[awesome-injection]] (Cheat / injection:windows; game-security RE) sit in that lane. (source: wiki/sources/descriptions/itaymigdal__awesome-injection.md) **`AppInit_DLLs` registry startup injection** + MinHook hooking frameworks such as [[appinithook]] (INI-driven per-process module dispatch; HookDll macros; CMake/cmkr; early global load) sit in the same early-startup injection lane. (source: wiki/sources/descriptions/mrexodia__AppInitHook.md) NLS registry code-page hijack injection PoCs such as [[nls-code-injection-through-registry]] (gmh5225; redirect NLS code-page translation DLL loads via registry; early process-init persistence) extend that lane. (source: wiki/sources/descriptions/gmh5225__NlsCodeInjectionThroughRegistry.md) Focused TpAllocInject loaders with Tartarus' Gate indirect syscalls such as [[tartarus-tp-alloc-inject]] sit in the same cheat / injection:windows lane. (source: wiki/sources/descriptions/nettitude__Tartarus-TpAllocInject.md) SafeBreach-Labs [[poolparty]] (C++; worker-factory start-routine overwrite + TP_WORK/TP_WAIT/TP_IO/TP_ALPC/TP_JOB/TP_DIRECT/TP_TIMER queue insertion; native API wrappers + handle hijacking; red-team / low-detection thread-pool injection tradecraft; ThreadPool) extends that lane. (source: wiki/sources/descriptions/SafeBreach-Labs__PoolParty.md) **NtCreateThreadEx** DLL injectors with thread-safe PIC shellcode that resolves **LdrLoadDll** at runtime such as [[the-perfect-injector]] (can1357; C++; avoids fixed `kernel32.LoadLibrary`; WoW64 + process-creation flags; cheat / injection:windows) extend that lane. (source: wiki/sources/descriptions/can1357__ThePerfectInjector.md) UE4-specific process-injection PoCs such as [[ue4-injector]] (Zebratic; C++; demonstrates a legacy UE4 vulnerability for loading shellcode or DLL payloads; Visual Studio CLI; privilege requirements documented; may affect unpatched UE4 titles; Inject / security research) extend that lane for engine-specific inject vectors and AC implications. (source: wiki/sources/descriptions/Zebratic__UE4Injector.md) UWP runtime package dump/inject tooling such as [[uwp-dumper]] (Wunkolo; C++ DLL + injector; CLI; Windows 10 SDK; inject into target process to extract UWP package files otherwise gated by the UWP file-system model; Cheat / Explore UWP; Microsoft Store game RE) extends that lane for platform-specific protected-build analysis. (source: wiki/sources/descriptions/Wunkolo__UWPDumper.md) UWP WinRT interface hook/spy tooling such as [[uwpspy]] (Francesco149; C++ DLL; hooks selected UWP/WinRT interfaces with console runtime logging; reusable low-level hook scaffolding for UWP instrumentation and RE; Cheat / Explore UWP) complements package-dump workflows for Microsoft Store titles. (source: wiki/sources/descriptions/Francesco149__uwpspy.md) UWP early-startup CLI injectors such as [[uwpinject]] (Francesco149; C; Win32 + AppModel APIs; suspended debugger-like launch injects DLLs at very early startup; straightforward DLL drop-in workflow; UWP RE, runtime instrumentation, and debugging; Cheat / Explore UWP) supply the launch/inject stage for [[uwpspy]] hook payloads and [[uwp-dumper]] package extraction. (source: wiki/sources/descriptions/Francesco149__uwpinject.md) Managed C# code injectors such as [[nativenetsharp]] (Injecting C# code; cheat / guide) sit in the same injection research lane. (source: wiki/sources/descriptions/shalzuth__NativeNetSharp.md) User-mode PE manual-map injectors such as [[modexmap]] (VirtualAllocEx/WPM + import/reloc/TLS; CreateRemoteThread entry stub; x86/x64) sit in the Extend Manual Map lane. (source: wiki/sources/descriptions/weak1337__ModExMap.md) Stealth-oriented manual-map injectors such as [[manual-mapping-dll-injector]] (andrew9382; C/C++; injector + loader; thread hijack / NtCreateThreadEx; import/reloc/TLS/exception support; header wipe/fake, PEB unlink, DLL name scramble, handle hijack; Manual Map; injection tradecraft / anti-detection research) extend that lane. (source: wiki/sources/descriptions/andrew9382__manual_mapping_dll_injector.md) BTBD extend-manual-map injectors such as [[modmap]] (kernel driver `MiAllocateVad` + LDR `SizeOfImage` extension; payload mapped after host module so it blends with module enumeration; README `[Extend Manual Map]`) extend that lane. (source: wiki/sources/descriptions/btbd__modmap.md) Driver-assisted extend-map frameworks such as [[memmap]] (KGB-1337; C++; request-based KM↔UM comms for R/W, alloc, protection changes, and module queries; sample extends mapped modules + execution via hijacked API call paths; Extend Manual Map; memory manipulation / injection research) extend that lane. (source: wiki/sources/descriptions/KGB-1337__memmap.md) Minimal embedded-byte-array manual-map injectors such as [[memject]] (danielkrupinski; raw DLL bytes in source; VirtualAllocEx/WPM + import/reloc; optional PE header/entry erase after `DllMain`; csgo.exe demo; Manual Map) sit in the same lane. (source: wiki/sources/descriptions/danielkrupinski__MemJect.md) Compact C++ manual-map injectors such as [[simple-manual-map-injector]] (TheCruZ; x86/x64; optional PE header/section strip + configurable protections + x64 exception handling; sample loader + test DLLs; Manual Map; process injection / manual mapping study) sit in the same lane. (source: wiki/sources/descriptions/TheCruZ__Simple-Manual-Map-Injector.md) UI-backed manual-map injectors such as [[shtreeba]] (MMap PE section copy + reloc/import resolution; no LoadLibrary; process picker; Injector) sit in the same lane. (source: wiki/sources/descriptions/mdilai__Shtreeba.md) Anti-detection manual-map loaders such as [[wizard-loader]] (PE section/import/reloc/TLS/exception-handler mapping; PE header erasure + thread hiding; Xwizard.exe DLL side-load abuse; gmh5225) extend that lane with signed-host side-loading tradecraft. (source: wiki/sources/descriptions/gmh5225__Wizard-Loader.md) Qt GUI multi-method injectors such as [[guided-hacking-injector]] (LoadLibrary, manual map, thread hijack, NtCreateThreadEx, QueueUserAPC, vulnerable-driver KM inject; PEB unlink/header erase/TLS/VEH cloaking; Injection Testing / learner lane) extend that lane with a Guided Hacking training surface. (source: wiki/sources/descriptions/guided-hacking__GuidedHacking-Injector.md) C++ inject library/tool [[gh-injector-library]] (Broihon; x86/x64/WOW64; Ldr-based + manual-map loaders; NtCreateThreadEx/APC/thread hijack/SetWindowsHookEx/kernel-callback execution; cloaking, hook handling, .NET assembly load; inject library and tool; advanced game-hacking + AC behavior research) extends that Guided Hacking lane. (source: wiki/sources/descriptions/Broihon__GH-Injector-Library.md) Kernel-mode IAT manual-map injectors such as [[kernelmode-manual-mapping-through-iat]] (process handle or companion kernel driver; IAT Manual Map; cheat / injection:windows) extend that lane from ring 0. (source: wiki/sources/descriptions/mactec0__Kernelmode-manual-mapping-through-IAT.md) Kernel-mode stealth manual-map injectors such as [[stealthy-kernelmode-injector]] (charliewolfe; C driver; APC/thread hijack/image-load callbacks; PEB unlink + metadata cleanup; PTE/VAD Manual Map; cheat / injection:windows) extend that lane. (source: wiki/sources/descriptions/charliewolfe__Stealthy-Kernelmode-Injector.md) Kernel DLL injectors using NX-bit swap + VAD hide such as [[mminject]] (SDXT; C; page-table permission manipulation; stealthy kernel-assisted injection; cheat / Using NX Bit Swapping and VAD hide) extend that lane. (source: wiki/sources/descriptions/SDXT__MMInject.md) Windows RWX region finders such as [[rwxfinder]] (S12cybersecurity; VirtualQueryEx scan; returns exploitable RWX page addresses filtered by size for shellcode staging; cheat / injection:windows) extend that lane. (source: wiki/sources/descriptions/S12cybersecurity__RWXFinder.md) Low-footprint APC injectors such as [[frankenstein-apc-injection]] (S12cybersecurity; leaked handles + natural RWX + `NtQueueApcThreadEx2`; avoids VirtualAllocEx/VirtualProtectEx/CreateRemoteThread; optional shellcode encryption; EDR/AC visibility testing) extend that lane. (source: wiki/sources/descriptions/S12cybersecurity__FrankensteinAPCInjection.md) Stealth-oriented NTDLL gadget APC injectors such as [[ntqueueapcthreadex-ntdll-gadget-injection]] (LloydLabs; C PoC; `NtQueueApcThreadEx` + random ntdll pop/ret gadgets so APC routine pointers appear module-backed; documents detection vectors; offensive tradecraft + AC/EDR APC telemetry evaluation; README NtQueueApcThreadEx + gadget) extend that lane. (source: wiki/sources/descriptions/LloydLabs__ntqueueapcthreadex-ntdll-gadget-injection.md) Process-lifecycle idle-callback injection PoCs such as [[idle-abuse]] (RixedLabs; C++; undocumented `RegisterWaitForInputIdle` wait callback after spawned process reaches input-idle; shellcode delivery + process manipulation; offensive / process-lifecycle abuse detection study) extend that lane. (source: wiki/sources/descriptions/RixedLabs__IDLE-Abuse.md) Minimal thread-hijacking DLL injection PoCs such as [[thread-hijacking-injector]] (NullTerminatorr; C++; compact remote context manipulation + execution redirection; small footprint for educational RE; Injection Testing) extend that lane. (source: wiki/sources/descriptions/NullTerminatorr__ThreadHijackingInjector.md) Manual thread-hijack DLL injectors such as [[threadject]] (D4stiny; C++ Visual Studio; validates/maps payload, prepares loader metadata, patches shellcode with runtime addresses, redirects existing-thread execution; low-level injection-chain control; process injection research + endpoint detection test cases; Injection Testing) extend that lane. (source: wiki/sources/descriptions/D4stiny__ThreadJect.md) Early cascade process-injection PoCs such as [[earlycascade-injection]] (Cracked5pider; C++ Visual Studio; creates a process and triggers stealthier code injection during early initialization stages per publicly documented research; hardcoded structure offsets for specific OS builds; malware analysis, EDR bypass research, and defensive injection-detection testing; Injection Testing) extend that early-startup lane. (source: wiki/sources/descriptions/Cracked5pider__earlycascade-injection.md) Hardware-assisted kernel thread hijacking such as [[thread-spy]] (KelvinMsft; C++/WDK; PMI callback lane; hijack running threads without patching instruction bytes; stealth execution redirection / AC bypass research; README PMI Callback) extends that lane beyond usermode context manipulation. (source: wiki/sources/descriptions/KelvinMsft__ThreadSpy.md) Multi-technique injection + persistence collections such as [[process-injection-techniques]] (MahmoudZohdy; C/C++; CreateRemoteThread/APC/Early Bird/TLS callback/thread hijack/reflective DLL/hollowing/doppelganging/ghosting + IFEO/AppInit_DLLs/AppCertDlls; unified CLI; security training + defensive detection testing; Injection Testing) extend that lane. (source: wiki/sources/descriptions/MahmoudZohdy__Process-Injection-Techniques.md) Unified C# CLI inject toolkit such as [[process-injection]] (3xpl01tc0d3r; vanilla/DLL/hollowing/APC queue/KernelCallbackTable; P/Invoke, D/Invoke, direct+indirect syscalls; shellcode formats, optional encryption, PPID spoof; offensive + detection-engineering lab; Various process injection techniques) (source: wiki/sources/descriptions/3xpl01tc0d3r__ProcessInjection.md) Host-based Windows code-injection technique catalogs such as [[code-injection]] (Fahersto; C++; ~two dozen PE/DLL/shellcode implementations—hollowing variants, callback-based methods, loader abuse; per-technique executables; 32/64-bit, WoW64, multi-version compatibility notes; offensive tradecraft + defensive detection coverage study) extend that lane. (source: wiki/sources/descriptions/Fahersto__code_injection.md) Tutorial split driver+client kernel cheat samples such as [[nullhook]] (NullTerminatorr; C/C++ driver + userland client; memory/hook workflows; external manual-map load; educational kernel-assisted cheat development; README `[NtDxgkGetTrackedWorkloadStatistics]`) extend that lane for ring-0/ring-3 cheat scaffold study. (source: wiki/sources/descriptions/NullTerminatorr__NullHook.md) Runtime JS injection toolkits such as [[positron]] (manual-map DLL + QuickJS/Electron scripting; named-pipe IPC; self-unmap + REPL/SDK) extend that lane for scripted in-process modding. (source: wiki/sources/descriptions/qiufuyu123__Positron.md) Injectable DLL hot-reload dev tooling such as [[dll-hot-reload]] (ergrelet; reload payload DLL on disk change without full reinject; cheat / injection:windows) accelerates iterative cheat/mod debugging in that lane. (source: wiki/sources/descriptions/ergrelet__dll-hot-reload.md) APC internals research samples/library such as [[apc-research]] (cheat / windows kernel explorer) underpin kernel APC inject study alongside [[injdrv]] / [[kinject]]. (source: wiki/sources/descriptions/repnz__apc-research.md) Sirifef-inspired kernel DLL injectors such as [[kernel-dll-injector]] (alexkrnl; inject chosen DLL into newly created processes when kernel32 loads; driver + sample DLL; x86; Visual Studio/WDK; APC; kernel-assisted process injection study) extend that lane. (source: wiki/sources/descriptions/alexkrnl__Kernel-dll-injector.md) [[kdmapper]]-assisted kernel manual-map injectors such as [[kernelmode-dll-injector]] (YouNeverKnow00; Intel vulnerable driver loads custom KM driver; PE section map + import/reloc/TLS + IOCTL; Manual Map; kernel-assisted injection / BYOVD process manipulation study) extend that lane. (source: wiki/sources/descriptions/YouNeverKnow00__Kernelmode-DLL-Injector.md) Early-startup kernel-mode DLL injection frameworks such as [[kmdllinjector]] (0xPrimo; C++; callback-based process-creation/image-load triggering; ntdll loader routine hooks with PIC shellcode; kernel APC path for early user-mode execution; controlled security-testing research; kernel-mode DLL Injector) extend that lane. (source: wiki/sources/descriptions/0xPrimo__KMDllInjector.md) C++ mapped-kernel-driver injector frameworks such as [[face-injector-v2]] (KANKOSHEV; payload dropper + privilege elevation + randomized staging paths + mapper execution flow; multiple game targets; explicit ban warnings; Injection/Testing; educational driver-backed injection study) extend that lane. (source: wiki/sources/descriptions/KANKOSHEV__face-injector-v2.md) Kernel-assisted manual-map injectors for EAC/BE-protected titles such as [[kernel-eac-be-injector]] (JGonz1337; kernel hook-based command handler + user-mode mapper; relocation/import/section write + remote DllMain; kernel memory alloc/exposure + pointer-swap hooks + mapped-payload cleanup; anti-cheat-resistant injection workflow research; PTE.User) extend that lane. (source: wiki/sources/descriptions/JGonz1337__kernel-eac-be-injector.md) Physical-memory **copy-on-write bypass** injectors such as [[be-injector]] (Compiled-Code; C++ PoC; patch signed module code via physical memory mapping before normal module mapping diverges; evades thread monitoring, API-call scrutiny, and signature-based module scans by avoiding COW artifacts; low-level AC bypass / detection-resilience research; cheat / Attack COW) extend that lane. (source: wiki/sources/descriptions/Compiled-Code__be-injector.md) BYOVD DLL injectors bundling multiple WHQL-signed vulnerable drivers such as [[zhangbing-injector]] (M3351AN; C++ usermode + bundled `.sys` drivers; driver-loaded memory ops + protected-process DLL injection; credits [[kdmapper]]; kernel-assisted injection / vulnerable-driver exploitation study) extend that lane. (source: wiki/sources/descriptions/M3351AN__ZhangBing-Injector.md) Stealth kernel APC dispatch such as [[stealth-apc-dispatcher]] (gmh5225; encrypted shellcode; avoids standard API-level APC queue telemetry; cheat / injection:windows) extends that lane for AC APC-monitoring bypass study. (source: wiki/sources/descriptions/gmh5225__StealthAPCDispatcher.md) Special-kernel-APC cross-process memory read teaching sample such as [[kernel-special-apc-readprocessmemory]] (gmh5225; APC callback memcpy into nonpaged staging vs ordinary RPM; cheat / RPM) extends that lane for APC insertion + kernel-mediated collection study. (source: wiki/sources/descriptions/gmh5225__Kernel-Special-APC-ReadProcessMemory.md) Kernel APC + `KeUserModeCallback` remote user-mode execution such as [[remote-call]] (1401199262; C++; driver I/O pivot + controlled context restore; avoids RWX shellcode allocation in target; advanced injection + AC detection trade-off research; README `[APC Remote Call]`) (source: wiki/sources/descriptions/1401199262__RemoteCall.md) extends that kernel APC lane beside [[keusermodecallback]]. APC-delivered cross-process working-set probes such as [[thread-namecalling]] (`SetThreadDescription` + remote `GetThreadDescription`; description buffer copied into target working set; cheat / injection:windows) sit in the same APC / memory-introspection lane. (source: wiki/sources/descriptions/hasherezade__thread_namecalling.md) Defensive usermode counterparts such as [[faultline]] detect manual-map/shellcode via working-set page-fault monitoring (PEB-unlisted executable pages; host + injector test harness). (source: wiki/sources/descriptions/svespalec__faultline.md) Offensive working-set bypass samples such as [[count-hook]] (WorkingSet; hook-based evasion of count-oriented memory checks / page-protection scanners) sit on the opposite Cheat → Bypass Page Protection lane. (source: wiki/sources/descriptions/illegal-instruction-co__CountHook.md) Modding-oriented lazy page decrypt-on-first-access protection such as [[page-no-access]] (C++; pages decrypted on first access; Anti Cheat → Page Protection) complements defensive working-set monitors. (source: wiki/sources/descriptions/hotline1337__page_no_access.md) Trampoline-based prologue skip (first-instruction bypass of JMP/INT3 AC hooks) via [[skiphook]] (HDE length decode; local trampoline → `instruction+1`). (source: wiki/sources/descriptions/weak1337__SkipHook.md) Official Microsoft [[detours]] (Windows API monitoring/instrumentation; inline hook/trampoline library used by ISVs and Microsoft teams) is the upstream hooking package; NTDLL-only ports such as [[detoursnt]] (no Win32 deps; unmodified Detours sources; see also [[injdrv]]) sit in the same cheat / hook research lane. (source: wiki/sources/descriptions/microsoft__Detours.md) (source: wiki/sources/descriptions/wbenny__DetoursNT.md) Modular Detours AC-bypass frameworks such as [[generic-game-detour-api-hook]] (~130 API hooks across 16 modules; dinput8.dll proxy; process/module hide, anti-debug neutralization, HWID/network spoof, memory-integrity bypass, caller-check engine vs protection modules; NGS/BlackCipher/HackShield/XignCode/GameGuard/TenProtect; cheat / hook research) extend that lane. (source: wiki/sources/descriptions/wesjian__GenericGameDetourAPIHook.md) NTDLL-only MinHook fork [[ntminhook]] (Windows Native API only; gmh5225; asset pipelines / modding / hooking) mirrors that lane beside standard MinHook wrappers such as [[appinithook]] and [[dwmhook]]. (source: wiki/sources/descriptions/gmh5225__ntminhook.md) Original x86/x64 PolyHook ([[polyhook]]; abstract C++11 multi-method interface; `Tests.cpp` samples) and C++ PolyHook2 (vcpkg) such as [[polyhook-2-0]] are further multi-method hook/trampoline libraries in that lane. (source: wiki/sources/descriptions/stevemk14ebr__PolyHook.md) (source: wiki/sources/descriptions/stevemk14ebr__PolyHook_2_0.md) Modern C++ Windows inline hooking via [[renhook]] (WopsS; x86/x86-64; Zydis disassembly for reliable inline hooks/trampolines; safe APIs + practical examples; RE/instrumentation/game-security research) (source: wiki/sources/descriptions/WopsS__RenHook.md) Cross-platform PLT/GOT/IAT hooking via [[plthook]] (C; ELF/Mach-O/PE; replace dynamic-link entries for portable function interception; cheat / hook research) sits in the import-table hook lane beside those trampoline libs. (source: wiki/sources/descriptions/kubo__plthook.md) Static ARM64 Android ELF GOT patchers such as [[elf-got-patcher]] (LeoChen-CoreMind; code-cave shellcode, `.init_array` RELA hijack, ASLR-safe config; offline `.so` redirect; cheat / Android RE) complement runtime [[plthook]] when analysts patch APK natives without injectors. (source: wiki/sources/descriptions/LeoChen-CoreMind__elf-got-patcher.md) Lightweight cross-platform C/C++ hooking via [[subhook]] (Windows/Linux/macOS; x86 32/64 only; minimal inline hook/trampoline API; cheat / hook research) sits in that portable hook lane beside PolyHook and plthook. (source: wiki/sources/descriptions/gmh5225__subhook.md) Single-header x86-64 hooking via [[light-hook]] (SamuelTulach; pure C; Windows/Linux/EFI; user/kernel/firmware examples; platform memory shims; no heavy disassembler; low-level instrumentation / RE / game-security research; cross-platform hook library) extends that portable hook lane into firmware contexts. (source: wiki/sources/descriptions/SamuelTulach__LightHook.md) Lightweight multi-platform hook frameworks such as [[dobby]] (C/C++; multi-arch; kernel/network/plugin hooks; DirectX / Windows game tooling) extend that portable hook lane beside PolyHook and plthook. (source: wiki/sources/descriptions/jmpews__Dobby.md) Rust x86 HOOK crates such as [[ilhook-rs]] (function-call intercept → user handlers) sit in the same cheat / hook research lane. (source: wiki/sources/descriptions/regomne__ilhook-rs.md) Defensive OSS AC research such as [[ice9]] (C/C++; jnastarot; modding / hooking / AC study; Open Source Anti Cheat System) complements those offensive hook libraries for engineers mapping both sides. (source: wiki/sources/descriptions/jnastarot__ice9.md) Page Guard (`PAGE_GUARD`) hook samples such as [[pghooker]] (C++; cheat / hook) sit in the exception-driven hook lane beside those trampoline libs. (source: wiki/sources/descriptions/nelfo__PGHooker.md) Defensive Detection:Hook samples such as [[hook-buster]] (C/Python) study hook busting opposite those trampoline/hook libraries; process-wide hook/patch discovery tools such as [[hookhunter]] (Windows; scan + report + trace generic hooks to final destinations) sit in the same lane. (source: wiki/sources/descriptions/st4ckh0und__hook-buster.md) (source: wiki/sources/descriptions/mike1k__HookHunter.md) Offensive kernel hook enum/remove samples such as [[antihook]] (Windows; driver / graphics) sit on the opposite maintenance lane. (source: wiki/sources/descriptions/kouzhudong__AntiHook.md) Defensive thread call-stack scanning for safe hooked-DLL unload such as [[thread-call-stack-scanner]] (m417z; scan threads before `FreeLibrary` when hooks remain active) complements those hook-discovery tools on module teardown. (source: wiki/sources/descriptions/m417z__thread-call-stack-scanner.md) Cheat Engine stealth configs can be checked against multi-vector detectors such as [[cedetector]] (window class / process / driver / debug artifacts). (source: wiki/sources/descriptions/weak1337__CEDetector.md) Lightweight CE table/artifact filesystem watchers such as [[detection-cheat-engine]] (`ReadDirectoryChangesW`; `ADDRESSES.FIRST` / `MEMORY.FIRST` markers; gmh5225) complement process/window/driver vectors. (source: wiki/sources/descriptions/gmh5225__Detection-CheatEngine.md) DLL Hijack surface catalogs such as [[windows-dll-hijacking]] and [[hijacklibs]] map relative-path / sideload / phantom-DLL load paths and disclosed hijack opportunities (DLL names, required exports, conditions) across Windows binaries. (source: wiki/sources/descriptions/wietze__windows-dll-hijacking.md) (source: wiki/sources/descriptions/wietze__HijackLibs.md) Automated discovery tooling such as [[dllirant]] tests executables via proxy-DLL placement and load monitoring for search-order hijack paths. (source: wiki/sources/descriptions/redteamsocietegenerale__DLLirant.md) The Sh0ckFR/DLLirant list entry is a historical placeholder mirror without implementation source. (source: wiki/sources/descriptions/Sh0ckFR__DLLirant.md) Workflow automation for DLL hijack research stages such as [[impulsive-dll-hijack]] (source: wiki/sources/descriptions/knight0x07__ImpulsiveDLLHijack.md) PE export-table dumpers that emit proxy-DLL forwarding stubs such as [[dll-hijack-export-dumper]] (gmh5225; automates export forwarding source for search-order sideload; Cheat / DLL Hijack) complement manual proxy authoring beside [[dllirant]] discovery workflows. (source: wiki/sources/descriptions/gmh5225__DLL-Hijack-ExportDumper.md) Generic proxy-DLL hijack helpers such as [[super-dll-hijack]] (anhkgg; C/C++; renamed original module + replacement DLL with DllMain export passthrough; loader / sideload research; Cheat / DLL Hijack) (source: wiki/sources/descriptions/anhkgg__SuperDllHijack.md) Enterprise audit scanners such as [[dllspy]] (CyberArk; missing DLL dependencies, writable DLL directories, unsafe search paths; hijack-opportunity reports for auditors) complement offensive discovery on managed Windows hosts. (source: wiki/sources/descriptions/cyberark__DLLSpy.md) DLL hijack surface scanners such as [[dllhsc]] (ctxis; Visual Studio 2019; Cheat / DLL Hijack offensive research) extend that scan lane. (source: wiki/sources/descriptions/ctxis__DLLHSC.md) Kernel keyboard-filter / IRP-hook keylog research such as [[keyboardkit]] (UDP log exfil + ExplorerFrame DLL-hijack persistence) sits in the input-filter and DLL Hijack persistence lanes. (source: wiki/sources/descriptions/wesmar__KeyboardKit.md) MouClass-focused kernel mouse drivers such as [[kernel-mouse]] (Win10/11) support the same input-path lane for triggerbot/aimbot research. (source: wiki/sources/descriptions/vsaint1__kernel-mouse.md) DirectInput↔XInput controller proxy DLLs such as [[xidi]] (C++; virtual mapping / deadzone / force feedback; DirectX Compatibility) sit in the adjacent user-mode input-API / compatibility lane. (source: wiki/sources/descriptions/samuelgr__Xidi.md) - Packet sniff/filter at NDIS via user-mode libs such as [[ndisapi]] (Windows Packet Filter driver interface; inspect/modify raw packets with low overhead). (source: wiki/sources/descriptions/wiresock__ndisapi.md) WFP-based user-mode packet capture/divert libraries such as [[divert]] (WinDivert; basil00; kernel driver hooks WFP; intercept/modify/drop/inject by IP/port/protocol/direction; cheat / Packet Divert) extend that lane beside NDIS stacks; user-space Discord DPI relay such as [[discord-dpi-bridge]] (egeorcun; ByeDPI SOCKS5 + DoH + PowerShell relay; avoids WinDivert kernel drivers that break EAC/Denuvo; Some Tricks / Windows Ring3) (source: wiki/sources/descriptions/egeorcun__discord-dpi-bridge.md) complements that lane when kernel packet drivers conflict with anti-cheat. (source: wiki/sources/descriptions/basil00__Divert.md) WFP callout traffic shapers such as [[win-shaper]] (WPO-Foundation; kernel driver + CLI/GUI; latency/bandwidth/packet-loss/queue controls; Game Testing / emulate adverse network conditions for games and network-sensitive software) extend that lane for controlled network-condition testing beside capture/divert stacks. (source: wiki/sources/descriptions/WPO-Foundation__win-shaper.md) C/C++ packet logger/decryptor samples such as [[packet-sniffer]] (networking + debugging; cheat / Packet Sniffer&Filter) complement capture/filter stacks for game protocol RE. (source: wiki/sources/descriptions/hercul3s__Packet-Sniffer.md) Tracked Steam/Valve protobuf schema dumps such as [[protobufs]] (SteamDatabase; `.proto` message definitions from update pipelines and automated dumpers; CS:GO/Steam client schemas; protocol analysis and tooling maintenance; README [Protobuf]) sit beside capture stacks as a schema reference for Steam ecosystem network RE. (source: wiki/sources/descriptions/SteamDatabase__Protobufs.md) CLI network protocol craft/inject/sniff tooling such as [[inject]] (fksvs; command-line; wide protocol coverage; cheat / Packet Sniffer&Filter) complements generic loggers for protocol analysis and manipulation. (source: wiki/sources/descriptions/fksvs__inject.md) Python/Scapy live game-protocol sniffer/parser tooling such as [[sniparinject]] (airvzxf; YAML opcode→field maps without code changes; IP/port filter; binary struct decode; inject lane planned; Mana Plus demo; cheat / Packet Sniffer&Filter) extends that lane for declarative protocol decode beside generic loggers. (source: wiki/sources/descriptions/airvzxf__sniparinject.md) Akebi-framework packet sniff/filter tooling such as [[akebi-packet-sniffer]] (gmh5225; C++/C; driver development + DirectX/OpenGL; cheat / Packet Sniffer&Filter) extends that lane beside generic loggers/decryptors. (source: wiki/sources/descriptions/gmh5225__Akebi-PacketSniffer.md) Title-specific Lost Ark protocol loggers such as [[lost-ark-logger]] (gmh5225; intercepts client–server traffic; logs events, items, combat, and other protocol messages) extend that wire-RE lane. (source: wiki/sources/descriptions/gmh5225__LostArkLogger.md) Killing Floor UE2.5 headless bot clients such as [[killingfloor-bot-client]] (Node.js/Electron; native UE2 UDP protocol without launching the game or injecting; Goldberg/synthetic or genuine Steam tickets; UDP MITM relay + Ghidra bitstream RE + protocol docs; authorized/self-hosted servers) extend that wire-RE lane. (source: wiki/sources/descriptions/geekrainian__killingfloor-bot-client.md) Curated online/multiplayer game hacking resource indexes such as [[hacking-online-games]] (dsasmblr; network protocol RE, server-side emulation, packet encryption analysis, anti-cheat bypass research; cheat / guide) extend that lane. (source: wiki/sources/descriptions/dsasmblr__hacking-online-games.md) Title-specific Lost Ark memory/SDK dumpers such as [[lost-ark-dumper]] (gmh5225; scans UE client for class layouts, entity definitions, and offsets) complement that lane for in-process structure RE beside wire capture. (source: wiki/sources/descriptions/gmh5225__LostArkDumper.md) Pre-generated Lost Ark UE SDK header kits such as [[lost-ark-sdk]] (gmh5225; KN4CK3R sdkgen; `GObjects`/`GNames`/`ProcessEvent`/`UEngine`/`UWorld` for `EFEngine.dll`; cheat / game:lostark) extend that lane with offline class/struct headers. (source: wiki/sources/descriptions/gmh5225__LOST-ARK-SDK.md) Multiplatform C++ packet capture/parse/craft stacks such as [[pcapplusplus]] (100+ protocols; libpcap/WinPcap/Npcap + PCAP/PCAPNG) sit in the adjacent Packet Capture&Parse lane. (source: wiki/sources/descriptions/seladb__PcapPlusPlus.md) Windows Npcap ([[npcap]]; Nmap Project WinPcap successor; capture + inject) is the common live-capture backend those stacks bind on Windows. (source: wiki/sources/descriptions/nmap__npcap.md) eBPF process-aware sniff / OpenSSL TLS key extract / decrypt-proxy toolkits such as [[peetch]] (PCAPng + Scapy; IPv4 TLS 1.2; cheat / android kernel explorer) sit in the same packet-capture research lane. (source: wiki/sources/descriptions/quarkslab__peetch.md) On-device VPN capture apps such as [[pcapdroid]] (privacy-friendly open-source Android monitor; per-app connection track/analyze/block; PCAP export; HTTP inspect + TLS decrypt; cheat / Android Network Explorer) extend that lane for mobile game protocol RE without eBPF. (source: wiki/sources/descriptions/emanuele-f__PCAPdroid.md) No-root USB Wi-Fi monitor/inject tooling such as [[rtl8852au-userspace]] (damanoreshkan-beep; userspace RTL8852AU driver over libusb/usbfs; radiotap pcap + channel hopping + 802.11 frame injection; cheat / Android Network Explorer) extends that lane for raw RF capture without kernel modules. (source: wiki/sources/descriptions/damanoreshkan-beep__rtl8852au-userspace.md) Cross-platform transparent proxy / network interception tooling such as [[gecit]] (Go; eBPF sock_ops traffic redirect on Linux; TUN proxy + DNS manipulation on macOS/Windows; fake TLS ClientHello desync DPI bypass + built-in DoH; network security testing) extends that lane for cross-platform game traffic intercept and DPI-bypass research. (source: wiki/sources/descriptions/boratanrikulu__gecit.md) Kernel Berkeley sockets via WSK wrappers such as [[ksocket]] (TCP/UDP from ring 0; no user-mode helper) for covert kernel network channels. (source: wiki/sources/descriptions/wbenny__KSOCKET.md) Covert user-mode networking via stolen browser sockets such as [[idov31-venom]] (Idov31; single-header C++; hidden detached browser + Winsock handle discovery/duplication; evasion-oriented networking research) extends that lane for socket-telemetry evasion beside NDIS/WFP capture stacks. (source: wiki/sources/descriptions/Idov31__Venom.md) Socket-style WSK libraries such as [[libwsk]] (MiroKaku; C/C++; NuGet/MSBuild; familiar connect/send/recv API over kernel WSK; driver dev + security research; Kernel-Mode Winsock library) lower integration friction beside [[ksocket]]. (source: wiki/sources/descriptions/MiroKaku__libwsk.md) Host-side game RPC moderation such as [[wellsanticheat]] (Among Us BepInEx; discard abusive RPCs / crashers / spam at the lobby host) is the defensive counterpart to title-specific network/RPC cheat patterns. (source: wiki/sources/descriptions/somewhatpublicacc__wellsanticheat.md) [[banmod]] (GiannBart; Among Us host-side BepInEx moderation + AntiCheat; Harmony IL2CPP; synced ban lists + in-game behavior detectors) extends that lobby-host defensive lane. (source: wiki/sources/descriptions/GiannBart__BanMod.md) open.mp / SA-MP server anti-cheat such as [[open.mp-anticheat]] (client self-memory signature checks + RakNet packet inspection vs s0beit/CLEO/MoonLoader-style mods) extends that host/server-side defensive lane. (source: wiki/sources/descriptions/ricardoofnl__open.mp-anticheat.md) Minecraft Bedrock interception proxies such as [[oomph]] (Go MiTM; reach/hitbox/killaura/scaffold detections; server-authoritative movement/combat) sit in the same packet-inspect / server-operator defensive lane. (source: wiki/sources/descriptions/oomph-ac__oomph.md) Minecraft Java Bukkit/Spigot anti-cheat plugins such as [[avaanticheat]] (fly/climb/combat-log/autoclick/packet checks; violation logging; optional Geyser leniency) extend that Java-server operator lane. (source: wiki/sources/descriptions/nsharp-collab__AvAAntiCheat.md) - Launcher Abuser / platform-bypass launchers such as [[mini-launcher]] (Steam API stub + env/SteamAppID setup; DLL injection + Lua scripting) for out-of-client game start. (source: wiki/sources/descriptions/xan105__Mini-Launcher.md) Stealth external memory R/W via launcher-held game handles such as [[launcher-abuser]] (Ricardonacif; named shared-memory IPC; minimal launcher shellcode + thread hijack; syscall `NtReadVirtualMemory`/`NtWriteVirtualMemory`; avoids new handles, modules, threads, or executable pages; x86→x64 transition; Cheat / Launcher Abuser) extends that lane for low-footprint out-of-process access. (source: wiki/sources/descriptions/Ricardonacif__launcher-abuser.md) Anti-cheat-safe out-of-process companions such as [[lanternlight]] (Remus3; Python; Mistfall Hunter; derives state from logs, UE5 GVAS saves, and passive screen capture only—no injection, RPM, hooks, or network intercept; Emberforge combat/build math; cheat / Anti-cheat-safe companion) sit at the opposite end of the out-of-process spectrum from RPM externals. (source: wiki/sources/descriptions/Remus3__Lanternlight.md) Defensive **Game Tools** RCE hardening such as [[rce-shield]] (bad-antics; detect/prevent/remediate RCE in game launchers, mod loaders, overlay software, voice chat clients, and gaming peripherals; tooling developers / game-tools RE) complements that offensive launcher/overlay lane. (source: wiki/sources/descriptions/bad-antics__rce-shield.md) Legitimate unified library managers such as [[playnite]] (JosefNemec; C#/XAML/.NET; plugin architecture for multi-platform library integration, themes, and automation; emulation workflows + local metadata; Game Manager) provide baseline launcher/plugin-surface context opposite bypass launchers. (source: wiki/sources/descriptions/JosefNemec__Playnite.md) C# Harmony-based online marketplace mods such as [[duckov-marketmod]] (a0yark; Duckov flea-market listing/purchase/fulfillment; UI + Steam-auth network API + WebSocket + Harmony patches + mod loader with version check/auto-update; RE-derived internals; modding / online marketplace research) extend that mod-loader lane. (source: wiki/sources/descriptions/a0yark__Duckov_marketmod.md) C# Harmony in-game mod dev toolkits such as [[sts2-kitlib]] (WRXinYue; **Slay the Spire 2** modular dev mod; core host + satellite modules; browser dev console, cheat presets, Harmony patch analysis, MCP bridge for game-state queries/scripted actions, diagnostic ZIP export; Python build + TypeScript/Vue dev viewer; mod authors / RE / stress-test automation; cheat / Game Develop) extend that lane. (source: wiki/sources/descriptions/WRXinYue__STS2-KitLib.md) Java **Slay the Spire** character mods such as [[gojo-the-spire]] (Bratah123; custom Gojo Satoru character, cards/deck, assets, mod config; gameplay customization and character-mod development learning; Slay The Spire Remastered Mod / Game Develop) sit in the same title-specific modding lane as content mods rather than dev toolkits or binary exploitation. (source: wiki/sources/descriptions/Bratah123__GojoTheSpire.md) BepInEx Harmony runtime debug/cheat command suites for Unity survival titles such as [[danis-nightmare]] (PlinKuuu; **Muck**; C# Harmony IL patches on player stats, mob scaling, loot, chests, day/night, item spawn; /player /enemy /powerup /items chat commands with Tab autocomplete from live memory; god mode, wave control, peaceful mode, time travel; mod dev / RE / engine stress-test; cheat / Game Develop) extend that lane. (source: wiki/sources/descriptions/PlinKuuu__DanisNightmare.md) Full Steamworks API offline emulators such as [[goldberg-emulator]] (replace `steam_api.dll`/`steam_api64.dll`; local achievements/leaderboards/matchmaking/overlay/DLC + LAN broadcast; preservation/modding/Steam API RE) sit in the same Steam emulator lane. (source: wiki/sources/descriptions/inflation__goldberg_emulator.md) Cheat loader samples such as [[a-pasted-rust-script]] (Rust/C++; ImGui loader + anti-debug + feature modules) illustrate loader architecture and basic anti-debug in mod tools. (source: wiki/sources/descriptions/spyder1g__a-pasted-rust-script.md) Commercial-style managed cheat loaders such as [[cyber-ant-loader]] (gmh5225; auth + HWID binding + license verification + anti-detection + multi-AC inject pipeline for hack DLL delivery) extend that loader lane. (source: wiki/sources/descriptions/gmh5225__CyberAntLoader.md) CS:GO-focused C++ cheat loaders with PHP auth backends such as [[csgo-loader]] (gmh5225; HWID check + time-based license validation + web panel for injected cheat DLL access; cheat / game:csgo `[Loader]`) extend that lane. (source: wiki/sources/descriptions/gmh5225__CSGO-Loader.md) CS:GO XenForo-backed P2C loaders such as [[csgo-xenforo-loader]] (flowxrc; C++; license verification + subscription check against XenForo forum backend + DLL download + injection; cheat-distribution / loader-auth research; cheat / game:csgo `[Loader]`) extend that lane with forum-based licensing. (source: wiki/sources/descriptions/flowxrc__csgo-xenforo-loader.md) CS:GO remote-download inject loaders such as [[cozinha-loader]] (b1scoito; C++; process hollowing or manual mapping; remote cheat-module fetch; anti-debug + string encryption + import obfuscation; cheat / game:csgo `[Injector]`) extend that lane with AC-evasion-focused injection workflows. (source: wiki/sources/descriptions/b1scoito__cozinha_loader.md) OOP cheat bases for Facepunch Rust such as [[simple-rust-base]] (C/C++; driver development / rendering / modding; cheat / game:rust; legacy reference) sit in the same title-specific scaffold lane. (source: wiki/sources/descriptions/krispybyte__Simple-Rust-Base.md) Minimal Rust-game cheat source such as [[simple-rust-hack]] (C/C++; cheat / game:rust; gmh5225) complements that lane as a simpler structural reference. (source: wiki/sources/descriptions/gmh5225__simple-rust-hack.md) Facepunch Rust internal cheat frameworks such as [[rust-internal]] (C++; Horizon core + DX11/ImGui overlays; memory/map helpers, HDE64, secure strings; cheat / game:rust; gmh5225) extend that lane as fuller in-process scaffolds. (source: wiki/sources/descriptions/gmh5225__rust-internal.md) Unity Mono/IL2CPP internal samples such as [[rust-rustinternal]] (C++; ESP/aimbot/no-recoil via Unity runtime method hooks + direct game-object memory; EAC-protected; cheat / game:rust [Internal]; gmh5225) extend that lane on the Unity hooking surface beside DX11 scaffolds. (source: wiki/sources/descriptions/gmh5225__Rust-RustInternal.md) Modular Facepunch Rust internal scaffolds such as [[kors-lol]] (ZentifyZ; C++; rendering/hook-management/gameplay modules; ESP visuals, Unity/IL2CPP structure access, ImGui menu; detours/import-scan/spoofcall utilities; cheat prototyping + RE practice; cheat / game:rust [Internal]) extend that lane as a modular internal source reference. (source: wiki/sources/descriptions/ZentifyZ__Kors_lol.md) Sibling ZentifyZ framework [[crc32]] (C++; visuals/hooks/math/weapon logic + Unity/IL2CPP access; ImGui menu; detours/pattern-scan/spoofcall bypass utilities; cheat development + AC bypass experimentation; cheat / game:rust) adds weapon-logic and pattern-scan emphasis beside [[kors-lol]]. (source: wiki/sources/descriptions/ZentifyZ__CRC32.md) Multi-threaded Unity material scanners such as [[matscan]] (C++/C; IL2CPP + memory analysis; cheat / game:rust / game engine explorer:Unity; gmh5225) extend that lane for parallel material/asset enumeration beside hook-based internals. (source: wiki/sources/descriptions/gmh5225__MatScan.md) Facepunch Rust external cheat samples such as [[rust-external-1]] (C++; kernel driver or RPM; no inject; separate overlay ESP for player/item/state reads on EAC-protected Unity; cheat / game:rust [External]; gmh5225) illustrate the out-of-process lane beside those internals. (source: wiki/sources/descriptions/gmh5225__rust-external-1.md) Rendering/networking-focused external samples such as [[rust-external]] (C/C++; cheat / game:rust [External]; gmh5225) complement that lane as a separate out-of-process scaffold. (source: wiki/sources/descriptions/gmh5225__Rust-External.md) Driver/shader/audio-oriented external source such as [[rust-external-source]] (C/C++; driver development / shader work / audio systems; cheat / game:rust [External]; gmh5225) extends that out-of-process lane. (source: wiki/sources/descriptions/gmh5225__Rust-External-Source.md) Driver/overlay/memory-analysis external samples such as [[rust-external-and-driver-aliencheats]] (C++/C/C++; driver development / overlays / memory analysis; cheat / game:rust [External]; gmh5225) extend that lane. (source: wiki/sources/descriptions/gmh5225__Rust-ExternaL-and-Driver-AlienCheats.md) Driver/modding/SDK-generation external samples such as [[rust-cheat-external]] (C/C++; driver development / modding / SDK generation; cheat / game:rust [External]; gmh5225) extend that out-of-process lane. (source: wiki/sources/descriptions/gmh5225__Rust-Cheat-External.md) Driver/rendering/Unity external samples such as [[rico-cheat-rust-external]] (C++/C/C++; driver development / rendering / Unity; cheat / game:rust [External]; gmh5225) extend that out-of-process lane. (source: wiki/sources/descriptions/gmh5225__Rico-Cheat-rust-external.md) Open-source Facepunch Rust kernel-assisted externals such as [[rust-external-cheat]] (bootmgfw; C++; WDM **DriverRW** IOCTL cross-process R/W/alloc/module-base + usermode Rust SDK; ESP/aimbot; DX9 ImGui overlay + DirectXMath W2S; socket comm; driver trace cleanup + kernel hooks; cheat / game:rust [External]) sit in the same lane beside [[lithium-kernel]] from the same author for studying Unity external architecture under [[easy-anti-cheat]]. (source: wiki/sources/descriptions/bootmgfw__Rust-External-Cheat.md) LordAbbot external frameworks such as [[lord-abbot-rust-external-cheat]] (LordAbbot; C++; custom kernel driver memory R/W + external DLL; ImGui/DirectX overlay; ESP/aimbot/recoil assistance; driver-assisted external + AC detection-surface research; cheat / game:rust [External]) extend that lane. (source: wiki/sources/descriptions/LordAbbot__Rust-External-Cheat.md) NMan1 Facepunch Rust kernel-assisted external frameworks such as [[overflow-rust]] (NMan1; C/C++; kernel driver + user-mode rendering/control client; kernel call-chain hook bypass + shared-memory KM↔UM comm; ESP/recoil/automation + gameplay state mods; kernel hook + overlay technique RE; cheat / game:rust [External]) extend that lane from the same author as [[rainbow-six-cheat]] and [[apex-legends-cheat]]. (source: wiki/sources/descriptions/NMan1__OverflowRust.md) OpenGL + SDK-generation Rust cheat source such as [[immortal-rust]] (C/C++; cheat / game:rust; gmh5225) extends that title-specific lane with a non-DX11 graphics path. (source: wiki/sources/descriptions/gmh5225__immortal-rust.md) - Account and session theft adjacent to in-game memory cheats: .NET information-stealer samples such as [[qvoid-token-grabber]] (Enum0x539; Discord token harvest, browser cookie/password extraction, webhook exfiltration, anti-debug/anti-VM/anti-sandbox; malware-analysis research into account-token abuse workflows common in gaming communities) complement Go post-ex collectors such as [[pillager]]. (source: wiki/sources/descriptions/Enum0x539__Qvoid-Token-Grabber.md) Focused Python browser-password export tooling such as [[browser-password-exportor]] (BL0odz; Chromium/Edge/Firefox login DB decrypt via DPAPI/AES; credential-forensics / browser secret-storage study beside stealer tradecraft) documents how saved web credentials are recovered on Windows hosts. (source: wiki/sources/descriptions/BL0odz__BrowserPasswordExportor.md) Cross-platform modular credential-recovery frameworks such as [[lazagne]] (AlessandroZ; Python; extracts locally stored passwords from many application families via modular collectors; post-exploitation, auditing, and forensic credential-exposure workflows) sit in the same account-theft / saved-secret recovery lane beside those Windows-focused harvesters. (source: wiki/sources/descriptions/AlessandroZ__LaZagne.md) - Visual ESP / aim / movement cheats; AI visual pipelines (OBS + YOLO + HID); title-specific YOLO automation such as [[maplestory-worlds-automation]] (Python; MapleStory Worlds / Artale) (source: wiki/sources/descriptions/tingwei1111__maplestory-worlds-automation.md); MapleStory YOLOv8 detector training with Apple MPS such as [[maplestory-yolov8-training]] (source: wiki/sources/descriptions/tingwei1111__MapleStory-YOLOv8-Training.md); animation-driven MapleStory Artale auto-level bots such as [[maplestory-auto-level-up]] (gmh5225; Python; animation-based leveling automation; cheat / game:maplestory) (source: wiki/sources/descriptions/gmh5225__MapleStoryAutoLevelUp.md); legacy MapleStory GMS bot frameworks such as [[msc]] (PrinceFroggy; C++/C#; map/portal resource data; discontinued partial publish; historical bot-design RE; cheat / game:maplestory [GMS Bot]) (source: wiki/sources/descriptions/PrinceFroggy__MSC.md); legacy GMS trainer toolkits such as [[msb]] (PrinceFroggy; C++/C# launcher; injection/runtime control; GMS 128–140; historical MMO trainer architecture; cheat / game:maplestory [GMS Old Hack 128-140]) (source: wiki/sources/descriptions/PrinceFroggy__MSB.md); legacy TWMS MapleStory hack projects such as [[msdoggy]] (Inndy; C/C++ + inline assembly hooks; mob behavior changes + item-filter logic; low-level patching + optional protector integration; historical MMORPG cheat RE reference; cheat / game:maplestory [TMS Old Hack]) (source: wiki/sources/descriptions/Inndy__MSDoggy.md); MapleStory v179 CE table and Auto Assembler script collections such as [[maplestory-v179-cheat-engine]] (Noosh404; `.CT`/CEA; full-map attack, skill injection, no-delay, pet loot teleport, knockback tweaks via pattern-scan byte patches; legacy MapleStory RE practice; cheat / game:maplestory [V179 CT]) (source: wiki/sources/descriptions/Noosh404__Maplestory-V179-Cheat-Engine.md); MapleStory v176 farming-performance estimator such as [[battleanalysis176]] (Bratah123; C++ console; pointer/offset memory reads; projected mesos/NX hourly gains; private-server / RE runtime economy metrics; cheat / game:maplestory [Battle Analysis]) (source: wiki/sources/descriptions/Bratah123__BattleAnalysis176.md); GMS v95.1 client-structure analysis docs such as [[maple-research]] (Maxcloud; Markdown; CSecurityClient + HackShield integration; practical localhost-environment RE notes; cheat / game:maplestory [GMS-095 Client Analysis]) (source: wiki/sources/descriptions/Maxcloud__MapleResearch.md); title-specific Battlerite arena automation bots such as [[battlerite-bot]] (gmh5225; memory access or screen recognition; ability casting, targeting, and movement automation; cheat / game:battlerite) (source: wiki/sources/descriptions/gmh5225__BattleriteBot.md); title-specific Lost Ark client memory cheats such as [[lost-ark]] (gmh5225; ESP / gameplay mods / automation via client memory manipulation; cheat / game:lostark) (source: wiki/sources/descriptions/gmh5225__LostArk.md); human-like mouse movement samples such as [[human-mouse-movement]] (C/C++; cheat / triggerbot & aimbot) for aimbot input-realism research (source: wiki/sources/descriptions/tgillam__HumanMouseMovement.md); camera triggerbots such as [[camera-triggerbot]] (movement/color around crosshair; cheat / triggerbot & aimbot) (source: wiki/sources/descriptions/lehmenkuehler__camera-triggerbot.md); neural-network aim/trigger research such as [[pine]] (tweakable for CS:GO / Fortnite / Overwatch; Neural Network) (source: wiki/sources/descriptions/petercunha__Pine.md); defensive ML counterparts such as [[waldo]] (CS2 deep-learning triggerbot/aimbot detection; user-trained model) and earlier [[aimbot-detection-prototype]] (gameplay window + clip count) (source: wiki/sources/descriptions/waldo-vision__waldo.md) (source: wiki/sources/descriptions/waldo-vision__aimbot-detection-prototype.md); title-specific Ironsight internal multihacks such as [[lazysight]] (gmh5225; DirectX overlay ESP/aimbot via entity lists, weapon managers, and world-to-screen SDK reads; cheat / game:ironsight `[Internal]`) (source: wiki/sources/descriptions/gmh5225__Lazysight.md); title-specific Fall Guys kernel cheat samples such as [[flying-guys]] (gmh5225; custom kernel driver for memory ops; KdMapper loader; ImGui overlay; user-mode client with zlib-compressed network data manipulation; cheat / game:fallguys) (source: wiki/sources/descriptions/gmh5225__FlyingGuys.md); expanded fly/movement suite [[flying-guys-fully-modified]] (gmh5225; kernel driver + mapper + usermode; KdMapper load; ImGui overlay; fly hacks via KM memory access; cheat / game:fallguys) (source: wiki/sources/descriptions/gmh5225__Flying-Guys-fully-modified.md); C# IL2CPP managed-injection Fall Guys samples such as [[fall-guys-sharp]] (gmh5225; movement hacks and gameplay mods via managed code injection into IL2CPP runtime; cheat / game:fallguys) (source: wiki/sources/descriptions/gmh5225__FallGuysSharp.md); kernel-driver Fall Guys samples such as [[fall-guys]] (gmh5225; speed/fly hacks and physics exploits via kernel driver communication + memory manipulation; Unity; cheat / game:fallguys) (source: wiki/sources/descriptions/gmh5225__FallGuys.md); title-specific Mordhau internal melee automation such as [[mordhau-simple-auto-block-cheat]] (Skengdo; C++; injected UE4 module; auto-block swings/kicks + optional auto-stab; large generated SDK from UE class/function dumps; combat automation + internal module structure study; cheat / game:mordhau [Internal]) (source: wiki/sources/descriptions/Skengdo__mordhau-simple-auto-block-cheat.md); title-specific Smite internal ESP/aimbot samples such as [[smite-esp-aimbot]] (JackBro; C++; reverse-engineered UE3 SDK headers + hook helpers; target acquisition + on-screen ESP; documents game-specific pointer quirks; learner reference for older UE3 titles; cheat / game:smite [Internal]) (source: wiki/sources/descriptions/JackBro__SmiteESPAimbot.md) - Overlays via [[present-hook]] and external/DWM/Steam windows; DWM `DwmDraw` hook samples such as [[dwm-dwmdraw]] (gmh5225; ESP/visual elements through the Windows compositor; README `[DWM StackWalk]`; screenshot-evasion research) sit in the DWM composition overlay lane beside [[dwmhook]] and [[dwm-hook]]. (source: wiki/sources/descriptions/gmh5225__DWM-DwmDraw.md) Commercial PUBG P2C loader RE such as [[pubg-p2c-re]] (experienceds; VMProtect-packed loader; WebView2 licensing UI; libcurl HTTPS payload fetch; ESP injected into `dwm.exe` instead of `TslGame.exe` to evade [[battleye]] process scans; Direct2D overlay; decoy stubs; documents Krafton Zakynthos DWM vtable/code-hook detection; cheat / game:pubg [RE]) extends that DWM composition overlay lane with documented BattlEye evasion tradecraft. (source: wiki/sources/descriptions/experienceds__pubg-p2c-re.md) Steam-overlay samples such as [[steam-overlay-x64]] (C; modding / memory analysis). (source: wiki/sources/descriptions/xo1337__steam-overlay-x64.md) Discord overlay hook samples such as [[discord-overlay-hook]] (C++; DX11 rendering / hooking / modding; README `[DX11]`) sit in the Discord Overlay Hijack lane beside external ESP bases that draw via Discord's overlay surface. (source: wiki/sources/descriptions/gogo9211__Discord-Overlay-Hook.md) External-process Discord pipeline PoCs such as [[overlaycord]] (SamuelTulach; C++; trusted overlay render via framebuffer sharing—no hooks or Discord injection; overlay trust-boundary research; cheat / [Discord]) extend that lane. (source: wiki/sources/descriptions/SamuelTulach__OverlayCord.md) NVIDIA GeForce Experience overlay–dependent COD Warzone samples such as [[mwclap]] (overlay enabled + fullscreen borderless) sit in the NVIDIA Overlay Hijack / game:cod warzone lane. (source: wiki/sources/descriptions/serjam__mwclap.md) Legitimate borderless-windowed utilities such as [[borderless-gaming]] (Codeusa; C#/.NET WinForms; process watch + HWND style manipulation; faster alt-tab vs exclusive fullscreen; common prerequisite for external overlays and NVIDIA hijack samples; Game Testing) sit upstream of that overlay lane. (source: wiki/sources/descriptions/Codeusa__Borderless-Gaming.md) GeForce Experience overlay render-context hijack samples such as [[nvidia-overlay-hijack]] (gmh5225; ESP/menu via existing NVIDIA overlay surface; no new overlay windows) extend that lane for overlay-window-creation evasion study. (source: wiki/sources/descriptions/gmh5225__nvidia-overlay-hijack.md) Sibling gmh5225 samples such as [[nvidia-overlay]] (DirectX draw injection via GeForce Experience overlay surface; trusted-process rendering; anti-cheat overlay detection evasion) sit in the same NVIDIA Overlay Hijack lane. (source: wiki/sources/descriptions/gmh5225__NVIDIA-OVERLAY.md) Windows overlay-renderer samples such as [[nvidia-overlay-renderer]] (es3n1n; GeForce Experience overlay window + render context; ImGui menus or ESP; README `[Nvidia]`; overlay hijacking / AC detection bypass research) extend that lane beside gmh5225 NVIDIA hijacks. (source: wiki/sources/descriptions/es3n1n__nvidia-overlay-renderer.md) Steam `GameOverlayRenderer` render-pipeline hijack PoCs such as [[steam-hook-render-poc]] (gmh5225; custom draw via trusted Steam overlay; README `[Steam]`) extend that lane for Steam overlay abuse and trusted-overlay bypass study. (source: wiki/sources/descriptions/gmh5225__Steam-Hook-Render-PoC.md) Window-hide research such as [[windowprotect]] (gmh5225; driver development / hooking; cheat / hide) complements that lane by concealing existing HWNDs from AC window enumeration rather than hijacking vendor overlay surfaces. (source: wiki/sources/descriptions/gmh5225__WindowProtect.md) Title-specific Dota 2 overlay samples such as [[dota2-overlay-2-0]] (C/C++; cheat / game:dota2) sit in the same overlay research lane. (source: wiki/sources/descriptions/skrixx68__Dota2-Overlay-2.0.md) Cross-API Rust overlay frameworks such as [[asdf-overlay]] (inject overlay DLL; Detours swap-chain hooks; named-pipe IPC; input capture/blocking; overlay and anti-cheat research) sit in the Present-hook / injection study lane. (source: wiki/sources/descriptions/storycraft__asdf-overlay.md) SetWindowsHookEx-focused overlay samples such as [[overlay]] (C++; cheat / overlay) sit in the Windows message-hook overlay lane. (source: wiki/sources/descriptions/muturikaranja__overlay.md) External overlay window-hijack PoCs such as [[window-hijack-overlay]] (SurgeGotTappedAgain; C++; existing overlay HWND + native window flags; SetWindowsHookEx input capture; DX11/ImGui; visibility/detection tradeoff research) extend that lane beside [[setwindowhookex]]. (source: wiki/sources/descriptions/SurgeGotTappedAgain__Window-Hijack.md) OBS Keyboard Mapper plugins such as [[input-overlay]] (C++; live keyboard/mouse/gamepad indicators for streamers) sit in the adjacent input-visualization / OBS overlay lane. (source: wiki/sources/descriptions/univrsal__input-overlay.md) Immediate-mode GUI core [[imgui]] (Dear ImGui; DX/GL/Vulkan/Metal vertex buffers; debug overlays / cheat menus) is the common UI substrate for Present-hook and external overlay samples. (source: wiki/sources/descriptions/ocornut__imgui.md) Official Dear ImGui extension kits such as [[imgui-club]] (hex memory editor widget + multi-context compositor) support in-game debug UIs and memory inspection beside Present-hook overlays. (source: wiki/sources/descriptions/ocornut__imgui_club.md) - HWID spoofing, stack spoofing, driver communication channels (e.g. [[boom]] and [[driver-read-write]] hijack `Beep.sys` for covert KM↔UM I/O; [[driver-read-write]] swaps `IRP_MJ_DEVICE_CONTROL` for process R/W + module-base queries and PiDDBCache/MmUnloadedDrivers cleanup (gmh5225) (source: wiki/sources/descriptions/gmh5225__Driver-read_write.md); [[data-ptr-swap]] studies `NtSetCompositionSurfaceAnalogExclusive` as a kernel-side channel; [[dataptrswap-driver]] studies win32kbase data-ptr swap on that syscall with explorer.exe attach and MmUnloadedDrivers cleanup (gmh5225) (source: wiki/sources/descriptions/gmh5225__DataPtrSwap-driver.md); [[dataptrhookwin11]] studies `NtUserSetGestureConfig` as a Win11 data-ptr hook channel; [[afd-irp-call-dispatch]] studies an `Afd.sys` `.data` pointer hook on `AfdIrpCallDispatch`; [[data-communication]] studies kernel `.data` pointer swap for high-speed KM↔UM messaging and R/W (Sinclairq; README `[NtCompareSigningLevels]`) (source: wiki/sources/descriptions/Sinclairq__DataCommunication.md); [[double-data-pointer]] studies a double-pointer KM↔UM channel for manually mapped drivers with virtual/physical R/W, PFN cleanup, and pool artifact reduction (Astronaut00; README `[Double Data Pointer]`) (source: wiki/sources/descriptions/Astronaut00__DoubleDataPointer.md); [[ntcomparesigninglevel-hook]] studies `NtCompareSigningLevels` function-pointer swap for covert KM↔UM comm (ExpLife0011; abandoned — PatchGuard instability; README `[NtCompareSigningLevels]`) (source: wiki/sources/descriptions/ExpLife0011__NtCompareSigningLevel-hook.md); [[gina-public]] studies IRP Null hijack for KM↔UM driver communication; [[evcommunication]] uses named events + `NtTokenManager` hook instead of IOCTL; [[common-registry-jmp-rcx]] studies `CmRegisterCallback` with a `JMP RCX` gadget in `nvraid.sys` for registry-callback hijack KM↔UM comm (gmh5225; README `[Registry Callback]`) (source: wiki/sources/descriptions/gmh5225__Common-Registry-Jmp-RCX.md); [[common-registry]] studies registry-based KM↔UM comm via a KMDF driver + user client with custom process-attach handling (EBalloon; README `[Registry Callback]`) (source: wiki/sources/descriptions/EBalloon__Common-Registry.md); [[registry-callbacks]] studies registry-callback KM↔UM comm for manually mapped drivers via jump gadget in a legitimate module with memory R/W, protected patching, process-base lookup, and heartbeat checks (0xGREG; README `[Registry Callback]`) (source: wiki/sources/descriptions/0xGREG__registry-callbacks.md); [[driver-kaldereta]] studies `NtTokenManagerGetAnalogExclusiveTokenEvent` as a hooked Win32 KM↔UM channel with broad memory/input/manual-map primitives (gmh5225; cheat-driver skeleton) (source: wiki/sources/descriptions/gmh5225__Driver-kaldereta.md); [[kernel-payload-comms]] studies shared-memory payload exchange for KM↔UM driver communication (gmh5225); [[shared-flushfilebuffers-communication]] studies upstream UCFoxi shared-buffer + `FlushFileBuffers`-triggered `IRP_MJ_FLUSH_BUFFERS` KM↔UM comm without a persistent worker thread (UCFoxi; README `[FlushFileBuffers]`) (source: wiki/sources/descriptions/UCFoxi__Shared-FlushFileBuffers-Communication.md); [[ucfoxi-shared-flushfilebuffers-communication-update]] studies `\Driver\PEAUTH` extended fork with registry-seeded shared buffers for KM↔UM comm (gmh5225); [[job-communication]] studies job-object / silo `NtQueryInformationJobObject` Ring0↔Ring3 comm without IOCTL (gmh5225); [[read-write-driver]] studies `ntUserSetSysColors` as a KM↔UM channel (Win11 `10.0.22000.376` hardcoded addrs); [[custom-data-ptr-swap-sample]] studies `NtQueryLicenseValue` as a KM↔UM channel (gmh5225); [[poseidon]] studies `NtConvertBetweenAuxiliaryCounterAndPerformanceCounter` as a KM↔UM channel with BE/EAC detection notes; [[dataptrhooks]] studies `.data` pointer hooks on syscall-reachable targets incl. that auxiliary-counter path plus code-integrity querying, with user-mode clients and CFG indirect-call-site research notes (0mWindyBug; README `[NtConvertBetweenAuxiliaryCounterAndPerformanceCounter]`) (source: wiki/sources/descriptions/0mWindyBug__DataptrHooks.md); [[r69-driver]] studies `NtQueryAuxiliaryCounterFrequency` with HalPrivateDispatchTable hooks for CR3-backed phys process R/W without IOCTL (gmh5225); [[interep-driver-leak]] studies `NtGdiPolyPolyDraw` as a covert win32k GDI syscall channel for kernel driver process memory R/W (gmh5225; leaked cheat driver) (source: wiki/sources/descriptions/gmh5225__Interep-Driver-Leak.md); [[comm-data-ptr-driver]] studies shared data-pointer KM↔UM comm via `NtGdiPolyPolyDraw` for memory R/W without IOCTL (gmh5225) (source: wiki/sources/descriptions/gmh5225__Comm-data-ptr-driver.md); [[kernel-eac-be-comm]] studies hooked win32k function-pointer KM↔UM comm with process/module lookup, memory R/W, alloc/free/protect, XOR-obfuscated strings, and compact ring-3↔ring-0 protocol for EAC/BE game memory research (JGonz1337; README `[NtGdiPolyPolyDraw]`) (source: wiki/sources/descriptions/JGonz1337__kernel-eac-be-comm.md); [[ntuserupdatewindowtrackinginfo]] studies **NtUserUpdateWindowTrackingInfo** win32k syscall-path covert KM↔UM comm with memory R/W, pattern scan, allocation, and pointer swap (D3DXVECTOR2; README `[NtUserUpdateWindowTrackingInfo]`) (source: wiki/sources/descriptions/D3DXVECTOR2__NtUserUpdateWindowTrackingInfo.md); [[comm-neko-swap]] studies swap-based memory page operations for covert KM↔UM exchange via Win32kApiSetTable instead of IOCTL (gmh5225) (source: wiki/sources/descriptions/gmh5225__Comm-NekoSwap.md); [[comm-data-pointer-swap]] studies win32kbase internal data-pointer swap via `NtDCompositionSetChildRootVisual` from win32u.dll as a compact GUI-syscall covert KM↔UM channel (gmh5225) (source: wiki/sources/descriptions/gmh5225__Comm-Data-Pointer-Swap.md); [[window-hijack]] hijacks window handles / thread contexts for covert KM↔UM I/O; [[memfilter-fn-driver]] uses Filter Manager communication-port I/O with MDL cross-process R/W plus integrated Flt/Cm/Ob stealth (zensenzay) (source: wiki/sources/descriptions/zensenzay__memfilter-fn-driver-.md)). Kernel file-hide driver samples such as [[hide-file]] (C; cheat / hide) sit in the same stealth / Detection:Hide-adjacent lane. (source: wiki/sources/descriptions/sina85__hide-file.md) Driver-list Flink/Blink unlink samples such as [[hide-driver]] (cheat / hide) extend that lane against AC driver enumeration. (source: wiki/sources/descriptions/nbqofficial__HideDriver.md) Multi-structure trace erasure such as [[hide-driver-testing]] (gmh5225; MmUnloadedDrivers/PsLoadedModuleList/PiDDBCacheTable/driver object lists; Win11 21H2 stress test; cheat / hide) (source: wiki/sources/descriptions/gmh5225__HideDriverTesting.md) (source: wiki/sources/descriptions/paradoxwastaken__Poseidon.md) (source: wiki/sources/descriptions/gmh5225__r69-driver.md) Return-address / call-stack spoof illustrations such as [[return-address-spoofer]] (C/C++; memory analysis) sit in the `Cheat > Spoof Stack` lane; synthetic-frame stack spoofing such as [[loudsunrun]] (namazso / SilentMoonWalk / VulcanRaven lineage) extends the same lane; CET-compatible shellcode loaders with fully backed call stacks such as [[nocturneldr]] (signed-module code-cave + donor unwind / `RtlAddFunctionTable`) push that lane further; kernel callout PoCs such as [[callout-poc]] (C/C++; kernel debug / spoof-stack research) sit alongside. (source: wiki/sources/descriptions/thesecretclub__callout-poc.md) (source: wiki/sources/descriptions/susMdT__LoudSunRun.md) (source: wiki/sources/descriptions/xec412__NocturneLdr.md) GPU serial / board fingerprinting via undocumented NvAPI is illustrated by [[nvidiaapi]] (`nvapi64.dll` + `NvAPI_QueryInterface`); NVIDIA GPU UUID spoof via `nvlddmkm.sys` modification such as [[nvidia-gpu-spoof]] sits in the same Cheat HWID lane. (source: wiki/sources/descriptions/roomyoni__Nvidia-GPU-Spoof.md) Game-side GPU hardware-check bypass DLLs such as [[hardware-bypass]] (Ke4ton; C++ Visual Studio; inject shortly after launch to patch runtime validation; narrow build-and-inject workflow; client integrity / hardware-gating RE) sit in the adjacent client-integrity bypass lane. (source: wiki/sources/descriptions/Ke4ton__hardware_bypass.md) Alignment-abuse kernel/driver/hook research such as [[owned-alignment]] sits in the same cheat / HWID lane. AMIDEWIN-oriented system-identifier spoof research such as [[spoofer-amidewin]] (C/C++; Windows internals / controlled ID modification) extends the same `Cheat > HWID` lane; full HWID spoofers that modify hardware identifiers and clean tracking traces such as [[hwidspoofer]] sit alongside; kernel-level title-targeted HWID spoof research such as [[hwid-spoofer-for-fortnite-and-valorant]] (C/C++; Fortnite / Valorant; cheat / HWID) extends that lane; Wizard101-focused HWID spoof research such as [[wizard101-spoofer]] (disk serial / MAC / motherboard UUID; cheat / HWID) extends that lane; EAC/BattlEye HWID spoofer research such as [[hwid-spoofer]] (C/C++; gmh5225; cheat / HWID) extends that lane; kernel-mode [[hwid-spoofer-eac-be]] (disk serial / NIC MAC / SMBIOS via driver hooks; EAC/BE HWID-ban evasion; gmh5225) extends that lane (source: wiki/sources/descriptions/gmh5225__Hwid-Spoofer-EAC-BE.md); [[hwid-eclipsed-spoofer-eac-be]] (Eclipsed; disk serial / NIC / other HWIDs at kernel level; EAC/BE HWID-ban evasion; gmh5225) extends that lane (source: wiki/sources/descriptions/gmh5225__HWID-EclipsedSpoofer-EAC-BE.md); kernel-mode [[hwid-kernel-spoofer]] (disk serial / MAC / SMBIOS / GPU via `IRP_MJ_DEVICE_CONTROL` dispatch-hook interception on storage and network drivers; gmh5225) extends that lane (source: wiki/sources/descriptions/gmh5225__HWID-Kernel-Spoofer.md); kernel-mode [[easy-hwid-spoofer]] (disk/NIC/GPU/SMBIOS serial spoof via driver dispatch hooks + direct physical-memory patches; Win10 tested; gmh5225) extends that lane (source: wiki/sources/descriptions/gmh5225__EASY-HWID-SPOOFER.md); comprehensive open-source [[eac-spoofer-meme]] (zensenzay; kernel C driver + C++ IOCTL controller; SMBIOS/disk/NVMe/MAC/GPU/PCI/CPUID/EFI/ACPI/registry spoof; disk I/O completion hooks; registry PCI/USB alias callbacks; VT-x/SVM CPUID mini-hypervisors; artifact cleanup; cheat / HWID) extends that lane (source: wiki/sources/descriptions/zensenzay__eac-spoofer-meme.md); upstream BTBD [[hwid]] (original kernel HWID spoofer; IOCTL interception for disk/volume/NIC/ARP/SMBIOS/boot/GPU IDs; usermode registry + tracking-file cleanup; Win10 1507–1903 x64; NVME IOCTL gap; btbd) extends that lane (source: wiki/sources/descriptions/btbd__hwid.md); BTBD-style manually mapped [[driver-hwid-btbd-modified]] (storage IOCTL hooks; GPT/SMART/storahci RAID serial rewrite; multi-surface disk-identity pipeline; Win1909; gmh5225) extends that lane (source: wiki/sources/descriptions/gmh5225__Driver-HWID-btbd-modified.md); upstream BTBD WPP DeviceControl interception PoC [[wpp]] (WPP trace pointer hijack in storage drivers; stack-walk IRP capture; disk-serial HWID research; btbd) extends that hooking lane (source: wiki/sources/descriptions/btbd__wpp.md); permanent reboot-persistent HWID spoof research such as [[hwid-permanent-hwid-spoofer]] (gmh5225; firmware-level hardware IDs via kernel driver or registry manipulation; maintains spoofed values across reboots without re-execution; cheat / HWID) extends that lane (source: wiki/sources/descriptions/gmh5225__HWID-Permanent-HWID-Spoofer.md); comprehensive v6 HWID spoofer research such as [[full-hwid-spoofer-v6]] (gmh5225; disk/NIC/GPU/SMBIOS/registry IDs; KdMapper-loaded kernel driver + ImGui one-click permanent spoof; AMD/Intel Win10/11; cheat / HWID) extends that lane (source: wiki/sources/descriptions/gmh5225__Full-Hwid-Spoofer-V6.md); compiled snippet-based HWID spoof research such as [[hwid-pasted-hwid-spoofer]] (gmh5225; disk serial / NIC MAC from public spoofing snippets; hardware-ban evasion; cheat / HWID) extends that lane (source: wiki/sources/descriptions/gmh5225__HWID-Pasted-Hwid-Spoofer.md); Steam client HWID/telemetry blocking such as [[hwid-steam-spyware-terminator]] (remove or block Steam hardware fingerprinting before Valve server transmission; gmh5225; README [Steam]) (source: wiki/sources/descriptions/gmh5225__HWID-SteamSpywareTerminator.md); Overwatch chainban anti-flag cleanup such as [[ow-anti-flag]] (dword64; modern C++ console app; clears common directories and registry keys Blizzard and cheat developers use to flag devices; cheat / HWID) extends that artifact-scrub lane beside serial spoofers. (source: wiki/sources/descriptions/dword64__Ow-Anti-Flag.md); universal ImGui-loader HWID spoofer bases such as [[hwid-spoofer-ud-fortnite-warzone-apex-rust-escape-from-tarkov-and-all-eac-be-games-imgui-loader-base]] (gmh5225; disk/NIC/SMBIOS/GPU serial kernel spoof; Fortnite/Warzone/Apex/Rust/Tarkov; EAC/BE; cheat / HWID) extend that lane (source: wiki/sources/descriptions/gmh5225__HWID-Spoofer-UD-Fortnite-WarZone-Apex-Rust-Escape-From-Tarkov-and-all-EAC-BE-Games-IMGUI-Loader-Base.md); leaked ImGui HWID spoofer research such as [[imgui-spoofer-leaked]] (Veuqx0; C++; ImGui GUI + loader/mapper kernel components + WinAPI routines; debugger/process anti-analysis; ban-evasion spoofer structure study; cheat / HWID) extends that lane (source: wiki/sources/descriptions/Veuqx0__ImGui-Spoofer-Leaked.md); EAC-oriented ImGui HWID spoof toolkit such as [[hwid-spoofer-eac]] (BuzzerFelix; C++; ImGui GUI + driver mapper/loader + service handling; low-level hardware identifier changes; practical testing workflow; game bypass / anti-cheat HWID research; cheat / HWID) extends that lane (source: wiki/sources/descriptions/BuzzerFelix__HWIDSpooferEAC.md); mixed overlay-cheat + HWID-evasion package such as [[spoofer]] (AlfredIU; C++ user-mode aimbot/ESP/entity cache/projectile prediction via DirectX9 ImGui plus kernel driver build artifacts and spoofing branding; offensive cheat architecture + identity-evasion workflows; cheat / HWID) extends that lane (source: wiki/sources/descriptions/AlfredIU__Spoofer.md); one-click ImGui+DX9 HWID spoofer launchers such as [[theordernarkoz-hwid-spoofer]] (Theordernarkoz; C++; Dear ImGui + DirectX 9 GUI; downloads external driver/helper binaries then CLI spoof step; anti-cheat bypass workflows; cheat / HWID) extend that lane (source: wiki/sources/descriptions/Theordernarkoz__Hwid-Spoofer.md) (remove or block Steam hardware fingerprinting before Valve server transmission; gmh5225; README [Steam]) (source: wiki/sources/descriptions/gmh5225__HWID-SteamSpywareTerminator.md); C++ kernel-driver precision HWID spoof research such as [[precision-spoofer-cpp]] (gmh5225; driver development; cheat / HWID) extends that lane; HDD serial spoof samples such as [[hdd-serial-spoofer]] (namazso; C/C++) narrow that lane to disk identifiers (source: wiki/sources/descriptions/namazso__hdd_serial_spoofer.md); educational Windows C++ HWID PoC samples such as [[skotschia-hwid-spoofer]] (Skotschia; disk serial / SMART / SMBIOS; low-level helper modules + Visual Studio project files; older PoC with detection-hardening gaps; cheat / HWID) extend that lane (source: wiki/sources/descriptions/Skotschia__hwid_spoofer.md); archival kernel-driver HWID spoofer [[mutante]] (SamuelTulach; disk serial / SMART / SMBIOS; hook-minimal WDK driver; older-generation anti-cheat evasion reference; cheat / HWID) extends that lane (source: wiki/sources/descriptions/SamuelTulach__mutante.md); kernel-mode WMI static spoof PoC [[wmi-static-spoofer]] (Alex3434; direct memory + registry patches for WMI-exposed hardware serials; driver unloads after apply; configurable offsets + randomized serial generation; anti-cheat / licensing telemetry HWID evasion research; cheat / HWID) extends that lane (source: wiki/sources/descriptions/Alex3434__wmi-static-spoofer.md); open-source Windows 10/11 spoofing and cleanup toolkit such as [[windows-spoofer]] (Scrut1ny; Batch + PowerShell modules; system identifiers + network values + trace artifact cleanup; external utilities for volume ID / SMBIOS; platform support notes; anti-cheat fingerprinting research in controlled labs; cheat / HWID) extends that lane (source: wiki/sources/descriptions/Scrut1ny__Windows-Spoofer.md); defensive RAID0 serial-uncloaking such as [[uncloaking-raid0-hwid-serials]] (gmh5225; Detection:HWID; recover original disk serials hidden behind RAID0 striping) studies spoofing limits on that same surface (source: wiki/sources/descriptions/gmh5225__Uncloaking-RAID0-HWID-Serials.md) (source: wiki/sources/descriptions/gmh5225__wizard101-spoofer.md) (source: wiki/sources/descriptions/gmh5225__hwid-spoofer.md) (source: wiki/sources/descriptions/gmh5225__PrecisionSpoofer-CPP.md) (source: wiki/sources/descriptions/gupr0x4__HWID-Spoofer-for-Fortnite-and-Valorant.md) (source: wiki/sources/descriptions/zoand__BOOM.md) (source: wiki/sources/descriptions/xPasters__.data-ptr-swap.md) (source: wiki/sources/descriptions/oakboat__DataPtrHookWin11.md) (source: wiki/sources/descriptions/muturikaranja__AfdIrpCallDispatch.md) (source: wiki/sources/descriptions/isoadam__gina_public.md) (source: wiki/sources/descriptions/weak1337__EvCommunication.md) (source: wiki/sources/descriptions/gmh5225__kernel_payload_comms.md) (source: wiki/sources/descriptions/gmh5225__job_communication.md) (source: wiki/sources/descriptions/gmh5225__custom_data_ptr_swap_sample.md) (source: wiki/sources/descriptions/gmh5225__UCFoxi-Shared-FlushFileBuffers-Communication-Update.md) (source: wiki/sources/descriptions/ryan-weil__ReadWriteDriver.md) (source: wiki/sources/descriptions/thesecretclub__window_hijack.md) (source: wiki/sources/descriptions/veryboreddd__Return-address-spoofer.md) (source: wiki/sources/descriptions/weak1337__NvidiaApi.md) (source: wiki/sources/descriptions/vmcall__owned_alignment.md) (source: wiki/sources/descriptions/singhhdev__Spoofer-AMIDEWIN.md) (source: wiki/sources/descriptions/semihcevik__hwidspoofer.md) Defensive WMI hardware-inventory CLIs such as [[windows-hardware-info]] document common identifier surfaces spoofers target. (source: wiki/sources/descriptions/paradoxwastaken__WindowsHardwareInfo.md). SMBIOS serial-focused checkers such as [[hwid-checker-mg]] map manufacturer/model/serial ranges in the same Detection:HWID lane. (source: wiki/sources/descriptions/medievalghoul__hwid-checker-mg.md) Open-source hardware monitors such as [[openhardwaremonitor]] (C#/JS; sensor/driver telemetry) expose related HWID-adjacent machine signals. (source: wiki/sources/descriptions/openhardwaremonitor__openhardwaremonitor.md). Actively maintained fork [[libre-hardware-monitor]] (LibreHardwareMonitor; C# WinForms + .NET sensor library; temps/fans/voltages/loads/clocks; game performance monitoring / environment-aware tooling) extends that lane. (source: wiki/sources/descriptions/LibreHardwareMonitor__LibreHardwareMonitor.md). Cross-platform C++ inventory via [[hwinfo]] (CPU/RAM/GPU/disk/network; Windows/Linux/macOS) supports HWID identification tooling. (source: wiki/sources/descriptions/lfreist__hwinfo.md). macOS SMC CPU temperature CLI [[osx-cpu-temp]] (C; IOKit `AppleSMC`; °C/°F) exposes Apple-host thermal sensor reads in the same Detection:HWID lane. (source: wiki/sources/descriptions/lavoiesl__osx-cpu-temp.md). Root-only USB peripheral serial spoofing such as [[usbsn]] (ekknod; C++/Java; Windows/Linux/mobile; Some Tricks / Android) extends that lane to USB device identifiers beside disk/NIC/GPU surfaces. (source: wiki/sources/descriptions/ekknod__usbsn.md) Android key-attestation chain manipulation such as [[trickystore]] (5ec1cff; cert-chain patch + SPL spoof; per-app targeting; beakthoven rewrite in same lane) extends mobile HWID / integrity evasion beside Play Integrity checks. (source: wiki/sources/descriptions/5ec1cff__TrickyStore.md) - EFI boot-time mappers and pre-kernel privilege demos such as [[efitool]] (`ExitBootServices` in-RAM `SYSTEM` hive patch → SYSTEM `cmd.exe`; no disk writes / no kernel driver) and [[undervolter]] (wesmar; native UEFI x64 Intel CPU undervolting via MSR/MMIO before OS load; NVRAM Setup patching; Secure Boot SelfEnroll; Plundervolt-class pre-boot voltage-interface research; cheat / EFI Driver) (source: wiki/sources/descriptions/wesmar__UnderVolter.md) and [[uefi-bootloader]] (simple UEFI runtime-driver mmapper; C/C++; cheat / EFI driver); generic UEFI bootkit PoCs such as [[bootlicker]] (Boot Manager / OS loader patch pre-kernel; initial usermode execution; DSE / PatchGuard bypass research; gmh5225) (source: wiki/sources/descriptions/gmh5225__bootlicker.md); compact UEFI boot-chain PoCs such as [[uefi-bootkit]] (ajkhoury; mostly C; UEFI application + runtime driver; persists past ExitBootServices into OS boot; EFI build/image load/runtime protocol handling; pre-OS persistence + detection research) (source: wiki/sources/descriptions/ajkhoury__UEFI-Bootkit.md); staged UEFI boot-stage implants such as [[driver-efi-bootkit]] (gmh5225; EFI app→kernel payload chain; loader hook + pre-OS driver patch; Python BOOTDOOR inject; boot/firmware RE) (source: wiki/sources/descriptions/gmh5225__Driver-efi-bootkit.md); UEFI boot-stage HWID spoof research such as [[rainbow-efi]] (gmh5225; VS/MSBuild EDK II + `rainbow.efi`; hooks `ExitBootServices`, walks `OslLoaderBlock`, hooks `IopLoadDriver` for spoofing then self-unhooks; OVMF/shell ISO debug assets; cheat / HWID) (source: wiki/sources/descriptions/gmh5225__-Rainbow---EFI.md); UEFI bootkit research such as [[rainbow]] (SamuelTulach; EDK-II pre-kernel bootkit; OVMF/QEMU debug + VS UEFI build; pre-boot attack vectors / firmware persistence / HWID research; cheat / HWID) (source: wiki/sources/descriptions/SamuelTulach__rainbow.md); boot-time SMBIOS spoofing such as [[negativespoofer]] (SamuelTulach; Clover-style firmware-table patch before OS start; C/EFI build guidance; pre-OS hardware identity / anti-cheat HWID research; cheat / HWID) (source: wiki/sources/descriptions/SamuelTulach__negativespoofer.md); lightweight UEFI SMBIOS read/spoof library such as [[perfectsmbios]] (Th3Spl; C; VisualUefi/EDK2; SMBIOS 2.0/3.0 via EFI config table; randomized string overwrite; no ntoskrnl/winload pointers; Windows+Linux; pre-boot HWID / anti-cheat RE; cheat / EFI Driver + HWID) (source: wiki/sources/descriptions/Th3Spl__PerfectSMBios.md); Windows bootloader shim PoCs such as [[pwnedboot]] (SamuelTulach; microcode-update DLL replacement for very-early boot payload; gnu-efi + VS; Secure Boot bypass via Windows' own bootloader; early-boot attack surface / pre-OS AC threat modeling) (source: wiki/sources/descriptions/SamuelTulach__PwnedBoot.md); OS-runtime UEFI cheat memory access such as [[fortnite-efi-external]] (gmh5225; external Fortnite; UEFI runtime services + `NtSetSystemEnvironmentValueEx` KM↔UEFI comm; no Windows kernel driver load; anti-cheat driver-detection evasion; cheat / game:fortnite [External]) (source: wiki/sources/descriptions/gmh5225__Fortnite-EFI-External.md); integrated UEFI frameworks such as [[advanced-efi-driver-with-gdi-and-kernel-mouse-input]] (Twobot7; C/C++; memory access + process manipulation + GDI overlay + high-frequency kernel mouse input; encrypted comms + anti-detection; low-level access / overlay / input automation research) (source: wiki/sources/descriptions/Twobot7__advanced-efi-driver-with-gdi-and-kernel-mouse-input.md); minimal EFI runtime process dump/R/W PoCs such as [[efidump]] (gmh5225; gnu-efi runtime driver + post-boot Windows client; EDK2 shell load; no hardening; cheat / [Dump]) (source: wiki/sources/descriptions/gmh5225__EfiDump.md); CMake + MSVC scaffold for standalone `.efi` research builds via [[eficmake]] (EDK2 headers without full EDK2; boot-services entry) (source: wiki/sources/descriptions/mrexodia__EfiCMake.md); Visual Studio UEFI application dev framework such as [[simpleuefi]] (Th3Spl; MSVC templates + EDK-II toolchain; Python setup script; streamlined bootkit / UEFI security research scaffold) (source: wiki/sources/descriptions/Th3Spl__SimpleUEFI.md); GNU-EFI Visual Studio template such as [[easyuefi]] (SamuelTulach; C/asm + linker scripts + bundled GNU-EFI; ready-to-build Windows research scaffold; firmware security / boot-stage experimentation / low-level game-security tooling prototypes; README [Visual Studio template for GNU-EFI]) (source: wiki/sources/descriptions/SamuelTulach__EasyUefi.md); VisualUefi C++ UEFI graphics framework such as [[uefi-graphic]] (Oliver-1-1; framebuffer wrapper classes for screens/colors/text/shapes; mouse input + file ops; pre-boot graphical tooling for firmware dev / low-level security research; README [Simpel usage of graphic in UEFI]) (source: wiki/sources/descriptions/Oliver-1-1__UEFI-Graphic.md); ACPI BGRT boot-logo utility such as [[bgrt-injector]] (Jamesits; C EFI loader/driver; 24-bit BMP assets; rEFInd + default EFI paths; boot-screen customization / boot-chain experimentation) (source: wiki/sources/descriptions/Jamesits__BGRTInjector.md); fully scriptable UEFI bootloaders such as [[luaboot]] (Lua-driven pre-OS boot; MIT; cheat / EFI driver research) (source: wiki/sources/descriptions/leap0x7b__luaboot.md); engine-specific paths (Unreal/Unity/Source). (source: wiki/sources/descriptions/wesmar__EfiTool.md) (source: wiki/sources/descriptions/sa413x__UEFI-Bootloader.md) (source: wiki/sources/descriptions/mrexodia__EfiCMake.md) - AC-system exploration repos (e.g. [[vac3-inhibitor]] for VAC3 hooking/memory work; [[vook]] for VAC hook research; [[vac-hooks]] for WinAPI hook/logging on VAC-used APIs (danielkrupinski); [[vac-bypass]] for Steam-client VAC scan inhibition via `Steam.exe` injection and `steamservice.dll` patching (danielkrupinski); [[vac-bypass-loader]] for the C injector that deploys [[vac-bypass]] (danielkrupinski); [[jackbail4-vac-bypass]] for an archived Detours PoC with signature scan and API spoofing on `VirtualQuery`, enumeration, debugger checks, and memory-read paths in Steam service context (Jackbail4; non-working historical research) (source: wiki/sources/descriptions/Jackbail4__VAC-Bypass.md); [[vac3-dumper]] for timed multi-module VAC dumps; [[vac-module-dumper]] for VAC module dump; [[vac-dumper]] for Steam-side live VAC module capture via `steamservice.dll` MinHook (gmh5225); [[prevent-vac]] for `steamserver.dll` / WinAPI return spoofing that blocks VAC monitoring via `vac_monitor_manager` (gmh5225); [[vackeyretrieval]] for VAC module ICE key retrieval; [[vacation3-emu]] for VAC3 module emulation with fake game memory and scan logging; [[vac-emulator]] for sandboxed VAC module execution with detection/signature logging (gmh5225); [[valveanticheat1]] for GoldSrc/WON-era VAC1 ModuleC/ModuleS bytecode-VM reconstruction; [[como-funciona-vac]] for a CS2 VAC usermode architecture forensic write-up) sit in the user-mode lane of cheat research. (source: wiki/sources/descriptions/zyhp__vac3_inhibitor.md) (source: wiki/sources/descriptions/krispybyte__Vook.md) (source: wiki/sources/descriptions/danielkrupinski__vac-hooks.md) (source: wiki/sources/descriptions/danielkrupinski__VAC-Bypass.md) (source: wiki/sources/descriptions/danielkrupinski__VAC-Bypass-Loader.md) (source: wiki/sources/descriptions/Jackbail4__VAC-Bypass.md) (source: wiki/sources/descriptions/x1tan__vac3-dumper.md) (source: wiki/sources/descriptions/nevioo1337__VAC-ModuleDumper.md) (source: wiki/sources/descriptions/gmh5225__VACDumper.md) (source: wiki/sources/descriptions/gmh5225__PreventVAC.md) (source: wiki/sources/descriptions/shuruk421__VACKeyRetrieval.md) (source: wiki/sources/descriptions/ioncodes__vacation3-emu.md) (source: wiki/sources/descriptions/gmh5225__Vac-Emulator.md) (source: wiki/sources/descriptions/shefben__VALVeAntiCheat1.md) (source: wiki/sources/descriptions/ianveig29__como-funciona-vac.md) - Blizzard / WoW Warden research samples such as [[x14-08-coverstory-blizzard]] (C++; memory scan / code patch / Warden loader hooks / RunScript via HacksController) sit in the same user-mode AC-exploration lane. (source: wiki/sources/descriptions/xakepru__x14.08-coverstory-blizzard.md) WoW client IAT repair / plugin tooling such as [[wow-iat-fix]] (C/C++; plugin development, modding, SDK generation; cheat / game:wow) sits in the same title-specific lane. (source: wiki/sources/descriptions/helloobaby__wow-IAT-fix.md) WoW client module unpacker tooling such as [[dumpwow]] (gmh5225 fork; C++/Python; namreeb/dumpwow lineage; cheat / game:wow) sits in the same title-specific lane. (source: wiki/sources/descriptions/gmh5225__dumpwow.md) WoW live-process anti-dump [[x64dbg]] plugin such as [[wowdumpfix]] (adde88; C/C++; removes anti-dumping obstacles from protected Blizzard processes; Scylla IAT/dump repair; attach-time breakpoint patches; cheat / game:wow / Dump Fix) sits in the same title-specific lane. (source: wiki/sources/descriptions/adde88__WoWDumpFix.md) WoW Lua unlocker such as [[sky-engine]] (adde88; C++; repeatedly resets taint-related state so protected Lua functions run; cheat prototyping / scripting research / AC detection risk study; cheat / game:wow [Wow Lua Unlocker]) sits in the same title-specific lane. (source: wiki/sources/descriptions/adde88__SkyEngine.md) WoW auto-fishing automation such as [[wow-wowautofishing]] (C/C++; rendering / audio / memory analysis; cheat / game:wow; gmh5225) sits in the same title-specific lane. (source: wiki/sources/descriptions/gmh5225__WOW-WowAutoFishing.md) Open-source WoW hack such as [[ohack]] (fail46; C++; memory analysis; cheat / game:wow) sits in the same title-specific lane. (source: wiki/sources/descriptions/fail46__OHack.md) WoW Legion (**7.3.5**) TrinityCore server emulators such as [[legioncore-7-3-5]] (dufernst; C++; world simulation / dungeons·raids / artifact weapons / class halls / world quests / WoW network protocol; cheat / game:wow [Private Server]) sit in the adjacent authoritative-server lane for MMO expansion server implementation study. (source: wiki/sources/descriptions/dufernst__LegionCore-7.3.5.md) Overwatch protected-executable IAT repair such as [[overwatch-iat-fixer]] (gmh5225; resolves obfuscated/encrypted import entries for disassembler analysis; cheat / game:overwatch) sits in the same import-obfuscation lane. (source: wiki/sources/descriptions/gmh5225__overwatch-iat-fixer.md) Overwatch protected-binary unpack/decrypt tooling such as [[ow-unpack]] (Midi12; reuploaded C++; multiple decryption/helper modules + assembly-assisted low-level unpacking; practical RE tool for binary analysis and protected-game unpack study; cheat / game:overwatch) sits in the same title-specific protected-executable lane. (source: wiki/sources/descriptions/Midi12__ow_unpack.md) Free multi-title cheat research such as [[meowsense]] (gmh5225; offensive techniques; cheat / game:overwatch2) sits in the same Overwatch 2 cheat lane. (source: wiki/sources/descriptions/gmh5225__meowsense.md) Overwatch internal glow/outline ESP such as [[ow-outlines]] (gmh5225; injected DLL; `GetModuleHandleA` base + GlowESP offset patch + VEH; writes outline rendering structures; cheat / game:overwatch [Shows Players through walls]) sits in the same Overwatch visual-ESP lane. (source: wiki/sources/descriptions/gmh5225__Ow-Outlines.md) Overwatch FOV changer samples such as [[ow-fov]] (dword64; injected DLL; field-of-view manipulation; README recommends matching the batch-file injector when self-building; cheat / game:overwatch [FOV]) sit in the same title-specific camera/visual lane. (source: wiki/sources/descriptions/dword64__Ow-FOV.md) Overwatch chainban anti-flag cleanup such as [[ow-anti-flag]] (dword64; console app; clears flag directories/registry keys used by Blizzard and cheat malware; cheat / HWID / game:overwatch) sits in the same title-specific ban-evasion lane. (source: wiki/sources/descriptions/dword64__Ow-Anti-Flag.md) Overwatch 2 external colorbot + Arduino HID samples such as [[overwatch2-colorbot-cheats]] (gmh5225; Python screen color detection + serial Leonardo aim; cheat / game:overwatch2) sit in the same title-specific zero-memory visual lane via [[hardware-input-injection]]. (source: wiki/sources/descriptions/gmh5225__Overwatch2-colorbot-Cheats.md) Overwatch 2 internal aimbot + ESP samples such as [[overwatch-2-cheat-aimbot-esp]] (gmh5225; C/C++; rendering / hooking / memory analysis; AHK-script pairing noted; avoid covering skin outlines with ESP; cheat / game:overwatch2) sit in the same title-specific in-process visual lane beside [[ow-outlines]] and [[meowsense]]. (source: wiki/sources/descriptions/gmh5225__Overwatch-2-Cheat-Aimbot-Esp.md) Overwatch 2 external cheat framework samples such as [[overwatch-2-tope-external-cheat]] (ZEROWyt; C++ Visual Studio; configurable aimbot + ImGui visual overlay helpers; memory-access utilities / pattern-scan / offsets / Windows input handling; external cheat design + RE workflows; cheat / game:overwatch2 [External]) sit in the same title-specific out-of-process lane beside [[overwatch2-colorbot-cheats]]. (source: wiki/sources/descriptions/ZEROWyt__Overwatch-2-TOPE-EXTERNAL-CHEAT.md) Overwatch 1 internal DX11 cheat samples such as [[overwatch-1-cheat-source]] (gmh5225; Detours Present + ImGui ESP/aimbot/skin changer; return-address spoofing vs Warden stack checks; HWBP hooks; VMProtect SDK; curl loader auth; cheat / game:overwatch) extend that lane on legacy Overwatch with full menu overlay and Warden evasion tradecraft. (source: wiki/sources/descriptions/gmh5225__Overwatch-1-cheat-source.md) Overwatch 2 Warden AC-emulation samples such as [[ow2-wardenrekter]] (gmh5225; injected DLL; `KiUserExceptionDispatcher` RET vs VEH INT3 hooks, DbgBreakPoint NOP, PEB anti-debug clear, timing/API patches, DR0 demo; README `[Emulate OW2 AC]`; cheat / game:overwatch2) sit in the same title-specific Warden bypass lane beside feature cheats. (source: wiki/sources/descriptions/gmh5225__OW2-wardenrekter.md) Overwatch hook/render/AC-research POC samples such as [[ow-aeternum]] (gmh5225; C/C++; anti-cheat research + rendering + hooking; author-flagged rough POC; cheat / game:overwatch) sit in the same title-specific offensive-research lane beside full feature cheats. (source: wiki/sources/descriptions/gmh5225__OW-Aeternum.md) Hypervisor-based external Widowmaker triggerbot samples such as [[pareidolia-triggerbot]] (blackhades00; VivienneVMM + MouClassInputInjection; external; bypasses Overwatch Anti-Cheat; cheat / triggerbot & aimbot / game:overwatch) extend that lane with below-OS memory + MouClass input injection. (source: wiki/sources/descriptions/blackhades00__PareidoliaTriggerbot.md) - Curated RE learning indexes such as [[reverse-engineering]] (reversing / networking / editors) sit in the Cheat guide lane for offensive technique study. (source: wiki/sources/descriptions/wtsxDev__reverse-engineering.md) Comprehensive tool-type-organized game hacking resource lists such as [[game-hacking]] (dsasmblr; disassemblers / debuggers / hex editors / memory scanners / .NET decompilers / graphics debuggers / RE tutorials; Cheat Engine / x64dbg / IDA / Ghidra / dnSpy / RenderDoc; cheat / guide) sit in the same lane. (source: wiki/sources/descriptions/dsasmblr__game-hacking.md) Game-specific RE learning material indexes such as [[game-reversing]] (personally curated resources; Windows PC games; x86-assembly-first over x64; cheat / guide) sit in the same lane. (source: wiki/sources/descriptions/kovidomi__game-reversing.md) Curated Android game modding repo collections such as [[android-modding]] (jbro129; cheat templates, IL2CPP tooling, injectors; cheat / guide) sit in the same lane. (source: wiki/sources/descriptions/jbro129__android-modding.md) Curated game-hacking and cracking learning link lists such as [[thezong-game-hacking]] (TheZong; tutorials/forums/RE refs/dumpers/mappers; CS:GO/GTA V/RDR2 starter bases; cheat / guide) sit in the same lane. (source: wiki/sources/descriptions/TheZong__Game-Hacking.md) Chinese-language Cheat Engine guide documentation such as [[game-reversed-study]] (documentation/reference; cheat / guide) also sits in that lane. (source: wiki/sources/descriptions/januwA__game-reversed-study.md) Long-form RE writeup archives such as [[batteryshark-github-io]] (Jekyll GitHub Pages; game hacking / classic PC compatibility patching / Windows internals / arcade hardware teardowns; IDA disassembly + Python snippets; Masterpiece consolizing series; QEMU-GDB kernel debugging; cheat / guide) also sit in that lane. (source: wiki/sources/descriptions/batteryshark__batteryshark.github.io.md) Category-organized RE/security tool catalogs such as [[retools]] (disasm / debug / decompiler / hex / network / sandbox) help select a binary-analysis toolkit. (source: wiki/sources/descriptions/stevemk14ebr__RETools.md) Windows bundled RE installer packs such as [[retoolkit]] (Inno Setup; 80+ debug/decompile/PE/hex/network/YARA tools) accelerate cheat/client RE lab setup. (source: wiki/sources/descriptions/mentebinaria__retoolkit.md) Scoop-based AI-agent RE lab installer [[rev-tools-setup]] (PowerShell; CE/Ghidra/x64dbg + read-only CE MCP + OpenCode/Claude Desktop config; Win10/11) targets MCP-driven cheat/AC research workflows. (source: wiki/sources/descriptions/lilyco-42__rev-tools-setup.md) Mandiant [[flare-vm]] Chocolatey/Boxstarter Windows analysis VMs (malware/IR/RE; hundreds of tools) complement those bundles for reproducible lab provisioning. (source: wiki/sources/descriptions/mandiant__flare-vm.md) Multi-database CVE/exploit lookup CLI such as [[cve-maker]] (Python; keyword/product/CVE ID; severity + exploit links) supports scoping vuln research before kernel/client PoC work. (source: wiki/sources/descriptions/msd0pe-1__cve-maker.md) Per-CVE PoC aggregation via [[cve2poc]] (0liverFlow; Python; GitHub/ExploitDB/Nuclei/Metasploit; CVSS/EPSS/CISA KEV; Docker labs, bug-bounty write-ups, CVE↔CPE mapping, JSON/HTML reports; cheat / RE Tools) extends that lane for exploit discovery on a known CVE ID. (source: wiki/sources/descriptions/0liverFlow__CVE2PoC.md) Grafana vulnerability scanner such as [[grafana-final-scanner]] (public CVE checks incl. path traversal/SSRF/auth bypass/info disclosure; version fingerprinting + config analysis; parallel scan + auth; HTML/CSV/JSON reports; Cheat / RE Tools) (source: wiki/sources/descriptions/Zierax__Grafana-Final-Scanner.md) Broader infosec reference wikis with a Games / Game Hacking draft such as [[infosec-reference]] (`Draft/Games.md`) sit in the same cheat / guide lane. (source: wiki/sources/descriptions/rmusser01__Infosec_Reference.md) Practical memory-RE / injection / anti-cheat cheatsheets such as [[gamehacking-cheatsheet]] (IDA/Ghidra, Cheat Engine/Frida, Unity/Unreal, DirectX overlays) also sit in that guide lane. (source: wiki/sources/descriptions/ridpath__gamehacking-cheatsheet.md) Free multi-arch RE tutorials such as [[mytechnotalent-reverse-engineering]] (x86/x64/ARM/AVR/RISC-V; static + dynamic) sit in the same lane. (source: wiki/sources/descriptions/mytechnotalent__Reverse-Engineering.md) Windows RE/debugging guides such as [[hacking-windows]] (C; cheat / guide) also sit there. (source: wiki/sources/descriptions/mytechnotalent__Hacking-Windows.md) Rust binary RE courses such as [[hacking-rust]] (PDF + Cargo chapter labs; x64/ARM64/ARM32) sit in the same lane. (source: wiki/sources/descriptions/mytechnotalent__hacking-rust.md) Go binary RE courses such as [[go-hacking]] (PDF + per-chapter Go source and IDA `.idb` labs; x64/ARM64/ARM32; write/debug/analyze or patch) sit in the same lane. (source: wiki/sources/descriptions/mytechnotalent__go-hacking.md) Embedded firmware RE courses such as [[embedded-hacking]] (RP2350/Pico 2; hands-on firmware hacking labs; GDB/Ghidra/OpenOCD; ARM Thumb FP binary patching) sit in the same lane. (source: wiki/sources/descriptions/mytechnotalent__embedded-hacking.md) Cheat Engine register-purpose tutorials such as [[ce-tutorial]] (CE internals; register roles differ from common illustrations; cheat / guide) sit in the same lane. (source: wiki/sources/descriptions/krampus-nuggets__ce-tutorial.md) Step-by-step beginner game-hacking courses with practice binaries such as [[intro-to-gamehacking]] (memory scan / pointer chains / code injection / function hooking / pattern scan; CE → C++ external+internal; cheat / guide) sit in the same lane. (source: wiki/sources/descriptions/kotae4__intro-to-gamehacking.md) Educational UE4-focused cheat source and guide such as [[ue4-cheat-source-code]] (1hAck-0; C++; ESP/aimbot/trigger + gameplay manipulation; function hooking + pattern scanning walkthrough; hands-on game-security/RE training in controlled environments; cheat / guide) sit in the same lane. (source: wiki/sources/descriptions/1hAck-0__UE4-Cheat-Source-Code.md) No Starch Press *Game Hacking* companion chapter demos such as [[game-hacking-code]] (GameHackingBook; Visual Studio Win32 C++ solution; memory layout/scanning, DLL injection, NOP/IAT/vfunc/call hooks, Adobe AIR hooking, D3D Present overlays, Lua forensics scripts; cheat / guide) extend that lane with book-aligned runnable samples. (source: wiki/sources/descriptions/GameHackingBook__GameHackingCode.md) Structured UE4 engine security methodology guides such as [[ue4-hacking-guideline]] (GameCrashProject; engine background, attack vectors, tooling, build setup, analysis process; engine-level vulnerability study beyond operational cheat detection; cheat / guide) sit in the same lane. (source: wiki/sources/descriptions/GameCrashProject__UE4-Hacking-Guideline.md) Readable C++ cheat-base scaffolds such as [[nullbase]] (NullTerminatorr; memory helpers, entity/local-player abstractions, math utilities, W2S code; straightforward Visual Studio layout; teaches cheat framework structure and iteration; cheat / guide) sit beside those courses as extensible starter codebases. (source: wiki/sources/descriptions/NullTerminatorr__NullBase.md) Gamified 2D platformer learning titles such as [[squally]] (Squalr; C++ Cocos2d-x; teaches values, operators, and logic for game-memory reasoning through gameplay; Windows/macOS/Linux; cheat / guide) extend that lane for learners who prefer in-game training over external lab binaries. (source: wiki/sources/descriptions/Squalr__Squally.md) Stripped Go symbol recovery via [[goresym]] (Mandiant; pclntab/moduledata → IDA) and in-IDA Go runtime metadata restoration via [[golang-loader-assist]] (function names, source refs, types on stripped Go PE; cheat / GO Reversed) and stepwise IDAPython Go workflow scripts via [[alphagolang]] (SentineLabs; pclntab recovery, function discovery, strings, types; YARA for Go PE/ELF/Mach-O; stripped Go malware RE; cheat / Analyzing Golang Binaries) complement those labs. (source: wiki/sources/descriptions/mandiant__GoReSym.md) (source: wiki/sources/descriptions/gmh5225__golang_loader_assist.md) (source: wiki/sources/descriptions/SentineLabs__AlphaGolang.md) - PE triage of game/client modules (imports, TLS, .NET metadata) via viewers such as [[totalpe2]] before deeper RE. (source: wiki/sources/descriptions/zodiacon__TotalPE2.md) Cross-platform hex editor / binary workbench [[hexwalk]] (Qt; Capstone, entropy, binwalk, YAML PE/ELF overlays; Hex Viewer/Editor/Analyzer) extends that static triage lane. (source: wiki/sources/descriptions/gcarmix__HexWalk.md) RE-oriented hex editor / binary analysis platform [[imhex]] (C++; pattern-language parsing, integrated disassembly, diff/hash, plugin extensibility; firmware/file/memory/game binary triage) complements that lane. (source: wiki/sources/descriptions/WerWolv__ImHex.md) In-Ghidra byte-level editing via [[ghidra-hexeditor]] (sengi12; dockable hex editor Ghidra plugin; view/patch loaded program bytes without leaving Ghidra; cheat / Ghidra Plugins) (source: wiki/sources/descriptions/sengi12__ghidra-hexEditor.md) and [[scalpel]] (ntdlll; dockable dark-mode hex/ASCII grid; Listing-synced cursor; wildcard hex or UTF-8 search; inline Ghidra-transaction patching; cheat / Ghidra Plugins) (source: wiki/sources/descriptions/ntdlll__Scalpel.md) complement Ghidra-centric workflows. Classic DOS kart-racer retail asset archaeology via [[pc-wackywheels-doc]] (vs-sr-dev; Wacky Wheels 1994; WACKY.DAT archive, track/sprite formats, pseudo-3D floor-renderer fixed-point LUTs; Python 3 + numpy/Pillow extractors rebuild world textures; Skunny Kart cross-ref; shipped-file—not fan-reconstruction—study; cheat / RE Tools) sits beside [[awesome-game-file-format-reversing]] in the asset-format RE lane. (source: wiki/sources/descriptions/vs-sr-dev__pc-wackywheels-doc.md) Java binary format viewer [[binaryinternals]] (interactive field/bit-level BMP/class/JPEG/PNG/ZIP inspection; OpenJDK/Maven; standalone format libraries; RE education / parser dev) complements that lane. (source: wiki/sources/descriptions/amosshi__binaryinternals.md) MSVC Rich Header compiler-ID tooling via [[compiler-binary-richprint]] (gmh5225; prints toolchain info between DOS stub and PE header; cheat / RE tools) complements that triage. (source: wiki/sources/descriptions/gmh5225__compiler-binary-richprint.md) PE metadata sanitization via [[pecleaner]] (C#; strips Rich header, debug dir, PDB path, linker/timestamp artifacts from x86/x64 PE; cheat / RE tools) is the inverse lane before distribution. (source: wiki/sources/descriptions/colinsenner__PECleaner.md) Embedded resource patch/translation via [[risoh-editor]] (Win32 PE resource GUI; RC import/export; 32/64-bit) (source: wiki/sources/descriptions/katahiromz__RisohEditor.md). Go static workbench [[retract]] (PE/ELF/Mach-O disasm, CFG, decompile, YARA, web UI via `--serve`) suits the same client triage lane. (source: wiki/sources/descriptions/kernelstub__Retract.md) Authenticode signature metadata extraction via [[pesign-analyzer]] (embedded code-signing cert info from signed Windows PE; Anti Cheat → Sign Tools) complements that triage. (source: wiki/sources/descriptions/leeqwind__PESignAnalyzer.md) Authenticode signature steal/copy tooling such as [[sigthief]] (PE `certTable` transplant; weak AV CA/presence checks) sits in the Some Tricks / Windows Ring3 lane. (source: wiki/sources/descriptions/secretsquirrel__SigThief.md) [[stealing-signatures]] (Sentient111; C++ PE security-directory blob copy; certificate metadata transplant without valid signature—verifier behavior testing) complements that lane. (source: wiki/sources/descriptions/Sentient111__StealingSignatures.md) [[signature-kid]] (header-only C++; `WIN_CERTIFICATE` copy + registry-hook trust patching for OS-valid appearance; code-signing bypass study) extends that transplant lane. (source: wiki/sources/descriptions/dslee2022__SignatureKid.md) In-place Authenticode patch tooling such as [[sigflip]] (SigInject encrypts shellcode into `WIN_CERTIFICATE`; SigLoader BOF/C/C#; signature stays valid) complements that lane. (source: wiki/sources/descriptions/med0x2e__SigFlip.md) Fake-cert signing tooling such as [[lazy-sign]] (Microsoft devkit binaries only; zero extra deps; Some Tricks / Windows Ring3) sits in the same lane. (source: wiki/sources/descriptions/jfmaes__LazySign.md) Go CLI cert generator/signer [[limelighter]] (Tylous; domain-metadata spoofed cert material → PFX; external signing utilities; optional real cert signing; red-team trust/EDR research; Fake Cert) extends that lane. (source: wiki/sources/descriptions/Tylous__Limelighter.md) [[fakesign]] (gmh5225; injects fake Authenticode cert data to bypass signature-presence checks; Fake Cert) extends that lane. (source: wiki/sources/descriptions/gmh5225__FakeSign.md) File-lock PoCs such as [[lockfile-poc]] (C++; Lock File) sit in the same Ring3 tricks lane. (source: wiki/sources/descriptions/rbmm__LockFile-Poc.md) AV signature-recovery tooling such as [[avdebugger]] sits in the Cheat → Anti Signature Scanning lane for studying how scanners match binaries. (source: wiki/sources/descriptions/scrt__avdebugger.md) - ELF/DWARF debug-info browsing via [[dwex]] (DWARF Explorer; pyelftools GUI) for Linux/native clients with separate debug files. (source: wiki/sources/descriptions/sevaa__dwex.md) - Rapid x86/x64 shellcode/asm prototyping with [[quickasm]] (assemble via Keystone, execute in-process). (source: wiki/sources/descriptions/zodiacon__QuickAsm.md) Binary Ninja in-disassembler shellcode iteration via [[shellcoder]] (Python plugin; multi-arch assemble/disassemble; inline/spaced hex, Python byte strings, C arrays; 0xricksanchez; README BinaryNinja Shellcoder Plugin) (source: wiki/sources/descriptions/0xricksanchez__Shellcoder.md) Low-latency runtime x86-64 dynamic codegen via [[chasm]] (C library; instruction IR, assembly/execution helpers, AVX-256; JIT/emulator workloads) (source: wiki/sources/descriptions/aqilc__chasm.md). Early-stage Java bytecode assemble/disassemble via [[raung]] for cheat / RE-tools bytecode experiments (syntax still unstable). (source: wiki/sources/descriptions/skylot__raung.md) Cross-platform C++ Windows shellcode frameworks such as [[scfw]] sit in the shellcode engine & tricks lane. (source: wiki/sources/descriptions/wbenny__scfw.md) Bad-byte banishment with preserved functionality such as [[byvalver]] (two usage modes) sits in the same lane. (source: wiki/sources/descriptions/umpolungfish__byvalver.md) C++ shellcode factory tooling such as [[shellcode-factory]] sits in the same lane. (source: wiki/sources/descriptions/lainswork__shellcode-factory.md) C concealed-payload placement demo [[shellcode-plain-sight]] (LloydLabs; random-filled oversized RW buffer, payload at random offset, VirtualProtect to RX, post-run zero cleanup; shellcode engine & tricks / memory evasion) sits in the same lane. (source: wiki/sources/descriptions/LloydLabs__shellcode-plain-sight.md) NVIDIA GPU-resident shellcode staging PoC [[gpu-shellcode]] (H1d3r; CUDA + MinHook; offloads active payload bytes to GPU VRAM during sleep/idle and restores RX pages on wake via VEH; memory-hiding / AC evasion research; shellcode engine & tricks). (source: wiki/sources/descriptions/H1d3r__GPU_ShellCode.md) Academic Caesar-cipher shellcode encoding lab such as [[shellcode-obfuscation]] (Python byte obfuscator + C VirtualAlloc in-memory loader; baseline loader; AV signature/heuristic/ML detection notes; bypass-rate measurements; shellcode engine & tricks; n1h-nb) sits in the same lane. (source: wiki/sources/descriptions/n1h-nb__Shellcode-Obfuscation.md) Cross-platform multi-cipher shellcode obfuscation and source emit such as [[shellcrypt]] (Lavender-exe; Python; AES/ChaCha20/RC4/Salsa20/XOR; chained encode/compress; C/C#/Go/Rust/Nim/Python/PowerShell output; payload packing / loader prototyping; shellcode engine & tricks) sits in the same lane. (source: wiki/sources/descriptions/Lavender-exe__Shellcrypt.md) Open-source shellcode compiler [[scc]] (Vector35; C/C++; compact PIC output; Binary Ninja integration; shellcode compiler / exploit-dev codegen) sits in the same lane. (source: wiki/sources/descriptions/Vector35__scc.md) Object-to-shellcode generation framework such as [[obj2shellcode]] (modding / memory analysis / debugging) sits in the same lane. (source: wiki/sources/descriptions/jseclab__obj2shellcode.md) Callback-based shellcode execution PoCs such as [[alternative-shellcode-exec]] (aahmad097; C++ Visual Studio samples; position-independent shellcode via callback APIs instead of CreateThread; API abuse / injection-path evasion; shellcode engine & tricks) sit in the same lane. (source: wiki/sources/descriptions/aahmad097__AlternativeShellcodeExec.md) Multi-language shellcode execution technique collections such as [[flavortown]] (Wra7h; C, C#, and MATLAB samples; diverse process and memory execution paths with embedded usage guidance; evasion tradecraft study; shellcode engine & tricks) sit in the same lane. (source: wiki/sources/descriptions/Wra7h__FlavorTown.md) - Title-specific offset/token dumps (e.g. Fortnite FLTokens via [[fortnite-fltokens-and-offsets]]; API-fed Fortnite offsets via [[auto-offsets]]; CS2 netvar/struct dumps via [[cs2-offsets]] / [[cs2-offsets-ro0ti]]; Dota 2 Source 2 layout dumps via [[dota2dumped]]; CS:GO C++ offset dumps via [[offsets]]; auto-updating CS:GO signature/offset feeds via [[hazedumper]] — frk1; JSON/TOML/YAML/C++/C#/VB; `config.json` byte patterns for `engine.dll`/`client.dll` globals and netvars; cheat / game:csgo `[Offset]`; maintained CS:GO offset databases such as [[blazedumper]] — Akandesh; JSON + C++/C# offset defs; signature patterns + companion updater pipeline; cheat / game:csgo `[Offset]`; automated runtime dumps via [[gh-offset-dumper]] — C++; signature/netvar scan of live processes → headers/JSON; Source engine; `[Offset dumper]`; entity-list discovery via [[gh-entity-list-finder]] — x64/x86 live-process scan for likely entity list addresses; cheat / RE tools) and online-game offsets generators such as [[tog]] (The Online Gamer) illustrate ephemeral cheat-research artifacts that rot quickly. Offset **streaming** utilities such as [[offset-streaming]] (gmh5225; C/C++; push fresh layout data to cheat clients; Some Tricks / Windows Ring3) sit in the same distribution lane beside API pulls and static dumps. Dynamic **value resolution table** frameworks such as [[dvrt]] (gmh5225; runtime address resolution; maintains and updates memory offsets as game modules load or relocate; cheat [Offset]) complement hardcoded layouts beside streaming and static dumps. (source: wiki/sources/descriptions/zinx-YT__Fortnite-Fltokens-and-offsets.md) (source: wiki/sources/descriptions/masterpastaa__AutoOffsets.md) (source: wiki/sources/descriptions/sezzyaep__CS2-OFFSETS.md) (source: wiki/sources/descriptions/ro0ti__CS2-Offsets.md) (source: wiki/sources/descriptions/ikhsanprasetyo__dota2dumped.md) (source: wiki/sources/descriptions/ofDataa__offsets.md) (source: wiki/sources/descriptions/frk1__hazedumper.md) (source: wiki/sources/descriptions/Akandesh__blazedumper.md) (source: wiki/sources/descriptions/guided-hacking__GH-Offset-Dumper.md) (source: wiki/sources/descriptions/guided-hacking__GH-Entity-List-Finder.md) (source: wiki/sources/descriptions/patrickcjk__TOG.md) (source: wiki/sources/descriptions/gmh5225__OffsetStreaming.md) (source: wiki/sources/descriptions/gmh5225__DVRT.md) - External Fortnite samples such as [[fortnite-external-source]] (C++; driver development / SDK generation) sit in the cheat / game:fortnite lane. (source: wiki/sources/descriptions/xetzzy__Fortnite-External-Source.md) - Lightweight external Fortnite learning samples such as [[keyzpon-thefluxxx-fortnite-external]] (KeyzpOnTheFluxxx; C++ Visual Studio; offset updates + external process interaction patterns; typical external cheat structure; game hacking + anti-cheat interaction analysis; cheat / game:fortnite [External]; slug disambiguated from [[fortnite-external]]) sit in that same external lane. (source: wiki/sources/descriptions/KeyzpOnTheFluxxx__Fortnite-External.md) - External Fortnite cheat prototypes such as [[fortnite-cheato-ud-eac-be]] (JeanToBinks; C++; process memory access + Unreal transform math + DirectX-style overlay drawing; player structure extraction + real-time entity visualization; cheat development experimentation + anti-cheat evasion research; cheat / game:fortnite [External]) sit in that same lightweight user-mode external lane beside [[keyzpon-thefluxxx-fortnite-external]]. (source: wiki/sources/descriptions/JeanToBinks__Fortnite-Cheato-UD-EAC-BE.md) - Fortnite dump/SDK tooling such as [[fortkit]] (C++; dump / SDK generation; [Dump]) sits in the same cheat / game:fortnite SDK lane. (source: wiki/sources/descriptions/kem0x__FortKit.md) - Shader-oriented external Fortnite samples such as [[fortnite-external-p2c]] (C++; shader work; [External]) sit in the same cheat / game:fortnite external lane. (source: wiki/sources/descriptions/simply-codes__Fortnite-External-P2C.md) - Driver-backed external Fortnite samples such as [[fortnite-external-evo-gj]] (C++; kernel-driver RPM; ESP / aimbot / loot ESP; UE4 state; [External]) sit in the same cheat / game:fortnite external lane. (source: wiki/sources/descriptions/ritz-1337__fortnite-external-evo.gj.md) - IOCTL / CR3-oriented external Fortnite bases such as [[fortnite-external-base-source]] (C++; kernel phys mem R/W + mouse IOCTL; GWorld decrypt / pattern scan; ImGui Discord Overlay DX11 ESP; [External]) sit in the same cheat / game:fortnite external lane. (source: wiki/sources/descriptions/raivoansa__fortnite-external-base-source.md) - Open-source Fortnite external starter templates such as [[fortnite-external-cheat-base]] (bootmgfw; C++; kernel-driver IOCTL phys mem R/W + CR3 bypass + synthetic mouse input; UE SDK + encrypted UWorld decode; bone W2S ESP with visibility-colored 2D boxes; DX11 ImGui overlay + window hijack; attaches to `FortniteClient-Win64-Shipping.exe`; cheat / game:fortnite [External]) sit in that same lane beside [[lithium-kernel]] from the same author for studying EAC-protected UE external architecture. (source: wiki/sources/descriptions/bootmgfw__Fortnite-External-Cheat-Base.md) - Driver + overlay external Fortnite samples such as [[volto-external-spowar-ud-eac-be-fortnite-external-cheat]] (gmh5225; C/C++; kernel driver development + overlay rendering; HWID-spoof / EAC-evasion naming; cheat / game:fortnite [External]) sit in that same external lane beside IOCTL and shader-oriented bases. (source: wiki/sources/descriptions/gmh5225__VOLTO-EXTERNAL-SPOWAR-UD-EAC-BE-FORTNITE-EXTERNAL-CHEAT.md) - External Fortnite **VoyagerTF** samples such as [[fortnite-voyagertf]] (gmh5225; ESP / aimbot / UE game-state reads via out-of-process client memory manipulation; cheat / game:fortnite [External]) sit in that same external lane for studying RPM-based Unreal state access without injection. (source: wiki/sources/descriptions/gmh5225__Fortnite-VoyagerTF.md) - Undetected external Fortnite samples such as [[fortnite-ud-external]] (gmh5225; stealthy out-of-process memory reads; ESP / aimbot; BattlEye + EAC bypass framing; cheat / game:fortnite [External]) sit in that same external lane for studying low-visibility RPM on AC-protected UE clients. (source: wiki/sources/descriptions/gmh5225__Fortnite-UD-External.md) - UEFI-runtime external Fortnite samples such as [[fortnite-efi-external]] (gmh5225; out-of-process reads via UEFI runtime services + `NtSetSystemEnvironmentValueEx`; no Windows kernel driver; EAC driver-detection evasion; cheat / game:fortnite [External]) sit in the below-OS external lane beside kernel-driver and [[dma]] Fortnite bases. (source: wiki/sources/descriptions/gmh5225__Fortnite-EFI-External.md) - WinSense-leak external Fortnite samples such as [[fortnite-external-cheat-winsense-leak]] (gmh5225; leaked/updated WinSense stack; kernel driver comm; ImGui DX9 overlay; KeyAuth licensing; CryptoPP-encrypted API anti-tamper; UE offset + structure-read utilities; cheat / game:fortnite [External]) sit in that same external lane for studying driver-backed RPM, commercial-style cheat packaging, and external Unreal state reconstruction. (source: wiki/sources/descriptions/gmh5225__Fortnite-External-Cheat-WinSense-Leak.md) - Leaked external Fortnite samples such as [[fortnite-external-cheat-leak]] (Waihbe; C++; driver-assisted out-of-process memory reads; DirectX 9 ImGui overlay + in-game feature menu; camera/bone math + W2S projection; configurable aim + ESP toggles; cheat / game:fortnite [External]) sit in that same external lane for studying external cheat design on EAC-protected UE clients. (source: wiki/sources/descriptions/Waihbe__Fortnite-External-Cheat-Leak.md) - Hyper-V interface external Fortnite frameworks such as [[flirtnite]] (NurdAlert; C++; Hyper-V-based memory interface layer + Unreal structure handling; entity processing + aim modules; DirectX 9 ImGui menu/ESP overlay; cheat / game:fortnite [External]) sit in that same external lane for studying hypervisor-assisted memory access and AC evasion beside [[modded-voyager]] from the same author. (source: wiki/sources/descriptions/NurdAlert__flirtnite.md) - Interic external Fortnite samples such as [[interic-fortnite-external-cheat]] (Saxmason; C++ Visual Studio; driver-assisted RPM; Unreal-style math + offset-driven player/weapon discovery; DirectX 9 ImGui overlay/menu; configurable aimbot keybinds + hitbox targeting; visibility-aware ESP + FOV visuals; KeyAuth licensing + anti-debug/anti-dump/string obfuscation; external overlay + evasion research; cheat / game:fortnite [External]) sit in that same external lane beside driver-backed and leaked Fortnite bases. (source: wiki/sources/descriptions/Saxmason__Interic-Fortnite-External-Cheat.md) - SubZero external Fortnite samples such as [[subzero-fortnite-cheat]] (Saxmason; C++ Visual Studio; kernel-style driver RPM; mesh-based visibility checks + offset-driven smooth aimbot; DirectX 9 ImGui overlay/menu; NtUserSendInput mouse injection with library spoofing, call-stack spoofing, XOR string obfuscation, optional auth helpers; external overlay + evasion research; cheat / game:fortnite [External]) sit in that same external lane beside driver-backed and leaked Fortnite bases. (source: wiki/sources/descriptions/Saxmason__Subzero-Fortnite-Cheat.md) - Leaked GodFather hybrid externals such as [[godfather-fortnite-cheat-cracked]] (CheaterRehab; C++ DirectX 9 Dear ImGui overlay + kernel driver with callback-based KM↔UM comm; loader/mapper deployment notes + detection-status commentary; pasted-cheat infrastructure / AC bypass RE; cheat / game:fortnite [External]) sit in that same hybrid external lane beside [[subzero-fortnite-cheat]] and [[interic-fortnite-external-cheat]]. (source: wiki/sources/descriptions/CheaterRehab__GodFather-Fortnite-Cheat-Cracked.md) - Vaselinikives-lineage external Fortnite samples such as [[fortnite-external-cheat-source-code]] (gmh5225; DirectX 9 ImGui menu; world-to-screen ESP + basic aimbot via Win32 external memory reads; cheat / game:fortnite) sit in that same user-mode external lane beside driver-backed Fortnite bases. (source: wiki/sources/descriptions/gmh5225__Fortnite-External-Cheat-Source-Code.md) - nigusFN-style external Fortnite samples such as [[nigusfn]] (YMY1666527646; C++; recreates nigusFN interface/feature set; DirectX 9 ImGui menu + driver/utility components; item definitions + config headers + menu logic typical of external cheat frameworks; EAC-oriented tooling workflows; cheat / game:fortnite [External]) sit in that same user-mode external lane for studying external cheat UI design. (source: wiki/sources/descriptions/YMY1666527646__nigusFN.md) - Evo.cc-leak external Fortnite samples such as [[fortnite-evo-cc-source-external-cheat]] (gmh5225; leaked Evo.cc source; DirectX 9 overlay rendering; world-to-screen player ESP + aimbot via standard Win32 external memory reads; cheat / game:fortnite [External]) sit in that same user-mode external lane beside other Evo-named and Vaselinikives-lineage Fortnite externals. (source: wiki/sources/descriptions/gmh5225__Fortnite-Evo.cc-Source-External-Cheat.md) - Early-vintage Capcom-mapper external Fortnite samples such as [[fortnite-external-4]] (gmh5225; circa 2019; socket-based kernel driver RPM; Capcom.sys driver mapper loads comm driver; ESP/aimbot; cheat / game:fortnite [External]) sit in that same external lane for studying legacy BYOVD mapper + kernel-socket cheat comm stacks. (source: wiki/sources/descriptions/gmh5225__Fortnite-External-4.md) - Integrated HWID-spoof external Fortnite samples such as [[fortnite-external-5]] (gmh5225; kernel driver disk-serial spoofer + ImGui overlay + FNV-1a string obfuscation; out-of-process ESP/aimbot RPM; cheat / game:fortnite [External]) sit in that same external lane for studying bundled cheat + HWID-ban evasion on EAC-protected clients. (source: wiki/sources/descriptions/gmh5225__Fortnite-External-5.md) - Discord-overlay-hijack external Fortnite samples such as [[fortnite-esp-aimbot-exploits-hwid-spoofer-cleaner-hack-cheat]] (gmh5225; ESP/aimbot + HWID spoofer; pattern-scans `DiscordHook64.dll` hook-creation exports to render via Discord overlay pipeline; cheat / game:fortnite [External]) sit in that same external lane for studying bundled cheat features + third-party overlay hijack on EAC-protected clients. (source: wiki/sources/descriptions/gmh5225__Fortnite-Esp-Aimbot-Exploits-Hwid-Spoofer-Cleaner-Hack-Cheat.md) - Serenity.gg Fortnite driver + shader + loader samples such as [[serenity-gg-fn-and-loader]] (gmh5225; C/C++; kernel driver development + shader work + module loader; cheat / game:fortnite) sit in that same external lane beside shader-oriented and driver-backed Fortnite bases. (source: wiki/sources/descriptions/gmh5225__Serenity.gg-FN-and-Loader.md) - Leaked Apple Lite Fortnite cheat remakes such as [[apple-lite-fortnite-cheat]] (gmh5225; Police remake of Apple Lite; C/C++; kernel-level work + shader work + modding; cheat / game:fortnite) sit in that same driver/shader Fortnite lane beside [[serenity-gg-fn-and-loader]]. (source: wiki/sources/descriptions/gmh5225__Apple-Lite-Fortnite-Cheat.md) - Fortnite DMA samples such as [[fn-dma-cheat]] (C++; Unreal Engine; PCIe DMA; cheat / game:fortnite [DMA]) sit in the below-OS cheat / game:fortnite lane beside kernel-driver externals. (source: wiki/sources/descriptions/lauralex__fn-dma-cheat.md) - Internal Fortnite samples such as [[basic-fortnite-cheat-source-internal]] (C++; UE4 SDK / GObject/GNames / engine hooks; ESP + aimbot) sit in the same cheat / game:fortnite internal lane. (source: wiki/sources/descriptions/vk-nom__Basic-Fortnite-Cheat-Source-Internal.md) - Internal Fortnite cheat bases such as [[keyzp1337-fortnite]] (Keyzp1337; C++ x64 Visual Studio; ESP/aimbot/no recoil + ImGui menu; BYO injection path; offset-dependent UE integration; cheat development + client internals RE; cheat / game:fortnite [Internal]; slug disambiguated from [[fortnite]]) sit in that same cheat / game:fortnite internal lane beside [[keyzpon-thefluxxx-fortnite-external]] from the related Keyzp lineage. (source: wiki/sources/descriptions/Keyzp1337__Fortnite.md) - Fortnite UE console-restoration internals such as [[fortconsole]] (Makk5; C++ x64 DLL; pattern scan + engine object construction to re-enable Unreal in-game console; low-level UObject enums + memory helpers; internal injection; UE internals exploration in controlled AC-disabled environments; cheat / game:fortnite [Internal]) sit in that same cheat / game:fortnite internal lane for engine-debug tooling rather than combat automation. (source: wiki/sources/descriptions/Makk5__FortConsole.md) - Menu-driven internal Fortnite samples such as [[fortnite-hack-esp-exploits-with-menu]] (YMY1666527646; C++; DirectX 9 ImGui menu; box/line ESP + silent aim + FOV/teleport exploits + panic key; injection/hooking/overlay RE practice; cheat / game:fortnite [Internal]) sit in that same cheat / game:fortnite internal lane. (source: wiki/sources/descriptions/YMY1666527646__Fortnite-Hack-Esp-Exploits-With-Menu.md) - Leaked internal Fortnite samples such as [[fortnite-cheat-leak]] (Waihbe; C++; hook-driven gameplay manipulation + rendering/utility modules; MinHook + Detours function interception; no-spread / movement / vehicle / teleport features; cheat architecture + detection-surface RE; cheat / game:fortnite [Internal]) sit in that same cheat / game:fortnite internal lane beside [[fortnite-external-cheat-leak]] from the same author. (source: wiki/sources/descriptions/Waihbe__Fortnite-Cheat-LEAK.md) - Post-detection Fortnite cheat analysis packages such as [[battlefn-cheat-analysis]] (0dayatday0; written breakdown + sample modules + manual-map / privileged-memory PoCs; batch + C++ usermode→kernel interaction demos; tradecraft and mistake study for AC/RE researchers) complement leaked sources in that same cheat / game:fortnite lane. (source: wiki/sources/descriptions/0dayatday0__BattleFN-cheat-analysis.md) - From-scratch Fortnite internals such as [[ritz-amazing-fortnite-internal]] (simplified hook path; x64-release injector) sit beside them in that same cheat / game:fortnite internal lane. (source: wiki/sources/descriptions/pastor-ritz__ritz-amazing-fortnite-internal.md) - Updated Ritz-lineage Fortnite internals such as [[fortnite-internal-updated-ritz]] (gmh5225; C++; Ritz fork; UE4 engine hooking; ESP / aimbot / exploits; refreshed offsets + EAC bypass for newer builds; [Internal]) sit in that same cheat / game:fortnite internal lane. (source: wiki/sources/descriptions/gmh5225__fortnite-internal-updated-ritz.md) - DontCry361x Ritz-lineage Fortnite internals such as [[ritz-amazing-fortnite-internal-updated]] (C++; injected UE object access; configurable menu with memory/silent aim + FOV; box/skeleton/line/name/weapon/ammo ESP; offset helpers + call spoofing + rapid-fire/instant-reload hooks; [Internal]) sit in that same cheat / game:fortnite internal lane beside other Ritz forks. (source: wiki/sources/descriptions/DontCry361x__ritz-amazing-fortnite-internal-updated.md) - Fixed-and-updated Fortnite internal DLL samples such as [[fortnite-internal-cheat-fixed-and-updated]] (gmh5225; memory + silent aimbot; box/skeleton/distance/snapline/FOV/chest/ammo ESP; DirectX 11 ImGui overlay; cheat / game:fortnite) sit in that same cheat / game:fortnite internal lane beside Ritz and ZeroGui lineages. (source: wiki/sources/descriptions/gmh5225__Fortnite-Internal-Cheat-Fixed-and-Updated.md) - ZeroGui-overlay Fortnite internals such as [[zerogui-fortnite-internal]] (gmh5225; visuals-only ESP enabled; aimbot / exploits present but disabled; [Internal]) sit in that same cheat / game:fortnite internal lane for studying in-process Unreal visuals without full combat automation. (source: wiki/sources/descriptions/gmh5225__ZeroGui-Fortnite-Internal.md) - Vintage Fortnite 3.50 internal DLL samples such as [[fortnite-3.5]] (gmh5225; injectable DLL; memory aimbot + ESP; zgui in-game menu; requires user-generated Unreal Engine SDK; cheat / game:fortnite [Internal]) sit in that same cheat / game:fortnite internal lane for studying legacy-build UE internals with bring-your-own-SDK workflows. (source: wiki/sources/descriptions/gmh5225__Fortnite-3.5.md) - Leaked Masterpasta / iHack Fortnite internals such as [[fortnite-masterpasta-ihack-source-leak]] (gmh5225; Microsoft Detours hooking; direct UObject-array access; bone-matrix projection + `GetViewpoint` camera math; engine-rendered visuals; [Internal]) sit in that same cheat / game:fortnite internal lane beside Ritz and ZeroGui lineages. (source: wiki/sources/descriptions/gmh5225__Fortnite-Masterpasta-ihack-Source-Leak.md) - Additional Fortnite internal samples such as [[fortnite-cheat-source-internal]] (C/C++; SDK generation + hooking) sit in that same cheat / game:fortnite internal lane. (source: wiki/sources/descriptions/jooola00__fortnite-cheat-source-internal.md) - Leaked INFARCTED.CC base Fortnite internals such as [[fortnite-leak5]] (gmh5225; C/C++; SDK generation + hooking; upstream base for INFARCTED.CC; cheat / game:fortnite) sit in that same cheat / game:fortnite internal lane beside other SDK+hook samples. (source: wiki/sources/descriptions/gmh5225__Fortnite-Leak5.md) - Internal Fortnite cheat **Triadz** such as [[fortnite-triadz]] (gmh5225; UE4 engine hooking; ESP / aimbot / exploitation; full in-process game-object + render access; EAC-protected UE4 internal architecture reference) sit in that same cheat / game:fortnite internal lane. (source: wiki/sources/descriptions/gmh5225__fortnite-triadz.md) - Fortnite exploit and EAC bypass collections such as [[fortnite-exploits]] (gmh5225; client vulnerabilities; UE4 engine features; cheat injection / memory-access bypass; `[Exploits]`) document Fortnite-specific exploit chains beside runnable internal and external samples. (source: wiki/sources/descriptions/gmh5225__fortnite-exploits.md) - Fortnite FName/FNameEntry samples such as [[fortnite-fnameentry]] (C++; name-pool entry focus) sit beside those internals in the cheat / game:fortnite Unreal name-pool lane. (source: wiki/sources/descriptions/percpopper__Fortnite-FNameEntry.md) - Fortnite camera-cache POV samples such as [[fortnite-camera-cache-pov]] (C++; CameraCache / view POV) sit in the same cheat / game:fortnite Unreal camera-math lane. (source: wiki/sources/descriptions/percpopper__Fortnite-CameraCachePOV.md) - Fortnite world-to-screen offset collections such as [[fortnite-w2s-offset-fortnite]] (gmh5225; C/C++; view/projection and camera offsets for ESP math; cheat / game:fortnite `[Offset]`) sit in that same cheat / game:fortnite Unreal camera-math / [[world-to-screen]] lane beside camera-cache POV samples. (source: wiki/sources/descriptions/gmh5225__fortnite-W2S-offset-Fortnite.md) - External Fortnite W2S PoCs such as [[fortnite-external-w2s]] (Zetolac; C++; reads/decrypts camera/viewpoint from process memory; matrix construction + perspective projection for ESP overlay math; cheat / game:fortnite) demonstrate runnable external visualization foundations beside offset-only W2S references. (source: wiki/sources/descriptions/Zetolac__FortniteExternalW2S.md) - External Fortnite exploit PoC snippets such as [[fortnite-external-exploits]] (Zetolac; C++; direct memory writes for position manipulation and spin-style logic; raw proof-of-concept fragments for external memory manipulation; cheat / game:fortnite `[External Exploits]`) sit beside runnable W2S and offset maintenance samples from the same maintainer. (source: wiki/sources/descriptions/Zetolac__FortniteExternalExploits.md) - Fortnite virtual-table / view offset dumps such as [[fortnite-virtual-offsets]] (text; `GetPlayerViewPoint`, `ProcessEvent`, `LineOfSightTo`, camera helpers; gmh5225; cheat / game:fortnite `[Virtual Table Offsets]`) sit in the same cheat / game:fortnite Unreal vtable-dispatch lane beside camera and name-pool samples. (source: wiki/sources/descriptions/gmh5225__fortnite-virtual-offsets.md) - Fortnite IDA-style byte-pattern signature sets such as [[fortnite-sigs]] (gmh5225; `GObjects`, `GNames`, `ProcessEvent`, player-controller helpers; per-build refresh; cheat / game:fortnite `[Offset]`) sit in the same cheat / game:fortnite Unreal address-discovery lane beside vtable dumps and offset fetchers. (source: wiki/sources/descriptions/gmh5225__fortnite-sigs.md) - Compact plain-text Fortnite signature dumps such as [[f0ndo-fortnite-sigs]] (F0NDO; world pointers, name pools, event dispatch, visibility checks, aiming routines; manual or scripted updater pipelines; cheat / game:fortnite `[Signature]`) feed external/internal tooling that needs fast offset refresh without full SDK regen. (source: wiki/sources/descriptions/F0NDO__fortnite-sigs.md) - Per-patch maintained Fortnite signature repos such as [[fortnite-sigs-updated-every-update]] (gmh5225; Season 2 Chapter 3+; `UWorld`, `GObjects`, `FnFree`, `GetNameByIndex`; pattern-mask notation; cheat / game:fortnite `[Offset]`) track UE global churn beside static signature sets. (source: wiki/sources/descriptions/gmh5225__Fortnite-SigsUpdatedEveryUpdate.md) - Fortnite memory offset and UE4 SDK structure tables such as [[fortnite-offsets]] (gmh5225; player entities, camera, bone arrays, weapons, engine globals; per-version refresh; cheat / game:fortnite `[Offset]`) sit in the same cheat / game:fortnite Unreal memory-layout lane beside signature and vtable dumps. (source: wiki/sources/descriptions/gmh5225__fortnite-offsets.md) - Lightweight JSON Fortnite offset databases such as [[trydos-fortnite-offsets]] (Trydos; engine pointers, entity structures, camera and weapon fields; data-only JSON feed for external tooling sync; cheat / game:fortnite `[Offset]`) sit beside static offset tables when consumers want a minimal machine-readable layout feed. (source: wiki/sources/descriptions/Trydos__fortnite-offsets.md) - Historical Fortnite offset dumps such as [[android1337-fortnite-offsets]] (Android1337; memory offsets for cheat and RE tooling; original GitHub repo offline; README-listed offset dump in the cheat / game:fortnite research category) document the same Unreal memory-layout maintenance lane when upstream mirrors disappear. (source: wiki/sources/descriptions/Android1337__Fortnite-Offsets.md) - Compact Fortnite offset + signature maintenance repos such as [[fortnite-offsets-and-sigs]] (Zetolac; C++ pattern-scan examples, key global offset notes, address-derivation and string-decryption helpers; signature-based relocation after patches; cheat / game:fortnite `[Offset]`) combine static offset tables with runnable signature workflows beside standalone sig/offset feeds. (source: wiki/sources/descriptions/Zetolac__FortniteOffsetsAndSigs.md) - Compact header-only Fortnite offset + signature reference repos such as [[fortnite-offsets-sigs-and-more]] (ReallReaper; C/C++ constants for UE pointer chains and gameplay structure offsets; quick integration into external cheat or analysis code; cheat / game:fortnite `[Offset]`) sit beside combined maintenance repos when consumers only need a small reference dataset. (source: wiki/sources/descriptions/ReallReaper__Fortnite-Offsets-Sigs-and-more.md) - Fortnite live-process offset dumpers such as [[fortnite-offset-dumper]] (gmh5225; extracts current memory offsets and class layouts from the running game; regex-cleaned class names; hierarchical offset definitions; cheat / game:fortnite `[Offset & Dump]`) automate per-patch layout refresh beside static offset tables and signature sets. (source: wiki/sources/descriptions/gmh5225__Fortnite-Offset-dumper.md) - Rust Fortnite frameworks such as [[reborn]] (web server + SQLite + Discord bot; modular crates for server/bot/client) illustrate web-controlled cheat architectures in the same game:fortnite lane. (source: wiki/sources/descriptions/realTristan__Reborn.md) - Step-by-step Fortnite mechanics tutorials such as [[fortnite]] (loqix; video series + companion code; Game Develop / source) sit in the cheat / game:fortnite guide lane for game developers, reverse engineers, and tooling builders. (source: wiki/sources/descriptions/loqix__Fortnite.md) - Generic UE4 internal cheat bases such as [[ue4-base]] (YMY1666527646; C++; reusable SDK wrappers + MinHook PostRender hook infrastructure; world/actor/canvas helpers; lazy_importer/xorstr; demonstrates W2S in-game actor drawing; SDK Template / rapid UE4 analysis prototyping) sit upstream of title-specific internals in the Cheat / Game Engine Explorer:Unreal lane. (source: wiki/sources/descriptions/YMY1666527646__ue4_base.md) UE4 mod loading frameworks such as [[unreal-mod-loader]] (RussellJerome; Blueprint + SDK-based C++ mods; MinHook + ImGui; injector + proxy DLL paths; lifecycle hooks + in-game tooling; Mod Loader / runtime extension + game instrumentation) sit in that mod-loader lane beside [[re-ue4ss]]. (source: wiki/sources/descriptions/RussellJerome__UnrealModLoader.md) - UE4 SDK View explorers such as [[unrealengine4-swissknife]] (UObjects under `GEngine` World Actors) and [[unrealsharp]] sit in the Cheat / Game Engine Explorer:Unreal lane. (source: wiki/sources/descriptions/spudgy__UnrealEngine4-SwissKnife.md) (source: wiki/sources/descriptions/shalzuth__UnrealSharp.md) Official CE Lua UE structure mappers such as [[unreal-engine-tools]] (cheat-engine; UEInfoScanner discovers `GNames`/`GObjects`/`UObject`/`UClass`/`FProperty`; UEInfoStructureDissect builds Structure Dissect layouts with FName-to-string; no-inject memory scan + vtable/signature probing for UE4/UE5; cheat / Game Engine Explorer:Unreal) sit in that same lane beside [[cheat-engine]]. (source: wiki/sources/descriptions/cheat-engine__UnrealEngineTools.md) Legitimate UE5 in-engine debug cheat menus such as [[cheat-manager-menu]] (Ghostleadie; reflects `UCheatManager` + registered extensions into SlateIM UI with filters/favorites; Shipping-stripped; dev/test instrumentation—not external RPM) sit in that same Unreal explorer lane beside console-restoration samples. (source: wiki/sources/descriptions/Ghostleadie__CheatManagerMenu.md) Blueprint/UI UE debug menus such as [[game-debug-menu]] (000-aki-000; in-game console command + property/function editing; localization + saved menu state; dev/QA tooling—not external RPM) sit beside [[cheat-manager-menu]]. (source: wiki/sources/descriptions/000-aki-000__GameDebugMenu.md) UE4 FOV/freecam hook+overlay samples such as [[ue4-freecam]] (C/C++; FOV Changer) sit in the same Unreal explorer / camera-hook lane. (source: wiki/sources/descriptions/percpopper__UE4-Freecam.md) Minimal UE4 silent-aim PoCs such as [[ue4-silent-aim]] (N-T33; C++; viewpoint/camera API hooks; rotation + bone-target selection while preserving visible view; cheat / [Aimbot]) sit in that same UE4 aim-manipulation / camera-hook lane. (source: wiki/sources/descriptions/N-T33__UE4-Silent-Aim.md) ShooterGame Demo offensive research samples such as [[shootergame-hack]] (C/C++; rendering / debugging; gmh5225) sit in that same Unreal demo / explorer lane. (source: wiki/sources/descriptions/gmh5225__shootergame-Hack.md) A parallel ShooterGame Demo fork such as [[shootergame]] (cqcallaw; MIT-licensed improvements; Cheat / Game Engine Explorer:Unreal) sits beside it in that lane. (source: wiki/sources/descriptions/cqcallaw__shootergame.md) Compact UE4 FPS demo targets such as [[ue4-fps]] (KitchenGun; C++ + Blueprint assets/maps; lightweight native gameplay layer; learning sandbox and engine-level game research target; UE4 FPS Demo) complement ShooterGame-style Unreal demo lanes for controlled FPS RE practice. (source: wiki/sources/descriptions/KitchenGun__UE4_FPS.md) - SDK codegen tooling such as [[luagenny]] (C++; reverse engineering / SDK generation; cheat / sdk codegen) and general C++ SDK generation libraries such as [[sdkgenny]] (cursey; third-party app SDK emit; PEGTL parser optional; cheat / sdk codegen) sit in the Cheat SDK CodeGen lane. (source: wiki/sources/descriptions/praydog__luagenny.md) (source: wiki/sources/descriptions/cursey__sdkgenny.md) Interactive struct reconstruction from live process memory via [[regenny]] (cursey; real-time viewer + iterative layout refinement; header export; cheat / sdk codegen) complements that lane. (source: wiki/sources/descriptions/cursey__regenny.md) Primary [[reclass-net]] host (ReClassNET; .NET memory class reconstruction + remote process inspection; x86/x64; rich node types, scanners, debuggers, legacy ReClass compatibility; C# UI + native C++ core; C++/C# layout export; cheat / debugging) (source: wiki/sources/descriptions/ReClassNET__ReClass.NET.md). Extended ReClass-style layout modeling via [[reclass-ex]] (ajkhoury; C++; RTTI, PDB loading, module targeting, plugins; attached-process structure recon; cheat / debugging) (source: wiki/sources/descriptions/ajkhoury__ReClassEx.md). Modern Qt structured binary editor [[reclass]] (IChooseYou; C++17/Qt 6/QScintilla; typed struct/array/pointer layouts; inline editing, foldable tree, hex/ASCII preview; process-memory + WinDbg data-source plugins; MCP; cheat / debugging) (source: wiki/sources/descriptions/IChooseYou__Reclass.md). Windows C++ open-source anti-cheat libraries with modding/SDK-generation surfaces such as [[rebirth-guard]] (chztbby; Open Source Anti Cheat System; defensive client-protection integration) sit beside offensive SDK tooling as the defensive mirror of the same modding lane. (source: wiki/sources/descriptions/chztbby__RebirthGuard.md) - Source 2 SDK generators such as [[source2gen]] (neverlosecc / praydog; C++ SDK generation + memory analysis; cheat / game engine explorer:source) sit in the same Cheat SDK CodeGen / Source 2 lane. (source: wiki/sources/descriptions/neverlosecc__source2gen.md) (source: wiki/sources/descriptions/praydog__Source2Gen.md) Generated multi-game Source 2 SDK dumps such as [[source2sdk]] (neverlosecc; C++) sit beside them as consumed SDK output. (source: wiki/sources/descriptions/neverlosecc__source2sdk.md) CS2 VScript / Lua 5.1 external-module loaders such as [[vscript-lua51]] (VScript tag; cheat / game:cs2 scripting) sit in that same Source 2 offensive-scripting lane. (source: wiki/sources/descriptions/gmh5225__vscript_lua51.md) Source Engine² explorer platforms such as [[sourceengineexplorer]] (cheat/debug Valve code, hidden engine features, exploit development, assembly analyzer, network emulator, scripting interface, cloud decompiler; cheat / game engine explorer:source) sit in the same Cheat / Game Engine Explorer:Source lane. (source: wiki/sources/descriptions/keowu__sourceengineexplorer.md) - Open-source [[cheat-engine]] (cheat-engine/cheat-engine; Delphi/Pascal + C; memory scan/debug/disasm, Lua scripting, speedhack, code injection, cheat tables, trainer maker, user-mode + kernel DBVM driver) is the canonical CE IDE that downstream plugins, ceserver ports, and AC detection samples target. (source: wiki/sources/descriptions/cheat-engine__cheat-engine.md) - Modified CE research builds such as [[cheat-engine-undetectable]] (NulledNah; Free Pascal/Lazarus + PowerShell patch pipeline; Tier 1 user-mode evasion via surface obfuscation, direct NT syscalls, PE Rich Header/section mutation; Tier 2 BYOVD kernel bridge with CR3 page-table R/W, ObCallback bypass, and handleless process hiding; AC architecture / evasion education; cheat / UD CE) sit beside [[ce-easyanticheat-bypass]] in the CE stealth-research lane. (source: wiki/sources/descriptions/NulledNah__cheat-engine-undetectable.md) - C#/.NET Windows memory editors such as [[squalr-sharp]] (Squalr; WPF GUI + CLI + reusable engine API; SIMD-accelerated scan, pointer resolution, NASM assemble/disassemble, C# scripting, process attach/debug, .NET object inspection; cheat / memory editor) sit beside [[cheat-engine]] as a managed high-performance alternative. (source: wiki/sources/descriptions/Squalr__Squalr-Sharp.md) - From-scratch 64-bit MHS successor [[mhsx]] (L-Spiro; C++ Visual Studio; Windows x86/x64 live attach; data-type/pointer/string/expression scans, Oniguruma regex, process-aware hex editor, x86/x64 disasm, PE inspection, speedhack, floating-point studio, hotkeys, found-address management; cheat / memory searcher-debugger) sits beside [[cheat-engine]] and [[squalr-sharp]] as a native Windows memory-analysis alternative. (source: wiki/sources/descriptions/L-Spiro__MhsX.md) - Windows x64 user-mode memory research tool [[pointer-lab]] (HeathHowren; C++20 Dear ImGui dockspace UI; multi-type scan + wildcard patterns, ASLR-resilient pointer chains, Zydis disasm, Keystone NOP-padded patch, software breakpoints, Lua 5.4 scripting, `.iretable` project persistence; RE practice / CTF / authorized single-player inspection—not stealth or online AC evasion; cheat / memory scanner) sits beside [[cheat-engine]] and [[mhsx]] as a native Windows memory-analysis alternative. (source: wiki/sources/descriptions/HeathHowren__Pointer-Lab.md) - Portable Windows memory scanner/editor [[simple-memory-editor]] (daveymcq; C + custom NCRT runtime + Win32 GUI; process attach, writable-region enumeration, int/float/double equal/increased/decreased value scans, live edit/freeze, process monitoring; statically linked 32/64-bit Windows XP–10 builds; external memory editing for game hacking and in-game variable RE; cheat / memory scanner) sits beside [[cheat-engine]], [[mhsx]], and [[pointer-lab]] as a lightweight native alternative. (source: wiki/sources/descriptions/daveymcq__SimpleMemoryEditor.md) - Cross-platform Rust unified static+dynamic RE pipeline [[n0xis]] (LargoScript; PE/ELF SSA decompilation + live value/AOB scan, pointer-path discovery, struct dissection, hooks, cheat tables; CLI + MCP JSON artifacts; Unity IL2CPP + Lua/LuaJIT; N0xHUD; agent-native game reversing beside [[cheat-engine]] GUI workflows) (source: wiki/sources/descriptions/LargoScript__n0xis.md) - JIT-intercept CIL method-body dumper [[jit-dumper]] (Anonym0ose; C# analysis app + C++ Detours hook component; symbol/PDB data; multi-generation .NET; metadata reconstruction for inspecting compiled managed methods; reverse engineering / software-protection analysis; README A CIL method body dumper) (source: wiki/sources/descriptions/Anonym0ose__JitDumper.md) - Headless .NET assembly MCP server [[dnspymcp]] (rabbanyhmm; C# .NET 8; dnlib + ICSharpCode.Decompiler; 31 tools for Unity/IL2CPP offset+RVA lookup, dump.cs bridging, cross-refs, IL patch, packet-handler/crypto/secret scans; stdio JSON-RPC for Cursor/Claude Code; agent-native managed RE beside [[dnspy]] GUI workflows) (source: wiki/sources/descriptions/rabbanyhmm__DnSpyMCP.md) - GUI .NET assembly patcher [[acepatcher]] (BataBo; C#; dnlib + Harmony; method-map patching, import/export patch sets, optional password protection; packed/obfuscated managed game binaries; repeatable patch automation beside [[dnspy]] / [[bepinex]] Harmony workflows) (source: wiki/sources/descriptions/BataBo__ACEPatcher.md) - Lightweight injectable speedhack DLL [[speedhack]] (absoIute; C++; Detours hooks on timing APIs to accelerate, slow, or pause perceived runtime; Cheat / SpeedHack lane beside [[cheat-engine]] speedhack) (source: wiki/sources/descriptions/absoIute__Speedhack.md) - Cheat Engine–style injectable speed-hack DLL [[speed-hack]] (Letomaniy; C++ Visual Studio; Detours timing hooks; keyboard slowdown/accelerate/restore with configurable values; cheat practice + AC time-manipulation research) (source: wiki/sources/descriptions/Letomaniy__Speed-Hack.md) - Compact CE-style speed-hack sample [[ce-speed-hack]] (IamSanjid; C++ Detours timing hooks; focused core hooking logic for learners studying time manipulation and basic user-mode game hacking; cheat practice) (source: wiki/sources/descriptions/IamSanjid__ce_speed_hack.md) - Windows uptime/timer faker [[uptime-faker]] (CookiePLMonster; C++ Detours plugin; DLL or ASI inject; INI-configured timer API redirection + process-relative time simulation; Game Testing / reproduce high-PC-uptime game bugs beside speed-hack timing hooks) (source: wiki/sources/descriptions/CookiePLMonster__UptimeFaker.md) - Official CE Lua gamepad UI add-on [[controller-mode]] (Xbox-style D-pad navigation, A/B confirm/cancel, controller-friendly `.CT` file picker, experimental Steam Deck on-screen keyboard via Steam API; Lua + embedded C; cheat / CE plugin) extends [[cheat-engine]] for handheld/couch live memory editing. (source: wiki/sources/descriptions/cheat-engine__ControllerMode.md) - Community CE Lua extension pack [[ce-lua-extensions]] (Skyrimfus; autorun loader + breakpoint cleanup, function-caller lookup, template insertion, interface workflow utilities; cheat / Lua Extensions) accelerates RE and memory-analysis scripting on [[cheat-engine]]. (source: wiki/sources/descriptions/Skyrimfus__CE-lua-extensions.md) - Modular CE Lua extension pack [[ce-extensions]] (FreeER; autosave controls, disassembler highlighting, structure/offset helpers, process attachment conveniences, independently loadable workflow QoL scripts; cheat / Lua Extensions) extends [[cheat-engine]] interface and scripting for advanced users customizing RE workflows. (source: wiki/sources/descriptions/FreeER__CE-Extensions.md) - Broad CE example and practice-table collection [[ce-examples]] (FreeER; Lua/`.CT` assets for memory scanning, Auto Assembler, pointer utilities, UI helpers, Mono workflows, trainer experiments; snippets and templates for RE and game memory manipulation; teaching CE workflows; cheat / Some Examples) complements [[cheat-engine-tables]] and [[mydev-cheat-engine-tables]] for hands-on CE technique study. (source: wiki/sources/descriptions/FreeER__CE-Examples.md) - CE Mono helper toolkit [[cheatengine-mono-helper]] (JasonGoemaat; Lua scripts + CE table assets; searchable class/field/method views, method hook templates, disassembly jump, reusable runtime monitoring table scripts; fast Mono introspection for Unity Mono RE; cheat / CE Mono Helper) extends [[cheat-engine]] for managed-game workflows beside [[mono-external-lib]] and [[monohook]]. (source: wiki/sources/descriptions/JasonGoemaat__CheatEngineMonoHelper.md) - Open-source Rust Windows trainer [[freeplay]] (antaresjay; TOML game configs; imports CE `.CT` tables; built-in x86/x64 Auto Assembler; pointer scan, value freeze, instruction patching; Tauri overlay + CLI; Steam/Epic/GOG library integration; community table library; refuses [[easy-anti-cheat]]/[[battleye]]/[[vanguard]] protected processes; offline single-player focus; cheat / trainer) sits beside [[cheat-engine]] as a self-hosted CE-table runtime alternative. (source: wiki/sources/descriptions/antaresjay__freeplay.md) - Open-source Electron/React Windows trainer [[apprentice]] (digital-dev; offline process attach without server/telemetry; value cheats, code patches, sandboxed Lua, CE `.CT` import/export; native memory scan, pointer chains, HWBP write watching, Zydis disasm, Mono JIT introspection for Unity; bundled read-only MCP server for AI agent workflows; Valheim/Elden Ring profiles; cheat / memory editor) sits beside [[freeplay]] and [[cheat-engine]] as an agent-ready offline trainer. (source: wiki/sources/descriptions/digital-dev__Apprentice.md) - Standalone C++ Windows trainer [[cttrainer]] (abhijeetadarsh; ImGui/DX11; loads CE `.CT` tables; parses XML cheat entries with module offsets and pointer chains; per-cheat or bulk value freeze via background cheat-manager threads; attach 32/64-bit targets; external trainer without running CE; cheat / trainer) complements [[freeplay]] as a lightweight CE-table runtime for RE and trainer authoring. (source: wiki/sources/descriptions/abhijeetadarsh__CTTrainer.md) - Native Linux Proton trainer panel [[archmod]] (BlaMacfly; Rust/Tauri 2 + React; Steam library scan, trainer vault, Windows trainer launch into correct Proton prefix via protontricks; in-progress native engine with `process_vm_readv` R/W, AOB scan, pointer chains, value freeze, code hooks, CE table parsing; community address profiles; single-player focus with anti-cheat/multiplayer warnings; cheat / Proton trainer) extends the CE-table/trainer lane to GNU/Linux hosts beside [[proton]], [[freeplay]], and [[elden-ring-ct-tga]]. (source: wiki/sources/descriptions/BlaMacfly__ArchMod.md) - Cheat Engine Godot runtime dumpers such as [[gddumper]] (Lua; Godot 3.x/4.x SceneTree / GDScript on Win x86/x64; Address List dump + experimental hot-reload) sit in the Cheat Engine Plugins / game engine explorer:Godot lane. (source: wiki/sources/descriptions/palepine__GDDumper.md) - Cross-platform Godot runtime mod loaders such as [[gdpatch]] (Rust; native loader + filesystem interception; GDScript 3.x/4.x patching; Lua mod hooks; Win/Linux/macOS usermode API hooks; runtime mod loading without touching game files; mod loader / Godot RE) sit beside [[gddumper]] in the game engine explorer:Godot lane. (source: wiki/sources/descriptions/GDPatch__GDPatch.md) - Cheat Engine value tracing in IDA via [[ce-tracer-ida]] (Python; CheatEngine Value Tracer plugin; memory analysis; cheat / IDA Plugins) bridges CE scan workflows into static IDA analysis. (source: wiki/sources/descriptions/goseungduk__CE_Tracer-IDA.md) - MapleStory in-IDA packet analysis via [[spirit-ida-plugin]] (Bratah123; Python IDAPython; automates packet structure extraction, header identification, function output generation, text export for offline protocol documentation; cheat / IDA Plugins) bridges wire-capture RE into static IDA workflows beside [[maple-research]]. (source: wiki/sources/descriptions/Bratah123__SpiritIDAPlugin.md) - IDA Protocol Buffer schema recovery via [[protobuf-finder]] (Accenture; Python; decodes embedded protobuf descriptors from game/client binaries; custom search action + result views for recovered `.proto` definitions; network and serialization RE; README [Protobuf]) sits beside published schema dumps such as [[protobufs]] and wire-capture tooling such as [[packet-sniffer]]. (source: wiki/sources/descriptions/Accenture__protobuf-finder.md) - IDA mnemonic-pattern breakpoint automation via [[cbs]] (Reodus; Python IDAPython + PyQt; regex on disassembly lines; set/enable/disable/remove breakpoints across functions; cheat / IDA Plugins) speeds repeatable static-analysis breakpoint setup before live debugging. (source: wiki/sources/descriptions/Reodus__CBS.md) - IDA Pro + Cheat Engine current-module offset sync via [[doffset]] (dNop90; resolves module RVAs while static IDA analysis runs alongside live debugging in Cheat Engine, x64dbg, and similar tools; cheat / IDA Plugins) bridges multi-tool RE when correlating static addresses with runtime module bases. (source: wiki/sources/descriptions/dNop90__dOffset.md) - Disassembler page remapping via [[ce-remap-plugin]] (Delphi CE plugin; hooks CE plugin SDK to remap disassembler memory pages so hidden or obfuscated code is visible in the disassembler view; tested on CE 7.4; cheat / Remap; gmh5225) extends CE static-analysis workflows when targets remap or conceal executable pages from the debugger UI. (source: wiki/sources/descriptions/gmh5225__CE-remap-plugin.md) - Delphi x86/x86_64 binary analysis via [[delphi-helper]] (eset; IDA/static-analysis helper for Object Pascal targets; setup requires `pip install py7zr`; cheat / IDA Plugins) supports RE when game clients or cheat tooling ship as Delphi PEs. (source: wiki/sources/descriptions/eset__DelphiHelper.md) - Delphi symbol name recovery for Ghidra via [[delphiresym]] (WenzWenzWenz; pyghidra Python script; reconstructs function signatures, parameter metadata, and vtable context from embedded compiler metadata; maps into Ghidra data types; modern Delphi versions; malware/legacy software RE; cheat / Ghidra Plugins) complements [[delphi-helper]] on the Ghidra side. (source: wiki/sources/descriptions/WenzWenzWenz__DelphiReSym.md) - IDA-side Delphi function-name recovery via [[ida-for-delphi]] (Coldzer0; IDAPython; recovers names from event constructor patterns in a live debug session; 64-bit; malware/legacy Delphi RE; cheat / IDA Plugins) complements [[delphi-helper]] when runtime event wiring exposes handler names static metadata lacks. (source: wiki/sources/descriptions/Coldzer0__IDA-For-Delphi.md) - WebAssembly memory analysis via [[wasm-ceserver]] (Python/JavaScript; Cheat Engine ceserver-style remote debug for WASM; Cheat Engine Plugins / Analyzing WebAssembly) extends CE plugin workflows to browser and WASM-hosted game logic. (source: wiki/sources/descriptions/gmh5225__wasm-ceserver.md) - Browser-native WASM memory tooling via [[webcheat]] (Chrome MV3 extension; hooks `WebAssembly` instantiation for linear memory; CE-style scan/narrow/freeze + virtual clock speed/pause/step; cross-origin iframe targets; Unity/Godot/Emscripten WebGL; no external server) sits beside [[wasm-ceserver]] in the Analyzing WebAssembly / browser CE lane. (source: wiki/sources/descriptions/hasaneyldrm__webcheat.md) - Keyless Tampermonkey/Violentmonkey userscript stacks such as [[krunker-loader]] (JavaScript; Krunker.io; document-start inject; local anti-tamper token bypass; aimbot/ESP/wallhack/chams/FOV/skin/bhop + ImGui mod menu; optional Quirify-style license/heartbeat emulation loader; browser client-manipulation study) and [[glotus-client]] (TypeScript/Bun; Moomoo.io; WebSocket/game-object/input hooks; combat automation, bots, Altcha PoW bypass; Cheat / Debugging) sit in the browser userscript cheat lane beside [[webcheat]] and [[ff3mmo]]. (source: wiki/sources/descriptions/levifrsn63__krunker-loader.md) (source: wiki/sources/descriptions/Murka007__Glotus-Client.md) - DMA-backed Cheat Engine ceserver via [[cheat-engine-ceserver-pcileech]] (ceserver protocol over PCILeech/LeechCore; remote CE scan/edit from a separate machine; cheat / DMA) extends CE workflows below the OS beside [[cheat-engine-dma-plugin]] and [[dma-cheat-engine-loader]]. (source: wiki/sources/descriptions/gmh5225__cheat-engine-ceserver-pcileech.md) - Raw physical-memory Cheat Engine ceserver via [[ceserver-rawmem]] (cs1ime; ceserver protocol over `/dev/mem` or DMA instead of process APIs; bypasses OS memory protections and anti-cheat monitoring; cheat / CE) extends the same below-OS CE lane when the backend is generic physical RAM rather than PCILeech/LeechCore. (source: wiki/sources/descriptions/cs1ime__ceserver-rawmem.md) - iOS Cheat Engine ceserver via [[ceserver-ios]] (0xiuks; C/C++ port; jailed and jailbroken workflows; desktop CE remote memory search/edit, breakpoints, watchpoints, pointer scan, instruction patching; Windows plugins for iOS stack traces and RTTI; cheat / iOS RE) extends CE plugin workflows to iOS beside [[frida-ceserver]] and REST scanners such as [[memory-server]], and on-device iOS cheat engine [[h5gg]] (H5GG; JS scripting + HTML5 UI; memory editing, script/plugins, pointer chains, h5frida hooking; jailbroken and non-jailbroken modes; cheat / IOS cheat engine) (source: wiki/sources/descriptions/H5GG__H5GG.md). (source: wiki/sources/descriptions/0xiuks__ceserver-ios.md) Cross-platform runtime memory patching via [[kittymemory]] (MJx0; C++; Android + iOS; memory scan, pointer validation, Keystone assembly patch generation; mobile game RE / controlled in-memory modification; README `[Runtime code patching]`) and iOS fork [[kittymemory-ios]] (patch/hook/pattern-scan APIs; jailbreak-independent runtime code patching; cheat / iOS memory explorer; gmh5225) sit in the same Cheat / mobile Memory Explorer lane for in-process modification. (source: wiki/sources/descriptions/MJx0__KittyMemory.md) (source: wiki/sources/descriptions/gmh5225__KittyMemory-IOS.md) In-memory mobile game automation such as [[hayday-bot]] (AshrafMorningstar; Hay Day crop bot calling internal game functions on LDPlayer 9 via Frida + native C++; Promon SHIELD/Quago bypass; cheat / Frida) extends that lane from patch primitives to function-call bots without screen macros. (source: wiki/sources/descriptions/AshrafMorningstar__hayday-bot.md) TrollStore on-device debugger [[vansonmod]] (vaenshine; external attach without tweak injection; memory search/edit, pointer analysis, signature scan, JS scripting; jailbreak adds RVA patch and hardware watchpoints; cheat / TrollStore iOS memory editor) (source: wiki/sources/descriptions/vaenshine__VansonMod.md) - MBA expression generators such as [[mutaben]] (Python) sit in the Cheat Mixed boolean-arithmetic lane. (source: wiki/sources/descriptions/z1ko__mutaben.md) - Non-linear MBA obfuscation via [[mba-obfuscator]] (`mba_obfuscator/` + `samples/`) sits in the same Mixed boolean-arithmetic lane. (source: wiki/sources/descriptions/nhpcc502__MBA-Obfuscator.md) - MBA expression simplification via [[cobra]] (Trail of Bits CoBRA; C++ coefficient-based reconstruction) sits in the same Mixed boolean-arithmetic lane. (source: wiki/sources/descriptions/trailofbits__CoBRA.md) - Practical MBA simplification via [[mbased]] (bliutech; reduces mixed boolean-arithmetic obfuscation for analysis) sits in the same Mixed boolean-arithmetic lane. (source: wiki/sources/descriptions/bliutech__mbased.md) - MBA deobfuscation via [[msynth]] (Python; pre-computed oracle tables + algebraic simplification + Smir stochastic synthesis; Miasm + optional SMT verify; Cheat Mixed boolean-arithmetic) sits in the same lane. (source: wiki/sources/descriptions/mrphrazer__msynth.md) - Bitvector/array SMT solving via [[stp]] (Simple Theorem Prover; MiniSat/CryptoMiniSat; SMT-LIB 2) sits in the same Mixed boolean-arithmetic / constraint-solver lane. (source: wiki/sources/descriptions/stp__stp.md) - QF_BV SMT server [[smt-server]] (LLVMParty; Rust; SMT-LIB 2 parsing; bit-blasting to SAT; C++/Python client libraries for binary analysis and deobfuscation tooling) sits in that constraint-solver lane. (source: wiki/sources/descriptions/LLVMParty__smt-server.md) - Circuit-based AIG SAT via [[cirsat]] (DAG logic networks / AIGER; hardware verification & combinational equivalence) sits in the same constraint-solver lane. (source: wiki/sources/descriptions/nbulsi__cirsat.md) - Fix OLLVM / deobfuscation plugins targeting `libtprt.so` (e.g. [[deobf]]) sit in the Cheat Fix OLLVM lane. (source: wiki/sources/descriptions/zhuzhu-Top__deobf.md) - IDA CFF deflattening via [[idadeflat]] (angr-backed semi-auto CFG recover/patch) also sits in that Fix OLLVM / deflat lane. (source: wiki/sources/descriptions/za233__IDADeflat.md) - IDA deobfuscation plugin work via [[ida-easy-life]] (Python; cheat / IDA Plugins) sits in the same deobfuscation / IDA Plugins lane. (source: wiki/sources/descriptions/wINfOG__IDA_Easy_Life.md) - Decompilation-time deobfuscation via [[d810-ng]] (d810 next-gen) also sits in the Cheat Fix OLLVM lane. (source: wiki/sources/descriptions/w00tzenheimer__d810-ng.md) - IDA client + Go backend for OBPO deobfuscation via [[obpo-plugin]] (closed core; open plugin) also sits in the Cheat Fix OLLVM lane. (source: wiki/sources/descriptions/obpo-project__obpo-plugin.md) - Fix VMP / VTIL demos such as [[vmdevirt-vtil]] (broken VTIL compile path; multi-`vmenter` → jmp into compiled VTIL for IDA) sit in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/xtremegamer1__vmdevirt-vtil.md) - Python VMProtect deobfuscation via [[novmpy]] (symbolic exec of handler chains; reconstruct original insn sequence; Triton) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/wallds__NoVmpy.md) - Static VMProtect x64 3.x devirtualization via [[novmp]] (C++; VMENTER scan → VTIL lift/optimize; Capstone/Keystone; optional recompile; can1357) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/can1357__NoVmp.md) - Emulation-first VMProtect 3.8–3.10+ x64 handler walk/lift via [[vmplift]] (VIP trace, rolling-key recovery, LLVM IR/pseudo-C/devirt emit; sexyiam; Cheat Fix VMP) complements static VTIL and trace/symbolic devirtualizers for newer VMP builds. (source: wiki/sources/descriptions/sexyiam__VMPLift.md) - VMProtect x64 devirtualization lab via [[dragons-vs-vms]] (Fare9; Binary Ninja VM trace; dragon-tales lift to IGNIL/LLVM IR; Z3 symbolic handler recovery; all 256 handler slots classified; serial-check sample + BN databases; Cheat Fix VMP) (source: wiki/sources/descriptions/Fare9__Dragons-vs-VMs.md) - VMProtect devirtualization via [[titan]] (Triton emulation/symbolic exec; AST handler pattern matching; LLVM-oriented lift; virtual entry-point analysis + custom optimization passes; archercreat) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/archercreat__titan.md) - Android native-library VMP devirtualization educational lab via [[vmp-devirtualization-lab]] (mini-VM + switch dispatcher; Python bytecode disasm/lifting; dispatcher/handler recovery, symbolic lifting, trace-driven analysis, differential testing; QBDI/Unicorn/Triton/Frida/IDA/Ghidra/angr; tomhamidi97-arch) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/tomhamidi97-arch__vmp-devirtualization-lab.md) - Frida boundary-hook writeup for stacked Android VMProtect+OLLVM via libc/JNI/Java exit monitoring (tomhamidi97-arch/frida-vmp-bypass; spawn-mode Frida; caller-address cross-ref with IDA; environment-check and anti-tamper call-chain reconstruction; Cheat Fix VMP / Fix OLLVM) (source: wiki/sources/descriptions/tomhamidi97-arch__frida-vmp-bypass.md) - Multi-engine VM detection/analysis via [[vmdragonslayer]] (DTT / SE / pattern classification / ML) sits in the Cheat RE Tools / Fix VMP-adjacent lane. (source: wiki/sources/descriptions/poppopjmp__VMDragonSlayer.md) - IDA Pro VM obfuscation analysis via [[vmattack]] (Python plugin; dispatcher loops, virtual opcode handler tables, execution trace, devirtualization assist for custom VM architectures; gmh5225) also sits in the Cheat Fix VMP / devirt lane. (source: wiki/sources/descriptions/gmh5225__VMAttack.md) - IDA Pro Zeus VM bytecode via [[ida-zvm-disassembler]] (Duntss processor module + loader; 69 instructions; XOR key-chain decryption; branch-target xrefs + semantic auto-comments; OALabs ZVM lineage; custom-VM static RE; Cheat IDA Plugins lane) (source: wiki/sources/descriptions/Duntss__IDA-ZVM-Disassembler.md) - Python VMProtect trace/symbolic-exec handler recovery via [[rumba]] (virtual opcode handlers → original CFG/semantics; MBA-tagged README) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/thalium__rumba.md) - Execution-trace view/edit/analyze via [[execution-trace-viewer]] (originally for obfuscated-code RE; any-trace analysis) sits in the Cheat Debugging / RE Tools lane. (source: wiki/sources/descriptions/teemu-l__execution-trace-viewer.md) - Multi-emulator binary harnessing via [[smallworld]] (angr / Ghidra / PANDA / Unicorn; coverage, crash triage, firmware testing) sits in the Cheat RE Tools / DBI dynamic-analysis lane. (source: wiki/sources/descriptions/smallworld-re__smallworld.md) - Official radare2 GUI via [[iaito]] (Qt5/6; RE workflow / editor tooling / plugins) sits in the Cheat Radare / debugging UI lane. (source: wiki/sources/descriptions/radareorg__iaito.md) - Fast radare2 binary emulation + symbolic execution via [[radius2]] (Rust/C; modding / memory analysis) sits in the Cheat Radare Plugins / RE Tools lane. (source: wiki/sources/descriptions/radareorg__radius2.md) - Core dynamic binary analysis library [[triton]] (JonathanSalwan; C++/Python; symbolic exec, taint analysis, SMT-backed RE automation; feeds [[ponce]], [[triton-bn]], [[titan]], and VMP deobfuscation workflows) anchors the Cheat Symbolic Execution / RE Tools lane. (source: wiki/sources/descriptions/JonathanSalwan__Triton.md) - In-IDA symbolic + taint execution via [[ponce]] (Triton integration; path constraints, tainted data flow, input generation for target paths; Cheat Symbolic Execution / IDA Plugins) sits in the same symbolic-exec / RE Tools lane. (source: wiki/sources/descriptions/gmh5225__Ponce.md) - Function-level rip → Python/Unicorn harnesses via [[ripr]] (IDA plugin + r2pipe; BN/Unicorn packaging) sits in the Cheat IDA / Binary Ninja Plugins / RE Tools lane. (source: wiki/sources/descriptions/pbiernat__ripr.md) - Hex-Rays self-checking CPU emulator [[rax]] (Rust; multi-arch JIT; GDB stub for IDA Pro; instruction-level oracle diff vs KVM/QEMU; Linux boot + SDE trace; binary analysis / fuzzing; HexRaysSA) sits in the Cheat DBI / Windows Emulator / IDA integration lane. (source: wiki/sources/descriptions/HexRaysSA__rax.md) - VEH-based lightweight DBI via [[cpp-veh-dbi]] (C++ / PowerShell; exception-driven instrumentation) also sits in the Cheat DBI lane. (source: wiki/sources/descriptions/revsic__cpp-veh-dbi.md) - C++/C DBI / analysis / patching via [[w1tn3ss]] (modding / hooking / memory analysis) sits in the same Cheat DBI lane. (source: wiki/sources/descriptions/redthing1__w1tn3ss.md) - Platform-independent x86 Windows user+kernel environment emulator [[kubera]] (research; cheat / dynamic binary instrumentation; binsnake) sits in the Cheat DBI / Windows Emulator lane. (source: wiki/sources/descriptions/binsnake__KUBERA.md) - Python QEMU user-mode dynamic binary analysis via [[pyda]] (Linux binary instrument / hook / mem / syscall / insn callbacks without native exec) also sits in the Cheat DBI lane. (source: wiki/sources/descriptions/ndrewh__pyda.md) Python [[frida]] hook refresh automation via [[hook-updater]] (auto-update hook scripts when targets change; cheat / Frida) sits in the same lane. (source: wiki/sources/descriptions/jcalabres__hook-updater.md) - Rust-accelerated angr / Rust decompiler [[oxidizer]] (high-fidelity pseudocode from stripped binaries; enum/match/`?` recovery; Rust 1.39–1.93) sits in the Cheat RE Tools / Decompiler lane. (source: wiki/sources/descriptions/sefcom__oxidizer.md) - Retargetable machine-code decompiler [[retdec]] (binary lifting to high-level C; limited maintenance; PRs welcome; Cheat → Decompiler; gmh5225) sits in the same decompiler lane for offline game-client and cheat-binary analysis. (source: wiki/sources/descriptions/gmh5225__retdec.md) - Automated reverse-engineering platform [[re-architect]] (binary analysis + ML; extract meaningful info from binaries) sits in the Cheat RE Tools lane. (source: wiki/sources/descriptions/pandaadir05__re-architect.md) - .NET Harmony instrumentation of VMProtect-virtualized methods via [[vmunprotect]] (trace invokes / manipulate params; anti-debug bypass; VMP 3.6.0) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/void-stack__VMUnprotect.md) - Dynamic .NET VMProtect unpack/dump via [[vmunprotect-dumper]] (force static ctor restore → AsmResolver PE dump; VMP 3.7.0) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/void-stack__VMUnprotect.Dumper.md) - Native PE VMProtect unpack via [[vmpunpacker]] (C++/Python; LZMA decompress → original sections/IAT) also sits in the Cheat Fix VMP / Unpacker lane. (source: wiki/sources/descriptions/oureveryday__VMPUnpacker.md) - Python emulation-based VMProtect/packer unpack via [[vmpunpack]] (patched sogen emulator to OEP; PE rebuild + IOC extract; stdlib-only; no devirt) also sits in the Cheat Fix VMP / Unpacker lane. (source: wiki/sources/descriptions/milk-analyzer__vmpunpack.md) - Windows C++ dynamic VMProtect unpack via [[vmp-unpacker]] (Lucyferek-nunu; Win32 debugger attach; PEB/ntdll anti-debug bypass; OEP discovery via text-section guards/timed snapshots/manual triggers; memory dump + standard/mutated IAT rebuild; dynamic or passive import resolve) also sits in the Cheat Fix VMP / Unpacker lane. (source: wiki/sources/descriptions/Lucyferek-nunu__vmp-unpacker.md) - Static Go VMProtect PE unpack/rebuild via [[vmpstatic]] (VMP 1.x–3.x) also sits in the Cheat Fix VMP / Unpacker lane. (source: wiki/sources/descriptions/notsnakesilent__VMPStatic.md) - Emulation-based generic PE unpack via [[xvolkolak]] (XEmulUnpacker / XEmulator single-step to OEP; Qt GUI + CLI; 21 packer-specific unpackers incl. UPX/ASPack/MPRESS) also sits in the Cheat Fix VMP / Unpacker lane. (source: wiki/sources/descriptions/horsicq__XVolkolak.md) - Modular Python PE/ELF packer detection + unpack pipeline via [[unpacker]] (anpa1200; section/entropy/heuristic/signature ID; UPX native + Unicorn/Unipacker for 32-bit ASPack/Themida/VMProtect + Qiling for 64-bit VMProtect; multi-layer re-detect + PE rebuild; CLI detect→unpack→validate) also sits in the Cheat Fix VMP / Unpacker lane. (source: wiki/sources/descriptions/anpa1200__Unpacker.md) - Live-process VMP 3.x import-protection fix via [[vmpimportfixer]] (Unicorn emulation of near-call stubs in `.vmp0` → real import addresses; Zydis + pepp; x86/x64 including WoW64 fix from x64) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/mike1k__VMPImportFixer.md) - VMP3 x64 bytecode disassembly via [[vmp-vmp3-64bit-disasm-prerelease-]] (decode custom insn set, map virtual opcode handlers, reconstruct original flow from virtualized code; gmh5225; prerelease) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/gmh5225__VMP-Vmp3_64bit_disasm-prerelease-.md) - Python VMP3 editor tooling via [[vmp3-utils]] (gmh5225; Fix VMP helper utilities) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/gmh5225__Vmp3_utils.md) - C++ VMProtect helper via [[vmp-helper]] (networking, plugin development, modding; fjqisba; cheat / Fix VMP) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/fjqisba__VmpHelper.md) - VM-based code obfuscation engine via [[vmprotect]] (software CPU VM with memory/I/O ops; gmh5225; cheat / Fix VMP study surface) also sits in the Cheat Fix VMP lane. (source: wiki/sources/descriptions/gmh5225__VMProtect.md) - Themida / WinLicense 3.x virtualization research via [[themida-research]] (`VM_CONTEXT` layout, handler dispatch, de-virtualization / Triton lifting ideas) sits in the Cheat Fix Themida lane. (source: wiki/sources/descriptions/stuxnet147__Themida-Research.md) - Themida IDA plugin / Fix Themida via [[tde]] (devirtualization engine for Themida-protected binaries) also sits in the Cheat Fix Themida lane. (source: wiki/sources/descriptions/sodareverse__TDE.md) - Original Pascal Themida auto-unpacker via [[magicmida]] (Hendi48; custom user-mode debugger; 32/64-bit PE + .NET dump; import rebuild + section restore; BeaEngine disasm; GUI + `/unpack` CLI; ScyllaHide anti-debug settings; Fix Themida) also sits in the Cheat Fix Themida lane. (source: wiki/sources/descriptions/Hendi48__Magicmida.md) - Automatic Themida v1/v2/v3 unpack via [[magicmida-rs]] (Rust Win32 Debug API debugger; OEP discovery + memory dump + PE IAT/section rebuild; optional ScyllaHide anti-debug bypass; verify mode) also sits in the Cheat Fix Themida lane. (source: wiki/sources/descriptions/guoxing2024__magicmida-rs.md) - Themida 3.1.3 Tiger red64 unpack/unwrap via [[bobalkkagi]] (Python; Unicorn emulation + win10_v1903 API hooks; fast/hook_block/hook_code modes; optional OEP; planned devirt; Capstone/distorm3) also sits in the Cheat Fix Themida lane. (source: wiki/sources/descriptions/bobalkkagi__bobalkkagi.md) - Oreans VM unvirtualization in Ghidra via [[ghidr-orean]] (Marisa-Chan; Python Ghidra scripts; Deathway Unvirtualizer reimplementation; CISC complete, TIGER largely finished, RISC/FISH assembler configs; main Orean script + configurable working directory; Themida/WinLicense/Code Virtualizer; Cheat Fix Themida / Ghidra Scripts) also sits in the Cheat Fix Themida lane. (source: wiki/sources/descriptions/Marisa-Chan__GhidrOrean.md) - Dynamic Themida/WinLicense 2.x/3.x unpack via [[unlicense]] (Python 3; Frida instrumentation; OEP recovery + obfuscated IAT rebuild; x86/x64 native PE/DLL + .NET EXE; LIEF/Capstone) also sits in the Cheat Fix Themida lane. (source: wiki/sources/descriptions/ergrelet__unlicense.md) - Two-stage Themida + Nuitka onefile unpack via [[nuitka-themida-unpacker]] (DimaReverse; Python; chains unlicense dynamic strip with nuthem KAX/KAY static extraction; zstd/uncompressed archives; SHA-256 manifests; optional Python artifact recovery; Fix Themida) also sits in that lane. (source: wiki/sources/descriptions/DimaReverse__nuitka-themida-unpacker.md) - Static mutation deobfuscation via [[themida-unmutate]] (Python 3; Themida/WinLicense/Code Virtualizer 3.x insn mutation on selected functions; tested to Themida 3.1.9) also sits in the Cheat Fix Themida lane. (source: wiki/sources/descriptions/ergrelet__themida-unmutate.md) - Obfuscated-region detection via [[themida-spotter-bn]] (Binary Ninja plugin; Themida/WinLicense/Code Virtualizer obfuscated code locations; x86/x64; Oreans ≤3.1.9; Cheat Binary Ninja Plugins / Fix Themida) also sits in that lane. (source: wiki/sources/descriptions/ergrelet__themida-spotter-bn.md) - Themida attach-and-debug via [[themidie]] (x64dbg plugin; C++ MinHook; neutralizes anti-debug/anti-VM/monitoring; practical debugger attach workflow vs full unpack automation; x64 Windows; VenTaz; Cheat x64dbg Plugins / Fix Themida) also sits in that lane. (source: wiki/sources/descriptions/VenTaz__Themidie.md) - In-debugger mutation-assembly cleanup via [[codecleaner]] (x64dbg plugin; C++ Capstone + AsmJit; removes redundant NOPs and no-op register moves from disassembly; packed/obfuscated binary traces; README Cleaning Themida Mutation Assembly codes; Steesha; Cheat x64dbg Plugins / Fix Themida) also sits in that lane. (source: wiki/sources/descriptions/Steesha__CodeCleaner.md) - Opaque-predicate detection via [[opaque-predicates-detective]] (invariant-expression / BB-local damage) sits in the Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/yellowbyte__opaque-predicates-detective.md) - Opaque-predicate removal via [[opaque-predicate-patcher]] (Vector35 Binary Ninja plugin; Python; MLIL branch-condition analysis; patch always/never branch; iterative re-analysis; Cheat Binary Ninja Plugins lane) complements detection tooling. (source: wiki/sources/descriptions/Vector35__OpaquePredicatePatcher.md) - Native opaque-predicate removal via [[native-predicate-solver]] (ScriptWare-Software Binary Ninja plugin; C++; MLIL conditional-branch analysis; single-function/whole-binary passes; configurable limits; multithreaded; Cheat Binary Ninja Plugins lane) complements Python patchers for large protected binaries. (source: wiki/sources/descriptions/ScriptWare-Software__native-predicate-solver.md) - SMT-assisted opaque-predicate deobfuscation via [[r2smt]] (Rust; radare2 integration; Z3/CVC5/Bitwuzla; IR lift + SSA + backward slice; batch JSON/MD reports; reversible patches) sits in the Cheat Radare Plugins lane. (source: wiki/sources/descriptions/seifreed__r2SMT.md) - Obfuscated-region pinpointing via [[obfuscation-detection]] (CFF / insn-complexity / n-gram BB outliers; batch scripts) sits in the same Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/mrphrazer__obfuscation_detection.md) - Obfuscated-code analysis and simplification via [[obfuscation-analysis]] (MBA backward-slice + msynth oracle; opaque-predicate dataflow; Z3-verified BNIL deobfuscation) sits in the same Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/mrphrazer__obfuscation_analysis.md) - Windows x86/x64 debugging via [[x64dbg]] (feature-rich debugger + plugin system) is a core Cheat Debugging lane tool for offensive RE. (source: wiki/sources/descriptions/x64dbg__x64dbg.md) - VEH-based stealth debugger [[ghostdebug]] (VollRagm; native injected DLL + C# CLI; named-pipe JSON control; INT3 breakpoints and single-step without Win32 Debug API; Iced live disasm; TestTarget anti-debug probes; protected-process RE; cheat / debugging) complements [[x64dbg]] when attach-time debugger detection is the blocker. (source: wiki/sources/descriptions/VollRagm__ghostdebug.md) - AI reverse engineering assistant for x64dbg via [[x64dbg-rippy]] (WebView2 in-debugger chat; LLM tool-use for memory/disasm/breakpoints/single-step; Anthropic/OpenAI APIs; Cheat x64dbg Plugins / agent-RE lane) (source: wiki/sources/descriptions/dariushoule__x64dbg-rippy.md) - Python x64dbg Automate client via [[x64dbg-automate-pyclient]] (ZeroMQ/msgpack RPC; breakpoints/memory/registers/disasm/session/GUI; optional MCP server; scriptable repeatable debug sessions; Cheat Debugging / agent-RE lane) (source: wiki/sources/descriptions/dariushoule__x64dbg-automate-pyclient.md) - Dedicated x64dbg MCP server via [[x64dbg-mcp]] (TypeScript; 23 mega-tools / 151 REST endpoints; native plugin REST bridge; stepping/breakpoints/memory/disasm/tracing/anti-debug bypass/CFA/PE dump; Claude/Cursor/Windsurf; Cheat Debugging / agent-RE lane) (source: wiki/sources/descriptions/bromoket__x64dbg_mcp.md) - C#/.NET x64dbg MCP plugin via [[x64dbgmcpserver]] (AgentSmithers; MCP-compatible HTTP interface; self-hosted listener; memory/disasm/register/label/automation commands; AI-assisted RE and scripted game security analysis; Cheat Debugging / agent-RE lane) (source: wiki/sources/descriptions/AgentSmithers__x64DbgMCPServer.md) - Agent-native integrated RE lab via [[open-reverselab]] (LING71671; Python; 180+ technique articles + 100+ MCP automation tools; knowledge router maps signals to attack chains; Ghidra/Frida/x64dbg/jadx; web CTF, Android APK/DEX, Windows PE, crypto, game cheating/AC boards; authorized binary/malware/game-protection investigation; Cheat agent-RE lane) (source: wiki/sources/descriptions/LING71671__open-reverselab.md) - AI-assisted RE with deterministic byte-level verification via [[reverify]] (2akouwu; MCP server + CLI; pairs LLM analysis with auditable byte-level checks; Cheat RE Tools) (source: wiki/sources/README-categories.md) - Windows x86/x64 debugger [[syser]] (C/C++; RE / plugin development / modding) complements [[x64dbg]] in the Cheat Debugging lane for game-security offensive debug workflows. (source: wiki/sources/descriptions/marakew__syser.md) - Extension-plugin disassembler/debugger [[xdv]] (C/C++; plugin development / modding / SDK generation) complements [[x64dbg]] and [[syser]] in the Cheat Debugging lane for game-security offensive RE. (source: wiki/sources/descriptions/imugee__xdv.md) - Lightweight Java/JVM attach debugging via [[jdbg]] (JDWP; method hooks / breakpoints / variable inspect / class enum) supports runtime RE of Java game clients and obfuscated JVM apps. (source: wiki/sources/descriptions/roger1337__JDBG.md) - Java bytecode deobfuscation via [[deobfuscator]] (gmh5225 fork + narumii; ProGuard/Allatori/ZKM passes; cheat / RE tools) recovers readable class structure from obfuscated JVM/Android clients alongside [[raung]]/[[jdbg]]. (source: wiki/sources/descriptions/gmh5225__deobfuscator.md) (source: wiki/sources/descriptions/narumii__Deobfuscator.md) - Agent-facing GDB via [[mcp-gdb]] (MCP server; breakpoints / memory / registers / step through GDB MI) sits in the Cheat Debugging / Game Develop MCP lane for AI-assisted live debug. (source: wiki/sources/descriptions/signal-slot__mcp-gdb.md) - LLDB MCP integration via [[lisa-py]] (ant4g0nist; Python LLDB plugin + MCP bridge; breakpoints, backtraces, disasm, memory reads, expression eval; Cheat Debugging / Game Develop MCP lane) sits beside [[mcp-gdb]] for AI-assisted live debug on macOS/iOS/Android LLDB targets. (source: wiki/sources/descriptions/ant4g0nist__lisa.py.md) - Legacy Windows GDB RSP stubs such as [[gdbserver9x]] (32-bit Win98SE/XP; VC6; Binary Ninja GDB adapter) sit in the Cheat Debugging / Binary Ninja remote-debug lane. (source: wiki/sources/descriptions/robert-yates__gdbserver9x.md) - Portable Windows GDB builds such as [[gdb-windows-binaries]] (mingw-w64 v12.2.0; all arches; TUI + Python; no extra DLL deps) sit in the Cheat Debugging / GDB lane. (source: wiki/sources/descriptions/noword__GDB-Windows-Binaries.md) - Linux OllyDbg-style ptrace debugger [[edb-debugger]] (Qt GUI; disasm/registers/memory map/stack/breakpoints; x86/x86-64; plugins; eteran) complements GDB attach via [[pince]] for graphical Linux debug workflows. (source: wiki/sources/descriptions/eteran__edb-debugger.md) Go CLI debugger [[fastdbg]] (x64 ELF; ptrace breakpoints/memory/registers/disasm; eBPF tracing + QEMU kernel-debug modules; Yayoi-cs; x86_64 native/qemu kernel debugger) offers a lightweight command-interface lane beside GUI debuggers. (source: wiki/sources/descriptions/Yayoi-cs__fastDbg.md) Linux GDB front-end [[pince]] (PINCE Is Not Cheat Engine; Qt GUI; memory scan/edit, pointer chains, code injection, breakpoints, CE table support; Python + GDB) gives Cheat Engine–like live-memory workflows on Linux. (source: wiki/sources/descriptions/korcankaraokcu__PINCE.md) Lightweight `/proc/pid/mem` CLI scanner [[mempeek]] (Rust; libprocmem `/proc/pid/maps`; CE-style equal/changed/range filters; multi-radix expressions; rustyline REPL) complements GDB attach workflows. (source: wiki/sources/descriptions/gamozolabs__mempeek.md) Structured `/proc/pid/maps` layout parsers such as [[procmap]] (C++14; `MemorySegment` API for address ranges, permissions, offsets, and backing paths) sit in the same Cheat Linux memory-introspection lane. (source: wiki/sources/descriptions/joaomlneto__procmap.md) Ptrace-based Linux ELF injectors such as [[mandibule]] (C; icrt minimal runtime; raw syscalls; ELF load/relocate; fake stack; position-independent shellcode args) sit in the adjacent Cheat Linux injection lane. (source: wiki/sources/descriptions/ixty__mandibule.md) Lightweight ptrace syscall tracer [[pawtrace]] (C + assembly; attach or spawn; x86-64 syscall decode with argument inspection, socket addresses, W^X memory, `/proc/maps` snapshots, JSONL output; remote tracing via TCP; cocomelonc) complements GUI debuggers for scripted Linux syscall forensics. (source: wiki/sources/descriptions/cocomelonc__pawtrace.md) Linux decoy process spawners such as [[d-process]] (shell wrapper compiles minimal C on demand + nohup; fake background processes with chosen names; anti-cheat / tracker enumeration research) sit in the adjacent Linux process-list manipulation lane. (source: wiki/sources/descriptions/gigbh__d-process.md) - Steam anti-anti-debug helpers such as [[steam-anti-anti-debug]] (patch Steam debug detection so [[x64dbg]] can attach to protected game processes) sit in the Steam / Cheat Debugging research lane. (source: wiki/sources/descriptions/wilszdev__SteamAntiAntiDebug.md) - Win32 anti-debug bypass practice labs such as [[gh-anti-debug-bypass-practice-tool]] (C++/VS; ImGui/DX11; per-check toggles + DETECTED feedback; attach a debugger and practice bypassing IsDebuggerPresent/PEB/heap/timing/SEH checks; extensible header callbacks; Anti Debugging / learner lane) sit in the Cheat Debugging / anti-debug training lane beside step-by-step labs such as [[intro-to-gamehacking]]. (source: wiki/sources/descriptions/guidedhacking__GH_AntiDebug_Bypass_Practice_Tool.md) - Browser JS anti-debug bypass UserScripts such as [[js-debugger-bypass-script]] (JavaScript; DevTools / `debugger`-statement / console-timing / window-size detection bypass; web game / client-script RE lane) sit in the Cheat Debugging / browser anti-debug lane beside [[javascript-obfuscator]] debug-protection study. (source: wiki/sources/descriptions/gmh5225__js-debugger-bypass-script.md) Browser-based multiplayer RPGs such as [[ff3mmo]] (JavaScript; user-supplied NES ROM + jsnes PPU data extraction; WebSocket wire protocol; server arbiters / inventory mirrors against item-dup and stat spoofing) sit in the web-game client-tamper lane opposite server-authoritative validation. (source: wiki/sources/descriptions/joeltco__ff3mmo.md) Browser leaderboard shooters such as [[pew-game]] (TypeScript/Next.js; canvas twin-stick; server-side HMAC session tokens + score/wave/duration plausibility + replay checks; leaderboard anti-cheat reference with tested validation) sit in the defensive web-game score-integrity lane beside offensive client tamper study. (source: wiki/sources/descriptions/nocoo__pew-game.md) - Binary Ninja ↔ x64dbg plugin work such as [[x64dbgbinja]] (Python BN plugin from the x64dbg org) sits in the Cheat Binary Ninja / x64dbg Plugins lane. (source: wiki/sources/descriptions/x64dbg__x64dbgbinja.md) - MachO kernelcache / KDK dSYM loading via [[binja-kc]] (Binary Ninja plugin; symbols + types) sits in the Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/skr0x1c0__binja_kc.md) - MLIL division/modulo deoptimization via [[binja-division-deoptimization]] (Binary Ninja plugin; architecture-agnostic strength-reduction recovery) sits in the Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/jmprdi__binja-division-deoptimization.md) - PTX / CUDA GPU virtual ISA reverse engineering via [[ptxninja]] (Binary Ninja plugin; plugin manager) sits in the Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/seekbytes__ptxNinja.md) - Dynamic CUDA kernel instruction DBI via [[cutracer]] (facebookresearch; runtime trace with host-side analysis split; cheat / DBI) complements static PTX RE via [[ptxninja]]. (source: wiki/sources/descriptions/facebookresearch__CUTracer.md) - Call-graph / coverage-assisted graph analysis via [[ariadne]] (Binary Ninja plugin; static analysis + block coverage) sits in the Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/seeinglogic__ariadne.md) - Ghidra Sleigh/p-code bridging into Binary Ninja via [[binaryninja-pcode]] (C++; experimental LLIL from p-code) sits in the Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/pd0wm__binaryninja-pcode.md) - Custom Binary Ninja architecture plugins via [[binaryninjaplugins]] (Pusty; Python; Java class files, Renesas H8/300, Xtensa ELF; disassembly, decode, partial lifting; Java NOP/branch patch workflows; Cheat Binary Ninja Plugins / firmware+bytecode RE) sits beside [[binaryninja-pcode]]. (source: wiki/sources/descriptions/Pusty__BinaryNinjaPlugins.md) - Binary Ninja MCP server via [[binary-ninja-mcp]] (Python; disasm/decompile/xrefs/functions/types for LLM clients; MCP for Binary_Ninja) sits in the Cheat Binary Ninja Plugins / agent-RE lane. (source: wiki/sources/descriptions/fosdickio__binary_ninja_mcp.md) - BinjaLattice authenticated HTTP MCP bridge via [[binja-lattice-mcp]] (Invoke-RE; Python BN plugin; token auth + optional TLS; export disasm/pseudocode + controlled rename/comment edits; live BN database agent-RE; MCP for Binary_Ninja) sits beside [[binary-ninja-mcp]]. (source: wiki/sources/descriptions/Invoke-RE__binja-lattice-mcp.md) - Binary Ninja CLI for agents via [[bn]] (banteg; Python; headless/agent-facing CLI over BN APIs; plugin development; Cheat Binary Ninja Plugins / agent-RE lane) sits beside [[binary-ninja-mcp]]. (source: wiki/sources/descriptions/banteg__bn.md) - Vector35 curated official Binary Ninja plugin index via [[official-plugins]] (structured plugin metadata catalog; Python indexing; trusted first-party/endorsed integrations; Cheat Binary Ninja Plugins lane) complements community plugin discovery. (source: wiki/sources/descriptions/Vector35__official-plugins.md) - Vector35 community Binary Ninja plugin index via [[community-plugins]] (Python manifest validation + index generation; third-party licensing, compatibility, and update metadata; discover/install community extensions; Cheat Binary Ninja Plugins lane) pairs with [[official-plugins]]. (source: wiki/sources/descriptions/Vector35__community-plugins.md) - Triton DBA scaffolding in Binary Ninja via [[triton-bn]] (plugin base for symbolic-exec / lifting experiments inside BN; Cheat Binary Ninja Plugins) sits in the same Triton / symbolic-exec lane as [[ponce]] (IDA). (source: wiki/sources/descriptions/ergrelet__triton-bn.md) - Binary Ninja symbolic execution via [[seninja]] (Python plugin; BN IL path exploration; constraint tracking, unreachable-code detection, reachability conditions; interactive UI; Cheat Symbolic Execution / Binary Ninja Plugins) sits in the same symbolic-exec lane as [[triton-bn]] and [[ponce]]. (source: wiki/sources/descriptions/borzacchiello__seninja.md) - Binary Ninja ↔ Ghidra Server bidirectional analysis sync via [[ghidra-svr-bridge]] (C++/Qt6 sidebar + Java 17 bridge; local TCP JSON; symbols/comments/types/signatures/bookmarks; collaborative Ghidra Server repos) sits in the Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/mutinylaboratories__ghidra_svr_bridge.md) - Solana eBPF (SBF) disassembly/decompilation via [[bn-ebpf-solana]] (Binary Ninja plugin; SBF encoding / memory model / calling conventions) sits in the Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/otter-sec__bn-ebpf-solana.md) - Solana sBPF rlib signature generation for IDA Pro / Ghidra / Binary Ninja via [[solana-sbpf-rlib]] (Python; rlib signature packs; cheat / IDA signature database lane) complements [[bn-ebpf-solana]] for Solana BPF static analysis. (source: wiki/sources/descriptions/cpkt9762__solana-sbpf-rlib.md) - Ethereum EVM bytecode disassembly via [[ethersplay]] (Binary Ninja plugin; EVM insn decode, CFG, xrefs for compiled Solidity contracts; blockchain auditor lane) sits in the Cheat Binary Ninja Plugins lane. (source: wiki/sources/descriptions/gmh5225__ethersplay.md) - IDA Pro EVM bytecode via [[ida-evm]] (Crytic processor module; PUSH/POP/SLOAD/SSTORE/CALL/JUMPI decode; operand formatting + xrefs; Python plugin; smart-contract bytecode RE; blockchain auditor lane) sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/crytic__ida-evm.md) - Process auto-attach via [[auto-attach]] (x64dbg plugin; `AutoAttachProcess` / `AutoAttachSleep` / `AutoAttachStatus`; target process name + optional delay; C/C++) sits in the Cheat x64dbg Plugins lane. (source: wiki/sources/descriptions/legendabrn__AutoAttach.md) - Collaborative breakpoint management via [[slothbp]] (x64dbg plugin; C/C++) sits in the Cheat x64dbg Plugins lane. (source: wiki/sources/descriptions/x64dbg__SlothBP.md) - GUI API breakpoint setup via [[api-breakpoint]] (x64dbg plugin; C++; visual configure/manage workflow for Windows API tracing; x86/x64; Kwansy98; Cheat x64dbg Plugins / Api Breakpoint) sits in the same lane. (source: wiki/sources/descriptions/Kwansy98__ApiBreakpoint.md) - Managed .NET 6 / C# x64dbg plugin authoring via [[dotx64dbg]] (live edit/debug; custom commands/expressions) sits in the same Cheat x64dbg Plugins lane. (source: wiki/sources/descriptions/x64dbg__DotX64Dbg.md) - OOP analysis via [[classroom]] (define member functions/variables while debugging; persisted class docs) sits in the Cheat x64dbg Plugins lane. (source: wiki/sources/descriptions/x64dbg__Classroom.md) - Memory write/access tracing via [[xfindout]] (find what writes to or accesses an address; Cheat Engine–style watch inside [[x64dbg]]) sits in the Cheat x64dbg Plugins lane. (source: wiki/sources/descriptions/morsisko__xFindOut.md) - Runtime call-frequency profiling via [[x64dbg-call-finder]] (x64dbg plugin; C++; scans user functions, conditional breakpoints + counters; filter by call count after in-app actions; UI/gameplay handler discovery; Kwansy98; Cheat x64dbg Plugins / Call Finder) sits in the same lane. (source: wiki/sources/descriptions/Kwansy98__x64dbgCallFinder.md) - Memory value scanning via [[clawsearch]] (Cheat Engine–style first/next scan inside [[x64dbg]]; int/float types; exact/changed/increased filters; fast-scan alignment; jump to dump) sits in the Cheat x64dbg Plugins lane. (source: wiki/sources/descriptions/codecat__ClawSearch.md) - Offline `.trace64` execution-trace analysis via [[x64dbg-trace-reader]] (Capstone disasm; register/memory state reconstruction; regex filter over x64dbg trace exports) sits in the Cheat Debugging / Trace Reader lane. (source: wiki/sources/descriptions/mibho__x64dbgTraceReader.md) - Windows type parsing via [[manytypes]] (x64dbg typeparsing plugin; structure/type discovery for memory RE) sits in the Cheat x64dbg Plugins lane. (source: wiki/sources/descriptions/notpidgey__ManyTypes.md) - XFG call-signature marking via [[x64dbg-xfg-marker]] (x64dbg plugin; 8-byte signatures as data before target functions; Cheat x64dbg Plugins lane) (source: wiki/sources/descriptions/m417z__x64dbg-xfg-marker.md) - Multiline assemble/disassemble via [[multiline-ultimate-assembler]] (x64dbg/OllyDbg plugin; C/C++; plugin SDK / modding; Cheat x64dbg Plugins lane) (source: wiki/sources/descriptions/m417z__Multiline-Ultimate-Assembler.md) - ChaiScript scripting via [[chaiscript-plugin]] (x64dbg plugin; three commands; thorough API vs rapid prototyping; Cheat x64dbg Plugins lane) (source: wiki/sources/descriptions/jdavidberger__chaiScriptPlugin.md) - Lua scripting via [[x64dbg-playtime]] (x64dbg plugin; embedded Lua runtime + bundled libraries; memory/registers/breakpoints/labels/modules/assembler; autorun scripts; ZehMatt; Cheat x64dbg Plugins / Lua script lane) (source: wiki/sources/descriptions/ZehMatt__x64dbgPlaytime.md) - Python 3 scripting via [[x64dbgpython]] (x64dbg plugin; C++ in-debugger runtime; Python wrappers mirroring plugin SDK APIs; memory/assembly/module/GUI example scripts; x86/x64 debugger automation; ElvisBlue; Running python3 script) (source: wiki/sources/descriptions/ElvisBlue__x64dbgpython.md) - Formatted byte pasting into memory/dump views via [[yummy-paste]] (x64dbg plugin; C++; C-style arrays, escaped shellcode, comma/space-separated decimals; disassembler and dump workflows; quick patching and byte injection; 0ffffffffh; Cheat x64dbg Plugins / paste string formatted byte data block into x64dbg easy) sits in the same lane. (source: wiki/sources/descriptions/0ffffffffh__yummyPaste.md) - Native x64dbg script samples and IDA→debugger label export helpers via [[x64dbg-script]] (Ahmadmansoor; multi-step execution control, globals, instruction-sequence search; Cheat x64dbg Plugins / scripting lane) (source: wiki/sources/descriptions/Ahmadmansoor__x64dbgScript.md) - GTA menu-ecosystem Lua API/command reference documentation via [[yimmenu]] (documentation-only repo after source removal; Lua scripting interfaces, command docs, utility guides incl. LibreTranslate chat-translation setup; script developers maintaining Lua extensions; YimMenu) sits in the Cheat / menu scripting lane beside debugger Lua automation. (source: wiki/sources/descriptions/YimMenu__YimMenu.md) - x64dbg plugin install/management via [[x64dbg-plugin-manager]] (C++/C; plugin development / modding; Cheat x64dbg Plugins lane) (source: wiki/sources/descriptions/horsicq__x64dbg-Plugin-Manager.md) - In-process string search/browse via [[stringsx64dbg]] (C++/Qt x64dbg plugin; dedicated SearchStringsWidget tab; 32/64-bit; Cheat x64dbg Plugins lane) (source: wiki/sources/descriptions/horsicq__stringsx64dbg.md) - Standalone binary/process string extraction via [[strings2]] (C/C++; extract strings from binary files and live process memory; modding / memory analysis; cheat / RE tools lane) (source: wiki/sources/descriptions/glmcdona__strings2.md) - In-debugger static compiler/packer/protector identification via [[nfdx64dbg]] (Nauz File Detector / NFD tab; C++/Qt x64dbg plugin; 32/64-bit; Cheat x64dbg Plugins lane) (source: wiki/sources/descriptions/horsicq__nfdx64dbg.md) - DLL load-notification callback inspection via [[x64dbg-view-dll-notification]] (C++/C++ x64dbg plugin; view `LdrRegisterDllNotification` activity; Cheat x64dbg Plugins lane) (source: wiki/sources/descriptions/gmh5225__X64DBG-ViewDllNotification.md) - Standalone signature-based linker/compiler/packer/protector triage via [[nauz-file-detector]] (NFD; PE/ELF/Mach-O+; C++/Qt GUI+CLI; horsicq; Cheat Linker/Compiler/Tool detector lane) (source: wiki/sources/descriptions/horsicq__Nauz-File-Detector.md) - Static-library function identification via [[idenlib]] (IDA plugin; VC++/STL signature DB on stripped PEs) and [[idenlibx]] (x64dbg port; signature scan of loaded modules → live name apply) sits in the Cheat Library Function Identification / IDA & x64dbg Plugins lane. (source: wiki/sources/descriptions/secrary__idenLib.md) (source: wiki/sources/descriptions/secrary__idenLibX.md) Linux FLIRT packs such as [[sig-database]] (OpenSSL/system libs across Ubuntu releases; amd64/i386) extend the same library-ID lane for Linux binaries. (source: wiki/sources/descriptions/push0ebp__sig-database.md) - IDA Plugins such as [[xrefsext]] (extended xrefs), [[find-xrefs]] (materialize missing string/data xrefs on large binaries; RIP-relative/absolute scan; optional raw 32-bit sliding window; NumPy-accelerated sweeps; TheCruZ; cheat / IDA Plugins), [[xrefgen]] (indirect/complex control-flow xref generation; data-flow taint + call-graph + CFF/opaque-predicate detection; XRefer-compatible export; x86/x64/ARM/ARM64/MIPS/WASM; seifreed; cheat / IDA Plugins; source: wiki/sources/descriptions/seifreed__xrefgen.md), [[xrefxpert]] (dockable real-time function xref viewer; click-to-jump + hotkey navigation; immediates/parameter-count/signature filters; Python/PyQt; 0xGotcha; cheat / IDA Plugins; source: wiki/sources/descriptions/0xGotcha__XrefXpert.md), [[ida-plugins]] (register cross-references; vs Oregami value-use filtering), [[ida-jm-xorstr-decrypt-plugin]] (JM Xorstr decrypt on some x64 binaries), [[unxorer]] (stack-string recovery via Unicorn emulation; C++; configurable start points + output navigation; cheat / IDA Plugins), [[ida-gameguard-str-dec]] (nProtect GameGuard string decrypt; Python; modding), [[anti-xorstr]] (anti Xorstr; Python), [[hashdb-ida]] (HashDB API/string hash lookup; bulk module import; XOR-aware matching; enum annotation; OALabs), and [[pikabot-deobfuscator]] (Pikabot RC4/AES string decrypt from Hex-Rays) support cheat-side static RE workflows. (source: wiki/sources/descriptions/zengfr__XrefsExt.md) (source: wiki/sources/descriptions/TheCruZ__FindXrefs.md) (source: wiki/sources/descriptions/repnz__ida-plugins.md) (source: wiki/sources/descriptions/yubie-re__ida-jm-xorstr-decrypt-plugin.md) (source: wiki/sources/descriptions/crtdll__ida-gameguard-str-dec.md) (source: wiki/sources/descriptions/lstaroth__AntiXorstr.md) (source: wiki/sources/descriptions/OALabs__hashdb-ida.md) (source: wiki/sources/descriptions/threatlabz__pikabot-deobfuscator.md) (source: wiki/sources/descriptions/SamuelTulach__unxorer.md) - .NET NativeAOT symbol recovery via [[dotniet]] (IDA Python; reconstruct types/methods lost to Native AOT; Import .NET Symbol) supports RE of NativeAOT game/client binaries where managed decompilers fail. (source: wiki/sources/descriptions/synacktiv__dotNIET.md) - Ghidra .NET Native AOT analysis via [[ghidra-nativeaot]] (Java Ghidra analyzer/UI plugin; reconstructs type hierarchies from method tables, annotates frozen objects/string literals, detects vtable redirections, locates ReadyToRun metadata via symbols/heuristic scan; metadata browser + virtual-method rename refactor; .NET 8+ stripped NativeAOT; malware/CTF/game-client RE; cheat / Ghidra Plugins; Washi1337) complements IDA-side [[dotniet]]. (source: wiki/sources/descriptions/Washi1337__ghidra-nativeaot.md) - Upstream Ghidra framework source via [[ghidra]] (NSA Ghidra mirror/fork; standard disasm/decompile/debugger codebase; cheat / RE tools) (source: wiki/sources/descriptions/gmh5225__ghidra.md). Ghidra install/plugin/project management via [[ghidra-manager]] (Python CLI; release-pinned Ghidra + curated extensions incl. GhidraMCP; SHA-256 verify; rollback; MCP bridge, multi-instance launch, doctor checks, binary compare; cheat / Ghidra managers) sits in the Cheat Ghidra install/plugin managers lane. (source: wiki/sources/descriptions/alexbevi__ghidra-manager.md) Ghidra Plugins such as [[ghidrametrics]] (cyclomatic complexity / function size / call depth; headless + JSON) support native-code metric triage in the Cheat Ghidra Plugins lane. (source: wiki/sources/descriptions/westfox-5__GhidraMetrics.md) Headless Ghidra binary diffing via [[ghidriff]] (Python CLI; graph/BSim function correlation; Markdown decomp/call-graph reports; PE/Mach-O/ELF; Docker CI; cheat / Python Command-Line Ghidra Binary Diffing Engine) sits in the same patch-analysis lane as [[diaphora]] and [[turbodiff]]. (source: wiki/sources/descriptions/clearbluejar__ghidriff.md) Scalable Ghidra BSim corpus analysis via [[bsimvis]] (MISP; Python + JS; Kvrocks/Redis + optional Milvus; REST API + web UI; similarity search, function diffing, HDBSCAN clustering, call-graph navigation; cheat / Ghidra BSim-based binary similarity) extends that lane for large cross-binary collections. (source: wiki/sources/descriptions/MISP__bsimvis.md) Automation-oriented GhidraScript collections such as [[ghidra-scripts]] (CTF competition scripts for common RE challenge patterns; cheat / Scripts) sit in the same Ghidra Plugins lane. (source: wiki/sources/descriptions/ghidragolf__ghidra_scripts.md) Broader maintained GhidraScript automation via [[ghidrascripts]] (advanced-threat-research; AI rename, complexity visualization, Golang/BSim/FunctionID, SHAREM/Malpedia; cheat / Some scripts) sits in the same lane. (source: wiki/sources/descriptions/advanced-threat-research__GhidraScripts.md) Java string-analysis plugin [[better-string-analyzer]] (modding / Ghidra Plugins; fuzzypickles14) complements GhidraScript automation in that lane. (source: wiki/sources/descriptions/fuzzypickles14__BetterStringAnalyzer.md) Command Palette via [[gfred]] (keyboard-driven Ghidra action search; prebuilt Ghidra 9.2.0 build in `dist/`; cheat / Ghidra Plugins / `[Command Palette]`) sits in the same Ghidra Plugins lane. (source: wiki/sources/descriptions/danbrodsky__GFred.md) GBA ROM loaders such as [[gba-ghidra-loader]] (memory/IO map + cartridge-header entry; README `[GameBoy]`) sit in the same Ghidra Plugins / console lane. (source: wiki/sources/descriptions/pudii__gba-ghidra-loader.md) Broader Security Joes IR/malware RE kits such as [[threatresearch]] (Ghidra/IDA plugins, deobf scripts, YARA; Python/Java) sit in the same Cheat Ghidra Plugins / RE Tools lane. (source: wiki/sources/descriptions/securityjoes__ThreatResearch.md) Headless Ghidra MCP for agent RE via [[ghidra-headless-mcp]] (40+ tools; disasm/decompile/xrefs/symbols/scripting; fake backend + CLI; Claude/Cursor/Copilot over stdio) sits in the same Cheat Ghidra Plugins / agent-RE lane. (source: wiki/sources/descriptions/mrphrazer__ghidra-headless-mcp.md) Ghidra MCP server/plugin via [[ghidra-mcp]] (bethington; Java extension + Python MCP bridge; 200+ RE tools; GUI/headless parity; BSim; HTTP/stdio; Docker; cheat / Ghidra Plugins / agent-RE) sits in the same agent-RE lane. (source: wiki/sources/descriptions/bethington__ghidra-mcp.md) Original [[ghidramcp]] (LaurieWired; Java Ghidra plugin + Python MCP server; decompile, symbol/method enum, automated renaming; semi-automated LLM binary analysis; cheat / MCP for Ghidra) sits in the same agent-RE lane. (source: wiki/sources/descriptions/LaurieWired__GhidraMCP.md) In-Ghidra MCP via [[ghidrassist-mcp]] (Model Context Protocol extension; external AI assistants / automation / custom scripts → Ghidra analysis; Game Develop / MCP) sits in the same agent-RE lane. (source: wiki/sources/descriptions/jtang613__GhidrAssistMCP.md) In-Ghidra LLM RE via [[ghidrassist]] (OpenAI v1-compatible APIs; local Ollama/LM-Studio/Open-WebUI or cloud OpenAI/Anthropic/Azure; cheat / Ghidra Plugins) sits in the same lane. (source: wiki/sources/descriptions/jtang613__GhidrAssist.md) Python 3 ↔ Ghidra scripting bridge via [[ghidra-bridge]] (CPython automation outside Jython; underpins [[gpt-wpre]] and external Ghidra plugin workflows) sits in the same Cheat Ghidra Plugins lane. (source: wiki/sources/descriptions/justfoxing__ghidra_bridge.md) Programmatic Ghidra decompiler access via [[ghiradec]] (integration or standalone tool; Ghidra analysis engine; automated binary analysis; Cheat → Ghidra Decompiler) sits in the same decompiler/automation lane. (source: wiki/sources/descriptions/gmh5225__GhidraDec.md) - Live IDA ↔ x64dbg annotation/type sync via [[symbridge]] (names/comments/structs; module+RVA; Python broker) bridges static and dynamic RE on the same binary. (source: wiki/sources/descriptions/xp987__symbridge.md) - Automated structure/type recovery on stripped binaries via [[symless]] (data-flow + memory-access patterns; improves Hex-Rays output) sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/thalium__symless.md) - Remote browser review of a live IDA database via [[idarem]] (Flask REST/SSE + React client; live follow / optional write-back; tunnel-friendly) sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/xsslize__idarem.md) - Real-time multi-user IDA database sync via [[idarling]] (connect IDA Pro / Hex-Rays instances; collaborative RE for distributed teams) sits in the same Cheat IDA Plugins lane. (source: wiki/sources/descriptions/matteyeux__IDArling.md) - Git-backed partial IDA IDB sync via [[labsync]] (Cellebrite Labs; YAML export on save; git commit/push/pull; automatic mergetool conflict resolution; MD5 input-file identity; cheat / IDA Plugins) complements [[idarling]] for distributed teams that prefer version-controlled annotation exchange without full database sharing. (source: wiki/sources/descriptions/cellebrite-labs__LabSync.md) - IDA database migration via [[ida-migrator]] (Python plugin; migrate IDB between IDA versions or environments; cheat / IDA Plugins) sits in the same Cheat IDA Plugins / IDB workflow lane beside [[idarling]], [[labsync]], and [[idarem]]. (source: wiki/sources/descriptions/giladreich__ida_migrator.md) - Offline CPU instruction docs at the cursor via [[idaref]] (Python; SQLite refs for x86-64/ARM/MIPS/Xtensa) sit in the Cheat IDA Plugins / instruction-reference lane. (source: wiki/sources/descriptions/nologic__idaref.md) - In-IDA register/instruction documentation via [[friend]] (C++; Capstone-backed processor extensions; contextual hints, external doc links, function summaries in disasm + Hex-Rays; Windows/Linux/macOS; cheat / IDA Plugins) sits beside [[idaref]] in the same instruction-reference lane. (source: wiki/sources/descriptions/alexhude__FRIEND.md) - ELF external library resolution in IDA via [[autoresolv]] (airbus-seclab; IDAPython; PyQt5 + pyelftools; resolve imported calls, wrapper→implementation mapping, call-site annotation, signature import from related binaries; multi-arch dynamically linked ELF; cheat / IDA Plugins) sits in the same symbol-recovery lane beside [[vmlinux-to-elf]] and [[ida-ps5-elf-plugin]]. (source: wiki/sources/descriptions/airbus-seclab__AutoResolv.md) - ELF64 PLT/thunk repair in IDA via [[plt-patcher]] (GAMMACASE; Python IDAPython; patches PLT sections when IDA auto-analysis fails; thunk type preserver for extern-call decompilation; cheat / IDA Plugins) complements [[autoresolv]] in the same ELF import-recovery lane. (source: wiki/sources/descriptions/GAMMACASE__PltPatcher.md) - Windows COM analysis in IDA via [[comida]] (airbus-cert; COM GUID scan + registry correlation; Hex-Rays inference on `CoCreateInstance` / `CoGetCallContext` / `QueryInterface`; malware/game COM triage; cheat / IDA Plugins) sits beside [[comon]] and [[classy]] in the Windows internals / COM RE lane. (source: wiki/sources/descriptions/airbus-cert__comida.md) - Agent/human IDA CLI via [[idac]] (Unix socket to live GUI or headless idalib; structured JSON; batch/preview/dry-run; bundled agent skill; not MCP; early alpha) sits in the same IDA-driven RE lane. (source: wiki/sources/descriptions/trailofbits__idac.md) - Headless IDA Pro MCP via [[ida-cli]] (cpkt9762; idalib-powered; AI-assisted binary analysis; Rust/C++; cheat / IDA Plugins) sits in the same agent-RE lane. (source: wiki/sources/descriptions/cpkt9762__ida-cli.md) - WinDbg-style idalib CLI via [[ida-buddy]] (JustasMasiulis; Python `idb`; persistent headless worker per database; compact stdout; disasm/decompile/xrefs/types + DB mutations with undo; agent-RE lane) (source: wiki/sources/descriptions/JustasMasiulis__ida_buddy.md) sits beside [[ida-cli]] and [[idac]] in the same agent-RE lane. - Headless IDAPython automation via [[headless-ida]] (DennyDai; Python module/CLI; execute scripts, one-liners, and interactive sessions without GUI; RPyC remote server; idat64/idalib backends; malware/binary/game-security RE automation) sits in the same headless IDA workflow lane. (source: wiki/sources/descriptions/DennyDai__headless-ida.md) - SQL-backed IDA query interface via [[idasql]] (allthingsida; virtual SQL tables + AI natural-language RE queries; CLI on `.i64` or in-IDA plugin; remote query; cheat / IDA Plugins) sits beside [[ida-bridge]] and [[idac]] in the agent-RE lane. (source: wiki/sources/descriptions/allthingsida__idasql.md) - Headless IDA Pro MCP via [[headless-ida-mcp-server]] (cnitlrt; IDA Pro headless binary analysis; MCP tools for functions/variables; Game Develop / MCP server) sits in the same agent-RE lane. (source: wiki/sources/descriptions/cnitlrt__headless-ida-mcp-server.md) - Headless IDA Pro MCP via [[ida-mcp-rs]] (blacktop; Rust; RE/modding/memory analysis; Game Develop / MCP server) sits in the same agent-RE lane. (source: wiki/sources/descriptions/blacktop__ida-mcp-rs.md) - IDA Pro JSON-RPC daemon via [[ida-rpc]] (bkerler; decompile/xrefs/types/patches over network protocol; headless & GUI; ghidra-rpc-compatible CLI; LLM/agent-assisted RE) sits in the same agent-RE lane. (source: wiki/sources/descriptions/bkerler__ida_rpc.md) - Agent bridge for IDA Pro 9+ via [[ida-bridge]] (Cellebrite Labs; Python WebSocket bridge; IDAPython/SQL on live UI or headless idalib; supervisor lifecycle; bundled agent skill; macOS; Game Develop / MCP + IDA Plugins) sits in the same agent-RE lane. (source: wiki/sources/descriptions/cellebrite-labs__ida-bridge.md) - IDA ↔ VS Code IDAPython integration via [[idacode]] (execute/debug scripts from VS Code; early alpha; cheat / IDA Plugins) sits in the same IDAPython workflow lane. (source: wiki/sources/descriptions/gmh5225__idacode.md) - MCP bridge into IDA via [[ida-mcp-server]] (MxIris-Reverse-Engineering; Python standalone server + IDA plugin; bidirectional disassembly-context queries and analysis workflows; MCP for IDA pro) sits in the Cheat IDA Plugins / agent-RE lane. (source: wiki/sources/descriptions/MxIris-Reverse-Engineering__ida-mcp-server.md) - MCP bridge into IDA via [[ida-mcp-server-plugin]] (Python plugin; disasm/decompile/xrefs/functions/types for LLM clients) sits in the Cheat IDA Plugins / agent-RE lane. (source: wiki/sources/descriptions/taida957789__ida-mcp-server-plugin.md) Full IDAPython MCP automation via [[ida-pro-mcp]] (mrexodia; installable plugin + IDAPython docs + MCP test harness; rename/annotate/xrefs/decompile/structs) sits in the same agent-RE lane. (source: wiki/sources/descriptions/mrexodia__ida-pro-mcp.md) AI-assistant bridge via [[mcp-server-idapro]] (fdrechsler; MCP for IDA Pro; Game Develop / MCP) sits in the same agent-RE lane. (source: wiki/sources/descriptions/fdrechsler__mcp-server-idapro.md) Binary analysis MCP collection via [[binary-analysis-mcps]] (cycraft-corp; Python; IDA Pro function/xref/variable tools + utilities for LLM agents; Binary analysis MCPs collections) sits in the same agent-RE lane. (source: wiki/sources/descriptions/cycraft-corp__BinaryAnalysisMCPs.md) Official Hex-Rays Claude Code plugin/skill collection via [[ida-claude-code-plugins]] (HexRaysSA; Python tooling + Markdown plugin/skill documentation; plugin development, automated scripting, optional sandboxed code-evaluation; repeatable automation-heavy IDA pipelines; cheat / IDA Plugins / agent-RE lane) (source: wiki/sources/descriptions/HexRaysSA__ida-claude-code-plugins.md) - Also curated as MCP for IDA Pro: [[pcm]] (rand-tech; description summary additionally claims Process Context Monitor scheduling visibility). (source: wiki/sources/descriptions/rand-tech__pcm.md) - In-IDA Claude-3 chat assistant via [[ida-assistant]] (interactive Q&A / guidance during RE) sits in the Cheat IDA Plugins / LLM-assistant lane. (source: wiki/sources/descriptions/stuxnet147__IDA-Assistant.md) - AI-powered IDA 9.0+ assistant for C++ game RE via [[aida]] sits in the Cheat IDA Plugins / LLM-assistant lane. (source: wiki/sources/descriptions/sigwl__AiDA.md) - Local llama.cpp IDA LLM Explainer via [[ida-llm-explainer]] (function explain/rename/struct inference; human-in-the-loop accept; CFG recovery) sits in the Cheat IDA Plugins / LLM-assistant lane. (source: wiki/sources/descriptions/pgarba__ida-llm-explainer.md) - C++ LLM bulk rename/explain assistant via [[binarylens]] (Berk000x; function rename at scale, decompiler-context logic explain, local variable rename; IDA SDK + OpenSSL; multi-model backends; large game client / anti-cheat IDBs; cheat / IDA Plugins) sits in the Cheat IDA Plugins / LLM-assistant lane. (source: wiki/sources/descriptions/Berk000x__BinaryLens.md) - Enhanced IDA live-debug register/stack views via [[dereferencing]] (danigargu; Python IDAPython plugin; dereferenced pointer chains with color-coded memory annotations; PEDA/GEF/pwndbg-like workflow; x86/ARM/MIPS; configurable settings; cheat / IDA Plugins) sits in the Cheat IDA Plugins / debugger UX lane beside [[lazyida]] and [[idaref]]. (source: wiki/sources/descriptions/danigargu__deREferencing.md) - Mobile-first Android disassembler/decompiler [[sako-restudio]] (Maxamedxasa; Capstone + IR decompiler + ptrace debugger + call graph + SakoScript plugins; APK/ELF/PE/DEX offline; Jetpack Compose; optional local/OpenAI-compatible AI explain; cheat / RE Tools) sits in the Cheat RE Tools / mobile RE lane beside desktop LLM assistants. (source: wiki/sources/descriptions/Maxamedxasa__SakoREStudio.md) - LLM IDA pseudocode assistant via [[gepetto]] (JusticeRage; Python IDAPython; explain decompiled functions + variable rename + code comments; menu actions + hotkeys; cloud/local multi-provider config; malware/software/game-security RE; cheat / IDA Plugins / `[ChatGPT]`) sits in the Cheat IDA Plugins / LLM-assistant lane. (source: wiki/sources/descriptions/JusticeRage__Gepetto.md) - GPT-assisted IDA copilot via [[ida-copilot]] (Antelcat; Python IDAPython + Hex-Rays + LangChain; pseudocode analysis, symbol inspection, comment/rename suggestions; menu + shortcut function-level investigation; cheat / IDA Plugins / `[ChatGPT]`) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/Antelcat__ida_copilot.md) - Gemini-powered IDA semantic analysis via [[ida-semray]] (19h; Python IDA Pro plugin; AI-assisted semantic binary analysis; suggests function/variable names and detailed comments from decompiled/assembly context; interactive context-aware analysis across callers, callees, and references; accelerating RE triage for security analysts; cheat / IDA Plugins) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/19h__ida-semray.md) - Local LLM IDA pseudocode fork via [[ida-gepetto]] (apkunpacker; explain/rename; offline backends + localization; cheat / IDA Plugins) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/apkunpacker__IDA-Gepetto.md) - AI-powered IDA 9.0+ dockable panel via [[idassist]] (Python/PySide6; multi-provider LLM function explain/rename, semantic knowledge graph, RAG, MCP; cheat / IDA Plugins) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/jtang613__IDAssist.md) - IDA Pro 9.4 Windows AI console + MCP gateway via [[ida-pro-agent]] (built-in AI Console + external MCP clients; Hex-Rays pseudocode, bounded caller tracing, guard-evidence extraction, preview/apply/rollback IDB ChangeSets; C++/Go/Python; Qt 6.8.2; cheat / IDA Plugins) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/ackwrap__ida-pro-agent.md) - Embedded RE agent for IDA Pro / Binary Ninja via [[rikugan]] (Python; multi-provider LLM chat in disassembler UI; agentic tool loop, plan mode, Ollama; cheat / IDA Plugins) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/buzzer-re__Rikugan.md) - Local Ollama-assisted HLIL renaming via [[binaryninja-ollama]] (Python BN plugin; bulk/targeted function and variable rename; configurable local server/port/model; offline semantic labeling; Cheat Binary Ninja Plugins) sits in the same LLM-assistant lane beside [[rikugan]]. (source: wiki/sources/descriptions/ahaggard2013__binaryninja-ollama.md) - OpenAI-assisted HLIL analysis via [[binaryninja-openai]] (Python BN plugin; selected-function summarize from HLIL/pseudo-C + variable rename proposals in analysis view; BN plugin settings/API key management; Cheat Binary Ninja Plugins / Integrates OpenAI) sits beside [[binaryninja-ollama]] in the same LLM-assistant lane. (source: wiki/sources/descriptions/WhatTheFuzz__binaryninja-openai.md) - Decompiler ChatGPT assistant via [[daila]] (cheat / IDA Plugins / `[ChatGPT]` lane) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/mahaloz__DAILA.md) - ChatGPT-compatible IDAPython helper via [[ida-gpt]] (MayerDaniel; Python; function descriptions + automated variable/location/symbol rename suggestions; writes comments and renamed identifiers back into the IDA database; cheat / IDA Plugins / `[ChatGPT]` lane) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/MayerDaniel__ida_gpt.md) - ChatGPT PCode assistant via [[ida-plugin-pcodegpt]] (Chinese UI only; cheat / IDA Plugins / `[ChatGPT]` lane) sits in the same LLM-assistant / microcode lane. (source: wiki/sources/descriptions/lzyddf__IDA_Plugin_PCodeGPT.md) - Multi-provider IDA vulnerability analysis via [[vulchatgpt]] (BinAIVulHunter; OpenAI/Gemini/Ollama; decompiled-function vuln analysis + code explanation; cheat / IDA Plugins / `[ChatGPT]` lane) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/ke0z__VulChatGPT.md) - OpenAI-compatible IDA analysis assistant via [[wpechatgpt]] (Python IDAPython; explain function behavior, rename variables, Python routine reconstruction, vulnerability checks from decompiled views; automated function-tree traversal + summarization; cheat / IDA Plugins / `[ChatGPT]` lane) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/WPeace-HcH__WPeChatGPT.md) - Integrated AI assistant via [[binoculars]] (Python; configurable model backends, command prompts, UI actions; function explain/rename + Go pclntab reconstruction helpers; cheat / IDA Plugins) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/Vis-Wing__Binoculars.md) - Official VirusTotal IDA integration via [[vt-ida-plugin]] (Python; cloud malware intelligence + byte/string/function code-similarity search from disassembly; notebook panel with AI function summaries, editable notes, exportable collaboration artifacts; cheat / IDA Plugins / VirusTotal plugin lane) sits in the same cloud-intelligence / LLM-assistant RE lane beside [[mcrit-plugin]]. (source: wiki/sources/descriptions/VirusTotal__vt-ida-plugin.md) - IDA Python 3 graph-embedding binary similarity via [[gemini-genius]] (Jackiemin233; Python toolkit + IDA plugin; CFG/ACFG graph generation, model training/inference, embedding export, cross-binary function similarity search; cheat / IDA python 3 plugin and binary file similarity comparison) sits in the Cheat IDA Plugins / binary similarity lane beside [[mcrit-plugin]] and [[diaphora]]. (source: wiki/sources/descriptions/Jackiemin233__Gemini-Genius.md) - IDA→LLVM IR lifting via [[ida2llvm]] includes dynamic cursor-sync disassembly lifting (loyaltypollution; cheat / IDA Plugins) and microcode→IR translation with llvmlite (Sandspeare; IDA type/structure mapping + sample IR); sits in the same static RE / IR lane beside [[levo]] and [[genmc]]. (source: wiki/sources/descriptions/loyaltypollution__ida2llvm.md) (source: wiki/sources/descriptions/Sandspeare__ida2llvm.md) - Ghidra decompiler integration in IDA Pro via [[blc]] (Binary Lifting Contraption; cseagle; cheat / IDA Plugins) sits beside [[ida2llvm]] and [[ghiradec]] for alternate pseudocode when Hex-Rays is unavailable or for cross-decompiler comparison. (source: wiki/sources/descriptions/cseagle__blc.md) - Vivisect↔Ghidra symbolic decompilation bridge via [[viv-ghidra-decompiler]] (Python/Java; symbolik effects → Ghidra p-code; headless JSON-RPC backend; Qt dock widget; cheat / Ghidra Plugins) sits beside [[blc]] and [[ghiradec]] when Vivisect symbolic analysis disagrees with Ghidra Sleigh lifting. (source: wiki/sources/descriptions/atlas0fd00m__viv-ghidra-decompiler.md) - Browser-based Ghidra decompilation via [[pyre]] (WASM-compiled SLEIGH; multi-arch pseudocode entirely in-browser; no server-side processing; cheat / Decompiler) sits beside [[ghiradec]] for portable Ghidra-quality decomp without a local Ghidra install. (source: wiki/sources/descriptions/ant4g0nist__pyre.md) - Native standalone Ghidra decompiler via [[enigma]] (C++; SLEIGH/Pcode extracted from Ghidra analytical core; no JVM; BFD multi-arch; Capstone pipelines; embeddable for AI/agent RE; cheat / Decompiler) sits beside [[ghiradec]] and [[pyre]] when a full Ghidra install is impractical. (source: wiki/sources/descriptions/adam-040__Enigma.md) - Agent-first Rust Ghidra decompiler via [[kuna]] (Noelo-Lab; full Rust port of Ghidra decompiler + SLEIGH; CLI, WASM in-browser, Ghidra plugin replacing stock decompiler core; runtime-configurable phase pipeline tuned for LLM-driven autonomous refinement; cheat / Decompiler) sits beside [[enigma]], [[pyre]], and [[ghiradec]] for agent/automation RE workflows. (source: wiki/sources/descriptions/Noelo-Lab__kuna.md) - Stripped Rust binary analysis in Ghidra via [[ghidrust]] (DMaroo; Java Ghidra extension; Rust detection heuristics, Function ID stdlib matching, experimental C→Rust decompiler output translation; paused maintenance; cheat / Rust decompiler) sits beside [[kuna]], [[ida-rust-helper]], and [[oxidizer]] for Rust game-client and anti-cheat RE. (source: wiki/sources/descriptions/DMaroo__GhidRust.md) - Symbolic-execution decompiler via [[ouroboros]] (Hexorg; Rust; constraint tracking, expression rewriting, structured control-flow recovery beyond classic SSA-only lifting; processor specification assets + interactive analysis frontend; advanced decompilation research; cheat / Decompiler) sits beside [[kuna]], [[oxidizer]], and [[neverd]] for research-oriented binary structure recovery. (source: wiki/sources/descriptions/Hexorg__Ouroboros.md) - AI-friendly native binary analysis engine via [[neverd]] (NeverSight; C++20 `libneverd`; Capstone decode + four-stage IR on custom LLVM fork; PE/ELF/Mach-O x86-64/i386/AArch64/ARM32; 1:1 instruction lift to LLVM IR or structured C; strict mode; in-place rewrite; JSON CLI for automation; cheat / Decompiler) sits beside [[enigma]], [[kuna]], and [[retdec]] for embeddable lift/decompile pipelines in game and anti-cheat RE. (source: wiki/sources/descriptions/NeverSight__NeverD.md) - Binary lifting framework via [[mergen]] (NaC-L; C/C++; assembly→LLVM IR; symbolic execution, control-flow recovery, deobfuscation, and devirtualization workflows; disassembly support; protected game-binary RE) sits in the same LLVM IR analysis lane beside [[ida2llvm]] and [[neverd]]. (source: wiki/sources/descriptions/NaC-L__Mergen.md) - Whole-program Ghidra+GPT summarization via [[gpt-wpre]] (Python; `ghidra_bridge` decomp/call-graph extract → bottom-up callee-context summaries; ChatGPT / `[ChatGPT]` lane) sits in the Cheat Ghidra Plugins / LLM-assistant lane. (source: wiki/sources/descriptions/moyix__gpt-wpre.md) - In-Ghidra OpenAI GPT assistant via [[ghidra-openai]] (Python/Java; sends decompiled functions to OpenAI API; purpose explain, rename suggestions, vuln ID in Ghidra UI; cheat / Ghidra Plugins / `[ChatGPT]` lane) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/fmagin__ghidra-openai.md) - ChatGPT selected-function explainer via [[gpthidra]] (Ghidra plugin; prints explanation of the selected function to the Ghidra console; cheat / Ghidra Plugins / `[ChatGPT]` lane) sits in the same LLM-assistant lane. (source: wiki/sources/descriptions/evyatar9__GptHidra.md) - LLM-based reversing for radare2 via [[r2ai]] (interactive LLM↔r2 sessions for game/security binaries) sits in the Cheat Radare Plugins / LLM-assistant lane. (source: wiki/sources/descriptions/radareorg__r2ai.md) - radare2 MCP server via [[radare2-mcp]] (C; r2pipe disasm/decompile/xrefs; CLI/plugin modes; sandboxing + readonly + tool restrictions; MCP for radare2) sits in the Cheat Radare Plugins / agent-RE lane. (source: wiki/sources/descriptions/dnakov__radare2-mcp.md) - Retired radare2 local-LLM catalog pointer [[r2a]] (GitHub URL gone; successor [[r2ai]]) sits in the same Cheat Radare Plugins / LLM-assistant lane. (source: wiki/sources/descriptions/radareorg__r2a.md) - Lua IDA SDK scripting via [[luda]] (direct SDK access from Lua; rapid RE automation) sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/stolevchristian__LUDA.md) - Third-party Lumina server connectivity via [[openlumina]] (IDA plugin; Hex-Rays `.crt` into IDA install dir) sits in the Cheat IDA Plugins / Lumina lane. (source: wiki/sources/descriptions/tomrus88__OpenLumina.md) - IDAPython convenience via [[sark]] (“IDAPython Made Easy”; older-IDA support on IDA-6.x) sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/tmr232__Sark.md) - IDAPython namespace replacement and DWIM scripting via [[ida-minsc]] (replaces/extends default IDAPython APIs; tagging, filtering, database/function automation; faster annotation/navigation; cheat / IDA Plugins) sits beside [[sark]] and [[idawilli]] in the same Cheat IDA Plugins lane. (source: wiki/sources/descriptions/arizvisa__ida-minsc.md) - Parallel IDA worker offload via [[ida-taskr]] (Python; Qt + multiprocessing; keeps UI responsive during heavy IDAPython jobs; cheat / IDA Plugins) sits in the same Cheat IDA Plugins lane. (source: wiki/sources/descriptions/mahmoudimus__ida-taskr.md) - WakaTime RE session tracking in IDA via [[ida-wakatime-py]] (Python; background heartbeats report analyzed binaries and time-on-task to WakaTime; es3n1n; cheat / IDA Plugins) sits in the same Cheat IDA Plugins / productivity lane. (source: wiki/sources/descriptions/es3n1n__ida-wakatime-py.md) - Rust symbol demangle/normalize in IDA via [[ida-rust-demangler]] (`rs-dml`-backed) also sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/timetravelthree__IDARustDemangler.md) - Rust Cargo dependency display in IDA via [[ida-rust-cargo]] (Python plugin; cheat / IDA Plugins) sits in the same lane. (source: wiki/sources/descriptions/kkent030315__IDARustCargo.md) - Rust binary analysis helper in IDA via [[ida-rust-helper]] (Python; demangle/normalize symbols, common Rust type defs, x86/ARM/RISC-V string recovery; cheat / IDA Plugins) sits in the same lane. (source: wiki/sources/descriptions/JANlittle__IDARustHelper.md) - Cross-platform Itanium/MSVC (+ D/Rust/Swift) symbol demangling via [[demumble]] (`c++filt` / `undname.exe` replacement) sits in the Cheat RE Tools lane. (source: wiki/sources/descriptions/nico__demumble.md) - MSVC/C++ RTTI parse in IDA 9.2 via [[rtti-parser]] (IDA script; type metadata recovery) sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/rem0obb__rtti-parser.md) - C++ RTTI class hierarchy visualization and RTTI-based rename via [[pyclassinformer]] (IDA Pro plugin; library/method classification, member coloring; cheat / IDA Plugins) sits in the same C++ static-RE lane. (source: wiki/sources/descriptions/herosi__PyClassInformer.md) - GCC RTTI class hierarchy and vtable reconstruction from stripped binaries via [[ida-medigate]] (IDA Pro Python; Hex-Rays union type disambiguation; bundled xref tracker; IoT/firmware/game-engine polymorphic C++; cheat / IDA Plugins) sits in the same C++ static-RE lane. (source: wiki/sources/descriptions/gmh5225__ida_medigate.md) - C++ RTTI/class metadata recovery in Ghidra via [[ghidra-cpp-class-analyzer]] (Java extension; GCC/Clang/MSVC RTTI models, vtables, ctors/dtors, inheritance reconstruction, class hierarchy views; cheat / Ghidra Plugins) sits in the same C++ static-RE lane beside [[rtti-parser]] and [[pyclassinformer]]. (source: wiki/sources/descriptions/astrelsky__Ghidra-Cpp-Class-Analyzer.md) - Targeted Ghidra C struct import from leaked SDKs or decompiled headers via [[ghidra-struct-importer]] (Katharsas; Java GhidraScript; per-struct import with dependency resolution beyond Parse C Source; iterative layout reconstruction; cheat / Struct Importer) sits in the same C++ static-RE lane beside [[ghidra-cpp-class-analyzer]] and [[classmaker]]. (source: wiki/sources/descriptions/Katharsas__ghidra-struct-importer.md) - IDA 9.X C++ vtable ops via [[ida-vtable-tools]] (dump `.hpp` interface skeleton / class-prefix rename / `this` type / slot index·offset; Python) sit in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/oxiKKK__ida-vtable-tools.md) - Automated GCC/MSVC vtable detection, RTTI inheritance analysis, override comparison, and hierarchy visualization via [[ida-vtable-explorer]] (K4ryuu; C++ IDA Pro 9.x plugin; virtual-function index/offset annotation; cheat / IDA Plugins) sits in the same C++ static-RE lane beside [[ida-vtable-tools]] and [[ida-medigate]]. (source: wiki/sources/descriptions/K4ryuu__IDA-VTableExplorer.md) - C++ class/vtable/signature management via [[classy]] (gmh5225; PyQt5 GUI; vtable generation, function-to-class assignment, Itanium mangling, struct mapping, C header export; cheat / IDA Plugins) sits in the same C++ static-RE lane beside [[ida-vtable-tools]] and [[ida-medigate]]. (source: wiki/sources/descriptions/gmh5225__Classy.md) - Automatic C++ class reconstruction from constructor pseudocode via [[classmaker]] (Pycatchown; Python IDAPython; traces vtable assignments, creates/updates IDA structs, naming heuristics for layouts; 32/64-bit practical reversing; cheat / IDA Plugins) sits in the same C++ static-RE lane beside [[pyclassinformer]] and [[ida-vtable-tools]]. (source: wiki/sources/descriptions/Pycatchown__ClassMaker.md) - Missing indirect CALL/JMP target recovery via [[ida-missinglink]] (C++ OOP-heavy game/client binaries; cheat / IDA Plugins) sits in the same C++ static-RE lane. (source: wiki/sources/descriptions/kweatherman__ida_missinglink.md) - Binary patch script generation via [[genpatch]] (Python; dialog when patch script succeeds; cheat / IDA Plugins) sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/sterrasec__genpatch.md) - IDA PatchGen patched-byte export via [[ida-genpatch]] (IDAPython; Alt-F8; grouped file offsets, disassembly context, C# `SinglePatchHunk`; cheat / IDA Plugins) sits in the same Cheat IDA Plugins / binary-patch lane. (source: wiki/sources/descriptions/frasten__ida-genpatch.md) - IDA database → linkable COFF/ELF object export via [[ida2obj]] (relocations, symbols, section content; binary patching / recompilation; gmh5225; cheat / COFF Relink) sits in the same Cheat IDA Plugins / binary-patch lane. (source: wiki/sources/descriptions/gmh5225__IDA2Obj.md) - Hex-Rays microcode IR display via [[genmc]] (IDAPython; debug microcode plugin / decompiler-extension work) sits in the Cheat IDA Plugins / Hex-Rays lane. (source: wiki/sources/descriptions/patois__genmc.md) - Hex-Rays P-Code display for the current function via [[idapcode]] (Python IDA plugin; cheat / IDA Plugins) sits in the same Cheat IDA Plugins / Hex-Rays lane. (source: wiki/sources/descriptions/binarly-io__idapcode.md) - Intel AVX→Hex-Rays microcode lifting via [[microavx]] (IDA Pro plugin; `m_ext` opcode visitor; decompiles AVX-heavy functions that otherwise show opaque ext nodes; companion scraper for coverage gaps; cheat / IDA Plugins / AVX Lifter) sits in the same Cheat IDA Plugins / Hex-Rays lane. (source: wiki/sources/descriptions/gaasedelen__microavx.md) - Hex-Rays decompiler convenience utilities via [[happyida]] (IDAPython; Swift-style parameter labels, SEH try/catch reconstruction, vtable navigation, Rust string prettification; cheat / IDA Plugins) sits in the same Cheat IDA Plugins / Hex-Rays lane. (source: wiki/sources/descriptions/gmh5225__HappyIDA.md) - Binary Ninja PE SEH chain inspection via [[seh-helper]] (Python; list SEH entries, inspect cursor handler, follow cursor context; Windows exception metadata visibility for protected client/malware static RE; EliseZeroTwo) sits in the Cheat Binary Ninja Plugins / Windows PE lane beside [[happyida]] and [[tanto]]. (source: wiki/sources/descriptions/EliseZeroTwo__SEH-Helper.md) - Hex-Rays WPP trace-call cleanup via [[ida-wpp-remover]] (L4ys; Python; microcode pass strips `WPP_SF*` instrumentation noise from Windows PE pseudocode; toggle from decompiled view; clearer malware/game client RE; cheat / IDA Plugins) sits in the same Cheat IDA Plugins / Hex-Rays lane. (source: wiki/sources/descriptions/L4ys__IDA-WPP-Remover.md) - Comprehensive Hex-Rays RE helper suite via [[hrtng]] (KasperskyLab; C++; variable rename, auto-comments, pseudocode recast, string/data decrypt, CFF unflatten, de-inlining, API-hash scan, microcode sigs, virtual/indirect call assist, patching; cheat / IDA Plugins) sits in the same Cheat IDA Plugins / Hex-Rays lane. (source: wiki/sources/descriptions/KasperskyLab__hrtng.md) - Nonstandard calling-convention retagging and tuple-like multi-return struct generation for Swift/Golang/fastcall via [[swift-ida]] (Python IDA plugin; context-menu actions; modern language runtime/ABI RE; ViRb3; cheat / IDA Plugins) sits in the same Cheat IDA Plugins / language-ABI lane beside [[happyida]], [[golang-loader-assist]], and [[goresym]]. (source: wiki/sources/descriptions/ViRb3__swift-ida.md) - Curated essential IDA Pro plugin pack via [[idaplugins]] (deobfuscation / binary diffing / custom crypto) sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/ssmugabi__IDAPlugins.md) - Willi Ballenthin IDA Pro script/plugin/util collection via [[idawilli]] (Python IDAPython; function analysis, string decryption, struct annotation, xref navigation, workflow automation; cheat / IDA Plugins) sits in the same Cheat IDA Plugins lane. (source: wiki/sources/descriptions/gmh5225__idawilli.md) - Multi-version IDA Pro SDK archive via [[idasdk-collection]] (headers, libs, examples; backward-compatible plugin dev across IDA releases; cheat / IDA SDK) sits in the same Cheat IDA Plugins / plugin-development lane. (source: wiki/sources/descriptions/gmh5225__idasdk-collection.md) - Mirrored IDA Pro SDK files via [[ida-sdk]] (C++ headers, libs, documentation for plugins and processor modules across IDA versions; cheat / IDA SDK) sits alongside [[idasdk-collection]] in the same plugin-development lane. (source: wiki/sources/descriptions/gmh5225__ida-sdk.md) - Community-maintained IDA Pro plugin catalog via [[idaplugins-list]] (version-aware plugin discovery; cheat / IDA Plugins) sits in the same Cheat IDA Plugins lane. (source: wiki/sources/descriptions/gmh5225__idaplugins-list.md) - Cross-tool disassembler/debugger plugin index via [[awesome-ida-x64-olly-plugin]] (curated IDA Pro, Ghidra, x64dbg, OllyDbg, GDB plugins/scripts; patching, diffing, deobfuscation, emulation, YARA, anti-anti-debug; fr0gger) complements [[idaplugins-list]] in the Cheat IDA Plugins / x64dbg Plugins lane. (source: wiki/sources/descriptions/fr0gger__awesome-ida-x64-olly-plugin.md) - Categorized IDA Pro plugin list via [[list-of-ida-plugins]] (implementation language, last-updated dates, category grouping; cheat / IDA Plugins) sits in the same discovery lane. (source: wiki/sources/descriptions/gmh5225__ida-plugins.md) - Centralized IDAPython plugin configuration via [[ida-settings]] (williballenthin; Python library + Qt GUI Plugin Settings Manager; typed settings from ida-plugin.json via HCLI/ida-config.json; legacy scoped IDASettings import/export; IDA Pro 9.0+; game binary and anti-cheat plugin workflows; cheat / RE Tools) sits in the same IDA plugin infrastructure lane beside [[list-of-ida-plugins]]. (source: wiki/sources/descriptions/williballenthin__ida-settings.md) - Function-level binary diffing via [[turbodiff]] (HelpSystems IDA plugin; compare two binaries' functions; cheat / IDA Plugins / diff) sits in the same static RE / patch-tracking lane. (source: wiki/sources/descriptions/helpsystems__turbodiff.md) - x86 ROP gadget finder + ROP chainer via [[agafi]] (HelpSystems Advanced Gadget Finder; programs/modules/live processes; cheat / ROP Finder / ROP Generation) sits in the same exploit-chain RE lane beside fast C++ gadget finder [[rp]] (0vercl0k; rp++; PE/ELF/Mach-O x86/x64/ARM/ARM64; instruction gadgets + pointer values; cross-platform; exploit dev / ROP chain building; cheat / ROP Finder), [[ropgadget]] (JonathanSalwan; Python CLI; Capstone; ELF/PE/Mach-O/raw multi-arch gadget search, filter, optional chain generation; cheat / ROP Finder), semantic chain builder [[ropium]] (Boyan-MILANOV; C++ core + Python bindings; gadget extract/analyze + semantic queries; CLI + scriptable workflows; cheat / ROP Generation), [[ropgadget-rs]], Python automatic ROP chain builder [[exrop]] (constraint-driven synthesis from binary; cheat / ROP Generation), angr-based [[angrop]] (symbolic gadget discovery + chain synthesis; CLI + API; architecture-agnostic), and game-targeted script-to-chain compiler [[rop-compiler]] (Speedi13; C++; x86 assembly-like scripts → ROP chains; CS:GO/BF3/BF4 cheat payloads—triggerbot, glow ESP, minimap spotting; gadget scan + offset handling; exploit-style execution / AC evasion research; cheat / ROP Generation). (source: wiki/sources/descriptions/helpsystems__Agafi.md) (source: wiki/sources/descriptions/Boyan-MILANOV__ropium.md) (source: wiki/sources/descriptions/d4em0n__exrop.md) (source: wiki/sources/descriptions/angr__angrop.md) (source: wiki/sources/descriptions/Speedi13__ROP-COMPILER.md) (source: wiki/sources/descriptions/JonathanSalwan__ROPgadget.md) (source: wiki/sources/descriptions/0vercl0k__rp.md) - Pseudocode function-definition colorizing via [[ida-functioncolor]] (Python IDA plugin; Hex-Rays view) sits in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/sneakyevil__ida_functioncolor.md) - Function outline / call-hierarchy trees via [[ida-func-outline]] (callers/callees + depth; iOS ARM64 decomp readability) sit in the Cheat IDA Plugins lane. (source: wiki/sources/descriptions/richor1042__IDAFuncOutline.md) - Compiler function-outlining reversal via [[function-inliner]] (Cellebrite Labs; IDA Pro plugin; inlines clang `--moutline` outlined helpers back into callers to restore Hex-Rays decompilation on space-optimized ARM binaries; manual + batch; cheat / IDA Plugins) sits beside [[ida-func-outline]]—UI call trees vs compiler outlining undo. (source: wiki/sources/descriptions/cellebrite-labs__FunctionInliner.md) - Function clustering and organization for large binaries via [[idaclu]] (Qt GUI; i18n; group similar functions by criteria; visual navigation; cheat / IDA Plugins) sits in the same large-binary navigation lane. (source: wiki/sources/descriptions/harlamism__IdaClu.md) - Workflow-centric function triage and prioritization via [[ida-spotlight]] (IDA Pro plugin; prioritize which functions to analyze first; large-binary triage bottleneck; cheat / IDA Plugins) sits beside [[idaclu]] and [[ida-func-outline]] in that navigation lane. (source: wiki/sources/descriptions/dyussekeyev__ida-spotlight.md) - PS4 module-loader IDA helper via [[ida-ps4-helper]] (companion to ps4-module-loader; PlayStation static RE; cheat / IDA Plugins) sits in the same lane. (source: wiki/sources/descriptions/janisslsm__ida-ps4-helper.md) - Windows x64 call-stack reconstruction in IDA via [[better-call-stack]] (AntonKukoba1; C++ IDA debugger plugin; DbgHelp + StackWalk64 for more reliable frames than default debugger view; auto-loads during debug sessions; protected/complex binary RE; cheat / Improve call stack) sits in the Cheat IDA Plugins / debugger lane beside [[lazyida]] and [[tenet]]. (source: wiki/sources/descriptions/AntonKukoba1__BetterCallStack.md) - In-IDA Yara rule file scanning via [[yarascan-ida]] (Python; cheat / IDA Plugins) sits in the Cheat IDA Plugins / signature-scan lane. (source: wiki/sources/descriptions/senko37__yarascan-ida.md) - Unofficial YARA integration for IDA Pro via [[yara4ida]] (default **Alt-Y**; rebind via `plugins.cfg`; cheat / IDA Plugins) sits in the Cheat IDA Plugins / signature-scan lane. (source: wiki/sources/descriptions/kweatherman__yara4ida.md) - In-IDA YARA rule scanning with match highlighting via [[findyara-ida]] (gmh5225; run custom rules on the loaded binary; disasm navigation to hits; malware/crypto/packer signatures; cheat / Yara) sits in the Cheat Yara / signature-scan lane. (source: wiki/sources/descriptions/gmh5225__findyara-ida.md) - FindCrypt crypto-constant scan via [[findcrypt-yara]] (gmh5225; Python IDA plugin; YARA rules for AES/DES/SHA/CRC signatures; annotate algorithm names; cheat / Yara) sits in the Cheat Yara / crypto-signature lane. (source: wiki/sources/descriptions/gmh5225__findcrypt-yara.md) Ghidra-side crypto-constant labeling via [[ghidra-findcrypt]] (TorgoTorgo; Java Gradle analyzer; JSON byte-pattern DB for AES/DES/MD5/SHA-1/TEA/Salsa/CRC32; cheat / Ghidra Plugins) complements that lane for Ghidra workflows. (source: wiki/sources/descriptions/TorgoTorgo__ghidra-findcrypt.md) - Function pattern search via [[findfunc]] (gmh5225; filter functions by byte patterns, instruction sequences, operand types, and xrefs; Recognizing Function By Pattern; cheat / IDA Plugins) sits in the Cheat signature-scan / function-discovery lane beside [[ida-fusion]] and [[ida-sigmaker]]. (source: wiki/sources/descriptions/gmh5225__FindFunc.md) - Fast IDA signature scanner & creator via [[ida-fusion]] (unique sigs vs duplicated binary / anti-RE parts) sits in the Cheat IDA Plugins / signature-scan lane. (source: wiki/sources/descriptions/senator715__IDA-Fusion.md) - Zero-dependency IDA Pro 9+ signature maker & searcher via [[ida-sigmaker]] (Python; optional Cython/SIMD AVX2/NEON/SSE2; shortest unique sigs; wildcard operands; XREF fallback; batch text/CSV/JSON search; cheat / IDA Plugins) sits in the same signature-scan lane. (source: wiki/sources/descriptions/mahmoudimus__ida-sigmaker.md) - Alternate gmh5225 [[ida-sigmaker]] fork (IDA/code-style byte patterns with wildcard bytes; binary-unique sig generation from selected disassembly; cheat / IDA Plugins) sits in the same signature-scan lane. (source: wiki/sources/descriptions/gmh5225__ida-sigmaker.md) - Enhanced IDA Pro signature maker via [[sigmakerex]] (code/IDA/x64dbg pattern formats; automatic uniqueness verification; batch generation; clipboard integration; cheat / IDA Plugins) sits in the same signature-scan lane. (source: wiki/sources/descriptions/gmh5225__sigmakerex.md) - gmh5225 [[ida-pro-sigmaker]] (Signature Maker; wildcard-masked byte-pattern signatures from selected code regions for runtime pattern scanning; cheat / IDA Plugins) sits in the same signature-scan lane. (source: wiki/sources/descriptions/gmh5225__IDA-Pro-SigMaker.md) - Binary Ninja → IDA FLIRT `.pat` export via [[bndb2pat]] (Python; LLIL function patterns with wildcard operands, CRC16, named symbols; sigmake → `.sig` libraries for stripped-binary function ID; cheat / Binary Ninja Plugins) sits in the same signature / library-ID lane beside [[sig-database]]. (source: wiki/sources/descriptions/joren485__bndb2pat.md) - Binary Ninja byte-pattern signature maker via [[binja-sigmaker]] (Python; IDA-style wildcard signatures from disassembled functions; function-start fallback; plugin-manager packaging; cheat / Binary Ninja Plugins) sits in the same runtime signature-scan lane beside [[ida-sigmaker]] and [[bndb2pat]]. (source: wiki/sources/descriptions/apekros__binja_sigmaker.md) - Ghidra SPF-style byte signature helper via [[spf-ghidra-pattern-helper]] (Java GhidraScript; generate/search signatures in loaded binaries; Pattern Generator/Finder tabs; SPF-Framework PatternFinder-compatible output; wildcards/ranges/alternation; optional uniqueness verify; ATS/ETS2 plugin modding RE; TrackAndTruckDevs; cheat / Ghidra Plugins) sits in the same runtime signature-scan lane beside [[binja-sigmaker]] and [[ida-pro-sigmaker]]. (source: wiki/sources/descriptions/TrackAndTruckDevs__SPF_GhidraPatternHelper.md) - Standalone x86 wildcard signature workshop via [[signature-forge]] (Elinam03; Python FastAPI + React/Electron; parses x64dbg/Cheat Engine/raw hex disassembly; smart anchor scoring; multi-variant wildcard rules; exports AOB/mask/IDA Python/CE script/C header/x64dbg patterns; cheat / RE Tools) sits in the same runtime signature-scan lane beside [[sigmakerex]] and [[spf-ghidra-pattern-helper]]. (source: wiki/sources/descriptions/Elinam03__Signature-Forge.md) - Big5 byte decode in IDA via [[big5-decode-ida]] (Python; Traditional Chinese string view) sits in the Cheat IDA Plugins / encoding lane. (source: wiki/sources/descriptions/sean2077__big5-decode-ida.md) - CyberChef-style encode/decode/transformation pipelines in IDA via [[ida-cyberchef]] (HexRaysSA; Python + Qt; malware analysis / binary triage without leaving the disassembler; cheat / IDA Plugins) sits in the same in-IDA data-manipulation lane beside [[big5-decode-ida]]. (source: wiki/sources/descriptions/HexRaysSA__ida-cyberchef.md) - Hex-Rays enum management via [[ida-enums-helper]] (hotkey **N** rename member / **A** add to enum / **Shift-A** append to last enum; `tinfo_t` ordinal chooser) sits in the Cheat IDA Plugins / Hex-Rays lane. (source: wiki/sources/descriptions/milankovo__ida_enums_helper.md) - Automatic standard-function enum identification via [[auto-enum]] (Python/C; identifies and applies enums for common API/stdlib calls) sits in the same Cheat IDA Plugins / Hex-Rays lane. (source: wiki/sources/descriptions/junron__auto-enum.md) - Type-aware binary search via [[ida-search]] (IDA Pro 9.x; 010 Editor–style typed search; `ida-plugin.json` loads `plugin.py` on startup) sits in the Cheat IDA Plugins / search lane. (source: wiki/sources/descriptions/milankovo__ida-search.md) - Compiled YARA rule bytecode disassembly via [[yaravm]] (IDA processor + loader for `.yar.bin`; namespaces/rules/strings/code/AC transition tables; `libyara.til`) sits in the Cheat IDA Plugins / signature-scan lane. (source: wiki/sources/descriptions/milankovo__YaraVM.md) - Multi-platform YARA rule generation from disassembly via [[hyara]] (Python; IDA Pro, Ghidra, Binary Ninja, Cutter; create/check/detect signatures; cheat / Yara) sits in the Cheat Yara / signature lane. (source: wiki/sources/descriptions/hyuunnn__Hyara.md) - IDA-only YARA rule generation from disassembly, decompiler output, strings, and raw bytes via [[yarka]] (AzzOnFire; Python; built-in editor with syntax highlighting and customizable templates; function-level hunting with related data refs; cheat / YARA signature creation) sits beside [[hyara]] in the Cheat Yara / signature-generation lane. (source: wiki/sources/descriptions/AzzOnFire__yarka.md) - Linker `.MAP` symbol import via [[ida-pro-loadmap]] (VC/Borland/Dede/GCC/IDA formats; section:offset → named functions/labels; IDA SDK kernwin/segment APIs) sits in the Cheat IDA Plugins / symbol-recovery lane. (source: wiki/sources/descriptions/mefistotelis__ida-pro-loadmap.md) - Linker `.MAP` symbol rename via [[ida-map-symbol-parser]] (gmh5225; parse MAP files; apply function names, globals, and segment info to the current IDA database; IDA Map File Symbol Renamer; cheat / IDA Plugins) sits beside [[ida-pro-loadmap]] in the symbol-recovery lane. (source: wiki/sources/descriptions/gmh5225__IDA-MapSymbolParser.md) - Runtime `.MAP` symbol import in [[x64dbg]] via [[x64dbg-mapldr]] (C++ plugin; MSVC/Borland/linker or IDA-exported MAP → function/global/segment names in the debugger symbol DB; Cheat x64dbg Plugins lane) (source: wiki/sources/descriptions/gmh5225__X64DBG-MapLdr.md) - DWARF debug symbol import in [[x64dbg]] via [[dwarfhelper]] (CynicRus; libdwarf; ELF/PE function names, variable types, file:line comments; x86/x64; Cheat x64dbg Plugins lane) (source: wiki/sources/descriptions/CynicRus__DWARFHelper.md) - High-resolution IDA screenshot capture via [[ida-screenshot]] (Python plugin; macOS/Linux `make install` or manual `screenshot.py` drop; cheat / IDA Plugins) sits in the documentation/reporting lane. (source: wiki/sources/descriptions/jonpalmisc__ida_screenshot.md) - Lightweight in-IDA whiteboard sketching via [[draw-ida]] (MIT; reverse engineers sketch and brainstorm inside IDA; cheat / IDA Plugins) sits in the annotation/ideation lane beside [[ida-screenshot]]. (source: wiki/sources/descriptions/idkhidden__DrawIDA.md) - Live Marp/Slidev RE presentation decks docked in IDA via [[ida-slides]] (IDA 9.2+ Python; `@name`/`@0xADDR` tokens jump disasm/pseudocode; embed decompiled lines on save; hover previews; unresolved-ref lint; native webview + file-watcher reload; cheat / IDA Plugins) sits in the presentation/documentation lane beside [[ida-screenshot]] and [[draw-ida]]. (source: wiki/sources/descriptions/hyuunnn__ida-slides.md) - Cloud function symbol recognition via [[finger]] (aliyunav; Python SDK + IDA 7+ plugin; extract function features, submit to recognition backend, rename/highlight matches; Recognizing Function By Cloud; malware/game binary triage; cheat / IDA Plugins) sits in the same symbol-recovery lane beside [[renamaida]] and [[ida-pro-loadmap]]. (source: wiki/sources/descriptions/aliyunav__Finger.md) - Instruction-signature library function renaming via [[renamaida]] (Python; Jaro-Winkler on arch-specific insn tokens; custom JSON sig DB; ≥0.83 / ≥10 insns; firmware/static-link RE; cheat / IDA Plugins) sits in the same symbol-recovery lane. (source: wiki/sources/descriptions/kirovgrad__Renamaida.md) - IoT firmware vulnerability hunting via [[firmeye]] (Python IDA plugin; argument tracing into sensitive functions; static + debugger-assisted dynamic checks; overflow / command-exec / format-string rules; CLI batch workflows; firmware audit + embedded RE; Vu1nT0tal; cheat / IoT / IDA Plugins) sits in the firmware/IoT IDA Plugins lane beside [[renamaida]], [[efixplorer]], and [[embedded-hacking]]. (source: wiki/sources/descriptions/Vu1nT0tal__firmeye.md) - Batch function/symbol name management via [[ida-names]] (Python; batch rename, pattern match, prefix/suffix, import/export; renames pseudocode window titles with current function name; cheat / IDA Plugins) sits in the same symbol-naming lane. (source: wiki/sources/descriptions/gmh5225__ida_names.md) - IDA function-list Markdown export via [[ida-export-functions]] (Python; dump DB function index to a specified path for notes/reporting; cheat / IDA Plugins) sits in the same documentation/reporting lane beside [[ida-slides]] and [[ida-screenshot]]. (source: wiki/sources/descriptions/gmh5225__ida_export_functions.md) - Structured data and assembly text export via [[ida-data-export-plus]] (Krietz7; Python IDA Pro plugin; extends/replaces default data export window; integer/float formats + disassembly text; hotkey-driven; modern IDA; repetitive extraction during RE; cheat / IDA Plugins) sits in the same data-extraction lane beside [[ida-export-functions]] and [[lazyida]]. (source: wiki/sources/descriptions/Krietz7__IDA-DataExportPlus.md) - Function–string association and auto-comments from literals via [[ida-function-string-associate]] (IDA 9.X; scan function bodies for string refs; navigable per-function summary; cheat / IDA Plugins) sits in the same string-triage lane beside [[ida-names]] and [[idawilli]]. (source: wiki/sources/descriptions/gmh5225__ida-function-string-associate.md) - User comment capture and organization via [[idacomments]] (NoneShell; Python IDA 7.x/8.x plugin; hooks comment actions; dedicated review view; keyboard/menu access; note management while reversing game clients and anti-cheat modules; cheat / IDA Plugins) sits in the same annotation workflow lane beside [[ida-export-functions]] and [[idarling]]. (source: wiki/sources/descriptions/NoneShell__IDAComments.md) - `.data`-section pointer lookup via [[ida-find-.data-ptr]] (Python IDAPython; locate/xref global `.data` pointers during static RE; cheat / IDA Plugins) sits in the same data/xref triage lane beside [[ida-plugins]] and [[ida-missinglink]]. (source: wiki/sources/descriptions/gmh5225__ida-find-.data-ptr.md) - Hex-Rays pseudocode Ctrl+F search via [[idafind]] (IDA Pro plugin; find-in-text for Pseudocode windows; cheat / IDA Plugins) sits in the Hex-Rays/pseudocode UX lane beside [[ida-search]] and [[ida-names]]. (source: wiki/sources/descriptions/cristeigabriela__IDAFind.md) - Automatic symbol renaming via [[autorename]] (Python IDA Pro plugin; auto rename symbol; asset pipelines and plugin development; cheat / IDA Plugins) sits in the same symbol-recovery lane beside [[renamaida]], [[ida-names]], and [[pyclassinformer]]. (source: wiki/sources/descriptions/crifan__AutoRename.md) - API-driven auto-renaming and behavioral tagging via [[auto-re]] (a1ext; Python IDA Pro plugin; rename dummy functions from imports/jump targets; tag networking, injection, crypto, file activity; dedicated tag view; cheat / IDA Plugins) sits in the same symbol-recovery / malware-triage lane beside [[autorename]] and [[renamaida]]. (source: wiki/sources/descriptions/a1ext__auto_re.md) - Magisk-style root on Android VR (Quest 3/3S) via [[cheese]] (Adreno CVE-2025-21479; temporary root, no boot rewrite) sits in the Cheat Magisk lane. (source: wiki/sources/descriptions/zhuowei__cheese.md) - No-root Virtual Space injectors such as [[android-virtual-inject]] (inject through Virtual Space without root; not for AC-protected games) sit in the Cheat / injection:android lane. (source: wiki/sources/descriptions/reveny__Android-Virtual-Inject.md) No-root ARM injection platform [[inject-arm64]] (NepMods; Java/Kotlin + C/C++ native hooking; virtualized app-space payload inject; ARM32/ARM64; configurable flows; newer Android; cheat / Non-root injection) extends that lane. (source: wiki/sources/descriptions/NepMods__InjectARM64.md) Host-no-root container VM [[zn-toolbox]] (Chinaapps; Twoyi fork; guest Android with built-in root + LSPosed; multi-profile sandbox + Scrcpy remote control; isolated mobile modding / hooking on non-rooted phones) complements that no-root lane. (source: wiki/sources/descriptions/Chinaapps__ZN-Toolbox.md) [[blackbox]] (FBlackBox) is a **removed** Android virtualization project retained only as a README deprecation notice—historical reference beside active frameworks such as [[virtual-app]]. (source: wiki/sources/descriptions/FBlackBox__BlackBox.md) - Ptrace-based Android injectors such as [[android-ptrace-injector]] (C/C++; attach-and-inject) sit in the same Cheat / injection:android lane. (source: wiki/sources/descriptions/reveny__Android-Ptrace-Injector.md) Android Studio–built native `.so` injectors such as [[android-dll-injector]] (gmh5225; payload must match target process arch; cheat / injection:android) sit beside them. (source: wiki/sources/descriptions/gmh5225__Android-DLL-Injector.md) - Historical LD_PRELOAD Android injectors such as [[android-ld-preload-injector]] (any version/arch; dead / not working) sit in the same Cheat / injection:android lane. (source: wiki/sources/descriptions/reveny__Android-LD-Preload-Injector.md) - Zygisk-based Android injectors such as [[zygisk-myinjector]] (C/C++/Java; Magisk specialization-path injection; kernel-level asset/modding pipeline) sit in the same Cheat / injection:android lane. (source: wiki/sources/descriptions/jiqiu2022__Zygisk-MyInjector.md) Zygote-injection game-mod samples such as [[android-mod-games-by-inject-zygote]] (gmh5225; C/C++; kernel-level work, OpenGL, networking; cheat / injection:android) sit beside them. (source: wiki/sources/descriptions/gmh5225__Android-ModGamesByInjectZygote.md) Native Android mod-loader frameworks such as [[android-mod-loader]] (AndroidModLoader; C++ NDK; inject/manage mods; patching, memory write, function hook, interface-based mod APIs; ARM hooking + IL2CPP utilities + mod templates; cheat / Android Mod Loader) extend that lane for structured runtime game modding. (source: wiki/sources/descriptions/AndroidModLoader__AndroidModLoader.md) - Rust emulation-centered Android inject research such as [[yaui]] sits in the same Cheat / injection:android lane. (source: wiki/sources/descriptions/ohchase__yaui.md) - Rust ptrace-free Android code injection such as [[linjector-rs]] (erfur; modding-focused inject without ptrace attach; cheat / injection:android) sits in the same Cheat / injection:android lane. (source: wiki/sources/descriptions/erfur__linjector-rs.md) - Classic Android native DBI via [[adbi]] (crmulliner; library injection + inline function-entry hooking; cheat / dynamic binary instrumentation / Android RE) predates ptrace/Zygote inject frameworks in the same Cheat / injection:android lane. (source: wiki/sources/descriptions/crmulliner__adbi.md) Lightweight ARM64 inline hook library [[and64-inline-hook]] (Rprop; C++ instruction patch + branch relocation + trampolines; executable-memory + I-cache flush; mobile RE / instrumentation; cheat / Android ARMv8 inline hook framework) complements that lane for AArch64 `.so` interception. (source: wiki/sources/descriptions/Rprop__And64InlineHook.md) NDK inline-hook framework [[android-inline-hook-arm64]] (GToad; C/C++/ARM64 asm; pure inline trampolines + register-level handler examples; cheat / Android ARMv8 inline hook framework) extends the same AArch64 native interception lane. (source: wiki/sources/descriptions/GToad__Android_Inline_Hook_ARM64.md) Cross-platform Arm64/Arm64e inline hooking library [[bwsr]] (BossKoopa; C; iOS, Android, Linux, macOS; low-level patching primitives + multi-platform build paths; portable native runtime interception; cheat / Arm64 inline hooking) spans that lane beyond Android-only frameworks. (source: wiki/sources/descriptions/BossKoopa__BWSR.md) - Native Android injection frameworks such as [[android-super-inject]] (cs1ime; ptrace or Zygote hooking; load custom `.so` into running app processes; SELinux-protected system services; optional no-root configs; cheat / injection:android) sit in the same Cheat / injection:android lane. (source: wiki/sources/descriptions/cs1ime__AndroidSuperInject.md) - Android library remap-hide samples such as [[android-library-remap-hide]] (two-lib remap; cheat / hide) sit in the Detection:Hide-adjacent Android stealth lane. (source: wiki/sources/descriptions/reveny__Android-Library-Remap-Hide.md) - Kernel-level Android root via [[kernelsu]] (kernel su; Kotlin/Rust) sits in the Cheat / Android root lane alongside Magisk/APatch. [[kernelpatch]] (bmax121; Linux kernel hook/modding framework) enables APatch boot-image patching and KPM load on stock GKI; APatch **KPM** module collections such as [[apatch-kpm]] (C/C++; kernel modding/debug for the APatch/KernelPatch lane) extend that root framework at kernel scope. (source: wiki/sources/descriptions/bmax121__KernelPatch.md) (source: wiki/sources/descriptions/lzghzr__APatch_kpm.md) (source: wiki/sources/descriptions/tiann__KernelSU.md) [[skroot-linux-kernel-root]] (abcz316; Linux kernel root patch toolkit; C/C++ + Java/JNI; deeply hidden root, su install/inject, multi-kernel without rebuild; cheat / Android root) sits in the same lane for root-detection bypass research. (source: wiki/sources/descriptions/abcz316__SKRoot-linuxKernelRoot.md) - Magisk/[[kernelsu]]/APatch modules such as [[move-certificate]] (user→system CA trust, Android 7–15) support MITM-oriented mobile cheat research. (source: wiki/sources/descriptions/ys1231__MoveCertificate.md) [[magisk-tailscaled]] (anasfanani; Tailscale daemon Magisk module; userspace networking for VPN coexistence; remote SSH + ADB-over-tailnet on arm/arm64; Cheat / Magisk) supports off-device lab workflows on rooted Android phones. (source: wiki/sources/descriptions/anasfanani__Magisk-Tailscaled.md) Android root-hide samples such as [[hideroot]] (C/C++; Cheat / Magisk) sit in the same Magisk stealth lane opposite Detection:Android root probes. (source: wiki/sources/descriptions/longpoxin__hideroot.md) MIUI/HyperOS USB debugging security + fastboot account/SIM gate bypass via [[xiaomi-usb-security-bypass]] (CHERWING; Magisk resetprop on `persist.security.adbinput`/`adbinstall` + `persist.fastboot.enable`; scrcpy INJECT_EVENTS; Cheat / Magisk) (source: wiki/sources/descriptions/CHERWING__xiaomi_usb_security_bypass.md) sits beside that lane for Xiaomi lab workflows. Portable MagiskHide module [[magiskhide]] (ptrace-based; DenyList as hidelist; no Zygisk required; Android 11+) sits in the same Magisk stealth lane. (source: wiki/sources/descriptions/gmh5225__MagiskHide.md) Android `/dev/input` touch-event record/replay Magisk modules such as [[event-replay]] (timed replay + command socket + gesture analyze/generate) sit in the same Cheat Magisk / input-simulation lane. (source: wiki/sources/descriptions/qq703048949__event_replay.md) Native uinput virtual-touch tooling such as [[android-virtual-touch]] (ARM64 NDK; programmatic tap/swipe/multi-touch on rooted devices) complements that lane. (source: wiki/sources/descriptions/muchenspace__android_virtualTouch.md) C/C++ Android touch-input driver samples such as [[android-touch]] (driver development; triggerbot & aimbot input-path study) sit in the same lane. (source: wiki/sources/descriptions/gmh5225__android_touch.md) LSPosed/Xposed Android GPS spoof modules such as [[locusmimic]] (map-based coordinate inject; per-app/system/mock-provider modes; mock-location hide; location-based AC evaluation) and standalone mock-location apps such as [[anywhere]] (cxOrz; Java; OpenStreetMap picker + overlay joystick + LSPosed mock-provider hide; location history; Cheat / Xposed) (source: wiki/sources/descriptions/cxOrz__AnyWhere.md) sit in the Cheat Xposed / location-spoof lane. (source: wiki/sources/descriptions/wchunlin1006__LocusMimic.md) Profile-based anti-detect identifier/environment spoofing via [[hidemyandroid]] (Android ID, GAID, IMEI, SIM, root/LSPosed/VPN hiding; per-profile backup/restore; Cheat / Xposed) (source: wiki/sources/descriptions/Xposed-Modules-Repo__com.wowsoftware.hidemyandroid.md) complements location-spoof modules above. Post-clear identity rotation via [[device-reset-spoofer]] (GJR787878; LSPosed; sentinel-file wipe detection; auto-regenerates Android ID/GAID/IMEI/MAC/GSF ID/build fingerprint after app data clear; manual reset UI; Android 7–16; Cheat / Xposed) (source: wiki/sources/descriptions/GJR787878__DeviceResetSpoofer.md) extends that lane for ban-evasion after clearing game data. Xposed/LSPosed module scaffolds such as [[xposed-module-kit]] (hook templates, Python `.class`/JAR scanner → MethodHook stubs, root-detection bypass sample; authorized Android/game AC RE) sit in the Cheat Xposed / module-development lane. (source: wiki/sources/descriptions/mabbcoll13__xposed-module-kit.md) Multi-store IAP bypass module [[com-fuck-iab]] (FKIAB; Kotlin/Java + native Frida Gum; hooks Google Play/Bazaar/Myket billing binders; per-package TypeScript scripts; restore purchases; Cheat / Xposed) (source: wiki/sources/descriptions/Xposed-Modules-Repo__com.fuck.iab.md) sits beside [[freedom]] in the mobile IAP bypass lane. Game-oriented LSPosed/LSPatch scaffold [[lsposed-universal-template]] (Jordan231111; libxposed API 102; overlay mod menu, engine detection, native pattern scan, AC process filters; Cheat Xposed / module template) complements that lane for Unity/Unreal/Godot mobile game hooking workflows. (source: wiki/sources/descriptions/Jordan231111__lsposed-universal-template.md) ART-native Java hook framework [[canyie-pine]] (canyie; modifies ART method entry points; inline hooks + method replacement; Xposed-compatible before/after hooks; Android 7.0+ without root; cheat / Android Java hook) complements those Xposed lanes when embedded hooking without the full framework is preferred. (source: wiki/sources/descriptions/canyie__pine.md) Block **JVMTI** attach tooling [[stoic]] (debuggable Android API 26+; no APK mod; live Java method hooks + heap inspection via Kotlin/Java plugins; first attach <3s; cheat / Android Java hook / developer tooling) complements [[canyie-pine]] and Frida when debugger-attached managed instrumentation is preferred. (source: wiki/sources/descriptions/block__stoic.md) Non-jailbreak iOS network location spoofing via [[ios-location-spoofer]] (proxy-module MITM of Apple map lookups; WiFi BSSID + cell-tower patch; motion-state spoof; location-picker web UI) and sibling [[wloc]] (Yu9191; gs-loc WLOC protobuf MITM; Surge/QX/Loon/Stash/Shadowrocket; online picker + Shortcuts; GCJ-02→WGS84; indoor/WiFi-only) complement that lane for stock-iOS location-based AC research. (source: wiki/sources/descriptions/mekos2772__ios-location-spoofer.md) (source: wiki/sources/descriptions/Yu9191__wloc.md) iOS synthetic touch libraries such as [[ptfaketouch]] (gmh5225; IOKit/UIKit inject into the event pipeline; game bot / UI automation without physical touch) sit in the same mobile input-simulation lane beside Android [[event-replay]] and [[android-virtual-touch]]. (source: wiki/sources/descriptions/gmh5225__PTFakeTouch.md) - Boot-image tooling such as [[magiskboot]] (C/C++ Boot Image Modification Tool), [[magiskboot-linux]] (GitHub Actions standalone Linux magiskboot; unpack/repack/patch kernel/ramdisk/DTB/signatures), [[magiskboot-ndk-on-linux]] (standalone NDK-on-Linux magiskboot for unpack/repack/ramdisk), [[magiskboot-build]] (POSIX standalone build scripts/patches from Magisk tree), and [[android-boot-image-editor]] (Kotlin/Java Gradle unpack/repack for boot/recovery/vendor_boot; AVB signing, LZ4/XZ/GZIP, EROFS/sparse; boot formats v0–4; JDK 11+; cfig) sits in the Cheat Magisk / Boot Image Modification Tool lane. (source: wiki/sources/descriptions/svoboda18__magiskboot.md) (source: wiki/sources/descriptions/gmh5225__magiskboot-linux.md) (source: wiki/sources/descriptions/xiaoxindada__magiskboot_ndk_on_linux.md) (source: wiki/sources/descriptions/ookiineko__magiskboot_build.md) (source: wiki/sources/descriptions/cfig__Android_boot_image_editor.md) - Qualcomm Android Verified Boot (AVB) bypass PoC [[qualcomm-avb-exploit-poc]] (atlas4381; crafted partition data bypasses boot-image verification for persistent code execution on Qualcomm-based devices; cheat / Unlocking qualcomm bootloader) sits in the Android bootloader bypass lane beside boot-image modification tooling. (source: wiki/sources/descriptions/atlas4381__qualcomm_avb_exploit_poc.md) - Upstream OrangeFox Recovery (OFRP) build tree [[android-bootable-recovery-ofrp]] (Ctapchuk; full custom recovery codebase; recovery UI, partition management, flashing workflows; firmware developers / power users; cheat / OrangeFox Recovery) complements per-device custom recovery / ROM device trees such as [[ofrp-device-xiaomi-mondrian]] (OFRP for Redmi K60 Pro / mondrian) and Pixel Experience Plus ROM trees such as [[device-xiaomi-mondrian]] (Redmi K60 / POCO F5 Pro on Waipio / SM8475) in the Android bootloader/ROM/root lane. Xiaomi **kernel** device-tree branch index [[kernel-devicetree]] (MiCode; branch→device/platform/baseline lookup; kernel bring-up and board-config research) complements per-device ROM trees in that lane. (source: wiki/sources/descriptions/Ctapchuk__android_bootable_recovery-OFRP.md) (source: wiki/sources/descriptions/ymdzq__OFRP-device_xiaomi_mondrian.md) (source: wiki/sources/descriptions/flakeforever__device_xiaomi_mondrian.md) (source: wiki/sources/descriptions/MiCode__kernel_devicetree.md) - Xiaomi/Redmi **kernel source** branch catalog [[xiaomi-kernel-opensource]] (MiCode; index repo with Markdown tables mapping devices/Android versions→branch tags and base refs; vendor kernel discovery for driver development, auditing, platform debugging) sits in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/MiCode__Xiaomi_Kernel_OpenSource.md) - Curated Android ROM reference lists such as [[android-rom-list]] (documentation/list; cheat / Android ROM) sit in the same Android bootloader/ROM/root lane. (source: wiki/sources/descriptions/musabcel__android_rom_list.md) PixelOS official device support metadata such as [[official-devices]] (PixelOS-AOSP; Markdown/JSON support matrix + release communication templates; cheat / PixelOS device trees) and source-tree manifest repo [[manifest]] (XML repo manifests + snippets; `repo init`/sync and ROM build docs; revision-locked upstream project selection; cheat / Android ROM) complement that lane for PixelOS maintainers. (source: wiki/sources/descriptions/PixelOS-AOSP__official_devices.md) (source: wiki/sources/descriptions/PixelOS-AOSP__manifest.md) Cross-platform Google Pixel flashing GUI [[pixel-flasher]] (bootloader unlock, factory/OTA flash, Magisk/KernelSU/APatch root, boot-image patch, backup; self-contained Python executable; cheat / Android ROM tool for Pixel) complements that lane for Pixel-specific root/ROM workflows. (source: wiki/sources/descriptions/badabing2005__PixelFlasher.md) On-device custom-ROM transition app [[rom-shifter]] (ShivamXD6; Kotlin/Compose + shell backend; ordered ZIP flash/wipe wizard, partition backup, app/SMS/contacts/Wi-Fi migration, debloat/systemize; Magisk/KernelSU/APatch; cheat / Android) complements that lane for general ROM backup, restore, and migration workflows. (source: wiki/sources/descriptions/ShivamXD6__ROM-Shifter.md) Xiaomi HyperOS bootloader account-binding bypass PoC [[xiaomi-hyperos-bootloader-bypass]] (MlgmXyysd; PHP + ADB automation; Docker/shell; mobile bootloader restriction research; cheat / bootloader bypass) (source: wiki/sources/descriptions/MlgmXyysd__Xiaomi-HyperOS-BootLoader-Bypass.md) One-tap temporary Pixel root apps such as [[root-my-pixel]] (Kotlin/JNI; NebuSec IonStack CVE-2026-43499 + ReSukiSU/KernelSU; Shizuku shell; Pixel 7–10; cheat / Android root) automate kernel LPE → KernelSU without prior root beside that lane. (source: wiki/sources/descriptions/alex193a__Root-My-Pixel.md) - DIY Android kernel explorers such as [[op7t]] sit in the Cheat Android kernel explorer lane. (source: wiki/sources/descriptions/yhnu__op7t.md) - Android ARM64 kernel emulators such as [[rnidbg]] (Rust rewrite of unidbg; kernel-level work, graphics, animation) sit in the same Cheat Android kernel explorer lane. (source: wiki/sources/descriptions/fuqiuluo__rnidbg.md) - Android ARM64 LKM driver modules such as [[ovo]] (process R/W, `mmuhack`, kernel TCP IPC, touch simulation, `peekaboo` stealth access; C++/Rust SDKs) sit in the Cheat Android kernel / driver lane. (source: wiki/sources/descriptions/fuqiuluo__ovo.md) - Android ARM64 LKM rootkit modules such as [[android-wuwa]] (stealthy cross-process memory via CFI/kprobe bypass, PTE injection, `phys_to_virt` R/W, IOCTL/socket IPC, module/signal hiding) sit in the same Cheat Android kernel / driver lane. (source: wiki/sources/descriptions/fuqiuluo__android-wuwa.md) - Out-of-tree Android kernel driver build/ABI automation such as [[compile-android-driver]] (kade / Kadeflow; GKI and non-GKI via `kadeflow.yaml`) sits in the Cheat Android kernel / driver lane. (source: wiki/sources/descriptions/systemnb__compile_android_driver.md) GitHub Actions kernel build automation such as [[kernel-build-action]] (TypeScript/Python; automated kernel builds for Android kernel driver workflows) complements that lane. (source: wiki/sources/descriptions/dabao1955__kernel_build_action.md) Bash multi-device kernel build scripts such as [[kernel-build-scripts]] (TheWildJames; GKI/non-GKI repo sync, patch/defconfig, packaging, release; KernelSU/SUSFS integration; Pixel/OnePlus/Xiaomi; cheat / kernel build scripts) extend that lane. (source: wiki/sources/descriptions/TheWildJames__kernel_build_scripts.md) - GKI AArch64 Android kernel driver starter template such as [[android-kernel-driver-template]] (product/OEM kernel scaffold; cheat / Android kernel driver development) sits in the same Cheat Android kernel / driver lane. (source: wiki/sources/descriptions/gmh5225__android-kernel-driver-template.md) - Official AOSP GKI common kernel upstream mirror [[kernel-common]] (aosp-mirror; vendor-shared base; Android patches, Bazel, Rust; cheat `[GKI]` / Android Kernel Source) sits upstream of per-device OEM kernel trees in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/aosp-mirror__kernel_common.md) - Multi-vendor custom GKI common 5.10 kernel fork [[android-kernel-gki-common-5-10]] (ExWhyZed9; common 5.10 branch; ABI symbol defs for Samsung/Qualcomm/MediaTek/ASUS/Motorola/OnePlus+; ZenX build script; Redmi Note 11T Pro(+)/POCO X4 GT) sits in the Cheat Android Kernel Source lane beside per-device OEM trees. (source: wiki/sources/descriptions/ExWhyZed9__android_kernel_gki_common_5.10.md) - Android kernel driver signature bypass such as [[android-drivesignity]] (ARMv8.3; bypass built-in verification so unofficial/modified drivers can load for dev/test; cheat / Android kernel driver development) sits in that same lane. (source: wiki/sources/descriptions/gmh5225__AndroidDriveSignity.md) - Android cheat templates such as [[android-cheat-template]] (gmh5225 fork; C/C++; kernel-level work / OpenGL / memory analysis; cheat / game:sausage man) sit in the Cheat Android offensive scaffold lane beside Unity/OpenGL menu frameworks. (source: wiki/sources/descriptions/gmh5225__AndroidCheatTemplate.md) NDK Unity scaffolds such as [[cheat-unity-games]] (SsageParuders; C/C++ VSCode/NDK; Il2CppResolver + [[dobby]]; shared-object build scripts; Android injection / native-layer Unity manipulation study; cheat / game engine explorer:Unity) extend that lane. (source: wiki/sources/descriptions/SsageParuders__CheatUnityGames.md) IL2CPP ImGui menu frameworks such as [[polarimgui]] (Polarmods; C++ native libraries + Android Studio packaging; Unity IL2CPP in-game UI; mobile mod-menu / cheat UI prototyping; cheat / render-draw) extend that lane. (source: wiki/sources/descriptions/Polarmods__PolarImGui.md) Native Unity ImGui hook templates such as [[unity-imgui-android]] (Octowolve; C++ [[dobby]] hooks on eglSwapBuffers + Unity input injection; touch/key overlay; libunity nativeInjectEvent signature-finding tutorial with IDA/SigMaker; mod-menu prototyping / mobile Unity RE; cheat / render-draw) extend that lane. (source: wiki/sources/descriptions/Octowolve__Unity-ImGUI-Android.md) - Android aarch64 LKM research toolkits such as [[android-kernel-hacking-toolkit]] (filecopy / hideproc / propedit / syscall_hijack; CFI bypass, kprobes, mmuhack for `sys_call_table`) sit in the Cheat Android kernel / LKM lane. (source: wiki/sources/descriptions/systemnb__android-kernel-hacking-toolkit.md) GKI root-hide LKM [[kasumi]] (Anatdx; ftrace/tracepoint syscall/VFS/procfs hooks; mount/SELinux/file-attribute spoof; cheat / Kernel-level path manipulation and hiding framework for Android GKI/Linux) extends that lane for kernel-level root-detection bypass. (source: wiki/sources/descriptions/Anatdx__Kasumi.md) - Android/Linux game-memory LKMs such as [[kernel-hack]] (kernel-mode R/W, process management, verification; Kconfig) sit in the same Cheat Android / Linux kernel memory-ops lane. (source: wiki/sources/descriptions/rogxo__kernel_hack.md) - Android kernel driver setups such as [[memkernel]] (Poko-Apps; C/C++ kernel + userland; custom-interface process memory R/W; compile-into-kernel-build integration; cheat / `[RPM]`) sit in the same Cheat Android kernel memory-ops lane. (source: wiki/sources/descriptions/Poko-Apps__MemKernel.md) - Android/Linux kernel driver memory access such as [[kernel-driver-hack]] (Jiang-Night; C kernel module + userland; device-interface ioctl for process memory R/W, module base lookup, request dispatch; game memory research / RE / kernel-side tooling) sits in the same Cheat Android kernel memory-ops lane. (source: wiki/sources/descriptions/Jiang-Night__Kernel_driver_hack.md) Desktop Linux LKM + user-mode pair [[taxi-driver]] (ALittlePatate; C/C++; device-interface RPM/WPM, base-address lookup, example clients; low-level game memory tooling + Linux security research; cheat / W/RPM Driver and usermode for Linux) extends that lane for native Linux hosts beside ptrace and `/proc/pid/mem` workflows. (source: wiki/sources/descriptions/ALittlePatate__TaxiDriver.md) - Device kernel sources such as [[android-kernel-xiaomi-pipa]] (Xiaomi Pad 6 / pipa) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/utziacre__android_kernel_xiaomi_pipa.md) - Device kernel sources such as [[android-kernel-oneplus-sm8250]] (OnePlus 8/8T/8Pro/(9R?) / SM8250) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/utziacre__android_kernel_oneplus_sm8250.md) - Device kernel sources such as [[android-kernel-oneplus-sm7250-wksu]] (OnePlus Nord / SM7250 + KernelSU) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/psavarmattas__android_kernel_oneplus_sm7250-WKSU.md) - Device kernel sources such as [[pc-ginkgo]] (Redmi Note 8/8T / ginkgo + KernelSU) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/mylove90__pc_ginkgo.md) - Device kernel sources such as [[android-kernel-xiaomi-sweet]] (Redmi Note 10 Pro / sweet + KernelSU; Qualcomm) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/fiqri19102002__android_kernel_xiaomi_sweet.md) - Device kernel sources such as [[android-kernel-xiaomi-sm8475]] (Redmi K60 / POCO F5 Pro / mondrian; SM8475 Snapdragon 8+ Gen 1; GKI ABI, Qualcomm Waipio; Pixel Experience Plus) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/LowTension__android_kernel_xiaomi_sm8475.md) - Device kernel sources such as [[kernelsu-pixel4xl]] (Pixel 4 XL / coral / msm-floral + KernelSU; su injection / SELinux / syscall hook) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/msnx__KernelSU-Pixel4XL.md) - Device kernel sources such as [[kernel-msm-coral]] (GrapheneOS-Archive; Pixel 4/4XL / coral; Qualcomm MSM tree; hardened configs + Android security patches; hardened-kernel study on Snapdragon) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/GrapheneOS-Archive__kernel_msm-coral.md) - Device kernel sources such as [[android-kernel-samsung-universal5433]] (Samsung Exynos 5433 / Note 4 / Alpha) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/universal5433__android_kernel_samsung_universal5433.md) - Device kernel sources such as [[android-kernel-samsung-sm7150]] (Samsung SM7150) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/pascua28__android_kernel_samsung_sm7150.md) - Device kernel sources such as [[a146b-ksu]] (Samsung Galaxy A14 5G / A146B / a14x + KernelSU; gmh5225) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/gmh5225__A146B-KSU.md) - Device kernel sources such as [[android-kernel-huawei-mt6761]] (Huawei MT6761 / Helio P22) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/huawei-mediatek-devs__android_kernel_huawei_mt6761.md) - Device kernel sources such as [[android-kernel-huawei-hi6250-8-exp]] (Huawei hi6250 + KernelSU) sit in the Cheat Android Kernel Source lane. (source: wiki/sources/descriptions/gmh5225__android_kernel_huawei_hi6250-8_Exp.md) - Android Application CVE PoCs such as [[cve-2024-0044]] (Android 12/13; crafted payload → unauthorized app data-directory access) sit in the Cheat Android Application CVE lane. (source: wiki/sources/descriptions/nahid0x1__CVE-2024-0044.md) - Framework LazyValue deserialization LPE via [[android-privilege-cve-2022-20452-leakvalue]] (CVE-2022-20452; unprivileged app → system-level access; Java/Kotlin PoC; gmh5225) sits in the same Cheat Android Application CVE / Privilege Escalation lane. (source: wiki/sources/descriptions/gmh5225__Android-privilege-CVE-2022-20452-LeakValue.md) - Android Kernel CVE PoCs such as [[cve-2026-43499-popsicle]] (Xiaomi popsicle LPE via CVE-2026-43499; LD_PRELOAD; uid 0 + SELinux disabled) sit in the Cheat Android Kernel CVE lane. (source: wiki/sources/descriptions/x-spy__CVE-2026-43499-popsicle.md) Packaged Pixel root installer [[root-my-pixel]] (IonStack CVE-2026-43499 + KernelSU late-load; Pixel 7–10) sits in the same CVE lane as a one-tap consumer workflow. (source: wiki/sources/descriptions/alex193a__Root-My-Pixel.md) Multi-vendor one-tap root app [[ghostlock-app]] (pselect race CVE-2026-43499; NDK + Java UI; Rust boot/OTA offset extractor; runtime JSON kernel tables; KernelSU/ReSukiSU) extends that lane beyond Pixel/Xiaomi PoCs. (source: wiki/sources/descriptions/YuKongA__ghostlock-app.md) Vendor-specific native exploit toolkit [[ghostlock-oneplus]] (JoinChang; CVE-2026-43499 futex PI UAF; pselect6 stack overlay + rb-tree writes; NDK C + Python per-SoC/GKI offset tables; UMH injection or cred patch; locked-bootloader OnePlus/OPPO/realme/Xiaomi + KernelSU without boot-image patch; cheat / Android Root) complements [[ghostlock-app]] with researcher-oriented exploit sources. (source: wiki/sources/descriptions/JoinChang__ghostlock-oneplus.md) Xiaomi K70e (duchamp) one-tap root [[duchamp-root]] (IonStack CVE-2026-43499; LD_PRELOAD + embedded KernelSU `ksud`; Android 16 device offsets) targets the same Xiaomi CVE lane. (source: wiki/sources/descriptions/Colorful-glassblock__duchamp-root.md) Samsung Galaxy one-tap KernelSU installer [[root-my-galaxy]] (BuSung-dev; Kotlin/Compose + NDK; auto device profiling; external exploit/KernelSU feed; native KASLR/probe validation; CVE-2026-43499; supported Samsung Galaxy firmware) extends that lane to Samsung stock builds. (source: wiki/sources/descriptions/BuSung-dev__Root-My-Galaxy.md) - Linux posix-cpu-timers UAF trigger PoC via [[cve-2026-64560-analysis]] (CVE-2026-64560; non-leader thread `exec()` vs timer-delete race; fork/exec timing; Linux x86_64 + Android GKI arm64; patch verification / KASAN—not LPE) sits in the same Cheat Android Kernel CVE lane. (source: wiki/sources/descriptions/villager1314__CVE-2026-64560-Analysis.md) - Linux posix-cpu-timers UAF PoC via [[poc-cve-2025-38352]] (CVE-2025-38352; timer fire vs thread-group exit race; `k_itimer` UAF; LTS 6.12.33 full preemption; Sep 2025 Android Security Bulletin ITW) sits in the same Cheat Android Kernel CVE lane. (source: wiki/sources/descriptions/farazsth98__poc-CVE-2025-38352.md) - Qualcomm QSEECOM/TrustZone arbitrary kernel R/W via [[cve-2021-1961]] (Widevine DRM TA ION buffer abuse; Pixel 3 / blueline; `/proc/version` + SELinux off) sits in the same Cheat Android Kernel CVE `[CVE RW]` lane. (source: wiki/sources/descriptions/tamirzb__CVE-2021-1961.md) - Binder epoll use-after-free temporary root via [[cve-2019-2215]] (Pixel 2/XL; Sep 2019 firmware / kernel 4.4.177; ARM64 NDK binary with hardcoded offsets) sits in the same Cheat Android Kernel CVE / Root lane. (source: wiki/sources/descriptions/jsirichai__CVE-2019-2215.md) - Binder transaction-buffer bounds-check LPE via [[cve-2020-0041]] (Pixel 3; Feb 2020 firmware QQ1A.200205.002; pending-node reallocation → kernel arbitrary R/W + root; Blue Frost Security full Chrome→kernel chain via Binder IPC sandbox escape) sits in the same Cheat Android Kernel CVE / Root lane. (source: wiki/sources/descriptions/j4nn__CVE-2020-0041.md) (source: wiki/sources/descriptions/bluefrostsecurity__CVE-2020-0041.md) - Android kernel exploitation guide/lab such as [[android-kernel-exploitation]] (kernel debugging, ARM/AArch64 layout, UAF/heap overflow/race vulns, KASLR/PAN/PXN bypass, full exploit chains; cheat / Android Kernel Exploitation) sits in the same Cheat Android kernel training lane beside CVE reference lists. (source: wiki/sources/descriptions/cloudfuzz__android-kernel-exploitation.md) - Android Kernel CVE reference lists such as [[android-vuln]] (documentation/list for cheat / Android Kernel CVE research) sit in the same Cheat Android Kernel CVE lane. (source: wiki/sources/descriptions/tangsilian__android-vuln.md) PoC/exploit list [[android-vuln-poc-exp]] (documentation/list; kernel CVE PoCs) sits beside it. (source: wiki/sources/descriptions/jiayy__android_vuln_poc-exp.md) - Dirty Pipe (CVE-2022-0847) temporary root via [[dirtypiperoot]] (Pixel 6; vuln check + native C; pipe page-cache overwrite of read-only files) sits in the same Cheat Android Kernel CVE / Root lane. (source: wiki/sources/descriptions/tiann__DirtyPipeRoot.md) Permanent Magisk v24.3 root on Pixel 6 via [[dirtypipe-android]] (module-loader pipe overwrite + ARM64 SELinux/cred shellcode) sits beside it. (source: wiki/sources/descriptions/polygraphene__DirtyPipe-Android.md) - Android io_uring kernel privesc PoC via [[bad-io-uring]] (Markakd; C/NDK; per-device/kernel exploit variants; boot-image unpack + kallsyms helpers; Pixel 6 root; kernel exploit reproduction in authorized test environments; cheat / Root for Pixel 6) sits in the same Cheat Android Kernel CVE / Root lane. (source: wiki/sources/descriptions/Markakd__bad_io_uring.md) - Android Emulator runtime root via [[aeroot]] (Quarkslab Python; debug pipe / ADB root → remount + custom `su`; no system-image rewrite; multi-API) sits in the Cheat `[Root]` / Android Emulator lane. (source: wiki/sources/descriptions/quarkslab__AERoot.md) - AVD Magisk/root tooling via [[rootavd]] (kernel-level work / modding / SDK generation; Cheat Magisk / Android Emulator) sits beside that emulator-root lane. (source: wiki/sources/descriptions/newbit1__rootAVD.md) - Manual WSA installation guide [[how-to-download-and-install-wsa]] (K3V1991; step-by-step Win11 setup; Developer Mode and Virtual Machine Platform prerequisites; dependency packages; Explorer or PowerShell bundle install; users needing manual WSA install workflow; Cheat WSA / Guide) anchors the Android-on-Windows lane. (source: wiki/sources/descriptions/K3V1991__How-to-download-and-install-WSA.md) - Local Magisk/KernelSU+GApps+LSPosed WSA integration via [[magiskonwsalocal]] (Python/shell scripts extract/patch WSA images; installable rooted builds with Play Store and LSPosed; Android security testing on Win11; Cheat Magisk / WSA) extends the same rooted Android-on-Windows lane. (source: wiki/sources/descriptions/LSPosed__MagiskOnWSALocal.md) - WSA MSIX compatibility patcher [[wsapatch]] (C++; Win10/older Win11; version-check + Hyper-V requirement bypass; sideload on unsupported Windows; Cheat WSA) sits beside that Android-on-Windows lane. (source: wiki/sources/descriptions/cinit__WSAPatch.md) - Flutter/Dart GUI WSA package manager [[wsa-pacman]] (APK/XAPK double-click install, version/permission metadata, upgrade/downgrade, Android settings shortcuts; sideload and test workflows; Cheat WSA) complements that Android-on-Windows lane. (source: wiki/sources/descriptions/alesimula__wsa_pacman.md) - WSA Linux kernel mirror/build automation via [[wsa-linux-kernel]] (stock + KernelSU branch variants; GitHub Actions x86_64/arm64 kernel images; helper shell script for KernelSU config patching; reproducible WSA kernel builds for Android/platform security research; Cheat WSA) complements that Android-on-Windows lane. (source: wiki/sources/descriptions/WSA-Community__WSA-Linux-Kernel.md) - Docker-based WSA kernel build environment via [[wsa-kernel-build]] (KiruyaMomochi; packaged cross-compilation toolchain for x86_64/arm64; reproducible local and CI builds; custom kernel testing/instrumentation for Android/platform security research; Cheat WSA / Build WSA Kernel with Docker) complements that Android-on-Windows lane. (source: wiki/sources/descriptions/KiruyaMomochi__wsa-kernel-build.md) - Prebuilt customized WSA distribution [[wsa-builds]] (MustardChef; Magisk/KernelSU + optional GApps variants; automation scripts; install/troubleshoot/recovery documentation; multi-version Windows compatibility; advanced Android security-tooling workflows on Windows; Cheat WSA) complements that Android-on-Windows lane. (source: wiki/sources/descriptions/MustardChef__WSABuilds.md) - WSA kernel root module [[wsa-kernel-su]] (LSPosed; syscall hooks exposing `/system/xbin/su`; credential/SELinux adjustments; low-level C; optional superuser stealth; Android platform modding and kernel-assisted root on WSA; Cheat WSA with KernelSU) complements that Android-on-Windows lane. (source: wiki/sources/descriptions/LSPosed__WSA-Kernel-SU.md) - Emulation-focused Android emulator project [[android-emulator]] (mobile-platform / emulator research; Cheat `Android Emulator` lane) sits beside QEMU hosts such as [[qemu-gvm]]. (source: wiki/sources/descriptions/jwmcglynn__android-emulator.md) - Container-based full Android on Linux via [[anbox]] (LXC namespaces + host daemon; OpenGL ES from emulator components; desktop/cloud APK workloads; archived reference; Cheat `Android Emulator`) sits in the same lane beside hypervisor/QEMU stacks. (source: wiki/sources/descriptions/anbox__anbox.md) - Genymotion emulator Linux kernel source [[genymotion-kernel]] (Genymobile; full kernel tree with Android-specific configs and virtual-device patches; emulator developers and virtualized Android kernel RE; Cheat Android Emulator) sits beside [[scrcpy]] and [[android-emulator]] in the Genymobile emulator stack. (source: wiki/sources/descriptions/Genymobile__genymotion-kernel.md) - Syscall dispatcher patching PoCs such as [[dpatch]] (writable syscall-table copy + dispatcher jump to custom handler) sit in the Cheat Hook syscall / Android kernel explorer lane. (source: wiki/sources/descriptions/xmmword__dpatch.md) Android system-call hook projects such as [[abyss]] (C/C++; asset pipelines, SDK generation, hooking; cheat / RE tools) sit in the same lane. (source: wiki/sources/descriptions/iofomo__abyss.md) - Android app perf profiling demos such as [[simpleperf-demo]] (simpleperf / Perf) sit adjacent to that Android explorer / cheat research lane. (source: wiki/sources/descriptions/yabinc__simpleperf_demo.md) - Android/Linux CLI memory scanners such as [[mypower]] (SLJIT JIT scan expressions, pointer-chain discovery, snapshot diffs, ncurses TUI, Unity U3D object inspect) sit in the Cheat Memory scanner lane. (source: wiki/sources/descriptions/vrolife__mypower.md) Lightweight Android memory scanners such as [[cheap-engine]] (process scan/edit, exact/range/changed-unchanged value search, pointer scan; simplified CE alternative for beginners; cheat / Android memory scanner; gmh5225) sit in the same lane. (source: wiki/sources/descriptions/gmh5225__cheap-engine.md) Open-source Android memory editing platform [[ace-the-game]] (KuhakuPixel; C++ scan engine + Kotlin/Java client; attach, value edit/freeze, modding/injection tooling; rooted and non-rooted paths; cheat / Game Hacking Tools) extends that lane as a full-stack mobile memory editor. (source: wiki/sources/descriptions/KuhakuPixel__AceTheGame.md) NDK memory tampering toolkit [[mempatch]] (DeNA; C++; address handling, patching, snapshots, range tracking, optional value freeze; platform abstraction + test assets; vulnerability assessment / dev support; cheat / Memory tampering tool) complements that lane for structured Android memory modification. (source: wiki/sources/descriptions/DeNA__mempatch.md) CE-style Android memory debugger [[memdbg]] (Vulkan+ImGui overlay, root engine, Lua 5.4, pointer/structure analysis, breakpoints, speedhack, Auto Assemble, trainer tables, `.so` injection; single aarch64 ELF for root/Termux; cheat / Android Memory Explorer; dbcyyds) extends that lane for full in-process debug workflows. (source: wiki/sources/descriptions/dbcyyds__MemDbg.md) Minimal Kotlin+NDK Android CE clone [[charlyengine]] (Jetpack Compose UI + native `/proc` daemon; scan/rescan/inject/freeze, per-title saved sessions, Termux text protocol; cheat / Android Memory Explorer; andoridcharlyroot-debug) extends the same lane with a lightweight Compose + daemon split. (source: wiki/sources/descriptions/andoridcharlyroot-debug__charlyengine.md) Root Unix-socket memory IPC kits such as [[root-socket-kit]] (Android LKM + Magisk/KernelSU/APatch JNI client; GUI search/edit; low-latency `OpenProcess` / `ReadMemory`) sit in the same Cheat Android Memory Explorer / root-ops lane. (source: wiki/sources/descriptions/systemnb__RootSocketKit.md) Upstream ARM64 Linux kernel driver suite [[rw-proc-mem33]] (process R/W, HW breakpoints, CE-style server demos, privilege elevation, module hiding; abcz316) anchors the Android Memory Explorer lane; forks such as [[rwmem]] (reliability caveats) extend it. (source: wiki/sources/descriptions/abcz316__rwProcMem33.md) (source: wiki/sources/descriptions/ri-char__rwMem.md) C++ Android memory editors such as [[android-mem-edit]] (process memory edit) sit in the same lane. (source: wiki/sources/descriptions/mrcang09__Android-Mem-Edit.md) Single-header `/proc/pid/mem` R/W library [[android-memory-tool]] (C/C++; minimal API; no ptrace attach; cheat / Android memory explorer / RPM; gmh5225) sits in the same lane. (source: wiki/sources/descriptions/gmh5225__Android-MemoryTool.md) C++ Android memory toolkit [[c-android-memory-tool]] (Anonym0usWork1221; search/read/write, offset scan, result management, value freeze; reusable class over process mappings + memory files; cheat-engine style rooted workflows; cheat / RPM) sits in the same lane. (source: wiki/sources/descriptions/Anonym0usWork1221__C-Android-Memory-Tool.md) Java `/proc` memory utility library [[writemem]] (ExploitTheLoop; range search, offset filtering, read/write, periodic freeze writes; map parsing + socket server; rooted Android game memory experimentation/automation; cheat / Android memory scanner) sits in the same lane. (source: wiki/sources/descriptions/ExploitTheLoop__writemem.md) Jailbroken iOS REST memory-analysis servers such as [[memory-server]] (Rust HTTP on port 3030; remote process enum/read/pattern scan from PC Python client; cheat / iOS memory explorer) sit in the same Cheat Memory scanner / iOS memory explorer lane. (source: wiki/sources/descriptions/gmh5225__memory_server.md) Agent-facing Cheat Engine–like memory tooling via [[memmcp]] (Python MCP server; Game Develop / MCP lane) sits adjacent to that scanner / CE workflow. (source: wiki/sources/descriptions/un4ckn0wl3z__MemMCP.md) Full CE runtime MCP via [[cheatengine-mcp-bridge]] (Lua worker + FastMCP named pipes; 40+ scan/debug/DBVM tools; sub-2ms; miscusi-peek / beamstar forks) targets the same agent + live-memory lane. (source: wiki/sources/descriptions/miscusi-peek__cheatengine-mcp-bridge.md) (source: wiki/sources/descriptions/beamstar__cheatengine-mcp-bridge.md) DeepSeek Harness CE agent plugin [[dsh-cheatengine]] (TindalosKorone; TypeScript Node.js; local TCP bridge; on-demand `ce_*` attach/scan/RW/disasm/breakpoints/pointers/AOB/Lua-AA; anti-cheat detection, module dump, speedhack, cheat-table I/O; session hypothesis/evidence/audit/undo/snapshot; gated write/script unlock; authorized game-security RE and dynamic memory analysis; Game Develop / MCP) extends that agent + live-CE lane. (source: wiki/sources/descriptions/TindalosKorone__dsh-cheatengine.md) DSH Ghidra/forensics/agent plugin bundle [[dsh-plugins]] (GalaxyBatMan111; PyGhidra server decompile/strings/xrefs; radare2/RetDec/tshark/mitmproxy; Claude Code/Codex/Marvis streaming agent jobs; Windows bundle profiles; Cheat RE Tools / AI-assisted static+network forensics) (source: wiki/sources/descriptions/GalaxyBatMan111__dsh-plugins.md). In-process CE MCP plugin [[ce-mcp-plugin]] (Eruditi; C + Lua; async TCP remote commands; memory R/W, value freeze, disasm/asm, process management, DLL injection; non-blocking AI-assisted game memory research; cheat / MCP for Cheat Engine) extends the same lane via native CE plugin IPC. (source: wiki/sources/descriptions/Eruditi__CE-MCP-Plugin.md) - Android native `.so` memory-loading tooling such as [[so-loader]] (C/C++; load/inject shared libs) sits in the Cheat Android memory loading lane beside ptrace/virtual injectors. (source: wiki/sources/descriptions/lockedbyte__so_loader.md) In-process ELF loaders such as [[mojoelf]] (load ELF from non-filesystem sources; alternative to `dlopen()`) sit in the same memory-loading lane. (source: wiki/sources/descriptions/icculus__mojoelf.md) - Android Terminal Emulator lane: [[termux-app]] (Termux; no-root Linux env / pkg+apt / proot), experimental Termux fork [[neotty]] (full Linux system usage; cheat / Android Terminal Emulator), modern Termux-oriented terminal [[neoterm]] (NeoTerrm; Java/Kotlin; mobile shell usability and release distribution), and [[android-terminal-emulator]] (jackpal; VT-100 codes; built-in Android shell) for on-device CLI research. (source: wiki/sources/descriptions/termux__termux-app.md) (source: wiki/sources/descriptions/gmh5225__neotty.md) (source: wiki/sources/descriptions/NeoTerrm__NeoTerm.md) (source: wiki/sources/descriptions/jackpal__Android-Terminal-Emulator.md) - Rooted Android File Explorer [[xfiles]] (prebuilt APKs in Releases) sits in the Cheat Android File Explorer lane. (source: wiki/sources/descriptions/pgp__XFiles.md) - Full-featured Kotlin/Compose Android file manager [[file-explorer]] (SysAdminDoc; libsu/Shizuku protected-path access, dual-pane tabs, APK analyzer, hex editor, root module browser for Magisk/KernelSU/APatch, encrypted vaults + integrity checks, SMB/SFTP/FTP/WebDAV; Cheat Android File Explorer) sits in the same lane for on-device filesystem inspection and protected app-data access. (source: wiki/sources/descriptions/SysAdminDoc__FileExplorer.md) Standalone MMRL WebUI X portable host [[webui-x-portable]] (MMRLApp; HybridWebUI + JS bridge for root shell/filesystem/module metadata; Magisk/KernelSU/APatch/SukiSU; non-root mode + optional spoofed builds; module browse/install/configure without full MMRL manager; cheat / Android root module WebUI) complements that lane for HTML/JS root-module tooling UIs. (source: wiki/sources/descriptions/MMRLApp__WebUI-X-Portable.md) Curated MMRL module repository [[zamr]] (zelect0r; JSON track/update manifests + GitHub Pages catalog; Play Integrity Fix, Zygisk, root-hide, TEESimulator, and related Magisk/KernelSU/APatch modules refreshed hourly; cheat / Magisk) indexes maintained root/integrity modules beside [[webui-x-portable]] and [[fox-magisk-module-manager]]. (source: wiki/sources/descriptions/zelect0r__zamr.md) - Lightweight Kotlin/Java Material 3 Android file manager [[raival-file-explorer]] (Raival-e; core file operations, multi-tab navigation, task handling, integrated code editor, deep content search; Gradle baseline for extension/study; Cheat Android File Explorer) sits in the same lane as a simpler open-source file-management baseline beside [[file-explorer]] and [[xfiles]]. (source: wiki/sources/descriptions/Raival-e__File-Explorer.md) - Open-source Kotlin/Compose Android file explorer [[butler]] (d4rken-org; root/Shizuku/ADB/shell backends; app manager, APK export, regex search, protected-path browsing; Cheat Android File Explorer) sits in the same lane beside [[file-explorer]] and [[app-manager]]. (source: wiki/sources/descriptions/d4rken-org__butler.md) - Windows ADB file manager [[adb-file-manager]] (gmh5225; C#/.NET dual-pane Explorer UI; faster transfers than MTP; multi-language) sits in the same Cheat Android File Explorer lane for PC-side pull/push over ADB. (source: wiki/sources/descriptions/gmh5225__AdbFileManager.md) - Chinese Android File Explorer guide [[note]] (`Guide-zh` documentation/reference) sits in the same Cheat Android File Explorer lane. (source: wiki/sources/descriptions/nzcv__note.md) - Non-jailbreak iOS IPA patch tooling such as [[ipapatch]] (C/C++/ObjC; Patch iOS Apps without Jailbreak) sits in the Cheat / IOS jailbreak sideload lane. (source: wiki/sources/descriptions/paradiseduo__IPAPatch.md) - Pure-Go sideload tweak injectors such as [[xkvm-ios-injector]] (xscope0; CLI/TUI; IPA/TIPA/`.app` dylib and `.deb` injection, rootful/rootless/roothide package conversion, App Store IPA decryption, hook-runtime embedding, Mach-O repack + ad-hoc signing; cheat / iOS sideload) sit beside [[ipapatch]] in the same sideload lane. (source: wiki/sources/descriptions/xscope0__xkvm-ios-injector.md) - Python iOS repackaging/signing CLI utilities such as [[ios-packager]] (addrianyy; certificate metadata parse, Info.plist/entitlements update, provisioning profile fetch, codesign; provisioning-request/cache/template helpers; repeated resign/deploy during mobile game security testing) sit in the same sideload/repack lane beside [[ipapatch]] and [[xkvm-ios-injector]]. (source: wiki/sources/descriptions/addrianyy__ios_packager.md) - iOS 15 untethered jailbreak implementations such as [[ios-jailbreak-fugu15]] (gmh5225; Fugu15 kernel exploit chain → root, codesign bypass, arbitrary code execution; cheat / iOS jailbreak) sit in the same Cheat / iOS jailbreak privilege lane beside [[dopamine]] and [[palera1n]]. (source: wiki/sources/descriptions/gmh5225__IOS-jailbreak--Fugu15.md) - iOS 16 jailbreak tooling such as [[def1nit3lyn0tajailbreaktool]] (KpwnZ; iOS 16.0–16.6.1; kernel exploitation + trustcache build paths; Objective-C/C native headers; Xcode/make workflows; post-exploitation study; cheat / iOS jailbreak) sits in the same Cheat / iOS jailbreak privilege lane beside [[dopamine2-roothide]] and [[ios-jailbreak-fugu15]]. (source: wiki/sources/descriptions/KpwnZ__Def1nit3lyN0tAJa1lbr3akTool.md) - XNU `kern_aio.c` AIO+kevent UAF PoC via [[cve-2026-xnu-aio-kevent-uaf]] (crazymind90; sandbox app without entitlements; AIO completion frees object before kevent registration → panic/double-free; iOS 26.2, patched 26.3; cheat / iOS jailbreak kernel research—not stable LPE) sits in the same Cheat / iOS jailbreak kernel lane beside [[kfd]] and [[xnu-1day-practice]]. (source: wiki/sources/descriptions/crazymind90__CVE-2026-XNU-AIO-KEVENT-UAF.md) - Perma-signed jailed IPA installers such as [[trollstore]] (CoreTrust/AMFI bugs; arbitrary entitlements; persist across reboot) sit in the same Cheat / jailed-app sideload lane. (source: wiki/sources/descriptions/opa334__TrollStore.md) - Runtime iOS/macOS dylib injectors such as [[opainject]] (`task_for_pid` / Mach remote thread → `dlopen`; jailbreak + tfp0) sit in the Cheat / Injection:IOS lane. (source: wiki/sources/descriptions/opa334__opainject.md) - Jailbreak-detection bypass tooling such as [[shadow]] (modern iOS jailbreaks; per-app compatibility varies; cheat / iOS jailbreak research) sits in the offensive iOS lane opposite [[free-rasp-ios]]-class jailbreak probes. (source: wiki/sources/descriptions/jjolano__shadow.md) Per-app jailbreak-hiding tweak [[ihide]] (Kc57; MobileSubstrate/ObjC hooks; iOS Settings per-app toggle; defeats common jailbreak-detection checks; mobile app/game security testing behind JB gates; cheat / iOS jailbreak) sits in the same lane beside [[shadow]]. (source: wiki/sources/descriptions/Kc57__iHide.md) - Theos iOS mod-menu templates such as [[ios-mod-menu-template-for-theos]] (Logos hooks; embedded 50×50 menu icons; cheat / `[IOS mod menu]`) sit in the Cheat / render-draw lane beside ImGui samples such as [[imgui-ios-mod-menu]]. (source: wiki/sources/descriptions/joeyjurjens__iOS-Mod-Menu-Template-for-Theos.md) - Title-specific iOS cheat sources such as [[last-island-of-survival-ioscheat-source]] (gmh5225; Last Island of Survival / Last Day Rules; Objective-C runtime hooks for gameplay modifications; cheat / iOS) sit in the same jailbreak/ObjC runtime lane beside Theos templates and injectors. (source: wiki/sources/descriptions/gmh5225__LastIslandOfSurvival-iOSCheat-Source.md) - macOS native Roblox cheat frameworks such as [[roblox-cheats]] (Objective-C; `libESP.dylib` inject + Mach VM / shared-memory IPC; internal/external ESP, input simulation, remote calls, breakpoint hooks; per-game modules + offset finder from test place) sit in the Cheat / macOS injection lane for Roblox client memory-layout study. (source: wiki/sources/descriptions/notahacker8__RobloxCheats.md) Luau injectable game-analysis dumpers such as [[wontree-rblx-dumper]] (LyeDevGit; four-layer decompile pipeline, client/server instance scan, remote call graphs, live `FireServer`/`InvokeServer` logger, framework + anti-cheat keyword detection; markdown/CSV reports; UNC-compatible executors) map live Roblox experience scripts, remotes, and security-relevant paths for RE. (source: wiki/sources/descriptions/LyeDevGit__WonTree-RBLX-Dumper.md) Windows Byfron bypass research such as [[byfron-bypass]] (C++; asset pipelines / editor tooling; explore anticheat:byfron; gmh5225) complements that lane on the Roblox client AC axis. (source: wiki/sources/descriptions/gmh5225__byfron-bypass.md) Third-party Windows launchers such as [[rustblox]] (no1qq; Rust; isolated CDN Roblox install; **TheWatcher** background scan for cheat processes, suspicious memory, and injection while the client runs; FastFlags + egui launch dashboard) sit on the defensive client axis opposite macOS cheat injectors and Byfron bypass research. (source: wiki/sources/descriptions/no1qq__RustBlox.md) Controlled VEH + `PAGE_NOACCESS` simulation of Byfron/Hyperion memory guarding via [[page-no-access-not-byfron]] (not-byfron DLL; LoadLibrary tester; gmh5225) supports defensive study of the same protection patterns. (source: wiki/sources/descriptions/gmh5225__PAGE_NO_ACCESS-not-byfron.md) - Linux LKM vermagic/CRC rewriting via [[vermagic]] sits in the Cheat Linux / RE tools lane (load modules across mismatched kernel builds). (source: wiki/sources/descriptions/yaxinsn__vermagic.md) Linux kernel image → ELF symbolization via [[vmlinux-to-elf]] (Python; kallsyms + section rebuild for IDA/Ghidra) sits in the same cheat / linux kernel explorer lane. (source: wiki/sources/descriptions/marin-m__vmlinux-to-elf.md) Live `/proc/kallsyms` → IDA rename via [[ida-kallsyms-symbol-renamer]] (gmh5225; kernel/LKM function and data label import; cheat / IDA Plugins) complements that lane when kallsyms is readable from a matching host. (source: wiki/sources/descriptions/gmh5225__IDA-KallsymsSymbolRenamer.md) Offline kallsyms dump import via [[import-kallsyms]] (XMCVE; Python IDA plugin; symbol names/addresses into kernel IDBs; cheat / IDA Plugins) sits beside that path for saved `/proc/kallsyms` text. (source: wiki/sources/descriptions/XMCVE__import-kallsyms.md) Linux kernel rootkit hooking samples such as [[venom]] (C/C++; LKM hook mechanisms) sit in the same cheat / linux kernel explorer lane. (source: wiki/sources/descriptions/sad0p__venom.md) Multi-arch **Linux kernel inline-hook framework** [[kernel-hook-framework]] (WeiJiLab; trampoline patching + extended kallsyms targets; proc control; x86/x86_64/ARM/ARM64/riscv64; kernel debug + anti-cheat kernel studies) extends that lane with a reusable hook/modding scaffold. (source: wiki/sources/descriptions/WeiJiLab__kernel-hook-framework.md) Android ARM64 kernel inline-hook framework [[android-kernel-inline-hook-framework]] (ChwnWang0; instruction relocation + trampoline long jumps + automatic write-protect bypass; rooted Android kernel hook/modding scaffold; cheat / Android kernel inline hook) complements that lane on mobile ARM64 hosts. (source: wiki/sources/descriptions/ChwnWang0__Android-kernel-inline-hook-framework.md) Upstream Linux kernel development tutorials via [[kernel-development]] (Greg Kroah-Hartman; patch submission, driver/LKM conventions) complement those offensive samples with canonical workflow guidance. (source: wiki/sources/descriptions/gregkh__kernel-development.md) LLDB-based live/offline Linux kernel debugger [[klldb]] (djolertrk; kLLDBLive + post-mortem plugin; LLVM-19; Python scripting) offers an LLDB-native debug lane beside GDB/KGDB when auditing LKM or kernel internals. (source: wiki/sources/descriptions/djolertrk__kLLDB.md) - Title-specific DayZ cheat/modding samples such as [[dayzzz]] (SDK generation + overlays) illustrate game:dayz offensive research surface. (source: wiki/sources/descriptions/zhitkur__DayZzz.md) External DayZ ESP samples such as [[external-dayz-cheat]] (gmh5225; transparent D3D9 overlay + kernel driver entity reads; SDK offset entity-list walk + [[world-to-screen]] for player/item ESP; Enfusion engine; cheat / game:dayz [External]) extend that lane beside [[battleye]]-protected client externals. (source: wiki/sources/descriptions/gmh5225__External-Dayz-Cheat.md) Compact external DayZ samples such as [[dayz-cheat]] (gmh5225; out-of-process memory reads for player ESP, aimbot, and item ESP overlays; cheat / game:dayz [External]) illustrate the standard RPM + overlay lane beside driver-backed variants. (source: wiki/sources/descriptions/gmh5225__DayZ-Cheat.md) Automation-oriented DayZ MCP tooling such as [[dayz-mcp]] (willy92wins; Python MCP + Enforce Script bridge mod; 53 server-authoritative tools for mod pack/build, test instances, entity/vehicle control, telemetry, screenshots, and structured state assertions; localhost session leases; Game Develop / MCP) contrasts with those external cheat samples as scriptable mod-dev and server-admin automation through in-game script APIs. (source: wiki/sources/descriptions/willy92wins__dayz-mcp.md) Server-side DayZ BattlEye patch utilities such as [[dayz-server-battleye-remover]] (JonathanEke; C++ pattern-scan + binary patch on server executable to disable BE checks; reprocessable after updates; controlled test env; Disable battleye) contrast with client externals as authoritative-server [[battleye]] bypass research. (source: wiki/sources/descriptions/JonathanEke__DayZ-Server-Battleye-Remover.md) - Discontinued Escape From Tarkov internal trainers such as [[escapefromtarkov-trainer]] (Mono-era; stopped after 1.0 / [[il2cpp]] switch) illustrate the cheat / game:eft lane and Mono→IL2CPP internal-modding complexity. (source: wiki/sources/descriptions/sailro__EscapeFromTarkov-Trainer.md) OOP EFT cheat bases such as [[simple-eft-base]] (C/C++; driver / rendering / animation; stale offsets; cheat / game:eft) complement that lane as unmaintained structural references from the same author as [[simple-rust-base]]. (source: wiki/sources/descriptions/krispybyte__Simple-EFT-Base.md) External DMA radar clients such as [[meatyeftrelease]] (C++/ImGui; LeechCore/MemProcFS; DX11 fuser overlay; Unity entity modules; cheat / game:eft [DMA]) illustrate the below-OS external stack beside internal/driver scaffolds. (source: wiki/sources/descriptions/paul01784__MeatyEFTRelease.md) DMA toolbox samples such as [[eftleecher]] (bytemyass; C++; MemProcFS/FPGA external reads; visor/night/thermal/recoil/stamina/weight mods; INI config; map files; auto-disconnect OPSEC; cheat / game:eft [DMA]) extend that lane with gameplay-effect patching beside radar overlays. (source: wiki/sources/descriptions/bytemyass__EFTLeecher.md) External EFT cheat samples such as [[eft-external]] (frankie-11; C/C++; kernel-level work + overlays + modding; cheat / game:eft [External]) illustrate the driver-backed external overlay lane beside DMA radars and internal scaffolds. (source: wiki/sources/descriptions/frankie-11__eft-external.md) Streaming/external-display EFT cheat samples such as [[eft-streamed-cheat]] (fcancelog; driver-backed external Unity memory reads; radar/player/loot ESP on separate display or overlay; avoids in-process injection; cheat / game:eft [External/Streaming]) illustrate the off-window streaming cheat architecture beside driver overlays and DMA radars. (source: wiki/sources/descriptions/fcancelog__EftStreamedCheat.md) Internal EFT samples such as [[eft-internal]] (C++; shader / rendering / asset pipelines; cheat / game:eft; gmh5225) sit in the same in-process Unity / [[battleye]] lane beside those scaffolds and DMA externals. (source: wiki/sources/descriptions/gmh5225__eft-internal.md) Compact DMA radar samples such as [[eft-dma-radar-1]] (PCILeech-compatible hardware; separate-screen overlay; player/loot/map from Unity memory; cheat / game:eft [DMA Radar]; gmh5225) extend the external EFT lane beside [[meatyeftrelease]]. (source: wiki/sources/descriptions/gmh5225__eft-dma-radar-1.md) Public dual-path radar samples such as [[nathans-tarkov-radar-public]] (Vmread + Radar; external or DMA; secondary-display top-down player/scav/loot/extraction overlay from Unity memory; cheat / game:eft; gmh5225) illustrate the same BattlEye-facing external radar lane with optional below-OS reads. (source: wiki/sources/descriptions/gmh5225__Nathans-Tarkov-Radar-Public.md) Memory-access EFT cheat frameworks such as [[eft-veil-eft]] (Veil; ESP, aimbot, radar from Unity client memory; cheat / game:eft; gmh5225) illustrate the in-process memory-read overlay lane beside DMA radars and internal rendering scaffolds. (source: wiki/sources/descriptions/gmh5225__EFT-Veil-EFT.md) Unity-memory EFT cheat projects such as [[eft-newtarkov-cheatproject]] (ESP, aimbot, loot visualization; player positions, item data, and ballistic reads for in-client overlay; cheat / game:eft; gmh5225) extend that lane with loot and ballistics feature study. (source: wiki/sources/descriptions/gmh5225__EFT-NewTarkovCheatProject.md) Mono-based internal EFT samples such as [[eft-monoeft]] (C#; Unity/Mono runtime hooks; `GameWorld.RegisteredPlayers` walk, `PlayerBones` skeleton [[world-to-screen]], `CreateShot`/`ApplyShot`/`BulletMovement` method hooks, OnGUI overlay; ESP/silent aim/no-recoil/speed/stamina/loot; cheat / game:eft; gmh5225) illustrate the Mono-era in-process method-hooking lane beside IL2CPP memory-read overlays. (source: wiki/sources/descriptions/gmh5225__EFT-MonoEFT.md) Open-source C++ internal EFT samples such as [[eft-tarkov-internal-cheat]] (bootmgfw; DLL inject; Unity/Mono SDK + pattern scan + direct syscalls; DX11 ImGui via Kiero/MinHook; ESP/aimbot/radar/JSON config; cheat / game:eft [Internal]) illustrate modular internal cheat architecture beside Mono method-hooking and DMA externals. (source: wiki/sources/descriptions/bootmgfw__EFT-Tarkov-Internal-Cheat.md) Kernel-assisted EFT overlay frameworks such as [[comm-im-miraclela]] (gmh5225; `NtDxgkGetTrackedWorkloadStatistics` dxgkrnl hook for KM↔UM comms + win32k draw + ImGui UM overlay; cheat / game:eft) extend that lane with mixed user/kernel render and driver communication beside [[kernel-cheat-for-directx3d]]. (source: wiki/sources/descriptions/gmh5225__Comm-ImMiraclela.md) Hardware-assisted EFT training automation such as [[simple-eft-superman-training-bot]] (ZhaoKunqi; Arduino HID keyboard/mouse emulation; repetitive in-game movement cycles; multiple `.ino` sketches + Python coordinate helper; cheat / game:eft [Automation]) illustrates the zero-memory skill-grinding bot lane beside memory-read cheats and DMA radars. (source: wiki/sources/descriptions/ZhaoKunqi__simple-eft-superman-training-bot.md) Internal EFT research samples such as [[eft]] (Splitx12; C++ + ASM; Unity object/world/entity traversal + in-game rendering; ESP/exfil/aim-assist/menu modules; `KeUserModeCallBack` Win10 notes in `usercallback.h`; cheat / game:eft [Internal]) illustrate Unity shooter memory-structure and runtime manipulation study beside modular bootmgfw internals. (source: wiki/sources/descriptions/Splitx12__eft.md) Standalone **`KeUserModeCallback`** kernel demos such as [[keusermodecallback]] (ExpLife0011; IOCTL driver; PEB/export resolution; 32/64-bit callback stubs; kernel-to-user transition research; README `[KeUserModeCallBack]`) (source: wiki/sources/descriptions/ExpLife0011__KeUserModeCallBack.md) complement that lane as focused callback-primitive references. QEMU-based EFT cheat frameworks such as [[escape-from-tuxkov]] (Qemu-Gang; C++; ESP/aimbot/recoil; separate memory-access + data-collection components; Unity/Mono structures; build/inject/extract/reload scripts; Linux/QEMU external or hybrid workflows; cheat / game:eft [QEMU]) extend that lane with below-OS or hybrid host setups beside DMA radars and in-guest internals. (source: wiki/sources/descriptions/Qemu-Gang__Escape-from-TuxKov.md) External EFT reversal frameworks such as [[pkernelinterface-eft]] (Nou4r; C++; kernel-assisted memory interaction, entity processing, ESP/aim modules, ImGui overlay; cheat / game:eft [External]) illustrate integrated external reversal scaffolds for protected Unity titles beside driver-backed overlays. (source: wiki/sources/descriptions/Nou4r__pKernelInterface-EFT.md) - Title-specific Dota 2 overlay samples such as [[dota2-overlay-2-0]] (C/C++) illustrate game:dota2 overlay research surface. (source: wiki/sources/descriptions/skrixx68__Dota2-Overlay-2.0.md) Remote offset refresh utilities such as [[dota2-overlay-offset-updater]] (gmh5225; fetches current memory offsets from a remote server and auto-applies updates after Dota 2 patches so overlay cheats stay functional; cheat / game:dota2) sit in the same overlay maintenance lane beside static dumps. (source: wiki/sources/descriptions/gmh5225__Dota2-Overlay-OffsetUpdater.md) - Maintained Dota 2 offset/netvar dumps such as [[dota2dumped]] (C++ headers; netvar offsets, interface pointers, class structures after patches; `[Offset dumper]`) feed the same cheat / game:dota2 Source 2 memory-layout lane. (source: wiki/sources/descriptions/ikhsanprasetyo__dota2dumped.md) - Dota 2 gameplay cheats such as [[dota-cheat]] (gmh5225; C++; Source 2 entity-data overlay—enemy positions, HP/mana, spell cooldowns, items, auto-ability casting; cheat / game:dota2) consume those SDK layouts for offensive feature study. (source: wiki/sources/descriptions/gmh5225__dota-cheat.md) Internal Dota 2 DLL samples such as [[dota2-cheat]] (gmh5225; Source 2 SDK; subhook + VMT hooks + pattern scan on client/engine modules; cheat / game:dota2) illustrate the in-process hooking lane beside overlay cheats. (source: wiki/sources/descriptions/gmh5225__Dota2Cheat.md) Linux Dota 2 injection frameworks such as [[mcdota]] (LWSS; C++; runtime injection; Panorama UI, ESP, camera controls, protobuf packet intercept/edit; standard/stealth/integrated load modes; cheat / game:dota2 [linux]) extend that lane with Source 2 Linux client RE beside Windows internals. (source: wiki/sources/descriptions/LWSS__McDota.md) - Elden Ring animation/modding samples such as [[eldenringmods]] (C++ / C/C++) illustrate the cheat / game:eldenring [Mod] lane. (source: wiki/sources/descriptions/techiew__EldenRingMods.md) Custom launcher samples such as [[eldenringlauncher]] (gmh5225; ImGui/SDL2 GUI; launch-parameter toggles; [[easy-anti-cheat]] bypass options + mod loading; cheat / game:eldenring [Launcher]) illustrate the custom-launcher / EAC-interface lane beside mod and CE table samples. (source: wiki/sources/descriptions/gmh5225__EldenRingLauncher.md) Cheat Engine table samples such as [[elden-ring-ct-tga]] (`.CT`; protonhax + Wine CE on Steam Proton; optional [[easy-anti-cheat]] disable) illustrate the adjacent cheat / game:eldenring [Cheat Engine] / Linux Proton lane. (source: wiki/sources/descriptions/inuNorii__Elden-Ring-CT-TGA.md) Debug-tool samples such as [[elden-ring-debug-tool]] (gmh5225; hidden game parameters + developer debug menu; stat editing, item spawn, teleport, no-clip; cheat / game:eldenring [Debug tool]) illustrate the FromSoftware in-game debug/cheat lane beside mod, launcher, and CE table tooling. (source: wiki/sources/descriptions/gmh5225__Elden-Ring-Debug-Tool.md) Dark Souls III Cheat Engine guide samples such as [[dark-souls-iii-cheat-engine-guide]] (The Grand Archives `.CT` table; online invalid-data EULA warning; cheat / game:dark souls [Cheat Engine]) sit in the adjacent FromSoftware CE table lane. (source: wiki/sources/descriptions/igromanru__Dark-Souls-III-Cheat-Engine-Guide.md) Multi-game Cheat Engine table collections such as [[mydev-cheat-engine-tables]] (bbfox0703; preconfigured `.CT` files with memory addresses, pointer chains, Auto Assemble scripts, and hotkey bindings for health/currency/XP/items; direct CE load; cheat / [Cheat Engine]) illustrate reusable single-player modding table distribution beside title-specific guides. (source: wiki/sources/descriptions/bbfox0703__Mydev-Cheat-Engine-Tables.md) Large forum-curated CE table archives such as [[cheat-engine-tables]] (Hexorg; thousands of game-specific `.CT` files; pointer chains, AOB scans, Lua scripts, trainers; offline-focused; cheat / [Cheat Engine]) complement smaller curated collections for studying CE table structure and memory-editing workflows. (source: wiki/sources/descriptions/Hexorg__CheatEngineTables.md) - QQ Tang (QQ堂) research corpora such as [[qqtang]] (gmh5225; client analysis, private-server emulation, or cheat tooling—network protocol, memory layouts, Tencent casual-game anti-cheat; cheat / game:qqtang) complement title-specific CE samples such as [[qqtang-cheat-engine]] (C++/C; memory scan/edit; cheat / game:qqtang [Cheat Engine]) in the Chinese casual-game lane beside generic scanners such as [[cheap-engine]]. (source: wiki/sources/descriptions/gmh5225__QQTang.md) (source: wiki/sources/descriptions/gmh5225__QQTangCheatEngine.md) - NieR Automata multiplayer / RE tooling such as [[automatamp]] (praydog; partial title coverage; Game Develop / source) illustrates the cheat / game:nier [NieR] lane. (source: wiki/sources/descriptions/praydog__AutomataMP.md) - Spider-Man Remastered non-Newtonian fluid/physics mods such as [[non-newtonian-new-york]] (urban destruction / stress-dependent materials) illustrate the cheat / game:spider-man remastered [Mod] lane. (source: wiki/sources/descriptions/skMetinek__Non-Newtonian-New-York.md) - Palworld save tooling such as [[palworld-save-tools]] (Python; GVAS parse/convert/edit; binary↔JSON; player/Pal/inventory/world state; compression + UE5 save structures; cheat / game:palworld [Save]) and [[palworldsaved]] (rendering + editor; UE5) sit in the cheat / game:palworld [Save] lane. (source: wiki/sources/descriptions/cheahjs__palworld-save-tools.md) (source: wiki/sources/descriptions/weizhking__PalworldSaved.md) Desktop companion editors such as [[pal-edit]] (EternalWraith; Python; load/edit/clone Pal data entries; write-back workflow; optional Windows executable; cheat / game:palworld [Save]) extend that lane with GUI save modding. (source: wiki/sources/descriptions/EternalWraith__PalEdit.md) Palworld modding kit samples such as [[palworld-modding-kit]] (modding kit; UE5; example usage) sit in the cheat / game:palworld [UE5] modding lane. (source: wiki/sources/descriptions/localcc__PalworldModdingKit.md) Python helper tooling such as [[palworld-helper]] (modding focus; cheat / game:palworld [UE5]) extends that modding lane. (source: wiki/sources/descriptions/hualuoo__palworld-helper.md) Desktop mod patcher utilities such as [[palworld-tools]] (NattKh; PyQt GUI; automates [[re-ue4ss]] starter mod setup; download/apply/revert patch files; Lua mods for stamina, map visibility, progression; Mod Patcher; cheat / game:palworld [UE5]) extend that lane with guided UE4SS onboarding. (source: wiki/sources/descriptions/NattKh__PalWorld-Tools.md) Adjacent title-specific AC research such as [[palworld-anti-cheat]] (C#; shader / rendering / audio; Anti Cheat) targets the same game:palworld [UE5] surface. (source: wiki/sources/descriptions/shalzuth__PalWorldAntiCheat.md) Dedicated-server RCON clients such as [[palworld-rcon]] (Source RCON protocol; kicks / bans / broadcasts / config; Server on Windows) sit in the adjacent server-admin lane for Palworld instances. (source: wiki/sources/descriptions/luciouskami__palworld_rcon.md) Web-based Palworld settings generators such as [[palworld-setting-generator]] (DysonCheng; JavaScript/HTML; form-driven editor for PalWorld settings files; difficulty and progression tuning; download generated config; Setting Generator; cheat / game:palworld [Server]) sit in the adjacent server-configuration lane for players and dedicated-server operators. (source: wiki/sources/descriptions/DysonCheng__PalWorldSettingGenerator.md) All-in-one dedicated-server ops workbenches such as [[palopsweb]] (CoderYiXin; ASP.NET Core/.NET 10 + Vue 3; PalDefender anti-cheat plugin integration—REST, extended RCON, whitelist/bans/config; native Palworld REST, lifecycle, save indexing, player/guild intel, MapLibre maps, backups, automation, webhooks; same-host Windows deployment; cheat / game:palworld [Server]) extend that lane with anti-cheat-aware administration. (source: wiki/sources/descriptions/CoderYiXin__PalOpsWeb.md) Containerized Linux dedicated-server stacks such as [[docker-palworld-dedicated-server]] (Docker; Server on Linux; cheat / game:palworld [UE5]) sit in the adjacent self-hosted server lane. (source: wiki/sources/descriptions/jammsen__docker-palworld-dedicated-server.md) Native Linux shell/systemd deployment guides such as [[howto-palworld]] (A1RM4X; shell scripts + SteamCMD + systemd; install/update/start/backup/restore; Debian/Ubuntu; maintenance automation; Server on Linux; primarily server-admin ops rather than AC/RE) sit in the adjacent bare-metal Linux hosting lane beside container stacks. (source: wiki/sources/descriptions/A1RM4X__HowTo-Palworld.md) Unofficial dedicated-server binary patches such as [[palworld-server-unoffical-fix]] (VeroFess; Linux + Windows prebuilt patches, batch scripts, hash verification; mitigates memory leaks and CPU usage on older builds; patching infrastructure rather than source; server stability + early server-side AC experimentation; Server patch) sit in the adjacent operator maintenance lane. (source: wiki/sources/descriptions/VeroFess__PalWorld-Server-Unoffical-Fix.md) Server-side mod examples such as [[palworld-server-modding]] (gmh5225; Lua + C++; example mod for 100% rare Pal spawns; cheat / game:palworld [UE5]) extend that lane with dedicated-server gameplay mutation. (source: wiki/sources/descriptions/gmh5225__Palworld-Server-Modding.md) Dedicated-server injectors such as [[palworld-server-injector]] (gmh5225; Lua + C++; cheat / game:palworld [UE5]) load custom code into the authoritative Palworld server process for server-side modding and RE. (source: wiki/sources/descriptions/gmh5225__PalWorld-ServerInjector.md) Client-side network crack samples such as [[palworld-netcrack]] (gmh5225; C++; shader / rendering / audio; cheat / game:palworld [UE5]) illustrate network-layer offensive tooling beside server-side injectors. (source: wiki/sources/descriptions/gmh5225__PalWorld-NetCrack.md) Title-specific UE5 SDK dumps such as [[palworld-sdk-dump]] (gmh5225; SDK generation; cheat / game:palworld [UE5]) supply reverse-engineered class/offset headers for Palworld client RE beside modding kits. (source: wiki/sources/descriptions/gmh5225__Palworld-SDK-Dump.md) Hybrid mod/trainer stacks such as [[palmods]] (byPreaZy; Lua UE4SS + C++ PalTrainerUltra; ImGui cheat menus, D3D11 overlay, ReadProcessMemory, DLL injection, AOB `GWorld` scan; cheat / game:palworld [UE5]) combine live UE4SS scripting with native process manipulation for client RE. (source: wiki/sources/descriptions/byPreaZy__.palmods.md) - Sea of Thieves modding / SDK generation / hooking scaffolds such as [[sea-of-choros]] (gmh5225; C/C++; cheat / game:sea of thieves) sit in the title-specific Unreal offensive lane. (source: wiki/sources/descriptions/gmh5225__SeaOfChoros.md) - Title-specific POLYGON UE5 offensive samples such as [[polygon-ue5]] (gmh5225; C/C++; graphics / Unreal Engine / hooking; cheat / game:polygon [UE5]) sit in the same title-specific Unreal UE5 offensive lane beside other low-poly multiplayer shooter RE. (source: wiki/sources/descriptions/gmh5225__POLYGON_UE5.md) Multi-title Unreal signature-scan cheats such as [[cheat-it]] (gmh5225; Witch It + POLYGON; pattern-match UObject arrays / engine structures; configurable per-game targets; cheat / game:witch it + game:polygon) extend that lane with shared [[unreal-object-model]] address discovery across casual multiplayer titles. (source: wiki/sources/descriptions/gmh5225__CheatIt.md) - Warcraft III map-editor alternatives such as [[hivewe]] (faster large-map World Editor replacement) sit in the cheat / game:warcraft iii [editor] lane. (source: wiki/sources/descriptions/stijnherfst__HiveWE.md) - Structured CS:GO offensive-technique guides such as [[master-guide]] (csgohacks; five-part CS:GO guide; cheat / guide) sit in the cheat / game:csgo learning lane for researchers studying Source 1 cheat workflows beside runnable samples. (source: wiki/sources/descriptions/csgohacks__master-guide.md) - Web-based CS:GO crosshair config generators such as [[csgocrosshair]] (Skarbo; JavaScript/jQuery/KineticJS; visual preview + preset tuning; exports ready-to-paste `cl_crosshair*` console values and keybind setup; player/modding utility; cheat / game:csgo [Crosshair Generator]) sit in the adjacent client-config / modding lane beside guides and SDK scaffolds. (source: wiki/sources/descriptions/Skarbo__CSGOCrosshair.md) - Minimal CS:GO dedicated-server clients such as [[tiny-csgo-client]] (C++; modding / SDK generation) sit in the cheat / game:csgo lane. (source: wiki/sources/descriptions/yourmnbbn__tiny-csgo-client.md) - Reverse-engineered Source SDK header dumps such as [[sdk]] (C++; entities / weapons / interfaces / netvars; likely CS:GO) sit in the same cheat / game:csgo SDK lane. (source: wiki/sources/descriptions/rabbitfishy__sdk.md) - Generated CS:GO SDK + hooking scaffolds such as [[csgo-sdk]] (gmh5225 + bloesway forks; C++; reverse-engineered classes / netvars / interfaces / signatures plus SDK generation / hooking; bloesway fork adds rendering / networking / animation focus; cheat / game:csgo [SDK]) sit in that same Source 1 SDK lane beside header dumps and internal bases. (source: wiki/sources/descriptions/gmh5225__csgo-sdk.md) (source: wiki/sources/descriptions/gmh5225__csgo_sdk.md) (source: wiki/sources/descriptions/bloesway__csgo_sdk.md) Windows SDK generation tooling such as [[csf-w]] (ekknod; C/C++; Win SDK scaffold; cheat / game:csgo [Win SDK]) extends that lane with Windows-oriented header/scaffold output. (source: wiki/sources/descriptions/ekknod__csf_w.md) Linux SDK generation tooling such as [[csf]] (ekknod; C/C++; Linux SDK scaffold; cheat / game:csgo [Linux SDK]) complements [[csf-w]] on non-Windows research hosts. (source: wiki/sources/descriptions/ekknod__csf.md) Corrected SDK header trees such as [[csgo-sdk-improved]] (gmh5225; fixed class defs, extra interfaces, fuller netvar coverage vs standard leaked SDKs; cheat / game:csgo [Internal]) extend that lane for researchers needing accurate Source 1 layouts. (source: wiki/sources/descriptions/gmh5225__csgo-sdk-improved.md) Patch-updated offset dumps such as [[csgo-offsets]] (gmh5225; netvar dumps, interface pointers, signature patterns, entity/weapon/engine globals; cheat / game:csgo [Offset]) refresh memory layouts after client patches beside those SDK trees. (source: wiki/sources/descriptions/gmh5225__csgo-offsets.md) Auto-updating CS:GO signature/offset feeds such as [[hazedumper]] (frk1; multi-format exports + `config.json` byte-pattern resolver for `engine.dll`/`client.dll` globals and netvars; cheat / game:csgo [Offset]) sit in the same distribution lane. (source: wiki/sources/descriptions/frk1__hazedumper.md) - Leaked partial CS:GO Source trees such as [[cstrike15-src]] (client/server / weapons / movement / networking / UI; Leaked CSGO With CI) sit in the same cheat / game:csgo internals lane for AC and engine-vulnerability study. (source: wiki/sources/descriptions/perilouswithadollarsign__cstrike15_src.md) CS:GO anti-cheat plugin PoCs such as [[csgo-ac]] (ekknod; C++/C; proof-of-concept anti-cheat plugin + AC research; Open Source Anti Cheat System) complement those trees for defensive CS:GO plugin study. (source: wiki/sources/descriptions/ekknod__CSGO-AC.md) - Reverse-engineered CS:GO animation code such as [[csgo-animation-code-reversed]] (click4dylan; C++; animation subsystem RE; cheat / game:csgo) sits in the same cheat / game:csgo internals lane for studying Source 1 bone-matrix, pose, and sequence logic beside leaked trees and SDK dumps. (source: wiki/sources/descriptions/click4dylan__CSGO_AnimationCode_Reversed.md) - Process memory dumpers for CS:GO internal P2C cheats such as [[csgo-p2c-dumper]] (ch4ncellor; signature / hook-JMP / allocation before-after-injection methods; pre/post injection buffers, decoded assembly, handler offsets; Dump lane; AC researchers studying injected module forensics; cheat / game:csgo) sit in the same defensive-analysis lane beside internal samples and SDK dumps. (source: wiki/sources/descriptions/ch4ncellor__CSGO-P2C-Dumper.md) - MapleStory private-server emulators such as [[maple-lemon]] (CMS-027; Java/JavaScript; modding/debugging; Private Server-CMS-027), [[maplestoryex]] (CMS-079; custom quests/items/maps; combat/inventory/party/scripted events), CMS-079 server emulators such as [[maplestory]] (ellermister; login/channel/world servers; character/map/monster/skill/party/guild/item transactions; network protocol emulation; Private Server-CMS-079) (source: wiki/sources/descriptions/ellermister__MapleStory.md), study-oriented v079 stacks such as [[ms079]] (Java server + MySQL + WZ/script bundle; Maven/IDEA), v83 stacks such as [[maple-ezorsia]] (Java; login/character/map/monster/quest + custom resolution client edits; v83 framework QoL), v83 GMS C++ stacks such as [[maplestory-v83-maplestory-cpp]] (gmh5225; editor tooling / modding / SDK generation; Private Server-GMS-083), v83 GMS C# stacks such as [[destiny]] (Fraysa; center/login/game multi-server architecture; Lua NPC/portal scripting; SQL-backed account/world state; Visual Studio solution; Private Server-GMS-083 C#) (source: wiki/sources/descriptions/Fraysa__Destiny.md), and v143 CMS stacks such as [[maplestory143]] (Java/Kotlin; LoginCrypto / Netty·MINA / Nashorn quests / server-side CheatTracker offense categorization), GMS-095 C# emulators such as [[rebirth]] (gmh5225; login/character progression/map instances/monster AI/skills/quests/party/guild; client-server protocol; Private Server-GMS-095), TMS-113 server emulators such as [[maplestory-v113-server-eimulator]] (gmh5225; v113 protocol / NPC scripting / mob AI / skills / economy; Private Server-TMS-113) (source: wiki/sources/descriptions/gmh5225__MapleStory-v113-Server-Eimulator.md), JMS-186 server emulators such as [[jmsv186]] (gmh5225; character management / quest systems / combat mechanics / world simulation; Private Server-JMS-186) (source: wiki/sources/descriptions/gmh5225__JMSv186.md), KMS-316 server emulators such as [[azurev316]] (gmh5225; login authentication / character data persistence / map instances / monster spawning / skill processing / quest progression / party/guild systems; Private Server-KMS-316) (source: wiki/sources/descriptions/gmh5225__AzureV316.md), Java KMS-316 stacks such as [[electronms]] (Bratah123; SQL schemas; JavaScript event/NPC scripts for bosses/party quests/progression; packet handling + server properties; Private Server-KMS-316) (source: wiki/sources/descriptions/Bratah123__ElectronMS.md), plus TMS-196 C++ research stacks such as [[mnwvs196]] (gmh5225; boost::asio / Poco·MySQL / high-speed WZ; WvsGame·WvsLogin·WvsCenter; foundational modules—not fully playable), HeavenMS-based server emulators such as [[maplestory-server]] (gmh5225; player authentication / character progression / quest / party / world simulation; HeavenMS Server) (source: wiki/sources/descriptions/gmh5225__MapleStory-Server.md), and Rust server emulators such as [[rustms]] (gmh5225; login/character/channel servers; player/NPC/quest/combat; memory-safe server-side game logic; Private Server-Rust), plus Android-hosted GMS-083 stacks such as [[mapleserver-android]] (gmh5225; server-side game logic / character management / world simulation on Android; Private Server-GMS-083 / mobile) (source: wiki/sources/descriptions/gmh5225__MapleServerAndroid.md), sit in the Private Server lane for authoritative server / custom-content study. (source: wiki/sources/descriptions/icelemon1314__mapleLemon.md) (source: wiki/sources/descriptions/unsafeblackcat__MapleStoryEx.md) (source: wiki/sources/descriptions/mrzhqiang__ms079.md) (source: wiki/sources/descriptions/izarooni__MapleEzorsia.md) (source: wiki/sources/descriptions/mimilewis__MapleStory143.md) (source: wiki/sources/descriptions/gmh5225__mnwvs196.md) (source: wiki/sources/descriptions/gmh5225__maplestory-v83MaplestoryCPP.md) (source: wiki/sources/descriptions/gmh5225__RustMS.md) (source: wiki/sources/descriptions/gmh5225__Rebirth.md) C/C++ private-server client build frameworks such as [[maplestory-build-framework]] (individualized client distribution + rudimentary anti-cheat; related RudiAC stack) sit in the adjacent cheat / game:maplestory client-hardening lane. (source: wiki/sources/descriptions/johnsonjason__MapleStoryBuildFramework.md) MapleStory remake narrative frameworks such as [[storytime]] (branching dialogue / quest progression / interactive storytelling) sit in the adjacent game:maplestory remake lane. (source: wiki/sources/descriptions/kvnxiao__storytime.md) MapleStory-inspired online multiplayer games such as [[maple-fighters]] (codingben; real-time co-op monster combat; Game Develop / source) sit in that same remake lane. (source: wiki/sources/descriptions/codingben__maple-fighters.md) Client-side MapleStory Worlds YOLO automation such as [[maplestory-worlds-automation]] (Artale; Python) and YOLOv8 training such as [[maplestory-yolov8-training]] (Apple MPS) sit in the adjacent cheat / game:maplestory CV lane. (source: wiki/sources/descriptions/tingwei1111__maplestory-worlds-automation.md) (source: wiki/sources/descriptions/tingwei1111__MapleStory-YOLOv8-Training.md) MapleStory Worlds Artale experience-gain and HP/MP cost lab tooling such as [[maplestory-artale-explab]] (gmh5225; optimal training spots, exp rates, leveling paths by class/level/content) sits in the adjacent game-mechanics / progression analysis lane. (source: wiki/sources/descriptions/gmh5225__maplestory-artale-explab.md) MapleStory Worlds WZ/`.mod` asset packers such as [[maplestory-packer-modpacker]] (gmh5225; compression/encryption/directory layout for client mod distribution) sit in the adjacent client asset-pipeline lane. (source: wiki/sources/descriptions/gmh5225__maplestory-packer-ModPacker.md) MapleStory WZ extractors/viewers such as [[wzcomparerr2]] (gmh5225; C#/Lua; rendering/graphics/networking; client archive browse/export) sit in the adjacent cheat / game:maplestory asset-RE lane. (source: wiki/sources/descriptions/gmh5225__WzComparerR2.md) WinAPI MapleStory client sources such as [[winapi-maplestory]] (gmh5225; C/C++; rendering / animation / asset pipelines; Game Develop / source) sit in the adjacent game:maplestory client-architecture lane beside those asset tools. (source: wiki/sources/descriptions/gmh5225__WinAPI_MapleStory.md) From-scratch HeavenClient implementations such as [[maplestory-heavenclient]] (gmh5225; game protocol / rendering / UI; open-source private-server connectivity; cheat / game:maplestory [Heaven Client]) sit in that same client-architecture lane. (source: wiki/sources/descriptions/gmh5225__MapleStory-HeavenClient.md) Modified HeavenMS client builds such as [[maplestory-client]] (gmh5225; custom/modified client; rendering / network protocol / UI; private-server connectivity; cheat / game:maplestory [HeavenMS Client]) sit in that same client-architecture lane. (source: wiki/sources/descriptions/gmh5225__MapleStory-Client.md) Offline GM/admin clients such as [[maplestory-gm-client]] (gmh5225; map editing / NPC spawn / item creation / GM commands; private-server administration; cheat / game:maplestory [Offline MapleStory Client Emulator]) sit in that same client-administration lane beside HeavenClient stacks. (source: wiki/sources/descriptions/gmh5225__MapleStory-GM-Client.md) C# GM client emulators such as [[maplenecrocer]] (gmh5225; 64-bit rewrite of older Delphi GM client; _Canvas WZ parsing / skeleton animation / particle systems / WZ region auto-detection; cheat / game:maplestory [MapleStory Client Emulator]) extend that lane with modern WZ-library and animation tooling. (source: wiki/sources/descriptions/gmh5225__MapleNecrocer.md) Godot .NET MapleStory-style client recreations such as [[maplestory-copy]] (ZeromaXHe; C#; scene/sprite/audio assets; learning-oriented 2D MMORPG client architecture; cheat / Godot MapleStory) sit in the client-architecture lane beside Unity reimplementations such as [[maple-unity]]. (source: wiki/sources/descriptions/ZeromaXHe__MapleStoryCopy.md) C++17 GMS v83 clients such as [[libremaple-client]] (gmh5225; JourneyClient fork; modern C++ from-scratch implementation; Roboto fonts; classic MapleStory protocol and mechanics; cheat / game:maplestory [LibreMaple Client]) sit in that same v83 client-architecture lane. (source: wiki/sources/descriptions/gmh5225__LibreMaple-Client.md) Custom MapleStory-architecture game engines such as [[gameengine-mapleengine]] (gmh5225; rendering / networking / game logic for 2D side-scrolling MMORPG; cheat / game:maplestory [Game Engine]) sit in that same client-architecture lane. (source: wiki/sources/descriptions/gmh5225__GameEngine-MapleEngine.md) Live TWMS client hacking-data corpora such as [[twms-hacking-data]] (gmh5225; memory offsets, packet structures, encryption keys, GameGuard bypass notes; cheat / game:maplestory [TMS CT]) sit in the adjacent live-client packet/memory RE lane beside those private-server stacks. (source: wiki/sources/descriptions/gmh5225__TWMS-Hacking-Data.md) CMS v95 client address/offset tables such as [[maplestory-cms95-client-address]] (gmh5225; function pointers, structure offsets, hook points for modding/private-server dev; cheat / game:maplestory [CMS-095 Client Analysis]) sit in the adjacent official-client memory-layout RE lane beside those live TWMS corpora. (source: wiki/sources/descriptions/gmh5225__MapleStory-CMS95-Client-Address.md) Legend of Mir 2 open-source client/server stacks such as [[mir2]] (Suprcode; C# client/server/launcher/admin tools + data utilities; private-server developers / preservation communities; Game Engine / source; README `[MIR2]`) sit in the adjacent classic MMORPG private-server lane beside [[mir3-zircon]]. (source: wiki/sources/descriptions/Suprcode__mir2.md) - TypeScript Genshin Impact scripts such as [[genshin-impact-script]] sit in the cheat / game:genshin impact automation lane. (source: wiki/sources/descriptions/phonowell__genshin-impact-script.md) Rust/Python Genshin Impact **Decode CFG** and shader/rendering RE tooling such as [[misc]] (`reversing/genshin`) sit in the adjacent cheat / game:genshin impact reversing lane. (source: wiki/sources/descriptions/khang06__misc.md) Jump-target CFG decode/simplify scripts such as [[genshinjumpfixer2]] (khang06; auto jump-target calc + code simplification) sit in the same reversing lane. (source: wiki/sources/descriptions/khang06__genshinjumpfixer2.md) Research bypass samples such as [[mhynot2]] (khang06; experimental circumvention of `mhyprot2` kernel-driver enforcement) sit in the same title-specific lane. (source: wiki/sources/descriptions/khang06__mhynot2.md) Anti-debug bypass samples such as [[genshin-debugger-bypass]] (gmh5225; Detours API hooks + `mhyprot2` driver unload; debugger attach to game process; cheat / game:genshin impact [Anti-Debug Bypass]) sit in the adjacent title-specific anti-debug lane. (source: wiki/sources/descriptions/gmh5225__GenshinDebuggerBypass.md) EasyPeasy / `mhyprot2` AC bypass samples such as [[genshin-easy-peasy-bypass]] (gmh5225; circumvents `mhyprot2.sys` integrity checks and detection; modified client execution; cheat / game:genshin impact [Anti-Debug Bypass]) sit in the adjacent title-specific AC-bypass lane. (source: wiki/sources/descriptions/gmh5225__Genshin-EasyPeasy-Bypass.md) C++ Genshin Impact client UI samples such as [[genshin-remove-banner]] (gmh5225; in-game banner removal; cheat / game:genshin impact) sit in the adjacent client-modification lane. (source: wiki/sources/descriptions/gmh5225__genshin-remove-banner.md) C++ cheat base frameworks such as [[genshin-impact-base]] (gmh5225; memory access patterns, SDK structures, hook templates for miHoYo Unity/IL2CPP; cheat / game:genshin impact) sit upstream of title-specific implementations in the same HoYoverse lane. (source: wiki/sources/descriptions/gmh5225__GenshinImpact-Base.md) Extracted live-game configuration/content table mirrors such as [[genshin-genshin-data]] (gmh5225; GenshinData character/weapon tables; `[Game Data]`; private-server and game-data research—not a full client) sit in the adjacent offline dataset lane beside IL2CPP dumpers. (source: wiki/sources/descriptions/gmh5225__Genshin-GenshinData.md) In-process Unity IL2CPP/memory gameplay-mod samples such as [[genshin-cheat]] (gmh5225; god mode, infinite stamina, teleport, speed; cheat / game:genshin impact) sit in the adjacent title cheat lane against miHoYo client AC. (source: wiki/sources/descriptions/gmh5225__genshin-cheat.md) Menu-driven gameplay cheat samples such as [[genshin-cheetos]] (gmh5225; codename Cheetos; speed/teleport/infinite stamina via client memory manipulation; cheat / game:genshin impact [Menu]) sit beside [[genshin-cheat]] in the same title lane. (source: wiki/sources/descriptions/gmh5225__Genshin-Cheetos.md) Akebi-framework cheat clients with **Grasscutter** private-server support such as [[genshin-akebi-gc]] (gmh5225; teleport/god mode/speed/auto-play via Unity client manipulation + custom server communication; cheat / game:genshin impact [Cheat]) extend that lane with offline private-server stacks. (source: wiki/sources/descriptions/gmh5225__Genshin-Akebi-GC.md) Upstream **Akebi GC** modification frameworks such as [[taiga74164-akebi-gc]] (360NENZ/Taiga74164; large C++ injector + in-game menu; protection bypass, player/world modifiers, teleport, ESP visuals, debug utilities; multilingual docs; cheat / game:genshin impact [Cheat]) anchor the original Akebi stack beside gmh5225 forks. (source: wiki/sources/descriptions/360NENZ__Taiga74164-Akebi-GC.md) Version-pinned Akebi-framework Genshin Impact cheat references such as [[akebi-cheat-3.3]] (gmh5225; cheat / game:genshin impact [Cheat]; **3.3** branch) document the upstream Akebi cheat stack beside [[genshin-akebi-gc]] and [[akebi-packet-sniffer]]. (source: wiki/sources/descriptions/gmh5225__Akebi-Cheat-3.3.md) EasyPeasy-framework cheat clients on **Grasscutter** such as [[easypeasy-gc]] (gmh5225; client-side modifications + custom server interaction for gameplay alterations; cheat / game:genshin impact [Cheat]) sit beside [[genshin-akebi-gc]] in that private-server client lane. (source: wiki/sources/descriptions/gmh5225__EasyPeasy-GC.md) Upstream open-source **Grasscutter** server emulators such as [[grasscutter]] (Grasscutters; Java; authoritative server-side logic, progression, world simulation, client–server protocol; quests/gacha/dungeons/multiplayer; MMORPG server-architecture study; Private Server) anchor that offline stack. (source: wiki/sources/descriptions/Grasscutters__Grasscutter.md) Achievement-focused Unity/IL2CPP modding samples such as [[yae-achievement]] (gmh5225; C#/C++; yae achievement; cheat / game:genshin impact) sit in the adjacent title-modding lane. (source: wiki/sources/descriptions/gmh5225__YaeAchievement.md) Title-specific Honkai: Star Rail samples such as [[star-rail]] (C/C++; DirectX / hooking; cheat / game:honkai star rail; gmh5225) sit in the adjacent HoYoverse title lane. (source: wiki/sources/descriptions/gmh5225__star_rail.md) Simple Unity/hooking cheat scaffolds such as [[starrail-s-gc]] (C/C++; cheat / game:honkai star rail; gmh5225) complement that lane with in-process Unity client hooks. (source: wiki/sources/descriptions/gmh5225__StarRail-S-GC.md) Python screen-recognition daily copilots such as [[starrailcopilot]] (Script; daily tasks / farming / stamina / assignments; cheat / game:honkai star rail; gmh5225) extend that lane with out-of-process visual automation beside in-process hooks. (source: wiki/sources/descriptions/gmh5225__StarRailCopilot.md) Simulated Universe farming bots such as [[auto-simulated-universe]] (Script; screen recognition + automated input; dungeon navigation, blessing selection, combat rotation, reward collection; cheat / game:honkai star rail; gmh5225) add mode-specific roguelike automation in the same title lane. (source: wiki/sources/descriptions/gmh5225__Auto_Simulated_Universe.md) Simple hooking/overlay cheat scaffolds such as [[pom-pom]] (C/C++; cheat / game:honkai star rail; gmh5225) add another in-process offensive sample in the same title lane. (source: wiki/sources/descriptions/gmh5225__Pom-Pom.md) Custom **Honkai Impact 3rd** launcher samples such as [[better-hi3-launcher]] (gmh5225; download management, version switching, server selection, game file verification, extra configuration; cheat / game:honkai impact 3rd [Launcher]) sit in the adjacent HoYoverse client-management lane beside ACE bypass tooling such as [[hi3-ace-b]]. (source: wiki/sources/descriptions/gmh5225__BetterHI3Launcher.md) - PUBG Mobile bypass + ImGui mod-menu samples such as [[bypass-pubg-mobile-imgui]] (C/C++; hooking / memory analysis; cheat / game:pubgm) sit in the mobile battle-royale offensive lane. (source: wiki/sources/descriptions/mut1234__BYPASS-PUBG-MOBILE-IMGUI.md) Native Android NDK PUBG research toolkits such as [[china-pubg]] (Super-Cssdiv; inline hooks, ptrace injectors, memory tooling, ImGui rendering, offset/map/patch helpers; mobile AC / cheat-architecture / detection-surface study; cheat / game:pubgm) extend that lane. (source: wiki/sources/descriptions/Super-Cssdiv__ChinaPubg.md) Version-pinned PUBG Mobile cheat source packages such as [[pubgm-shitty-source]] (Mood-Coding; C++; aimbot, entity processing, on-screen rendering; driver artifacts + privileged-memory helper scripts; external tooling workflow; cheat / game:pubgm) extend that lane for mobile shooter cheat-architecture RE. (source: wiki/sources/descriptions/Mood-Coding__pubgm_shitty_source.md) Pak archive extractors such as [[pubg-mobile-pak-extract]] (pre–1.1.0 builds; post-update encryption unsupported; asset RE) extend that lane for offline package study. (source: wiki/sources/descriptions/halloweeks__pubg-mobile-pak-extract.md) Game **CAK** compressed-archive automation such as [[auto-open-cak]] (gmh5225; batch open/extract CAK archives from game or software distributions; decompression + organized output; modding/asset RE; cheat / Bypass tool) sits in the generic client asset-pipeline lane beside pak extractors and WZ packers. (source: wiki/sources/descriptions/gmh5225__AutoOpenCAK.md) Versioned UE4 SDK + offset dumps such as [[pubgm-sdk-and-offsets]] (1.5 / 1.9; ARM32 reflection hierarchy; `[Offset]`) supply class layouts for memory RE and cheat scaffolding. (source: wiki/sources/descriptions/gmh5225__pubgm_sdk_and_offsets.md) Practical Android memory RE examples such as [[pubg-mobile-memory-hacking-examples]] (process memory access; entity coords / weapons / game state; scan + modify) demonstrate live memory workflows beside static SDK dumps. (source: wiki/sources/descriptions/gmh5225__pubg_mobile_memory_hacking_examples.md) Gameloop emulator PC samples such as [[pubg-mobile-memory-hacking]] (atulkunal999; C++; kernel driver + DirectX ESP/aimbot; UE SDK headers; DSEFix load; window detection via process enumeration; cheat / game:pubgm) bridge mobile PUBGM layouts to Windows emulator hosts in that lane. (source: wiki/sources/descriptions/atulkunal999__pubg_mobile_memory_hacking.md) Client patcher samples such as [[pubgm-pubgpatcher]] (gmh5225; C/C++/Java; networking, asset pipelines, modding; cheat / game:pubgm) extend that lane for APK/client modification beside pak extractors and SDK dumps. (source: wiki/sources/descriptions/gmh5225__PUBGM-PUBGPatcher.md) C/C++ OpenGL hooking/modding samples such as [[pubg]] (gmh5225; cheat / game:pubgm; PUBG-centered offensive RE) extend that mobile lane beside SDK dumps and memory walkthroughs. (source: wiki/sources/descriptions/gmh5225__pubg.md) - Desktop PUBG external cheat samples such as [[pubg-external-cheat]] (gmh5225; C/C++; overlays + memory analysis; cheat / game:pubg) sit in the PC battle-royale offensive lane beside internal references such as [[pubg-internal]] (gmh5225 D3D11 Present-hook + MinHook + FW1FontWrapper ESP text; iCollin learning-oriented RE artifact; ajkhoury archived UM+KM stack with protected-process-mapping driver, SDK generator, basic internal ESP), full-feature internals such as [[pubg-dx]] (gmh5225; D3D11 ImGui overlay ESP/aimbot; kernel-driver reads; Xenuine decrypt; `SpoofCall.asm` return-address spoofing; VMProtect SDK; cheat / game:pubg), CV/trigger pipelines such as [[yolov5-pubg]], [[yolo-v8s]] (Hellonihaohh; pretrained YOLOv8s weights-only distribution—license + compressed model artifact; no README or train/infer scripts; cheat / PUBG yolo dataset), [[yolo-v8m]] (Hellonihaohh; pretrained YOLOv8m weights-only distribution—license + split compressed model artifact; no training/inference codebase; detection-based game automation research; cheat / PUBG yolo dataset) (source: wiki/sources/descriptions/Hellonihaohh__yolo-v8m.md), and [[pubg-ai-yolov4]] (dqforgive-sudo; Darknet YOLOv4/YOLOv7; screenshot-trained player/object detection; cheat / triggerbot & aimbot) (source: wiki/sources/descriptions/Hellonihaohh__yolo-v8s.md), and reverse-engineering write-ups such as [[pubg-p2c-re]] (experienceds; commercial P2C loader analysis—VMProtect, WebView2 auth, encrypted HTTPS payload delivery, DWM injection vs `TslGame.exe`, Direct2D ESP, network protocol, detection templates, anti-cheat comparison matrix; BattlEye + Zakynthos; cheat / game:pubg [RE]). (source: wiki/sources/descriptions/gmh5225__pubg-external-cheat.md) (source: wiki/sources/descriptions/gmh5225__PUBG_Internal.md) (source: wiki/sources/descriptions/iCollin__pubg-internal.md) (source: wiki/sources/descriptions/ajkhoury__pubg_internal.md) (source: wiki/sources/descriptions/gmh5225__PUBG-DX.md) (source: wiki/sources/descriptions/experienceds__pubg-p2c-re.md) External UE SDK cheat demos such as [[pubg-demo]] (a0yark; C++; dumped CppSDK + bone helpers; ESP/aimbot framework; DLL-inject memory reads with separate ImGui D3D11 overlay pipeline; cheat / game:pubg [External]) illustrate Unreal SDK-based external cheat architecture beside simpler overlay samples. (source: wiki/sources/descriptions/a0yark__Pubg-demo.md) Rust kernel-assisted PUBG externals such as [[valthrun-pubg]] (Valthrun; Rust; Zenith driver kernel comm; ESP/radar/health/distance; CR3 protected-process bypass + keyboard/mouse input injection; cheat / game:pubg [External]) illustrate modern Rust external stacks in the same BattlEye-protected desktop lane. (source: wiki/sources/descriptions/Valthrun__Valthrun_PUBG.md) C++ educational PUBG external assistance references such as [[pubg-public]] (K-cazb; offset-driven entity parsing, bone/camera math, ESP + aim automation, decryption helpers, driver-assisted memory access, DirectX overlay; educational game-hacking + anti-cheat analysis; cheat / game:pubg [External]) extend that desktop external lane. (source: wiki/sources/descriptions/K-cazb__pubg-public.md) PUBG Lite external ESP samples such as [[pubg-lite-esp]] (gmh5225; RPM + hardcoded UE4 offsets; Direct2D overlay via D2DOverlay; boxes/names/health/distance/bone ESP; cheat / game:pubg) illustrate the external layered-window + UE4 entity-enumeration lane on the Lite client. (source: wiki/sources/descriptions/gmh5225__Pubg-Lite-ESP.md) Versioned desktop UE4 offset histories such as [[pubg-dump-offset]] (gmh5225; v19.1–24.2; `GObjects`/`GWorld`/Xenuine keys, player/weapon/bone fields; `[Offset]`) supply patch-by-patch memory-layout records for Xenuine and AC-hardening study beside those internals. (source: wiki/sources/descriptions/gmh5225__pubg_dump_offset.md) Live-process UE4 SDK dumpers such as [[pubg-dumper]] (gmh5225; class/property/offset/function extraction from running PUBG; `GObjects`/`GNames`/entity hierarchies; `[Dump]`) generate fresh SDK headers for the same desktop lane. (source: wiki/sources/descriptions/gmh5225__pubg-dumper.md) Hooking + memory-analysis samples such as [[pubgstar]] (gmh5225; C/C++; pubgstar-focused offensive RE; cheat / game:pubg) extend that desktop lane beside internals and dumpers. (source: wiki/sources/descriptions/gmh5225__PUBGSTAR.md) - Unreal decrypt samples for Veiled Experts such as [[vx-it]] (C/C++; `[Decrypt]`) sit in the cheat / game:veiled experts lane. (source: wiki/sources/descriptions/percpopper__VX-It.md) Pre-collected UE SDK header dumps such as [[project-d-win64-shipping]] (LagradOst; agents/weapons/vehicles/UI/engine subsystems; class hierarchies, offsets, vtables; SDK generation research), [[veiled-experts-sdk]] (EBalloon; generated C++ headers + names/objects dumps + offsets; agents/weapons/vehicles/UI/game modes/engine subsystems; SDK generation study), and [[veiled-expertssdk]] (Da3kL3o; UE-style headers + object/name tables; class/struct layouts and runtime metadata for static analysis) extend that lane beside live decrypt tooling. (source: wiki/sources/descriptions/LagradOst__ProjectD-Win64-Shipping.md) (source: wiki/sources/descriptions/EBalloon__VEILED-EXPERTS-SDK.md) (source: wiki/sources/descriptions/Da3kL3o__VeiledExpertsSDK.md) - Classic MMORPG server emulators such as [[rathena]] (Ragnarok Online; login/char/map; NPC scripts / WoE / MySQL multi-zone) sit in the same Private Server lane for authoritative MMO server-pattern study. (source: wiki/sources/descriptions/rathena__rathena.md) Chinese-localized rAthena forks such as [[rathenacn]] (gmh5225; C/C++; asset pipelines / plugin development / modding; cheat / game:ro) extend that Ragnarok Online private-server lane for localized server ops and modding research. (source: wiki/sources/descriptions/gmh5225__rAthenaCN.md) FFXIV server emulators such as [[sapphire]] (gmh5225; in development; patch **3.3** branch; protocol/server RE for game security researchers) sit in that same Private Server / game:ffxiv lane. (source: wiki/sources/descriptions/gmh5225__sapphire.md) Python PTCGO private-server emulators such as [[spirit-ptcgo]] (Bratah123; card rules/effects, account/inventory/economy/shop, versus/tournaments, protobuf client protocol, card-bundle RE helpers; Private Server / Pokemon TCG Online) sit in that same Private Server lane for card-game protocol and authoritative server study. (source: wiki/sources/descriptions/Bratah123__Spirit-PTCGO.md) Python Konami BEMANI hobby eAmusement server stacks such as [[bemaniutils]] (DragonMinded; game backends for Beatmania IIDX, DDR, Pop'n Music, Sound Voltex; network service emulation + binary asset tooling; RE toolkit / legacy arcade preservation) sit in that same Private Server lane for arcade rhythm-game protocol study. (source: wiki/sources/descriptions/DragonMinded__bemaniutils.md) Canonical open-source WoW MMORPG framework such as [[trinitycore]] (TrinityCore; C++; modular auth/world servers; async DB pooling + prepared statements; scripting APIs; multi-expansion combat / quests / achievements / battlegrounds; protocol emulation; cheat / game:wow [Server for WOW]) sits upstream in that Private Server / game:wow lane. (source: wiki/sources/descriptions/TrinityCore__TrinityCore.md) WoW WotLK (**3.3.5a**) server emulators such as [[azerothcore-wotlk]] (azerothcore; C++; world simulation / player management / NPC AI / Eluna Lua scripting / database-driven content / WoW 3.3.5a network protocol; cheat / game:wow) sit in that same Private Server / game:wow lane. (source: wiki/sources/descriptions/azerothcore__azerothcore-wotlk.md) WoW Legion server emulators such as [[legioncore-7-3-5]] (dufernst; TrinityCore fork; **7.3.5** client; player/NPC/spell processing + Legion expansion content; cheat / game:wow) sit in that same Private Server / game:wow lane. (source: wiki/sources/descriptions/dufernst__LegionCore-7.3.5.md) WoW MoP server emulators such as [[mopcore547]] (SkyFire; C++/CMake; **5.4.7** Mists of Pandaria; world simulation / player management / NPC scripting / network protocol; cheat / game:wow) sit in that same Private Server / game:wow lane. (source: wiki/sources/descriptions/SkyFire__MopCore547.md) Customized MoP **5.4.7** TrinityCore-style server trees such as [[5-4-7-wow-source]] (RageProject; C/C++; auth/world servers; gameplay fixes / class+t talent support / level-90 stability; database + tooling; cheat / game:wow) sit in that same Private Server / game:wow lane. (source: wiki/sources/descriptions/RageProject__5.4.7-Wow-source.md) Experimental Rust WoW **3.3.5** server stacks such as [[azerust]] (arlyon; auth-server focus; TrinityCore-style database schemas; async Rust + SQL-centric workflows + containerized dev; cheat / game:wow) sit in that same Private Server / game:wow lane. (source: wiki/sources/descriptions/arlyon__azerust.md) Curated Rust WoW private-server resource indexes such as [[awesome-wow-rust]] (arlyon; server implementations / protocol + file-format libraries / renderers + asset viewers; auth / networking / data formats; cheat / game:wow) sit in that same Private Server / game:wow lane. (source: wiki/sources/descriptions/arlyon__awesome-wow-rust.md) WoW custom-server client launchers such as [[wow-launcher]] (Arctium; C#/.NET; TLS-aware routing to private servers; multi-branch client versions + configurable CDN endpoints; public build omits dev mode/mod loading; private-server ops + client compatibility testing; cheat / game:wow [wow launcher]) sit in that same Private Server / game:wow lane. (source: wiki/sources/descriptions/Arctium__WoW-Launcher.md) - Knight Online Gamesoft server-side anti-cheat such as [[gamesoftacs]] (speed/teleport/damage/inventory manipulation + client integrity; suspicious-activity review flags) sits in that Private Server lane beside MapleStory [[maplestory143]] CheatTracker stacks. (source: wiki/sources/descriptions/luisfelipe18__GamesoftACS.md) 7 Days to Die dedicated-server mods such as [[7dtd-anticheatmod]] (C# .NET 4.8; cheat command blocking + fly/teleport/speed/godmode thresholds; admin exemption; warning→kick→ban; Anti Cheat / Server) extend that lane for non-EAC community hosts. (source: wiki/sources/descriptions/majimaakane__7dtd-AntiCheatMod.md) BONELAB LabFusion server-side mods such as [[fusion-anti-cheat]] (FusionGuard; C# MelonLoader .NET 6; Harmony patches on network spawns/teleports/avatar changes; crash-barcode blocklist + rate limits + movement/score heuristics; SteamID lists; Discord webhooks; in-game admin panel; Anti Cheat / game:bonelab) extend that server-authoritative lane for VR multiplayer hosts. (source: wiki/sources/descriptions/irembo337__Fusion-AntiCheat.md) Full 7 Days to Die cheat ecosystems such as [[7dtd]] (IntelSDM; Unity/Mono loader; C# in-game modules + C++ auth/transport backend; ESP/aimbot/weapon mods/player spoofing; anti-cheat bypass; end-to-end delivery research; cheat / game:7dtd) illustrate the offensive counterpart to that server-mod defensive lane. (source: wiki/sources/descriptions/IntelSDM__7DTD.md) ModSharp CS2 server plugins such as [[cs2-calladmin]] (C#; in-game player reports for suspected cheaters/rule-breakers; admin claim/resolve workflow; LiteDB/MySQL/PostgreSQL + optional Discord webhooks; anti-abuse cooldowns; Server / game:cs2) extend community-host moderation beside automated AC such as [[cs2ac]]. (source: wiki/sources/descriptions/cs2-server-plugins__cs2-calladmin.md) CounterStrikeSharp heuristic AC such as [[osanticheat]] (C#/.NET; server-visible stats only; spinbot/aimbot/triggerbot/wallhack statistical detectors + fusion suspicion tiers; log-only Watch/Review; Server / game:cs2) extends that lane for probability-based calibration. (source: wiki/sources/descriptions/Pintuzoft__OSAntiCheat.md) Metamod:Source and CounterStrikeSharp algorithmic AC such as [[sac-the-server-anticheat]] (IDELd; C#/.NET 8; 17 detection modules—aimbot, silent aim, bhop, injection, invalid input; in-game reporting; four-stage progressive warning/ban; mass-check sensitivity after multiple reports; optional demo recording + anonymized event logs; autonomous rule-based detection without external services; Server / game:cs2) extends that lane beside [[cs2ac]] and [[anticheatsystem]]. (source: wiki/sources/descriptions/IDELd__SAC-The-server-AntiCheat.md) Metamod:Source CS2 server plugins such as [[cs2fixes]] (Source2ZE; C++; gameplay fixes + zombie-escape server features; hook-driven logic, config/admin tooling, bundled assets; community CS2 server ops + Source 2 mod boilerplate; CS2 mod / game:cs2) extend that community-host server lane with configurable gameplay and admin tooling. (source: wiki/sources/descriptions/Source2ZE__CS2Fixes.md) IW4X IW4MAdmin stacks such as [[iw4madmin-sebzanticheat]] (GSC server scripts + JS plugins + Discord watcher; suspicion telemetry with separate risk/confidence scoring; staff review dashboard; no auto-ban; Anti Cheat / Server / game:iw4x) extend that human-in-the-loop dedicated-server lane for Call of Duty community clients. (source: wiki/sources/descriptions/crazythecoder__IW4MAdmin-SebzAntiCheat.md) - Curated cross-platform Minecraft anticheat catalog [[minecraft-anticheat-list]] (ManInMyVan; Kotlin/JS interactive site; validated JSON entries compiled to searchable table; GitHub/Spigot API maintenance enrichment; Bukkit/Sponge/Fabric/Forge/Nukkit/PocketMine; Java + Bedrock; server-operator + AC-research comparison index; Anti Cheat / game:minecraft) indexes the Java server plugins, Fabric server mods, and Bedrock behavior-pack stacks cited below. (source: wiki/sources/descriptions/ManInMyVan__Minecraft-Anticheat-List.md) - C++ Minecraft Java server backends such as [[minecpp]] (gmh5225; **1.19**; authoritative server implementation for game security researchers studying offensive techniques in cheat / game:minecraft) sit in that Private Server lane beside Java Spigot/Paper AC plugins such as [[dakotaac]] and [[minecraft-anticheatai]] and Bedrock MiTM proxies such as [[oomph]]. (source: wiki/sources/descriptions/gmh5225__minecpp.md) (source: wiki/sources/descriptions/norbertbaricz__DakotaAC.md) - Android Minecraft Bedrock Edition MITM cheat clients such as [[oxclient]] (adanainv3-creator; Kotlin/Gradle; local packet relay between game and remote servers; CloudburstMC Bedrock protocol codecs + NBT; Microsoft device-code login; modular combat/movement cheats—KillAura, CrystalAura, fly, speed—and ESP/FOV overlays; packet listeners + event bus; Bedrock multiplayer cheating + protocol RE; cheat / game:minecraft) sit in the Bedrock client-side protocol-relay lane opposite defensive MiTM proxies such as [[oomph]]. (source: wiki/sources/descriptions/adanainv3-creator__OxClient.md) - TypeScript behavior-pack anti-cheat addons for Minecraft Bedrock Realms and BDS such as [[paradox-anticheat]] (Visual1mpact; Script API; modular fly/killaura/reach/autoclicker/scaffold/noclip/xray detection + ban/kick/mute/freeze/whitelist/lockdown staff tools; no external client install; Anti Cheat / game:minecraft) sit in the native Bedrock server-operator lane beside MiTM proxies such as [[oomph]] and opposite protocol-relay clients such as [[oxclient]]. (source: wiki/sources/descriptions/Visual1mpact__Paradox_AntiCheat.md) - JavaScript behavior-pack anti-cheat addons for Minecraft Bedrock Realms, worlds, and servers such as [[scythe-anticheat]] (MrDiamond64; Bedrock Scripting API + command/function files; modular combat/movement/packet-abuse/chat-spam/scaffold detection; moderation commands + player stats tools; server-side cheat detection for Bedrock administrators; Anti Cheat / game:minecraft) sit in that native Bedrock server-operator lane beside behavior-pack addons such as [[paradox-anticheat]] and MiTM proxies such as [[oomph]]. (source: wiki/sources/descriptions/MrDiamond64__Scythe-AntiCheat.md) - JavaScript Bedrock ScriptAPI behavior-pack anti-cheat such as [[blarion-anticheat]] (StarBloomMinecraft; 40+ real-time combat/movement/inventory/packet modules—fly, killaura, speed, reach, noclip, autoclicker, xray; configurable thresholds/punishments; admin inventory scan + `/flag` API for WebSocket/proxy integration; vanilla/BDS/LiteLoader worlds without server plugins; Anti Cheat / game:minecraft) sit in that behavior-pack lane beside [[paradox-anticheat]] and [[scythe-anticheat]]. (source: wiki/sources/descriptions/StarBloomMinecraft__BlarionAntiCheat.md) - Java Gradle Nukkit prediction-based anti-cheat plugins for Minecraft Bedrock Edition such as [[ghost-anticheat]] (GhostNgEnd; ECS simulates BDS movement, collision, and physics; latency-compensated packet monitoring; phase/no-slow/anti-knockback, reach/hitbox abuse, invalid block breaking, elytra flight anomalies, bad packets, multi-action violations; server-side cheat detection for Nukkit operators; Anti Cheat / game:minecraft) sit in the Nukkit Bedrock server-plugin lane beside behavior-pack addons such as [[paradox-anticheat]] and MiTM proxies such as [[oomph]]. (source: wiki/sources/descriptions/GhostNgEnd__Ghost-AntiCheat.md) - Java Maven GeyserMC extension anti-cheat for Minecraft Bedrock such as [[astrox-anticheat]] (Eangly99; intercepts raw Bedrock UDP/RakNet packets at the Netty channel layer before Java translation; sub-ms off-tick detection; movement/combat/inventory/packet heuristics—reach, hitbox backtracking, flight, autoclicker, device spoofing, crash-packet firewall; Bedrock-native kinematics, input-mode-aware reach, latency backtracking, leaky-bucket timer; Discord webhooks + admin commands; Anti Cheat / game:minecraft) sit in the GeyserMC pre-translation Bedrock lane beside MiTM proxies such as [[oomph]] and Nukkit prediction plugins such as [[ghost-anticheat]]. (source: wiki/sources/descriptions/Eangly99__AstroX-AntiCheat.md) - Windows injectable internal DLL cheats for Lunar Client Minecraft **1.8.9** such as [[phantom-client]] (C++20; JNI/JVMTI obfuscated class resolution; MinHook `wglSwapBuffers` + ImGui overlay; combat/movement/visual modules; human-like CPS scheduler + server-specific AC profiles; cheat / game:minecraft) sit in the client-side JVM-injection lane beside those server-side stacks. (source: wiki/sources/descriptions/inpeacedTeams__phantom-client.md) - Windows injectable internal DLL clients for Minecraft using **DirectX 11** such as [[aegledll]] (AnarchDevelopment; C++ **Aegleseeker**; MinHook API hooks + ImGui DX11 overlay + HLSL blur shaders; pattern scanning; modular combat/movement/visual HUD—reach, hitbox, auto-sprint, timer, ClickGUI, fullbright, motion blur, keystrokes, FPS/ping overlays; config + array-list HUD + optional IRC networking; cheat / game:minecraft [Internal]) sit in the native DX11 injection lane beside JVM-injection stacks such as [[phantom-client]]. (source: wiki/sources/descriptions/AnarchDevelopment__aegledll.md) - Open-source MCP-based Minecraft **1.8.9** Java hack clients such as [[yuri]] (unleg1t; Java/Gradle; bundled Java 8 launch environment + full 1.8 assets/skins cache; Watchdog/Polar/Grim bypass modules; pure-Java cheat-client architecture for legacy 1.8.x multiplayer AC study; cheat / game:minecraft) sit in the in-process MCP client lane beside native JVM-injection stacks such as [[phantom-client]]. (source: wiki/sources/descriptions/unleg1t__Yuri.md) - Client-side Forge **1.8.9** passive cheat monitors such as [[local-anticheat-1-8-9]] (Java/Gradle; observes send/receive packets without modifying traffic; eleven checks—AutoClicker, KillAura, Reach, Speed, Fly, Velocity, NoFall, Timer, FastPlace, FastBreak, Scaffold; OneConfig settings; local-chat flags for local/remote players; Anti Cheat / game:minecraft) sit in the defensive client-mod lane beside offensive JVM-injection stacks such as [[phantom-client]]. (source: wiki/sources/descriptions/freezato__LocalAnticheat-1.8.9.md) - Paper/Spigot **1.8.9** server-side anti-cheat plugins such as [[ycbr-anticheat]] (YcbrYL1; Java 8 Maven; ProtocolLib async→main packet pipeline; 19 combat/movement/protocol checks—KillAura, Reach, Scaffold, Speed, Fly, Velocity, Timer; optional Grim-style physics prediction; offline auth, temp bans, DDoS connection guard, strict-mode thresholds, admin GUI; Anti Cheat / game:minecraft) sit in the authoritative Java-server lane opposite client-side monitors such as [[local-anticheat-1-8-9]] and offensive MCP clients such as [[yuri]] and [[phantom-client]]. (source: wiki/sources/descriptions/YcbrYL1__YCBR-AntiCheat.md) - Long-standing open-source Bukkit/Spigot anti-cheat plugins such as [[nocheatplus]] (NoCheatPlus; Java Maven multi-module; movement/combat/block break-place/inventory/chat/packet-rate checks; configurable cancel/log/setback; reflection-based Minecraft internals access + client-mod MOTD for broad version coverage; Anti Cheat / game:minecraft) sit in the authoritative Java-server lane as a classic server-side AC reference beside modern plugins such as [[minecraft-anti-cheat]] and legacy **1.8.9** stacks such as [[ycbr-anticheat]]. (source: wiki/sources/descriptions/NoCheatPlus__NoCheatPlus.md) - Spigot/Paper **1.13+** server-side anti-cheat plugins such as [[minecraft-anti-cheat]] (XuanXuan-ZhengGui; UltraAntiCheat; Java 17+ Maven; thirteen movement/combat/block/packet modules; GCD rotation analysis; physics simulation with confidence scoring; optional ProtocolLib; AC bridge integration with GrimAC/[[nocheatplus]]/Vulcan/Matrix/Spartan; browser web dashboard; Anti Cheat / game:minecraft) sit in that authoritative Java-server lane beside legacy **1.8.9** plugins such as [[ycbr-anticheat]] and enterprise stacks such as [[windfall-anticheat]]. (source: wiki/sources/descriptions/XuanXuan-ZhengGui__Minecraft-Anti-Cheat.md) - Open-source Paper/Spigot movement-simulation anti-cheat plugins such as [[grim]] (GrimAnticheat; Java/Kotlin; modern Minecraft server versions and protocol combinations; detailed movement simulation, world replication, latency-aware validation; heavily asynchronous multithreaded check pipeline; server-side cheat detection benchmark for Java communities; Anti Cheat / game:minecraft) sit in that authoritative Java-server lane as a widely referenced physics-prediction AC beside bridge-integrated plugins such as [[minecraft-anti-cheat]] and Grim-style derivative stacks such as [[ycbr-anticheat]], opposite bypass-oriented MCP clients such as [[yuri]]. (source: wiki/sources/descriptions/GrimAnticheat__Grim.md) - Version-neutral Minecraft anti-cheat foundation projects such as [[inertia]] (InertiaOrg; Java; player-behavior modeling, movement/packet/world contracts, evidence accumulation with false-positive context, movement-prediction skeleton; testkit scenario tests without live server; platform adapters deferred; Anti Cheat / game:minecraft) sit in the research/foundation lane beside production plugins such as [[grim]] and catalog entries indexed by [[minecraft-anticheat-list]]. (source: wiki/sources/descriptions/InertiaOrg__Inertia.md) - Paper/Purpur self-contained server-side anti-cheat plugins such as [[antiguard]] (TheMille-Dev; Java; single drop-in JAR; physics-based fly/speed/reach/kill aura/auto-click/no-swing/no-fall/fast-break checks with research-backed low-FP thresholds; embedded SQLite storage or LuckPerms DB reuse; built-in web dashboard + REST API; no external services required; legacy FastAPI reporting server + reference agent; Anti Cheat / game:minecraft) sit in that authoritative Java-server lane beside modular plugins such as [[dakotaac]] and [[minecraft-anti-cheat]]. (source: wiki/sources/descriptions/TheMille-Dev__AntiGuard.md) - Paper **1.21.4+** server-side ML combat anti-cheat plugins such as [[mlanticheat]] (gravemaulr; Java 21; ensemble neural + logistic models + anomaly detection over combat rotation features; operator-labeled training sets; Shadow Mode alert review before punishments; optional PacketEvents packet-level rotation tracking; staff alerts, admin GUI, automatic retraining, floating score tags, combat dummy; per-server adaptive PvP cheat detection; Anti Cheat / game:minecraft) sit in that authoritative Java-server lane beside rule-based plugins such as [[minecraft-anti-cheat]] and ML scaffold detectors such as [[minecraft-anticheatai]]. (source: wiki/sources/descriptions/gravemaulr__MLAntiCheat.md) - Spigot/Paper/Folia **1.21.x** server-side AI-assisted anti-cheat plugins such as [[guardac]] (PalassCQ; Kotlin Gradle JavaPlugin; local gameplay monitoring with cloud API aim-check verdicts; alerts, violation tracking, punishment ladders with optional ban animations; alert-only mode; cross-server reputation; live suspect monitoring/holograms; on-demand deep scans; Geyser Bedrock + WorldGuard exemptions; public plugin client only; Anti Cheat / game:minecraft) sit in that cloud-inference Java-server lane beside on-server ML combat plugins such as [[mlanticheat]] and rule-based plugins such as [[minecraft-anti-cheat]]. (source: wiki/sources/descriptions/PalassCQ__GuardAC.md) - Paper/Folia free open-source AI-powered server-side anti-cheat plugins such as [[shard]] (KaelusAI; Kotlin Gradle; PacketEvents packet analysis; player tick data to remote inference API; SQLite/MySQL/MariaDB + Redis cross-server alerts; monitoring, profiling, violation history, punishment rules, WorldGuard/Geyser integrations; Anti Cheat / game:minecraft) sit in that cloud-inference Java-server lane beside aim-check plugins such as [[guardac]] and on-server ML combat plugins such as [[mlanticheat]]. (source: wiki/sources/descriptions/KaelusAI__Shard.md) - Paper/Folia **1.21.10+** server-side heuristic anti-cheat plugins such as [[bs-anticheat]] (BoondockSulfur; Java; full Folia support; movement/combat/world-interaction/inventory/vehicle/packet checks—speed, fly, reach, killaura, nuker, autoclicker, x-ray mining; transaction-based lag compensation; configurable violation-level punishments with optional setbacks; SQLite logging; PacketEvents, Discord webhooks, PlaceholderAPI, and LuckPerms integrations; false-positive-conscious tunable heuristics; Anti Cheat / game:minecraft) sit in the authoritative Paper/Folia heuristic lane beside physics-prediction AC such as [[grim]] and alert-focused NeoForge mods such as [[sentinel-anticheat-neoforge]]. (source: wiki/sources/descriptions/BoondockSulfur__BS-AntiCheat.md) - Paper **1.21+** custom-SMP server-side anti-cheat plugins such as [[larping-anti-cheat]] (realkyx29-design; Hyphon; Java 21; modular movement/combat/world checks—fly, speed, reach, kill aura, scaffold, fast break; server-authoritative physics snapshots; per-player violation tracking with decay; honeypot/ESP decoy entities + optional packet-layer fake bases; capability analyzer for modded-SMP custom modifiers/enchantments; low false-positive focus; no client components; Anti Cheat / game:minecraft) sit in the custom SMP Paper lane beside heuristic plugins such as [[bs-anticheat]] and physics-prediction AC such as [[grim]]. (source: wiki/sources/descriptions/realkyx29-design__LarpingAntiCheat.md) - Paper **1.21.11** survival server-side anti-cheat + anti-dupe plugins such as [[ultimate-meteor-anticheat]] (EpicLizard05013; Java; combat reach/autoclicker/aim-modulo plus movement fly/speed/nofall/jesus and world fastplace/scaffold checks; inventory transaction auditing, nested-container restrictions, and packet desync mitigation for item-duplication vectors; configurable violation escalation with whitelisting, admin commands, and optional Discord webhooks; Anti Cheat / game:minecraft) sit in the survival exploit-prevention lane beside heuristic plugins such as [[bs-anticheat]] and rule-enforcement plugins such as [[icuac]]. (source: wiki/sources/descriptions/EpicLizard05013__UltimateMeteorAntiCheat.md) - Paper **1.21** server-side freecam/wallhack mitigation plugins such as [[petal-anti-freecam]] (boggymc; Java Paper/CanvasMC; PacketEvents outgoing chunk masking; ChunkMasker strips underground terrain below configurable hide-Y for players above cutoff; tile-entity filtering; per-tick refresh budget; runtime reload; optional CanvasMC async teleport visibility listeners; lightweight packet-layer defense against client-side camera exploits without client mods; Anti Cheat / game:minecraft) sit in the packet-visibility mitigation lane beside investigation plugins such as [[antixrayviewer]] and honeypot-heavy plugins such as [[larping-anti-cheat]]. (source: wiki/sources/descriptions/boggymc__PetalAntiFreecam.md) - Vintage Story server-side x-ray/wallhack mitigation mods such as [[serverguard]] (trevorftp; C# Harmony server-networking patches; intercepts chunk/world data before clients receive it; conceals fully enclosed ore + injects ore/creature decoys in host rock; server-side entity raycast filtering for occluded creatures/optional players; ModConfig tuning for chunk caching and ray budgets; `/serverguard` admin command; world-data mitigation without client mods; Anti Cheat / game:vintage story) sit in the same packet-visibility lane beside Minecraft plugins such as [[petal-anti-freecam]] and investigation plugins such as [[antixrayviewer]]. (source: wiki/sources/descriptions/trevorftp__ServerGuard.md) - Terraria dedicated-server frameworks such as [[tshock]] (Pryaxis; C# .NET Terraria Server API plugin; **Bouncer** packet/action anti-cheat; server-side characters, permissions, item bans, regions, warps; SQLite/MySQL/PostgreSQL + REST + plugin system; protocol guards for known Terraria networking flaws; server-authoritative cheat prevention for community hosts; Anti Cheat / game:terraria) sit in the title-specific server-mod lane beside other dedicated-host anti-abuse mods such as [[7dtd-anticheatmod]] and FiveM server-side resources such as [[dead-anticheat]]. (source: wiki/sources/descriptions/Pryaxis__TShock.md) - Paper/Folia aim-focused server-side anti-cheat plugins such as [[react]] (g4vrk; Java; rotation heuristics—GCD-error scoring, acceleration-delta tracking, mode-averaged rotation quantization; optional separate ML inference service; streak-based violation buffering with decay; async PacketEvents; staff alerts without automatic bans; specialized PvP combat aim protection; Anti Cheat / game:minecraft) sit in the heuristic rotation-analysis lane beside cloud-inference plugins such as [[guardac]] and on-server ML combat plugins such as [[mlanticheat]]. (source: wiki/sources/descriptions/g4vrk__React.md) - Paper **1.21–1.21.11** context-aware server-side anti-cheat plugins such as [[uagc]] (no1qq; UltimateAntiGamingChair; Java 21 Gradle; modular movement/combat/interaction/protocol checks—reach, speed, fast break, timer; confidence/evidence model with server-context false-positive reduction; staff exemptions, permission bypass visibility, evidence history, alerts, automatic and manual punishments, persistent player freeze, integration API for trusted plugins; Anti Cheat / game:minecraft) sit in the authoritative Paper Java-server lane beside rule-based plugins such as [[minecraft-anti-cheat]] and heuristic aim plugins such as [[react]]. (source: wiki/sources/descriptions/no1qq__UAGC.md) - Paper/Folia server-side rule-enforcement plugins such as [[icuac]] (Lazyzouo; Java 21 Gradle; configurable modular checks on commands, player state, locations, inventories, and combat—blocked commands, tab completion hiding, game-mode isolation, dangerous coordinate limits, death-drop control, banned materials, item NBT/enchantment validation, stack/potion effect limits, end-crystal attack cooldowns; bilingual CN/EN; Folia-aware scheduling; GitHub SHA-256-verified updater; lightweight transparent server-side anti-abuse/integrity controls rather than full client-side AC; Anti Cheat / game:minecraft) sit in the server-policy enforcement lane beside movement/combat AC plugins such as [[uagc]] and [[nocheatplus]]. (source: wiki/sources/descriptions/Lazyzouo__ICUAC.md) - Windows Minecraft screenshare cheat-forensics scanners such as [[jaranalyzer]] (winzysss; Java + JNA; fast NTFS MFT enumeration; JAR class constant-pool blacklist matching; obfuscation/encryption disguise flags; recycle-bin sweep + live Java process path probes; nested JAR unpack to two levels; CFR/ASM-backed analysis; GUI + CLI with text/JSON/HTML evidence reports; Anti Cheat / game:minecraft screenshare) and consensual workflow stacks such as NotSkrib/[[error-pc-check]] (signed C#/.NET 8 client agent + React staff panel + Supabase; one-time keys; Prefetch/BAM/USN/registry/Minecraft signature collectors; correlation engine; severity-ranked human-review reports) sit in the staff/screenshare defensive lane beside client-side monitors such as [[local-anticheat-1-8-9]] and offensive JVM clients such as [[phantom-client]] and [[lenrete-mod]]. (source: wiki/sources/descriptions/winzysss__JarAnalyzer.md) (source: wiki/sources/descriptions/NotSkrib__error-pc-check.md) - Paper Minecraft server-side X-ray investigation plugins such as [[antixrayviewer]] (RiseShieldDev; Java 21 Gradle; ore-breaking pattern monitoring with configurable threshold alerts; ~3-minute session recording of movement, look direction, and block break/place events; first-person replay with smooth camera interpolation; admin list/view/delete/manage commands; evidence-based mining-cheat review; Anti Cheat / game:minecraft) sit in the server-side investigation lane beside screenshare forensics such as [[jaranalyzer]] and rule-based xray modules in plugins such as [[minecraft-anti-cheat]]. (source: wiki/sources/descriptions/RiseShieldDev__AntiXrayViewer.md) - Fabric mod-loader client-side utility/cheat clients for Minecraft **26.2** such as [[lenrete-mod]] (Java 25; Mojang mappings; 43 annotation-discovered modules—KillAura, ESP, Reach, Flight, packet Blinker; fail-soft Mixins + reflection JSON settings + screen-projected overlays; singleplayer/private-server experimentation; cheat / game:minecraft) sit in the Java in-process mod lane beside native JVM-injection stacks such as [[phantom-client]]. (source: wiki/sources/descriptions/lolizei__Lenrete-Mod.md) - NeoForge/Fabric multi-loader utility clients such as [[epsilon]] (NekoyaHouse; Java + Gradle Kotlin; modular combat/movement/player-automation/render modules; Mixins + custom event bus; extensible addon system + Lua scripting; Lumin/PrismRHI custom HUD/UI; packet manipulation + rotation systems + client-side bypass study; cheat / game:minecraft) sit in the modern multi-loader Java in-process mod lane beside Fabric clients such as [[lenrete-mod]]. (source: wiki/sources/descriptions/NekoyaHouse__Epsilon.md) - Fabric **1.21+** client-side fall-clutch automation mods such as [[omniclutch]] (WeiNaYongQ; Java; lightweight Fabric mod; free-fall monitoring + downward raycasts; hotbar clutch items—water buckets, boats, hay bales, slime blocks; client-side FSM with configurable Gaussian reaction delays + smooth camera rotation interpolation to mimic human input; survival/PvP fall recovery; cheat / game:minecraft) sit in the specialized movement-automation lane beside general utility clients such as [[lenrete-mod]] and protocol bots such as [[eafe]]. (source: wiki/sources/descriptions/WeiNaYongQ__OmniClutch.md) - Meteor Client Fabric addon schematic printers such as [[dino-printer]] (Gingerbeard5773; Java; Litematica auto-build; multi-point raytracing for line-of-sight servers; BlockState matching for stairs/slabs/rotatable blocks; hack rotation; configurable placement delay/range/sneak/inventory; anti-cheat-aware timing for strict/anarchy servers; cheat / game:minecraft) sit in the Meteor printer automation lane beside utility clients such as [[lenrete-mod]] and [[omniclutch]]. (source: wiki/sources/descriptions/Gingerbeard5773__dino-printer.md) - Enterprise-oriented Spigot/Paper/Folia/Purpur packet anti-cheat plugins such as [[windfall-anticheat]] (enis1enis2; Java Maven Bukkit plugin; PacketEvents 2; combat/movement/packet/inventory checks; lag compensation + movement prediction; adaptive thresholds; Geyser/Bedrock; public API; Discord/Prometheus; Anti Cheat / game:minecraft) sit in the authoritative Java-server lane beside plugins such as [[dakotaac]] and the Fabric port [[windfall-anticheatf]]. (source: wiki/sources/descriptions/enis1enis2__Windfall-AntiCheat.md) - Open-source Bukkit/Spigot packet anti-cheat plugins such as [[arrow-anticheat]] (StelGR; Java; PacketEvents; combat—aim assist, autoclicker, kill aura, reach, velocity, hitbox—movement—fly, speed, motion, ground, illegal move—and misc—bad packets, scaffold, timer, inventory; statistical analysis + movement prediction; alerts, verbose mode, logging; Java + Bedrock; AGPLv3; Anti Cheat / game:minecraft) sit in that lane beside [[dakotaac]] and [[windfall-anticheat]] for smaller server operators. (source: wiki/sources/descriptions/StelGR__ArrowAntiCheat.md) - Starfish Lua anti-cheat plugins such as [[hexze-anticheat]] (Hexze; Cheater Detector; configurable NoSlow/AutoBlock/Eagle/Scaffold/Tower/LagRange/NoBreakDelay modules; movement/equipment/animation/metadata/block-break timing; violation thresholds, alert cooldowns, optional sound alerts; staff monitoring for Minecraft-style Starfish worlds; Anti Cheat / game:minecraft) sit in the Starfish plugin-side heuristic lane beside Java-server plugins such as [[windfall-anticheat]] and Bedrock behavior-pack AC such as [[paradox-anticheat]]. (source: wiki/sources/descriptions/Hexze__anticheat.md) - Spigot/Paper/Purpur Java anti-cheat plugins such as [[cklsit-advanced-anticheat]] (cklsit; **1.8.x–1.21.x**; movement/combat checks—fly, speed, KillAura, reach, scaffold, ESP; client inspection, player reports, bounty sandbox; multi-DB cross-server ban sync via Velocity/BungeeCord; Anti Cheat / game:minecraft) sit in that lane beside [[dakotaac]], [[windfall-anticheat]], and [[minecraft-anticheatai]]. (source: wiki/sources/descriptions/cklsit__AdvancedAntiCheat.md) - Server-side Fabric **1.21.5+** packet anti-cheat mods such as [[windfall-anticheatf]] (enis1enis2; dozens of combat/movement/packet/inventory checks—KillAura, reach, flight, speed, scaffold, bad packets; vanilla-accurate physics prediction + latency simulation; adaptive thresholds; Discord/Prometheus; Geyser/Bedrock; one-to-one port of [[windfall-anticheat]]; Anti Cheat / game:minecraft) sit in the authoritative Fabric-server lane beside Spigot/Paper plugins such as [[dakotaac]] and offensive Fabric clients such as [[lenrete-mod]]. (source: wiki/sources/descriptions/enis1enis2__WindfallAntiCheatF.md) - Fabric **1.21.11** client-integrity anti-cheat mods such as [[seiun-ac]] (clementine44613; hash whitelists/blacklists/gray lists for installed mods and resource packs on join; Mixins + custom network packets; mid-session pack-change detection; Discord alerts; complements Discord-based whitelisting in the same project family; Anti Cheat / game:minecraft) sit in the client-mod enforcement lane beside packet gameplay AC such as [[windfall-anticheatf]] and opposite offensive Fabric clients such as [[lenrete-mod]]. (source: wiki/sources/descriptions/clementine44613__seiun-ac.md) - Fabric mod/resource-pack whitelist anti-cheat mods such as [[faircount]] (XuJun05; Java; join-time client mod inventory incl. nested jar-in-jar; SHA-256 hash verification against server whitelists; disconnects clients missing FairCount or carrying unauthorized mods; external resource-pack whitelist/hash checks; admin commands + localized kick messages; competitive PvP/vanilla-fair hosts; Anti Cheat / game:minecraft) sit in the Fabric client-integrity lane beside hash-tier mods such as [[seiun-ac]] and NeoForge checksum stacks such as [[katapult-anticheat]]. (source: wiki/sources/descriptions/XuJun05__FairCount.md) - NeoForge **1.21.1** client-and-server mod-integrity anti-cheat mods such as [[katapult-anticheat]] (Gitex68; Java; SHA-256 checksums on client mod JARs and resource packs against server whitelists; real-time join/reload resource-pack monitoring incl. renamed X-ray textures; hot-reloadable config, whitelist regeneration, live re-validation commands; NeoForge networking payloads + Gson whitelist management; Anti Cheat / game:minecraft) sit in the NeoForge client-mod enforcement lane beside Fabric hash-list mods such as [[seiun-ac]] and opposite multi-loader utility clients such as [[epsilon]]. (source: wiki/sources/descriptions/Gitex68__Katapult-AntiCheat.md) - Forge **1.20.1** client-side peer-mod detection mods such as [[crispy-wafer-anti-cheat-assistant-waferaca]] (sodium-CrispyWafer; Java; server-cooperative FML mod-list extraction + custom network packets, or client-only rotation/flick/tracking aimbot heuristics; public cheat alerts and per-player mod commands; Anti Cheat / game:minecraft) sit in the Forge peer-visibility lane beside integrity mods such as [[katapult-anticheat]] and passive client monitors such as [[local-anticheat-1-8-9]]. (source: wiki/sources/descriptions/sodium-CrispyWafer__CrispyWafer-Anti-Cheat-Assistant-WaferACA.md) - Cross-platform Bedrock/Java client-resident anti-cheat platforms such as [[pacc4-0]] (EPOTATOTV; PACC; on-device memory/process/HID inspection, AI behavior scoring, encrypted signed event pipeline, red-screen warnings, separate PTV admin backend without server ban hooks; Windows/Linux/Android/iOS/HarmonyOS native probes; Anti Cheat / game:minecraft) sit in the multi-platform client AC lane beside Forge peer-mod detectors such as [[crispy-wafer-anti-cheat-assistant-waferaca]] and QA clients such as [[anticheat-qa]]. (source: wiki/sources/descriptions/EPOTATOTV__PACC4_0.md) - NeoForge server-side gameplay anti-cheat mods such as [[sentinel-anticheat-neoforge]] (Charlie328402; Java; tick- and event-based movement/combat/world checks—speed, flight, water-walking, reach, killaura, autoclicker, x-ray mining—without mixins or packet interception; JSONL violation log + Python Discord bot with cumulative violation-level staff pings, relational DB history, optional FTP mirroring; alert-only staff workflow without automatic bans/kicks; Anti Cheat / game:minecraft) sit in the NeoForge server-side heuristic lane beside integrity mods such as [[katapult-anticheat]] and physics-prediction AC such as [[grim]]. (source: wiki/sources/descriptions/Charlie328402__Sentinel-Anti-Cheat.md) - Fabric client-and-server anti-cheat mods such as [[the-dreamers-guards]] (IamFriendly0242u; Java; encrypted join-time custom network payloads; mod blacklist scanning against known cheat clients and exploit utilities; progressive four-phase suspension; anti-evasion logout-bypass checks; operator kick/ban/pardon/trust commands; Discord webhook alerts; automated cheat detection and mod verification for Fabric multiplayer administrators; Anti Cheat / game:minecraft) sit in the combined client-integrity + server-enforcement lane beside hash-list mods such as [[seiun-ac]] and packet-physics AC such as [[windfall-anticheatf]]. (source: wiki/sources/descriptions/IamFriendly0242u__The-Dreamers-Guards.md) - Fabric **26.1.x** server-side moderation anti-cheat mods such as [[cheatcheck]] (EliGamer154; Java; `/cheatcheck` spectate + safemode stealth watching; freeze/vanish/inventory/radar; `/report` plus reach/x-ray-style ore mining/speed heuristics; configurable offense presets, temp bans, pardons, persistent world storage; no client mod required; vanilla-client-compatible staff enforcement for Fabric multiplayer administrators; Anti Cheat / game:minecraft) sit in the server-side moderation + heuristic-detection lane beside physics-prediction Fabric AC such as [[windfall-anticheatf]] and X-ray investigation plugins such as [[antixrayviewer]]. (source: wiki/sources/descriptions/EliGamer154__CheatCheck.md) - Node.js mineflayer protocol bots for long-range autonomous elytra flight such as [[eafe]] (eksses; Autonomous Elytra Flight Engine; vanilla per-tick physics FSM—takeoff/cruise/descent/landing; obstacle avoidance + Nether hazard scoring + player threat evasion; cubic Bézier look-vector smoothing, Gaussian perturbation, slew-rate limits, asymmetric packet jitter for AC-aware movement; cheat / game:minecraft) sit in the protocol-bot automation lane beside in-process clients such as [[phantom-client]] and [[lenrete-mod]]. (source: wiki/sources/descriptions/eksses__EAFE.md) - Pure Python headless Minecraft Java protocol clients such as [[ghostjoin]] (KuryCat; stdlib-only `socket`/`struct`/`hashlib`/`zlib`; Handshake→Login→Configuration→Play; offline-mode UUID, compression, Client Information, brand plugin messages, Keep Alive; protocol ~773–776; optional debug logging; authorized anti-bot/anti-cheat stress testing on offline-mode servers; cheat / game:minecraft) sit in the headless protocol-client lane beside mineflayer bots such as [[eafe]] and opposite server-side AC plugins such as [[windfall-anticheat]]. (source: wiki/sources/descriptions/KuryCat__GhostJoin.md) - Fabric **1.21.11** client-side AC QA mods such as [[anticheat-qa]] (u8012146108-bit; Java; ClickGUI/HUD monitors for reach/movement/rotation/CPS/velocity/ping; ESP/tracers/FreeCam visualization; test simulator + Y-Level Probe for server-side data-stripping validation; observes and simulates detections without enabling cheats; Anti Cheat / Stress Testing / game:minecraft) sit in the defensive client QA lane beside passive monitors such as [[local-anticheat-1-8-9]] and headless protocol probes such as [[ghostjoin]]. (source: wiki/sources/descriptions/u8012146108-bit__anticheat-qa.md) - Internal CS:GO baseline [[csgosimple]] (spirthack fork after MarkHC; Internal tag) sits in the cheat / game:csgo lane. (source: wiki/sources/descriptions/spirthack__CSGOSimple.md) - Internal CS:GO samples such as [[cartmanv2]] (gmh5225; C/C++; rendering / networking / editor tooling; Internal tag) sit in the same cheat / game:csgo lane for studying Source 1 internal architecture with overlay and menu tooling. (source: wiki/sources/descriptions/gmh5225__cartmanv2.md) - Clean internal CS:GO scaffold bases such as [[csgo-internal-base]] (CreateInterface resolution, VMT hooks, netvar dump, pattern scan, ImGui menu; Internal tag) sit in the same cheat / game:csgo lane for studying Source 1 internal architecture. (source: wiki/sources/descriptions/lstrsrt__csgo_internal_base.md) Archived internal CS:GO cheat bases such as [[csgo-main-internal]] (Neaxic; C++; Visual Studio DLL inject; ESP, glow, triggerbot, bunny hop, third-person view, world-to-screen math; ImGui + DirectX 9 menu; learning reference for internal cheat structure and extension; Internal tag) extend that lane for studying modular internal codebase layout beside scaffold bases. (source: wiki/sources/descriptions/Neaxic__CSGO-MAIN-INTERNAL.md) Internal CS:GO visual cheat framework samples such as [[seaside]] (0TheSpy; C++; Source engine interfaces, hooking, netvar handling, pattern scanning; ImGui DirectX 9 menu; aim assistance, recoil handling, skin/inventory customization, event listeners, configuration management; internal cheat architecture research on Source titles; cheat / game:csgo [Internal]) sit in that lane beside [[csgo-internal-base]] and the same author's external [[spy-external1337hax]]. (source: wiki/sources/descriptions/0TheSpy__Seaside.md) - Internal CS:GO cheat bases such as [[csgo-cheat-base]] (designer1337; MinHook hooks, ImGui menu, engine prediction, glow ESP, client/engine interface wrappers, DirectX surface rendering, game-event management; Internal tag) sit in the same cheat / game:csgo lane for studying MinHook-based Source 1 internal hook surfaces beside VMT-hook scaffolds. (source: wiki/sources/descriptions/designer1337__csgo-cheat-base.md) Large internal CS:GO cheat frameworks such as [[csgo]] (Bartis1313; C++; SDK wrappers, hook-driven feature modules, configuration tooling, DirectX rendering; aimbot, triggerbot, backtrack, ESP, chams, glow, radar, prediction, visual/world mods; educational cheat client engineering; cheat / game:csgo [Internal]) extend that lane for full-feature modular internal architecture study beside scaffold bases. (source: wiki/sources/descriptions/Bartis1313__csgo.md) Full-source educational CS:GO cheat frameworks such as [[deadcell-csgo]] (EternityX; C++; aiming, visuals, config, in-game menu modules; Visual Studio project + UI components; build-and-study learning codebase for legacy Source-engine cheat architecture; cheat / game:csgo) extend that lane for modular internal feature layout study. (source: wiki/sources/descriptions/EternityX__DEADCELL-CSGO.md) Modular internal bases such as [[digital-sdk]] (W1lliam1337; C++; MinHook + ImGui; ESP, bunnyhop, engine prediction, autowall, chams; CreateMove + Direct3D reset hooks; interfaces/netvars/rendering/utility modules; cheat development + Source-engine RE practice) extend that lane with a feature-rich extension scaffold. (source: wiki/sources/descriptions/W1lliam1337__digital-sdk.md) Simple x86 internal starter bases such as [[csgo-ormbunke-x86]] (ViddeBoiiii; C/C++; DirectX 9 + Kiero + MinHook; ImGui menu; ESP, aimbot, movement assists, trigger behavior; educational menu-framework scaffold; `[Imgui Menu]`) sit in the same lane for lightweight Source 1 internal experimentation. (source: wiki/sources/descriptions/ViddeBoiiii__CSGO-Ormbunke-x86.md) Internal CS:GO framework samples such as [[saphire]] (M3351AN; C++; DirectX 9 ImGui overlay menu; FreeType fonts + custom ImGui widgets; built-in code editor; modular cheat interface with configuration support; cheat UI framework study; Internal tag) extend that lane for studying menu-heavy internal architecture beside scaffold bases. (source: wiki/sources/descriptions/M3351AN__saphire.md) Large CS:GO frameworks with Lua scripting such as [[2k17-club]] (Akatsyk; aimbot, anti-aim, autowall, chams, grenade helpers, hook-based game events; DirectX9 ImGui + Lua/LuaJIT LuaBridge; cheat development + Source engine RE; cheat / game:csgo) extend that lane for scriptable internal architecture study. (source: wiki/sources/descriptions/Akatsyk__2k17-club.md) - Internal CS:GO samples such as [[cstrike-hack]] (binkynz; C/C++; rendering / networking / animation focus; cheat / game:csgo) sit in the same cheat / game:csgo lane for studying Source 1 internal draw, net, and animation hook surfaces beside scaffold bases. (source: wiki/sources/descriptions/binkynz__cstrike-hack.md) - Internal CS:GO samples such as [[kakhack]] (cazzwastaken; reversed SDK + multiple graphics/game hooks; ImGui menu with FreeType fonts, JSON config, extensive visuals; x86 VS2022 DLL; Internal tag) sit in the same cheat / game:csgo lane for studying full-feature internal architecture beside scaffold bases. (source: wiki/sources/descriptions/cazzwastaken__kakhack.md) - Internal CS:GO samples such as [[csgo-kns]] (C++; VMT hooks + interface pointers; ESP, aimbot, bhop, skin changer; Internal tag) sit in the same cheat / game:csgo lane for studying Source engine SDK hook patterns. (source: wiki/sources/descriptions/kyojig__csgo_kns.md) - Internal CS:GO **model changer** samples such as [[csgo-findmdl]] (Kruziikrel1; C++ DLL; **FindMDL hook**; interface wrappers, offset handling, VMT utilities; Visual Studio + injector workflow; customizable model replacement paths; cheat development + Source RE practice; Model Changer tag) sit in the same cheat / game:csgo lane for studying cosmetic MDL-swap hooks beside skin-changer stacks. (source: wiki/sources/descriptions/Kruziikrel1__CSGO-FindMDL.md) - Internal CS:GO samples such as [[aqhax-csgo]] (AqHax; C++; interface capture + VMT hooks + netvar dump; ESP, aimbot, triggerbot, movement, skin changer) sit in the same cheat / game:csgo lane for studying typical internal cheat feature stacks. (source: wiki/sources/descriptions/krxdev-kaan__AqHax-CSGO.md) - Internal CS:GO samples such as [[autismware]] (gmh5225; C++; interface capture + VMT hooks; ESP, aimbot, backtrack, skin changer, ImGui menu; HvH tag) sit in the same cheat / game:csgo lane for studying standard Source 1 internal cheat feature implementation. (source: wiki/sources/descriptions/gmh5225__autismware.md) - Leaked commercial internal CS:GO samples such as [[csgo-aw-v5.1.13]] (gmh5225; AimWare v5.1.13; aimbot, visuals, movement, anti-aim, internal hooking framework; `[aw-v5.1.13]`) sit in the same cheat / game:csgo lane for studying production-grade Source 1 internal architecture beside open-source HvH stacks. (source: wiki/sources/descriptions/gmh5225__CSGO-aw-v5.1.13.md) - Leaked commercial internal CS:GO samples such as [[csgo-nixware-csgo]] (gmh5225; Nixware; aimbot, ESP, movement hacks, skin changer; full CS:GO SDK + ImGui overlay; `[Nixware]`) sit in the same cheat / game:csgo lane for studying production-grade Source 1 internal architecture beside open-source stacks. (source: wiki/sources/descriptions/gmh5225__CSGO-NIXWARE-CSGO.md) - Internal CS:GO samples such as [[csgo-alphen]] (gmh5225; full SDK with entity structures, weapon data, and rendering primitives; ImGui menu; ESP, aimbot, and visual mods) sit in the same cheat / game:csgo lane for studying SDK-backed internal feature stacks. (source: wiki/sources/descriptions/gmh5225__CSGO-Alphen.md) - Internal CS:GO samples such as [[solace-csgo]] (emilyinure; modern C++; polished ImGui menu; ESP, aimbot, triggerbot, movement assistance, skin changer, and visual mods via Source SDK hooking; modular internal architecture; Internal tag) sit in the same cheat / game:csgo lane for studying well-structured internal cheat design patterns. (source: wiki/sources/descriptions/emilyinure__solace-csgo.md) - Inactive learning-focused internal CS:GO samples such as [[nullhooks]] (NullHooks; C++; modular gameplay features, configuration presets, and internal-cheat utilities; references and contribution notes; educational game-hacking architecture study; Internal tag; repository inactive) sit in the same cheat / game:csgo lane for studying modular internal cheat codebase structure beside scaffold bases. (source: wiki/sources/descriptions/NullHooks__NullHooks.md) - Internal CS:GO samples such as [[csgo-internal]] (Spelchure; C++17; injected internal multi-feature cheat—aimbot, ESP/snaplines, bunnyhop, anti-flash; cheat development and RE practice in competitive shooters; Internal tag) sit in the same cheat / game:csgo lane for studying typical Source 1 internal feature stacks beside scaffold bases. (source: wiki/sources/descriptions/Spelchure__CSGO-Internal.md) - Open-source internal CS:GO reference [[osiris]] (danielkrupinski; modern C++; ESP, glow, aimbot, triggerbot, backtrack, skin/inventory manipulation; interface pointers, pattern scanning, and VMT hooking; feature-complete Source 1 cheat architecture) sits in the cheat / game:csgo lane for studying internal hook surfaces and detection characteristics. (source: wiki/sources/descriptions/danielkrupinski__Osiris.md) - Internal CS:GO samples such as [[osiris-and-extra]] (C/C++; driver development / OpenGL / rendering; Internal tag) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/notgoodusename__OsirisAndExtra.md) - Simple internal CS:GO RE-training samples such as [[dainsleif]] (s3pt3mb3r) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/s3pt3mb3r__Dainsleif.md) - CS:GO training software such as [[avhook]] (gmh5225; Windows; joke features; cheat / game:csgo) sits in the same RE-training lane. (source: wiki/sources/descriptions/gmh5225__avhook.md) - Title-specific AVA (Alliance of Valiant Arms) samples such as [[ava-hack]] (boylin0; C/C++; DirectX / OpenGL / Vulkan graphics paths; cheat / game:ava) sit in the Korean-FPS offensive lane beside other title-specific FPS internals such as [[titancf]] and [[lazysight]]. (source: wiki/sources/descriptions/boylin0__AVA-Hack.md) - Actively developed Internal CS:GO samples such as [[sensum]] (martinjanas; Internal tag) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/martinjanas__Sensum.md) - Linux CS:GO samples such as [[gamesneeze]] (seksea; Linux tag) and SDK-oriented [[csgo-linux-cheat-sdk]] (otvv; C++; rendering / networking / modding; Linux tag) sit in the same cheat / game:csgo lane for non-Windows offensive research. (source: wiki/sources/descriptions/seksea__gamesneeze.md) (source: wiki/sources/descriptions/otvv__csgo-linux-cheat-sdk.md) - Minimal Linux CS:GO interface/hook scaffolds such as [[ghinterfacescsgo]] (VitorMob; C++; shared-object loader + interface interaction; structure/setup focus rather than bundled gameplay features; educational Linux hook development; Internal tag) sit beside fuller Linux SDKs like [[csgo-linux-cheat-sdk]] for studying Source 1 interface wiring on non-Windows hosts. (source: wiki/sources/descriptions/VitorMob__GHInterfacesCSGO.md) - Linux-native internal CS:GO samples such as [[anubis]] (danielkrupinski; C++; process injection; ESP, aimbot, and related features via Source SDK hooks on client rendering and game events; complements [[osiris]] on non-Windows hosts) sit in the same cheat / game:csgo lane for studying Linux internal hook surfaces beside external cross-platform samples like [[goesp]]. (source: wiki/sources/descriptions/danielkrupinski__Anubis.md) - Feature-rich Linux internal CS:GO frameworks such as [[aimtux]] (AimTuxOfficial; C++; CMake build, GDB-based injection, config directories; injection helpers and modular in-game deployment; educational internal cheat architecture and client-side manipulation study; Linux tag) sit beside lighter Linux SDK scaffolds like [[csgo-linux-cheat-sdk]] and [[ghinterfacescsgo]]. (source: wiki/sources/descriptions/AimTuxOfficial__AimTux.md) - External CS:GO samples such as [[heck-csgo-external]] (C++; modding / SDK generation / memory analysis; External tag) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/soyware__heck_csgo_external.md) - External CS:GO samples such as [[nebulite-external]] (gmh5225; C/C++; memory analysis; External tag) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/gmh5225__nebulite-external.md) - External CS:GO samples such as [[astra]] (gmh5225; C/C++; rendering / modding / overlays; External tag) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/gmh5225__Astra.md) - KVM/QEMU-hosted CS:GO samples such as [[kvm-csgo-cheat]] (gmh5225; Rust; cheat / QEMU/KVM/PVE/VBox) sit in the below-OS / VM-isolated offensive research lane beside in-guest CS:GO cheats. (source: wiki/sources/descriptions/gmh5225__kvm-csgo-cheat.md) - Menu-focused CS:GO samples such as [[legit-csgo-cheat-menu]] (gmh5225; Windows-only; README `[Menu]`) sit in the same cheat / game:csgo lane for studying in-game cheat UI/menu architecture. (source: wiki/sources/descriptions/gmh5225__legit-csgo-cheat-menu.md) - External CS:GO samples such as [[memcs]] (gmh5225; Rust; modding / SDK generation; External tag) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/gmh5225__memcs.md) - Driver-backed external CS:GO samples such as [[csgo-cheat-external]] (C++; driver development; External tag) also sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/si1kyyy__csgo_cheat_external.md) - Simple kernel CS:GO cheats with hook-based communication such as [[kernel-csgo]] (C++; driver development / modding) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/nbqofficial__kernel-csgo.md) - Full-kernel CS:GO external frameworks such as [[csgo-full-kernel]] (Sentient111; C++ KMDF driver; memory access, drawing helpers, key handling, game offsets; cheat logic in kernel space without a conventional usermode external; kernel attack-surface / AC bypass research; README Running from kernelmode) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/Sentient111__Csgo-Full-kernel.md) - Kernel-mode CS:GO cheat samples such as [[raybot-zero]] (R4YVEN; C++ Windows driver + minimal C# loader; triggerbot, bunnyhop, glow visuals, kernel-level key-state reading; core logic without traditional usermode controller; game offsets + low-level entity/engine memory routines; cheat development and kernel anti-cheat evasion research; README Kernel-mode) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/R4YVEN__raybot-zero.md) - CS:GO kernel driver + IOCTL usermode controller samples such as [[garhal-csgo]] (dretax; KM entity R/W; planned kernel DirectX overlay; cheat / game:csgo) sit in the same ring-0 cheat / game:csgo lane. (source: wiki/sources/descriptions/dretax__GarHal_CSGO.md) - Educational CS:GO kernel-driver PoCs with shared-memory KM↔UM comm such as [[smkernel-csgo]] (DeiVid-12; module-base lookup + cross-process memory R/W; simple triggerbot example; openly discusses detectability vs stronger kernel AC; cheat / game:csgo [Driver]) sit in the same ring-0 cheat / game:csgo lane. (source: wiki/sources/descriptions/DeiVid-12__SmKernel-CSGO.md) - External CS:GO samples such as [[csgo-external-cheat]] (C++; RPM or kernel-driver reads; ESP / aimbot / radar; no inject) also sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/rrpvm__csgo-external-cheat.md) Modular external CS:GO frameworks such as [[external-cheat-v3]] (Enzo0721; C++; ImGui + DirectX 9 overlay; aim assistance, glow, bunnyhop, no-flash; runtime-configurable modules; educational external tooling architecture study; cheat / game:csgo [External]) extend that lane for out-of-process feature-module layout. (source: wiki/sources/descriptions/Enzo0721__ExternalCheatV3.md) Modular C++17 external CS:GO frameworks such as [[csgo-cheat]] (manka81; MemoryReader + pattern scanning + hazedumper offset auto-detection; world-to-screen math; transparent DirectX 11 Dear ImGui overlay for ESP/skeletons/snaplines; aim assist, triggerbot, no-recoil, bunny hop via WriteProcessMemory and SendInput; INI config; external cheat technique study; cheat / game:csgo [External]) extend that lane beside [[hazedumper]]. (source: wiki/sources/descriptions/manka81__csgo_cheat.md) Lightweight external CS:GO PoC samples such as [[le-chiffre]] (Blaumaus; C++; bunnyhop, triggerbot, aimbot, glow ESP, radar; educational memory-based manipulation and RE fundamentals; proof-of-concept for learners; cheat / game:csgo [External]) sit in the same educational external lane beside [[csgo-cheats]]. (source: wiki/sources/descriptions/Blaumaus__le_chiffre.md) - Tutorial-oriented external CS:GO examples such as [[csgo-cheats]] (HeathHowren; C++ Visual Studio; window discovery, process open, memory R/W helper wrappers, offset-driven maintenance; beginner game-memory manipulation + defender cheat-pattern study; cheat / game:csgo [External]) sit in the same educational external lane beside [[pointer-lab]] from the same author. (source: wiki/sources/descriptions/HeathHowren__CSGO-Cheats.md) - CS:GO radar samples such as [[boltobserv]] (boltgolt; README [Radar]; player slot numbers on map dots; cheat / game:csgo) sit in the same visual radar lane beside external ESP/radar cheats and DMA overlays such as [[csgo-dma-overlay]]. (source: wiki/sources/descriptions/boltgolt__boltobserv.md) - External CS:GO ESP samples such as [[csgo-external-esp]] (forceinline; MIT; README `[External]`) sit in the same cheat / game:csgo lane beside RPM/driver externals. (source: wiki/sources/descriptions/forceinline__csgo-external-esp.md) - External CS:GO framework samples such as [[spy-external1337hax]] (0TheSpy; C++; Win32 + Direct3D9 overlay; out-of-process memory reads; BSP parsing, basic obfuscation, configurable feature modules; external cheat design + overlay automation reference; cheat / game:csgo [External]) sit in the same usermode external lane beside [[csgo-external-esp]] and [[heck-csgo-external]]. (source: wiki/sources/descriptions/0TheSpy__SpyExternal1337hax.md) - Lightweight C# external CS:GO samples such as [[echinoidea]] (M3351AN; bunnyhop, overlay ESP, trigger bot; offset-driven workflow; write-signal reduction and VAC-era detection tradeoff notes; educational external cheat design; README External C#) sit in the same usermode external cheat / game:csgo lane beside script and C++ RPM externals. (source: wiki/sources/descriptions/M3351AN__Echinoidea.md) - Cross-platform external CS:GO ESP samples such as [[goesp]] (danielkrupinski; modern C++; Dear ImGui overlay; memory-read entity ESP—boxes, names, health, weapons—drawn via the game's rendering pipeline; Windows and Linux; README `[Cross-platform]`) sit in the same cheat / game:csgo lane for studying external overlay ESP and detection surfaces beside internal references like [[osiris]]. (source: wiki/sources/descriptions/danielkrupinski__GOESP.md) - CS:GO **sound ESP** samples such as [[nv-v2]] (ekknod; C/C++; hooking; audio-derived positional awareness; README `[Sound ESP]`) sit in the same cheat / game:csgo lane as an alternative to visual overlay ESP. (source: wiki/sources/descriptions/ekknod__nv_v2.md) - Kernel/driver CS:GO samples such as [[ec]] (ekknod; C/C++; kernel-level work / driver development / OpenGL; cheat / game:csgo) sit in the same lane beside the related [[ec-pro-lan]] FACEIT variant. (source: wiki/sources/descriptions/ekknod__EC.md) - Script-based external CS:GO samples such as [[csgo-external-ahk-hack]] (gmh5225; AutoHotkey; RPM for triggerbot, bunny hop, basic ESP; External tag) sit in the same low-barrier cheat / game:csgo lane for studying script-based external detection. (source: wiki/sources/descriptions/gmh5225__csgo_external_ahk_hack.md) - CS:GO bot samples such as [[csgo-bot]] (C/C++; driver development / OpenGL / shader) also sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/ricencheese__csgo-bot.md) - CS:GO backtrack patch samples such as [[csgo-backtrack-patch]] (C/C++; hooking / memory analysis; Backtrack Patch tag) sit in the same cheat / game:csgo lane. (source: wiki/sources/descriptions/sneakyevilSK__CSGO_BacktrackPatch.md) - Internal Team Fortress 2 samples such as [[teamfortress2-internal]] (C++ / C/C++; modding / hooking; Internal tag; gmh5225) sit in the cheat / game:team fortress 2 lane for studying Source 1 internal hook patterns beside CS:GO internals under VAC. (source: wiki/sources/descriptions/gmh5225__teamfortress2_internal.md) - Community TF2 moderation data such as [[tf2bd-database]] (Garou3299; JSON player lists + chat word-filter rules for TF2 Bot Detector; cheater/racist/scammer tags; TF2BD v3 schemas; client-side alerts via surepy/tf2_bot_detector) sit in the defensive community-moderation lane beside server-side SourceMod AC such as [[little-anti-cheat]]. (source: wiki/sources/descriptions/Garou3299__tf2bd-database.md) - Open-source TF2/Source hacking frameworks such as [[cunthook]] (gmh5225; full SDK with hooks, ESP, aimbot, gameplay mods via Source internal interfaces + Boost; Linux tag) sit in the same cheat / game:team fortress 2 lane beside hook-focused starters and feature-complete samples. (source: wiki/sources/descriptions/gmh5225__Cunthook.md) - SE-Owned–lineage TF2 training software such as [[fedoraware]] (gmh5225; C/C++; rendering / networking / animation; cheat / game:team fortress 2) sits in the same TF2 internal lane for studying feature-complete Source 1 cheat architecture beside hook-focused starters. (source: wiki/sources/descriptions/gmh5225__Fedoraware.md) - Basic Left 4 Dead 2 cheat frameworks such as [[l4d2-basic]] (gmh5225; Source engine hook structures, interface resolution, starter template) sit in the cheat / game:left 4 dead 2 lane for bootstrapping Source 1 internal hook work beside TF2 and CS:GO samples. (source: wiki/sources/descriptions/gmh5225__L4D2Basic.md) - Internal Left 4 Dead 2 samples such as [[l4d2-cheat]] (gmh5225; Source engine SDK; VMT hooks + engine interface exploitation; ESP, aimbot, gameplay mods; Linux tag) sit in the same cheat / game:left 4 dead 2 lane beside starter frameworks. (source: wiki/sources/descriptions/gmh5225__L4D2-Cheat.md) - Documented L4D2 internal + external training frameworks such as [[zenware-cc]] (krakensuit; C++17 Win32 x86; MinHook function/vtable hooks; pattern-based offsets + signature verification; injectable DLL + GUI loader + RPM/GDI external overlay; ESP/chams/aim/movement; educational/local insecure-server only; explicit no-AC-bypass / no-VAC policy) sit in the same cheat / game:left 4 dead 2 lane for studying dual-mode Source 1 cheat architecture beside VMT-focused internals. (source: wiki/sources/descriptions/krakensuit__ZenWare.cc.md) - Half-Life 2 ESP samples such as [[hl2esp]] (codereversing; C/C++; hooking-centered ESP; cheat / game:half-life 2) sit in the same Source 1 internal lane beside L4D2 and TF2 samples for studying HL2-specific hook and ESP patterns. (source: wiki/sources/descriptions/codereversing__hl2esp.md) Classic Call of Duty v1.5 educational hack collections such as [[cod-hacks]] (attilathedud; Desk.dll multi-hack, internal [[world-to-screen]] ESP, OpenGL `glDrawElements` wallhack, syscall wallhack, pattern-scan trainer; internal DLL + external trainer) sit in the same vintage FPS cheat-architecture lane for OpenGL hooking and memory-scan study. (source: wiki/sources/descriptions/attilathedud__CoD_Hacks.md) - Half-Life 2 aimbot samples such as [[hl2aimbot]] (codereversing; C/C++; aimbot-focused internal hooking; cheat / game:half-life 2) sit beside [[hl2esp]] in the same HL2 Source 1 lane for comparing ESP vs aimbot hook patterns. (source: wiki/sources/descriptions/codereversing__hl2aimbot.md) - Internal CS:GO samples such as [[lumina-cheat]] emphasize mutation for a changing signature (Internal tag). (source: wiki/sources/descriptions/whereisr0da__Lumina-Cheat.md) - Cheat-compiler research samples such as [[compiled-protection]] (C/C++; [Cheat Compiler] tag) sit adjacent to the cheat / game:csgo offensive-technique lane. (source: wiki/sources/descriptions/razixNew__CompiledProtection.md) - Linux external CS:S trainers such as [[counterstrikesource-linux-trainer]] (movement automation + info display) sit in the cheat / game:css lane. (source: wiki/sources/descriptions/yoshisaac__CounterStrikeSource-Linux-Trainer.md) - Full-kernel CS 1.6 Fastcup driver cheats such as [[zodiak]] (3a1; C/assembly; kernel GDI ESP + MouHID callback aimbot; automatic offset detection, thread context spoofing, compact single-thread model; minimize user-visible traces; kernel cheat engineering + AC evasion research; cheat / game:cs1.6 [Fastcup Full Kernel Driver Cheat]) sit in the ring-0 CS1.6 lane beside user-mode samples. (source: wiki/sources/descriptions/3a1__Zodiak.md) External CS 1.6 ESP samples such as [[evelion]] (3a1; C++; ImGui external overlay; configurable visuals; stream-proof presentation model staying outside normal game capture paths; Visual Studio; windowed-mode legacy target; educational external cheat architecture + overlay rendering + basic AC evasion; cheat / game:cs1.6 [External]) sit in the user-mode CS1.6 external lane beside kernel samples from the same author. (source: wiki/sources/descriptions/3a1__Evelion.md) - Free Counter-Strike 1.6 cheat samples such as [[oxware]] (C++; large alpha codebase; RE/offensive study) and [[hpp-hack]] (gmh5225; C/C++; OpenGL + modding + SDK generation) sit in the cheat / game:cs1.6 lane. IDA-driven decompilation reconstructions such as [[ezfrags]] (ALittlePatate; C++; legacy FPS cheat rebuild from IDA databases; incremental module reimplementation—glow ESP, radar, no-flash, bunny hop, memory/signature utilities; cheat internals, obfuscation patterns, and practical reversing study) extend that lane for learners tracing original cheat architecture beside hand-written samples. (source: wiki/sources/descriptions/ALittlePatate__ezfrags.md) (source: wiki/sources/descriptions/oxiKKK__oxware.md) (source: wiki/sources/descriptions/gmh5225__hpp-hack.md) Simpler CS1.6 multihack samples such as [[simple-cs-16-multihack]] (execnone; C/C++; asset pipelines + Unity + hooking; cheat / game:cs1.6) extend that lane. (source: wiki/sources/descriptions/execnone__simple-cs-16-multihack.md) GoldSrc HL1 client-DLL samples such as [[1-6-c2]] (eversinc33; C++; ESP/aimbot/movement via rendering/input hooks; cheat / game:cs1.6) extend that lane for legacy engine hook study. (source: wiki/sources/descriptions/eversinc33__1.6_C2.md) No-code CS1.6 cheat generators such as [[cshackcreator-2-demo]] (gmh5225; C/C++; OpenGL + Vulkan + rendering; user-input-driven custom cheat output) sit in the same lane for studying cheat-authoring automation beside hand-written samples. (source: wiki/sources/descriptions/gmh5225__CSHackCreator-2-Demo.md) Public free CS1.6 cheat samples such as [[sakura]] (bit-paper; C++; DirectX + OpenGL + anti-cheat research; cheat / game:cs1.6) extend that lane. (source: wiki/sources/descriptions/bit-paper__sakura.md) - KVM/QEMU-hosted CS1.6 triggerbot samples such as [[cs16-trigger-kvm]] (gmh5225; host-side guest memory read + input injection; cheat / game:cs1.6) sit in the below-OS / VM-isolated offensive research lane beside in-guest CS1.6 cheats. (source: wiki/sources/descriptions/gmh5225__cs16-trigger-kvm.md) - Linux external CS2 cheats such as [[counterstrike2-linux-cheat]] (C++; memory analysis) sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/yoshisaac__CounterStrike2-Linux-Cheat.md) - Linux ptrace TEB readers such as [[ptrace-read-teb]] (C++; read a process TEB under Linux for Wine/cheat research) sit in the Cheat > Wine lane. (source: wiki/sources/descriptions/pgarba__ptrace_read_teb.md) - macOS CrossOver patchers such as [[crossover-patcher]] (experimental; patches official CrossOver Wine/graphics runtimes for anti-cheat-protected Windows games on Apple Silicon; GUI or PatchCore CLI; verified CrossOver builds only) sit in the Cheat > Wine / macOS compatibility lane beside Linux Proton workflows. (source: wiki/sources/descriptions/dazi2011__crossover-patcher.md) - GNU/Linux anti-cheat compatibility references such as [[aclist-github-io]] (static site; curated Proton/Wine game compatibility plus Linux gaming guides; conservative manual verification; Anti-cheat compatibility list) support the same Cheat > Wine / Linux Proton lane for platform-support research. (source: wiki/sources/descriptions/aclist__aclist.github.io.md) - Official Valve [[proton]] (Wine-based Steam Play layer; Docker build infra, prefix defaults, Steam integration manifests, per-title fixups; Linux gaming / Windows-to-Linux translation research; README [Steam]) is the upstream runtime that community GNU/Linux compatibility and anti-cheat interoperability lists target. (source: wiki/sources/descriptions/ValveSoftware__Proton.md) - Native Linux open-source local anti-cheat such as [[tlac-modern-local-anti-cheat-reunioned]] (TuncorReUnion; Rust; user-space memory signature scan + optional eBPF behavioral probes + ONNX anomaly model; HWID bans and on-device Tokio IPC; MIT-licensed transparent AC for Linux/Steam Deck hosts beside Proton/Wine compatibility research) sits in the Cheat > Linux / Open Source Anti Cheat System lane. (source: wiki/sources/descriptions/TuncorReUnion__TLAC-MODERN-LOCAL-ANTI-CHEAT-REUNIONED.md) - Rust eBPF Linux-native anti-cheat such as [[vigil]] (TOSTcRa; modular BPF ELF loading, perf event handling, CLI, and client–server distributed monitoring; kernel-level event tracing for runtime threat detection on native Linux game hosts) complements that lane beside [[tracee]] and [[rootkit-detection-ebpf-time-trace]]. (source: wiki/sources/descriptions/TOSTcRa__vigil.md) - WIP kernel-level Linux console anti-cheat such as [[linux-anticheat]] (mikio815; Rust userspace daemon + LSM eBPF detection + thin C kernel module guarding eBPF integrity + planned BitVisor EPT write-protect for static kernel regions; Aya; Linux 5.17+ BTF/BPF LSM; Steam Deck / locked-down console targets) extends the native Linux open-source AC lane beside [[vigil]] and [[tlac-modern-local-anti-cheat-reunioned]]. (source: wiki/sources/descriptions/mikio815__linux-anticheat.md) - Vendor-agnostic Linux kernel AC **architecture feasibility** study [[ac-compat-research]] (IZxMD; literature + non-virtualized compatibility-layer design; LSM/signing/isolation/ABI constraints; dossier + knowledge graph; no bypass material; Anti Cheat / Guide) complements Proton/Wine compatibility trackers and native Linux AC prototypes in the platform-architecture lane. (source: wiki/sources/descriptions/IZxMD__ac-compat-research.md) - External CS2 samples such as [[cs2-cheat-cpp]] (C++; rendering / asset pipelines / SDK generation) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/yinleiCoder__cs2-cheat-cpp.md) - External CS2 glow ESP such as [[cs-2-glow]] (C++; entity parse / offsets / external memory glow) sits in the same cheat / game:cs2 visual lane. (source: wiki/sources/descriptions/xvorost__CS-2-Glow.md) - Maintained CS2 offset/netvar dumps such as [[cs2-offsets]] (C++ headers + JSON; client/server layout after patches) and [[cs2-offsets-ro0ti]] (C#/C++; `[Offset]` tag) feed that same cheat / game:cs2 memory-layout lane. (source: wiki/sources/descriptions/sezzyaep__CS2-OFFSETS.md) (source: wiki/sources/descriptions/ro0ti__CS2-Offsets.md) - Live-process CS2 offset/interface dumpers such as [[cs2-dumper]] (a2x; Rust; memflow memory access on Windows/Linux; C#/C++/Rust/JSON codegen; cheat / game:cs2 `[Dump]`) automate per-patch schema and offset refresh consumed by externals such as [[cs2-dma]], [[titled-gui-cs2]], and [[overlayai]]. (source: wiki/sources/descriptions/a2x__cs2-dumper.md) - Automated Facepunch Rust offset pipelines such as [[oxide-dumper]] (LabGuy94; Python; SteamCMD fetch + [[il2cppdumper]] processing + GitHub Actions CI; reusable C++ header export; cheat `[Auto Dump]` / game:rust) automate per-update IL2CPP offset refresh for tooling maintainers tracking frequent Rust patches. (source: wiki/sources/descriptions/LabGuy94__OxideDumper.md) - C++ Facepunch Rust auto-dump pipelines such as [[rust-auto-dumper]] (Akandesh; Steam build-ID monitoring + dump scripts; regex parse of `dump.cs`/script data → JSON, C++ headers, C# constants incl. encrypted-field variants; cheat `[Auto Dump]` / game:rust) synchronize multi-format offset exports for researchers and tooling developers after patches. (source: wiki/sources/descriptions/Akandesh__rust-auto-dumper.md) - C++ CS:GO auto-dump watch pipelines such as [[csgo-auto-dumper]] (Akandesh; steamcmd + build-ID polling loop; launches local dumper + follow-up scripts on new builds; cheat `[Auto Dump]` / game:csgo) automate post-patch offset refresh for Source 1 tooling maintainers with minimal manual intervention. (source: wiki/sources/descriptions/Akandesh__csgo_auto_dumper.md) - Facepunch Rust DMA external frameworks such as [[rust-dma-cheat]] (IntelSDM; C++; ESP + recoil/FOV/lighting/admin-view gameplay mods; configurable codebase; [[pcileech]]/MemProcFS/[[il2cppdumper]]/[[dmalibrary]] ecosystem; hardware-assisted memory access + external cheat workflows; cheat / game:rust [DMA]) sit in the below-OS Rust lane beside kernel-assisted externals such as [[lord-abbot-rust-external-cheat]] and [[overflow-rust]]. (source: wiki/sources/descriptions/IntelSDM__RustDMACheat.md) - Facepunch Rust external cheat frameworks with kernel driver IOCTL memory access such as [[rust-cheat-external-main]] (Disline1337; separate kernel and user-mode components; Windows driver IOCTL R/W + usermode overlay + gameplay SDK helpers; UnityPlayer/GameAssembly module handling; cheat development experiments + external driver-assisted attack-pattern research; cheat / game:rust [External]) sit in the kernel-assisted Rust external lane beside [[lord-abbot-rust-external-cheat]], [[rust-external-cheat]], and [[overflow-rust]]. (source: wiki/sources/descriptions/Disline1337__Rust-Cheat-External-main.md) - Runtime encrypted-pointer decryption dumpers such as [[decryption-dumper]] (Nuxar1; Windows C++; debugger single-step + Zydis; reconstructs decryption routines from live processes; pattern scan, context restore, instruction filtering; cheat / `[Dump]`) sit in the same offensive `[Dump]` lane for AC-protected pointer schemes beside schema/offset dumpers. (source: wiki/sources/descriptions/Nuxar1__DecryptionDumper.md) - Windows native + .NET in-process assembly dump via [[mega-dumper]] (CodeCracker-Tools; C# WinForms; module inspection, anti-dump/hook detection, virtual memory/heap/process exploration, AppDomain enum, managed injection + minidump; cheat / [Dump native and .NET assemblies]) also sits in the Cheat `[Dump]` lane for recovering in-memory binaries from live processes. (source: wiki/sources/descriptions/CodeCracker-Tools__MegaDumper.md) - CS2 function-signature reference notes such as [[cs2-signature-list]] (Salvatore-Als; Markdown + IDC helper; string anchors and search guidance for team switch, item give, chat, damage routines—not fixed universal patterns; cheat / game:cs2 `[Signature]`) complement automated dumpers when refining pattern scans across builds. (source: wiki/sources/descriptions/Salvatore-Als__cs2-signature-list.md) - Automated CS2 signature/gamedata updaters such as [[cs2-vibe-signatures]] (HLND2T; Python + C++ verification harnesses; pattern signatures and offsets for [[cs2fixes]], CounterStrikeSharp, cs2kz, cs2surf; Agent SKILLS + ida-pro-mcp workflow; cheat / game:cs2 `[Signature]`) automate post-patch gamedata refresh for Source 2 plugin and mod maintainers. (source: wiki/sources/descriptions/HLND2T__CS2_VibeSignatures.md) - Rust external CS2 cheats such as [[proext]] (ESP / aimbot / triggerbot / radar / RCS; egui UI) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/snipcola__ProExt.md) - Non-invasive CS2 stats and cheat-risk analysis tools such as [[cs2-tracker]] (LooperSalty; Python FastAPI + SQLite + optional Qt/web UI; lifetime stats + live match tracking via Steam Web API and Game State Integration; ~30 explainable heuristic detectors; 0–100 Bayesian suspicion scores; optional C++ in-game overlay; no memory read/inject; analyst/competitive-player lane; game:cs2) sit opposite memory-reading cheat stacks. (source: wiki/sources/descriptions/LooperSalty__cs2-tracker.md) - Browser-based CS2 radar cheats such as [[cs2-webradar]] (gmh5225 and clauadv forks; C++/JavaScript; asset pipelines / modding / memory analysis; cheat / game:cs2 [Browser based radar cheat]) illustrate external radar UIs that stream entity positions to a web client instead of a native overlay. (source: wiki/sources/descriptions/gmh5225__cs2_webradar.md) (source: wiki/sources/descriptions/clauadv__cs2_webradar.md) - CS2 DMA radar samples such as [[cs2-dma-radar]] (gmh5225; PCIe DMA hardware; real-time radar overlay; MoZiHao fork; Java Spring Boot + WebSocket + Leaflet browser tactical map; VMM/LeechCore reads; zero target-OS software; cheat / game:cs2 [DMA]) sit in the below-OS external radar lane beside [[eft-dma-radar-1]], browser radars such as [[cs2-webradar]], and native overlays such as [[proext]]. (source: wiki/sources/descriptions/gmh5225__CS2-Dma-Radar.md) (source: wiki/sources/descriptions/MoZiHao__CS2_DMA_Radar.md) - CS2 DMA cheat samples such as [[cs2-dma-cheat]] (eden13378; C/C++; shader/rendering/audio systems; PCIe DMA; zero target-OS software; cheat / game:cs2 [DMA]) sit in the below-OS full-feature DMA lane beside [[cs2-dma-radar]] and [[gta5-dma-cheat]]. (source: wiki/sources/descriptions/eden13378__CS2-DMA-Cheat.md) - CS2 external DMA toolsets such as [[cs2-dma-extrnal]] (MoZiHao; C++; LeechCore/VMMDLL; aimbot, triggerbot, radar, bunny hop, anti-flash; ImGui control UI; JSON offsets and config utilities; zero target-OS software; cheat / game:cs2 [DMA External]) sit in the below-OS full-feature DMA lane beside [[cs2-dma-cheat]] and [[cs2-dma]]. (source: wiki/sources/descriptions/MoZiHao__CS2_DMA_Extrnal.md) - Open-source CS2 DMA externals such as [[cs2-dma]] (chao-shushu; C++; FPGA/LeechCore read-only DMA; box/bone ESP, weapon/ammo HUD, visibility coloring, bomb/projectile helpers, LAN web radar + grenade helper; MemProcFS scatter batch reads, snapshot interpolation, tiered recovery; cs2-dumper auto offsets; ImGui/DX11 on separate host; cheat / game:cs2 [DMA]) sit in the below-OS external visualization lane beside [[cs2-dma-radar]] and [[cs2-dma-cheat]]. (source: wiki/sources/descriptions/chao-shushu__CS2-DMA.md) - CS2 KVM/DMA hybrids such as [[cs2-kvm-dma]] (atombottle; cheat logic in separate VM or host OS; physical memory via DMA hardware or KVM mapping; radar/ESP outside guest; invisible to in-guest AC; cheat / game:cs2 [KVM/DMA]) bridge PCIe DMA CS2 lanes with QEMU/KVM below-OS isolation beside [[cs16-trigger-kvm]] and [[kvm-csgo-cheat]]. (source: wiki/sources/descriptions/atombottle__cs2_kvm_dma.md) - CS2 Source 2 research collections such as [[cs2-things]] (VScript; gmh5225; RE structures / offset dumps / SDK snippets / entity layouts / netvars / engine interfaces; cheat / game:cs2) sit in the same cheat / game:cs2 memory-layout and Source 2 RE lane. (source: wiki/sources/descriptions/gmh5225__cs2_things.md) - CS2 Source 2 SDK headers such as [[cs2-sdk]] (gmh5225/cs2_sdk and cs2-sdk forks; C/C++; SDK generation / simplified Source 2 layout; driver / rendering / networking; DX11 + Vulkan; cheat / game:cs2 [SDK]) sit in the same cheat / game:cs2 SDK lane beside generated dumps such as [[source2gen]]. (source: wiki/sources/descriptions/gmh5225__cs2_sdk.md) (source: wiki/sources/descriptions/gmh5225__cs2-sdk.md) Cross-platform forks such as bruhmoment21/cs2-sdk (Windows + Linux; DXGI 11 + Vulkan; ImGui menu; LoadLibrary/dlopen injection; cheat / game:cs2 [SDK]) extend that lane for multi-platform Source 2 structure study. (source: wiki/sources/descriptions/bruhmoment21__cs2-sdk.md) CS2-specific [[source2gen]] output such as [[cs2-sdk-source2gen]] (gmh5225; auto-generated C++ headers for animation, client, engine2, network, scene, schema, and other Source 2 modules; [SDK]) and NotOfficer/cs2-sdk (auto-generated C++ class/enum headers for client, server, rendering, networking, and schema systems with patch-version metadata; cheat / game:cs2 [SDK]) sit in that lane as consumed codegen output. (source: wiki/sources/descriptions/gmh5225__CS2-SDK-Source2Gen.md) (source: wiki/sources/descriptions/NotOfficer__cs2-sdk.md) Header-only CS2 SDK snapshots such as [[counter-strike2-sdk]] (Omn1z; large Source 2 class/enum declarations with field offsets for entities, gameplay, animation, and networked data structures; cheat / game:cs2 [SDK]) sit in that lane as maintained type-layout references. (source: wiki/sources/descriptions/Omn1z__Counter-Strike2-SDK.md) Generated CS2 SDK header packs such as [[sdk-cs2]] (FrySimpl3; C++ engine types, enums, and subsystem interfaces for client, rendering, networking, schema, panorama, particles, and physics; reference definitions for external tooling and CS2 analysis; cheat / game:cs2 [SDK]) sit in that lane as codegen type groundwork. (source: wiki/sources/descriptions/FrySimpl3__SDK_CS2.md) Reverse-engineered internal SDK headers such as [[cs2-internal-sdk]] (clouddss; C++; Source 2 class defs, interface pointers, netvar offsets, schema structures, entity/player/weapon/rendering types; cheat / game:cs2 [Internal]) target in-process hooking and memory access beside offset feeds such as [[cs2-offsets]]. (source: wiki/sources/descriptions/clouddss__cs2-internal-sdk.md) - CS2 FOV changer samples such as [[cs2-fov-changer]] (gmh5225; C/C++; asset pipelines / hooking / memory analysis; cheat / game:cs2 [FOV changer]) sit in the same cheat / game:cs2 camera/visual lane beside [[world-to-screen]] aim math. (source: wiki/sources/descriptions/gmh5225__cs2-fov-changer.md) - Engine-agnostic gameplay camera mod samples such as [[extended-camera-settings]] (gmh5225; extends camera control beyond default engine limits—adjustable FOV, distance, rotation freedom, and viewpoint parameters; gameplay or cinematic modding) sit in the cross-engine camera/visual mod lane beside title-specific FOV/freecam hooks. (source: wiki/sources/descriptions/gmh5225__ExtendedCameraSettings.md) - External CS2 samples such as [[cs2-external-cheat]] (C++; D3D11 ImGui overlay / aimbot / memory read / offsets; External tag) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/sFIsAnExpert__CS2-External-Cheat.md) - External CS2 samples such as [[cs2-external-1]] (gmh5225; out-of-process memory reads; ImGui + DirectX 11 overlay; aimbot / box ESP / skeleton / snaplines / misc; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/gmh5225__CS2-External-1.md) - External CS2 samples such as [[cs2-external]] (Zckyy; C#; read-only out-of-process memory; overlay drawing; entity / offset / view-matrix helpers + runtime cheat logic; authentication and subscription handling; educational external memory analysis; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/Zckyy__CS2-External.md) - External CS2 framework samples such as [[cs2-ext]] (C++17; pluggable kernel driver interface; D3D11/DXGI ImGui overlay; aimbot / ESP / spinbot; External tag) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/hendodev__cs2-ext.md) - External CS2 kernel read-only frameworks such as [[dragonburn]] (ByteCorum; C++; kernel-assisted RPM; ImGui menu + rendering modules; configurable ESP/radar + automated offset updates; cheat development and anti-cheat detection research; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/ByteCorum__DragonBurn.md) - Rust external read-only CS2 kernel frameworks such as [[valthrun]] (Valthrun; kernel driver + overlay renderer + radar without in-process DLL injection; configurable player ESP, bomb/spectator info, trigger features, stream-proof overlay; low-level game security and anti-detection research; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/Valthrun__Valthrun.md) - External CS2 framework samples such as [[titled-gui-cs2]] (C#; Win32 memory read/write; transparent ImGui overlay; cs2-dumper offset bootstrap; aimbot / RCS / triggerbot; ESP / radar / D3D11 chams with VPK loading and map-geometry visibility; GPLv3; External tag) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/xfi0__Titled-Gui-CS2.md) - External CS2 Python samples such as [[pythoncs2]] (Vekor64; PyMeow memory access + overlay rendering; DearPyGui runtime config; ESP boxes / health / weapon / distance / lines + recoil control; educational external workflow study; cheat / game:cs2 [Python External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/Vekor64__PythonCS2.md) - External CS2 Python samples such as [[violetwing]] (Jesewe; PyMeow overlay + customtkinter GUI; startup [[cs2-dumper]] offset refresh; triggerbot with per-weapon delays, ESP boxes/skeletons/snaplines/health/bomb timer/spectators, bunnyhop, NoFlash; offline/private-server CS2 RE and game-security experimentation; cheat / game:cs2 Python external) also sit in the cheat / game:cs2 lane beside [[pythoncs2]]. (source: wiki/sources/descriptions/Jesewe__VioletWing.md) - Educational overlay-only CS2 external starter bases such as [[cs2-external-base]] (UnnamedZ03; C++; team checks + box / health / distance / skeleton / text ESP outputs; overlay-side structure only—intentionally omits memory R/W driver components; external tooling architecture study; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/UnnamedZ03__CS2-external-base.md) - External CS2 ESP samples such as [[cs2external]] (Tokyodidit; C++; process memory reads; configurable JSON offsets; world-to-screen entity tracking; transparent Win32/GDI overlay—boxes, health bars, player names; cheat prototyping and practical memory analysis; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/Tokyodidit__cs2External.md) - External CS2 ESP samples such as [[cs2-external-esp]] (IMXNOOBX; C++ Visual Studio; out-of-process memory reads; handle hijacking; JSON config + offset maintenance scripts; GDI window overlay—boxes, names, health; external cheat architecture study; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/IMXNOOBX__cs2-external-esp.md) - External CS2 test projects such as [[hpcs2]] (Half-People; C++ Visual Studio; process memory utilities + handle hijacking helpers + CS2 module offset headers; INI-configured aim assistance, recoil control, and ESP-style rendering; educational cheat and anti-cheat behavior study; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/Half-People__HPCS2.md) - External CS2 framework samples such as [[tkazer-cs2-external]] (TKazer; C++; ESP variants, aimbot with RCS, triggerbot, radar, bunnyhop, visibility checks, offset management; external ImGui UI + process memory utilities; educational external cheat design and anti-cheat response research; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/TKazer__CS2_External.md) - External CS2 framework samples such as [[aeonix-cs2]] (Fr0go1; C++; derivative external base; overlay + tooling; ESP, aimbot with RCS, triggerbot, radar, config management; memory access modules + offset handling + real-time visual rendering; offensive game security experimentation and cheat development learning; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/Fr0go1__Aeonix-Cs2.md) - Open-source external CS2 stacks such as [[vesta]] (Read1dno; C++23; no injection or kernel drivers; process-memory RPM + DX11 overlay ESP/chams/menus + external Windows input gateway; aimbot/triggerbot, grenade prediction, in-game radar, ballistics/penetration/collision simulation; sandboxed Lua 5.4 API for extensions such as web radar; external cheat architecture and CS2 client state reconstruction research; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/Read1dno__vesta.md) - External CS2 kernel-assisted samples such as [[ukia-rpm]] (M3351AN; C++; kernel driver RPM; DirectX 9 ImGui menu + overlay; aimbot/ESP/radar/recoil control + config persistence; RPM-based external cheat patterns + kernel driver game-memory comm research; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/M3351AN__UkiaRPM.md) - External CS2 kernel-assisted samples such as [[samidare]] (M3351AN; C++; FIFO-based kernel driver comm + DirectX overlay; offset management + game-data reads + coordinate math; driver-assisted external cheat + overlay rendering research; cheat / game:cs2 [External Ring3/Ring0]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/M3351AN__Samidare.md) - External CS2 framework samples such as [[aimstar]] (M3351AN; C++; bone-based aimbot, entity tracking, ESP, triggerbot, offset management, and menu config; multi-language docs; external cheat architecture + CS2 memory reading research; cheat / game:cs2 [External]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/M3351AN__AimStar.md) - External CS2 overlay samples such as [[overlayai]] (C++; D3D11 ImGui overlay; out-of-process memory R/W; ESP / aim assist / triggerbot / glow / movement; modular inventory changer via bridge DLL + named-pipe IPC + Panorama UI / SOCache; cs2-dumper schema offsets; ianveig29; External tag) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/ianveig29__OverlayAI.md) - CS2 computer-vision overlay samples such as [[yolov8-overlay-cs2]] (Leksa667; Python; mss screen capture + YOLOv8 ONNX via ONNX Runtime; Pygame + Win32 transparent topmost overlay; optional CUDA, confidence filtering, hotkeys, smooth aim-assist; computer-vision cheat prototyping + AI-assisted detection research; cheat / game:cs2 [YOLOv8 in CS2]) also sit in the cheat / game:cs2 lane beside memory-reading externals. (source: wiki/sources/descriptions/Leksa667__YOLOv8-Overlay-CS2.md) - CS2 samples under [[cs2-cheat]] include tiansongyu/cs2_cheat (external; C++; SDL2 + ImGui; cs2-dumper offsets / hourly CI; offline insecure-mode study) and gmh5225/CS2-Cheat (internal; Source 2 engine SDK; ESP / aimbot / misc gameplay mods). (source: wiki/sources/descriptions/tiansongyu__cs2_cheat.md) (source: wiki/sources/descriptions/gmh5225__CS2-Cheat.md) - Internal CS2 base frameworks such as [[cs2-cheat-base]] (gmh5225; core SDK structures / hook infrastructure / offset definitions / entity class wrappers / rendering setup for building CS2 game modifications; cheat / game:cs2 [Internal]) sit upstream of feature samples such as [[cs2-cheat]] and [[asphyxia-cs2]]. (source: wiki/sources/descriptions/gmh5225__CS2-Cheat-Base.md) C++ starter bases such as [[kisssart-cs2-cheat-base]] (KisSsArt; DirectX injectable DLL; [[kiero]] + ImGui hook/rendering infrastructure; configurable ESP/bunny-hop modules; JSON config; Visual Studio x64 + manual-map injection workflow; cheat development + game security research scaffold; cheat / game:cs2 [Internal]; slug disambiguated from [[cs2-cheat-base]]) extend that lane with a kiero-centric DirectX internal template. Title-specific RDR2 hook frameworks such as [[imgui-rdr2-hook]] (Halen84; C++; Vulkan + DirectX 12 ImGui menu overlay via MinHook/Kiero; hook entry points, render routines, configuration handling, stable menu/input notes; game overlay development and graphics API hooking practice; cheat / render-draw) sit in the same in-process Present-hook overlay lane as a dual-backend Rockstar-title scaffold. (source: wiki/sources/descriptions/Halen84__ImGuiRDR2Hook.md) (source: wiki/sources/descriptions/KisSsArt__CS2-Cheat-Base.md) Modular Rust internal bases such as [[cstrike2-hack]] (W1lliam1337; crate-split interfaces/hooks/settings/rendering; macro-assisted interfaces + pattern scanning; DirectX 11 + egui overlay menu; MinHook interception; cheat development + internal CS2 tooling research; cheat / game:cs2 [Internal]) extend that lane with a Rust scaffold beside C++ bases such as [[cs2-cheat-base]]. (source: wiki/sources/descriptions/W1lliam1337__cstrike2-hack.md) - External CS2 samples such as [[tim-apple]] (`tim_apple.exe`; **External** tag; kristofhracza offset bootstrap via `offset_download.ps1` or manual JSON; gmh5225 fork for Source 2 SDK / pattern-scan / memory-access study) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/kristofhracza__tim_apple.md) (source: wiki/sources/descriptions/gmh5225__tim_apple.md) - Internal CS2 samples such as [[cs2-internal]] (C++; SDK generation / hooking / memory analysis; Internal tag) sit in the same cheat / game:cs2 lane. (source: wiki/sources/descriptions/redbg__CS2-Internal.md) - Internal CS2 samples such as [[cs2internal]] (chaycee; C#; SDK generation / hooking / overlays; cheat / game:cs2 [Internal]) extend that lane with a managed-language in-process path beside C++ samples such as [[cs2-cheat-base]]. (source: wiki/sources/descriptions/chaycee__CS2Internal.md) - CS2 P2C security-research templates such as [[cs2-p2c-templates]] (ccsimplyspolit; VMProtect FVA reconstruction; `VacLiveBypass` MinHook detours on CreateMove/LevelInit/protobuf paths; kernel server-flag/rank spoof drivers; multi-method injectors; depot-aware offset manifests; VAC Live / CS2 client RE for insecure local or CTF study; cheat / game:cs2) sit in the same offensive P2C template lane beside CS:GO P2C forensics via [[csgo-p2c-dumper]]. (source: wiki/sources/descriptions/ccsimplyspolit__CS2-P2C-TEMPLATES.md) - Open-source internal CS2 samples such as [[asphyxia-cs2]] (Asphyxia; ESP / aimbot / triggerbot; Source 2 SDK via interface pointers + pattern scan; Internal tag) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/maecry__asphyxia-cs2.md) - Internal CS2 research frameworks such as [[rabsztyncc-cs2-internal]] (BrufelFX; C++; ESP / chams / triggerbot / aimbot / bunny hop; DX11 Present hook + ImGui menu; direct NT syscalls, PE header wipe, signature busting, thread hiding, optional kernel driver + shared-memory IPC; companion loader + `Offsets.h` SDK; educational game-internals / AC evasion study; cheat / game:cs2 [Internal]) extend that lane with explicit syscall and optional kernel-IPC evasion layers. (source: wiki/sources/descriptions/BrufelFX__RabsztynCC-CS2-Internal.md) - Hybrid internal CS2 suites such as [[projectnexus-csgo]] (Atonl200; C++20 CMake; injected feature DLL + external DX11 ImGui overlay via shared-memory IPC; aimbot / triggerbot / RCS / ESP / movement / skin changer; MinHook + CS2 schema/offset resolution; usermode manual-map loader via direct syscalls; optional kernel driver / [[byovd]] / PE mapper; cheat architecture + AC evasion research; cheat / game:cs2 [Internal]) extend that lane with a split in-process feature module and out-of-process overlay configuration path. (source: wiki/sources/descriptions/Atonl200__ProjectNexus-CSGO.md) - Internal CS2 cosmetic samples such as [[cs2-cheat-source]] (bootmgfw; C++; weapon/glove/knife skin changers via reverse-engineered Source 2 interfaces, schema data, and protobuf network messages; MinHook + VMT detours on game and DX11 Present/swap-chain for ImGui menu + config; cheat / game:cs2 [Internal]) sit in the same cosmetic/internal lane beside [[cs2-cheat-base]] and [[asphyxia-cs2]]. (source: wiki/sources/descriptions/bootmgfw__CS2-Cheat-Source.md) - Internal CS2 samples such as [[aurora]] (gmh5225; ESP / aimbot / visual mods; Source 2 schema system access + entity enumeration for player data + overlay rendering; cheat / game:cs2 [Internal]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/gmh5225__Aurora.md) - CS2 samples such as [[counterstrike2]] (C++; rendering / SDK generation / hooking) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/papstuc__counterstrike2.md) - CS2 samples such as [[csgo2-cheat]] (imnotdatguy / gmh5225 forks; C++; internal rendering / SDK generation / hooking; gmh5225 variant tagged [Internal]) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/imnotdatguy__csgo2-cheat.md) (source: wiki/sources/descriptions/gmh5225__csgo2-cheat.md) - WIP CS2 cheats such as [[bakaware4]] (release-constrained; debug unload/unhook for `-insecure` iteration) also sit in the cheat / game:cs2 lane. (source: wiki/sources/descriptions/nezu-cc__BakaWare4.md) - Title-specific Call of Duty 7 tooling such as [[cod7-tools]] (VcPkg; extensible game:cod7 research) sits in the cheat / game:cod7 lane. (source: wiki/sources/descriptions/nice-sprite__COD7-Tools.md) - Open-source **Call of Duty 4** multiplayer executable reimplementations such as [[kisakcod]] (SwagSoftware; C/C++ CMake/VS; DirectX-era middleware + Steam; gameplay/networking/engine modules for modding and legacy online-shooter exploit-surface research; Game Engine / source) sit in the cheat / game:cod4 modding lane beside educational open FPS bases such as [[assaultcube]]. (source: wiki/sources/descriptions/SwagSoftware__KisakCOD.md) - Open-source **Call of Duty: Black Ops** dedicated server reimplementations such as [[kisakblack]] (SwagSoftware; leaked-source server codebase; DemonWare networking stack, zone/asset loading, community hosting infrastructure; Game Engine / source) sit in the cheat / game:cod black ops server modding lane beside [[kisakcod]] and [[cod7-tools]]. (source: wiki/sources/descriptions/SwagSoftware__KisakBlack.md) - Legacy **Call of Duty: Modern Warfare 2 (2009)** client modification frameworks such as [[s2x]] (Brentdevent; Arxan anti-tamper bypasses, code healing, integrity-check neutralization, custom console, server emulation, modding infrastructure; cheat / game:cod mw2 modding) sit in the title-specific COD client-modding lane beside [[cod-boiii]] and DemonWare server stacks such as [[kisakblack]]. (source: wiki/sources/descriptions/Brentdevent__S2x.md) - Title-specific COD Warzone internal cheat samples such as [[warzone-internal-cheat]] (C/C++; rendering / modding / hooking; gmh5225; cheat / game:cod warzone) and [[modern-warfare-warzone-cheat]] (C/C++; rendering / modding / hooking; gmh5225; cheat / game:cod warzone) sit in the in-process offensive research lane beside overlay-hijack samples such as [[mwclap]] and [[nvidia-overlay-hijack]]. (source: wiki/sources/descriptions/gmh5225__Warzone-internal-Cheat.md) (source: wiki/sources/descriptions/gmh5225__-Modern-Warfare-Warzone-Cheat.md) Outdated COD MW/Warzone internal frameworks such as [[warzone-mw-internal]] (SpiroHappy; C++; ESP / bone rendering / aimbot / recoil / FOV / UAV; ImGui menu; stale reference for internal cheat architecture and FPS feature-module integration) complement those gmh5225 scaffolds as a module-oriented study baseline. (source: wiki/sources/descriptions/SpiroHappy__Warzone-MW-Internal.md) NMan1 COD MW/Warzone internal samples such as [[warzone-internal]] (C++; DX12 present-hook rendering; ESP / aimbot / recoil control; ImGui menu; assembly syscall stubs + game abstraction layers; RE and cheat feature prototyping base; cheat / game:cod warzone [Internal]) extend that lane with a modern D3D12 Present internal beside SpiroHappy and gmh5225 scaffolds. (source: wiki/sources/descriptions/NMan1__warzone-internal.md) Ckateowm **Modern Warfare II** internal samples such as [[modernwarfare2-cpp-external]] (C++; injected DLL; D3D11/12 Kiero Present hook + ImGui; ESP / aimbot / no recoil; Battle.net + Steam offset paths; lazy imports, XOR strings, direct syscalls; cheat / game:cod mw2) extend that lane with MWII-specific dual-client SDK and evasion tradecraft despite the repo's "External" name. (source: wiki/sources/descriptions/Ckateowm__ModernWarfare2-Cpp-External.md) NMan1 external COD Warzone samples such as [[external-warzone-cheat]] (C++; manually mapped kernel driver + usermode memory access; overlay hijack ESP; separate client/driver VS projects + game SDK/offset scaffolding; driver-assisted external tooling RE; cheat / game:cod warzone [External]) complement [[warzone-internal]] with an out-of-process kernel-driver path from the same author. (source: wiki/sources/descriptions/NMan1__external-warzone-cheat.md) External Warzone samples such as [[call-of-duty-warzone-hack-esp-slient-aimbot-internal-unlock-all]] (C#; Win32 P/Invoke RPM + user32 overlay; ESP / silent aimbot / unlock-all; **External** despite repo name; gmh5225; cheat / game:cod warzone) complement that lane with an out-of-process Win32 memory + overlay path. (source: wiki/sources/descriptions/gmh5225__Call-Of-Duty-Warzone-Hack-Esp-Slient-Aimbot-Internal-Unlock-ALL.md) External COD Warzone/MW C++ samples such as [[call-of-duty-warzone-mw-hack-esp-aimbot]] (YMY1666527646; C++; external visualization + targeting assistance; Direct3D9 + ImGui overlay/menu templates; driver-backed memory reads + entity handling; overlay and memory-interaction RE practice; cheat / game:cod warzone [External]) extend that lane with a D3D9 ImGui + driver-comms scaffold beside the C# Win32 path. (source: wiki/sources/descriptions/YMY1666527646__Call-of-Duty-Warzone-MW-HACK-ESP-AIMBOT.md) External Vanguard / Warzone samples such as [[call-of-duty-vanguard-hack-esp-aimbot-unlock-all]] (Win32 `OpenProcess`/`ReadProcessMemory` RPM + DirectX overlay; ESP / aimbot / unlock-all; gmh5225; cheat / game:cod vanguard) extend the same out-of-process COD lane with a DirectX-rendered overlay path. (source: wiki/sources/descriptions/gmh5225__Call-Of-Duty-Vanguard-Hack-Esp-AImbot-Unlock-All.md) Internal Call of Duty Mobile mod-menu samples such as [[codm-esp-aimbot-mod-menu]] (injectable native library + overlay rendering; ESP / aimbot / gameplay mods; gmh5225; cheat / game:codm) extend the mobile COD lane beside PUBG Mobile internals such as [[bypass-pubg-mobile-imgui]]. (source: wiki/sources/descriptions/gmh5225__CODM-ESP-Aimbot-Mod-Menu.md) - Title-specific Paladins internal cheat samples such as [[paladins-internal-cheat]] (gmh5225; private hack refactored to optional **Mhyprot** [[byovd]] backend; borderless-window overlay only—not fullscreen; cheat / game:paladins) sit in the same in-process FPS offensive research lane beside other gmh5225 title internals such as [[r6s-internal-cheat]]. (source: wiki/sources/descriptions/gmh5225__Paladins-internal-Cheat.md) - Title-specific T7 engine script / FastFile linker tooling such as [[t7-linker]] (compiled GSC module linking; T7 script bytecode; README also cites Black Ops 2 FastFile accuracy; gmh5225) sits in the cheat / Call of Duty modding lane beside [[cod7-tools]] and [[paradise-bo2]]. (source: wiki/sources/descriptions/gmh5225__t7-linker.md) Black Ops III client modification/research such as [[cod-boiii]] (client patches, SDK structures, runtime engine analysis/modification tooling; gmh5225; Reverse engineering and analysis) extends that T7 lane with BOIII-specific client and SDK surfaces. (source: wiki/sources/descriptions/gmh5225__COD-boiii.md) - Title-specific CrossFire (CF) samples such as [[titancf]] (C/C++; driver development / rendering / graphics; cheat / game:crossfire; gmh5225) and [[cfclap]] (memory manipulation; ESP / aimbot; cheat / game:crossfire; gmh5225) sit in the cheat / game:crossfire lane for client protection and cheat-detection research. (source: wiki/sources/descriptions/gmh5225__titancf.md) (source: wiki/sources/descriptions/gmh5225__cfclap.md) Title-specific MHXY (Fantasy Westward Journey / 梦幻西游) samples such as [[mhxy]] (Python; driver development / modding; cheat / game:mhxy; gmh5225) and [[mhxy-kernel]] (C/C++; kernel-level work and modding) sit in the same title-specific kernel-cheat lane. (source: wiki/sources/descriptions/gmh5225__mhxy.md) (source: wiki/sources/descriptions/gmh5225__mhxy_kernel.md) - Title-specific Super People client samples such as [[superpeople-client]] (C++; driver development / rendering / modding; cheat / game:super people; gmh5225) sit in the cheat / game:super people lane for client-side offensive research. (source: wiki/sources/descriptions/gmh5225__superpeople-client.md) UE4 SDK ESP/aimbot internals such as [[super-people-esp-aimbot-magic-hack]] (gmh5225; C++; entity reads for player position/health/distance; aimbot + gameplay mods; battle royale) extend that lane with applied UE4 SDK cheat patterns. (source: wiki/sources/descriptions/gmh5225__Super-People-Esp-Aimbot-Magic-Hack.md) Pre-collected UE SDK header dumps such as [[super-people-sdk]] (EBalloon; generated C++ headers for classes, structs, enums, blueprint objects; weapons, vehicles, player pawns, AI modules, animation blueprints; SDK generation / object-hierarchy study; cheat / game:super people) supply static SDK reference material beside live cheat samples. (source: wiki/sources/descriptions/EBalloon__Super-People-sdk.md) - Title-specific Remnant ESP samples such as [[remnant-esp]] (gmh5225; C#; modding / Unreal Engine / memory analysis; cheat / game:remnant) sit in the cheat / game:remnant lane for UE co-op shooter visual-cheat research. (source: wiki/sources/descriptions/gmh5225__RemnantESP.md) - Title-specific Call of Duty: Black Ops II PS3 SPRX source such as [[paradise-bo2]] (Paradise mod menu; window/UI code; newer snapshot) sits beside that lane in the cheat / console PlayStation / game:bo2 lane. (source: wiki/sources/descriptions/gopro2027__ParadiseBO2.md) - Title-specific Battlefield 1 internals such as [[battlefield-1-internal]] (C++; DirectX / SDK generation / hooking) illustrate the cheat / game:battlefield 1 lane. (source: wiki/sources/descriptions/younasiqw__BattleField-1-Internal.md) Title-specific BF1 ESP/aimbot samples such as [[bf1-esp-and-aimbot]] (gmh5225; C/C++; DirectX / rendering / hooking; cheat / game:battlefield 1) extend that Frostbite internal lane with ESP and aimbot focus. (source: wiki/sources/descriptions/gmh5225__BF1-ESP-AND-AIMBOT.md) Title-specific Battlefield 4 internal overlay samples such as [[bf4-internal-overlay]] (gmh5225; C++; DirectX / rendering / SDK generation; cheat / game:battlefield 4) extend that Frostbite internal lane. (source: wiki/sources/descriptions/gmh5225__BF4-Internal-overlay.md) Title-specific Battlefield 2042 internal SDK scaffolds such as [[battlefield-2042-internal-sdk]] (Skengdo; C++; entity/player/vehicle/weapon structures, game context, rendering access, [[world-to-screen]] helpers; explicitly incomplete—entity list iteration unresolved; internal tooling / debugging / game security research prototypes; cheat / game:battlefield 2042 [Internal]) extend that Frostbite lane with RE-oriented SDK scaffolding. (source: wiki/sources/descriptions/Skengdo__battlefield-2042-internal-sdk.md) - The upstream open-source AssaultCube client [[assaultcube]] (assaultcube/AC; CUBE engine; full FPS codebase with assets, maps, scripts, cross-platform tooling; FPS Game) is the common learning title behind educational cheat and AC samples in this lane. (source: wiki/sources/descriptions/assaultcube__AC.md) - Educational AssaultCube internals such as [[simple-ac-internal-cheat]] (C++20; Detours DX hooks / ImGui / ESP / aimbot / offset chains; local learning) illustrate a controlled open-source FPS internal lane. (source: wiki/sources/descriptions/s7shvets7s__simple_ac_internal_cheat.md) - Educational AssaultCube externals such as [[external-esp-hack-assaultcube]] (gmh5225; GDI overlay; RPM entity boxes / names / health; beginner external ESP) complement that lane with a no-inject overlay path on the same learning title. (source: wiki/sources/descriptions/gmh5225__external-esp-hack-assaultcube.md) - Educational AssaultCube externals such as [[voltclient]] (TheHeadphonesAreNeeded; C++; DX11 Dear ImGui transparent overlay; RPM/WPM on `ac_client.exe` v1.3.0.2 offsets; ESP boxes / health bars / tracers / FOV circle + smoothed FOV aimbot; cheat / game:assault cube [External]) extend that lane with a GPU-composited DX11 external beside GDI samples. (source: wiki/sources/descriptions/TheHeadphonesAreNeeded__VoltClient.md) - Educational AssaultCube cheat samples such as [[assault-cube-cheat]] (gmh5225; C++; modding / memory analysis; cheat / game:assault cube) extend the same learning-title lane beside internal and external AssaultCube references. (source: wiki/sources/descriptions/gmh5225__AssaultCubeCheat.md) - Multi-version AssaultCube cheat practice collections such as [[assaultcube-cheat]] (201580ag; internal and external samples; aimbot, ESP, overlays, memory utilities, offset handling; C/C++/C#; ImGui, OpenGL hooks; controlled training context) extend that lane with cross-version hands-on RE and cheat mechanics. (source: wiki/sources/descriptions/201580ag__AssaultCube_Cheat.md) - Educational AssaultCube usermode AC such as [[mandragora]] (gmh5225; ring-3 anti-cheat; purposefully weak; unobfuscated source for reversing practice after Assault Cube hacking) complements cheat samples on the same learning title. (source: wiki/sources/descriptions/gmh5225__Mandragora.md) - Beginner ESP/aimbot walkthrough labs such as [[lab-esp-and-aimbot]] (custom 3D target app + external cheat; RPM / [[world-to-screen]] / entity ESP / aim angle + mouse move; cheat / guide) sit in the same controlled learning lane. (source: wiki/sources/descriptions/kotae4__lab-esp-and-aimbot.md) - Title-specific R6 internals such as [[r6-internal-v3]] (C/C++; modding / SDK generation / memory analysis) illustrate the cheat / game:r6 lane. (source: wiki/sources/descriptions/vctr74__R6-Internal-V3.md) - Title-specific R6 internals such as [[r6table-internal]] (C++; ESP / aimbot / player info via reverse-engineered UE SDK + in-engine overlay rendering) also illustrate that cheat / game:r6 lane. (source: wiki/sources/descriptions/hooksteroid__R6Table_Internal.md) - Title-specific R6 internals such as [[epic-r6-v9]] (beans42; C++; DirectX rendering + SDK generation; cheat / game:r6) extend that in-process DirectX/SDK lane beside [[r6-internal-v3]] and [[r6table-internal]]. (source: wiki/sources/descriptions/beans42__epic-r6-v9.md) - Title-specific R6 internals such as [[internal-rainbow-six-cheat-v3]] (NMan1; C/C++; kernel injector + manually mapped user-mode DLL; D3D11 in-game menu; ESP/aimbot/recoil/spread/movement/FOV; kernel-assisted injection + detection-surface RE; cheat / game:r6 [Internal]) extend that in-process lane beside NMan1's external samples [[rainbow-six-cheat]] and [[overflow-r6-v2]]. (source: wiki/sources/descriptions/NMan1__Internal-Rainbow-Six-Cheat-V3.md) - Title-specific R6 internals such as [[r6-internal]] (JGonz1337; C++; small SDK + hooking utilities + ImGui/D3D11 overlay; snapline ESP, targeting, keyboard handling, entity access; educational internal architecture prototyping; cheat / game:r6 [Internal]) extend that in-process lane as a lightweight cheat-base sample beside [[r6-internal-v3]] and [[epic-r6-v9]]. (source: wiki/sources/descriptions/JGonz1337__r6-internal.md) - Title-specific R6 internals such as [[artemis]] (ArtemisDevGroup; C++; modular game-modification framework for Shadow Legacy; injection/hooking + ImGui/MinHook; event/keybind/draw/game-interaction managers; user extension plug-ins; cheat development + RE experimentation; cheat / game:r6 [Internal]) extend that in-process lane as a modular internal framework beside [[r6-internal]] and [[internal-rainbow-six-cheat-v3]]. (source: wiki/sources/descriptions/ArtemisDevGroup__Artemis.md) - Title-specific Splitgate internals such as [[splitgate-internal]] (C/C++; cheat / game:splitgate) illustrate that same in-process offensive research lane. (source: wiki/sources/descriptions/percpopper__Splitgate-Internal.md) - Title-specific R6 externals such as [[r6-external]] (C/C++; driver development; External tag) also sit in the cheat / game:r6 lane. (source: wiki/sources/descriptions/rushzzz-max__r6-external.md) R6 external v2 such as [[r6s-external-v2]] (gmh5225; C++; kernel driver or handle elevation for external RPM; ESP player/health/operator + aimbot; no in-process injection under [[battleye]]; cheat / game:r6 [External]) extends that BattlEye UE4 external lane. (source: wiki/sources/descriptions/gmh5225__R6S-External-V2.md) Leaked R6 external ESP/aimbot source such as [[rainbow-six-siege-rs6-external-esp-aimbot-hack-cheat]] (gmh5225; external read + overlay; aimbot input via WndProc-only hook to avoid broader detected vectors; cheat / game:r6) extends that lane with a minimal input-surface external sample. (source: wiki/sources/descriptions/gmh5225__Rainbow-Six-Siege-Rs6-External-Esp-Aimbot-Hack-Cheat.md) R6 cheat source such as [[rainbow-6-siege-cheat]] (gmh5225; C/C++; rendering + hooking; cheat / game:r6) adds another hook-and-overlay sample in the same BattlEye-protected title lane. (source: wiki/sources/descriptions/gmh5225__Rainbow-6-Siege-Cheat.md) R6 internal cheat source such as [[r6s-internal-cheat]] (gmh5225; C++; modding + overlays + memory analysis; cheat / game:r6) adds an in-process mod/overlay lane beside rendering/hook samples. (source: wiki/sources/descriptions/gmh5225__R6S-internal-Cheat.md) R6 external cheat dumper tooling such as [[r6-cheat-dumper]] (gmh5225; C/C++; driver development + rendering + animation; out-of-process layout/cheat-structure extraction; cheat / game:r6 [External]) complements that lane with dump-focused external research against [[battleye]]-protected Siege clients. (source: wiki/sources/descriptions/gmh5225__R6-Cheat-Dumper.md) R6 offset dumper/updater tooling such as [[r6-updater]] (Kix48; C++ Visual Studio x64; pattern scanning + memory modules to locate managers and patch-sensitive offsets after game updates; signature refresh + session-time offset extraction; cheat / game:r6 [Dump]) focuses that lane on post-patch signature maintenance beside full cheat-structure dumpers. (source: wiki/sources/descriptions/Kix48__R6Updater.md) [[external-r6s-cheat]] (gmh5225; kernel driver + shared mapped memory section for external entity/position/render reads; ESP + aimbot; cheat / game:r6 [External]) adds a shared-memory KM↔UM external sample in the same BattlEye UE4 lane. (source: wiki/sources/descriptions/gmh5225__External-R6S-Cheat.md) NMan1 R6 kernel-assisted external frameworks such as [[rainbow-six-cheat]] (NMan1; C/C++; full-source Windows cheat framework; kernel driver + external menu + shared-memory comm; loader + rendering + gameplay modules; ESP/chams, silent-aim, recoil/spread, unlock/movement mods; kernel-assisted cheat design RE from anti-cheat perspective; cheat / game:r6 [External]) extend that lane from the same author as [[apex-legends-cheat]] and [[external-warzone-cheat]]. (source: wiki/sources/descriptions/NMan1__Rainbow-Six-Cheat.md) NMan1 R6 v2 kernel-assisted external frameworks such as [[overflow-r6-v2]] (NMan1; C/C++; second-generation external cheat framework; inline kernel function hook bypass + user-mode menu/rendering; aimbot/chams/rapid fire/recoil/spread/speed/FOV; kernel-assisted cheat architecture + AC detection tradeoff RE; cheat / game:r6 [External]) extend that lane as the v2 successor beside [[rainbow-six-cheat]]. (source: wiki/sources/descriptions/NMan1__OverflowR6V2.md) Defensive R6 stat analysis such as [[r6-intel]] (baldspots440; web platform; explainable 0–100 Suspicion Score from R6Data API ranked metrics; integrity/moderation research—not cheat development) complements offensive R6 samples in the same BattlEye-protected title lane. (source: wiki/sources/descriptions/baldspots440__R6Intel.md) - Title-specific Apex Legends externals such as [[apexd3d-external]] (C/C++; driver development / SDK generation / DirectX hooking; cheat / game:apex legends) sit in the cheat / game:apex legends lane under [[easy-anti-cheat]]. (source: wiki/sources/descriptions/hooksteroid__ApexD3D_External.md) - Title-specific Apex Legends kernel-assisted externals such as [[apex-external-cheat]] (bootmgfw; Echo_Apex; C++17; driver-backed cross-process reads + DX11 ImGui overlay; offset/hitbox modules + string encryption; admin-required release; cheat / game:apex legends [External]) sit in the same lane beside [[lithium-kernel]] from the same author. (source: wiki/sources/descriptions/bootmgfw__apex-external-cheat.md) - Title-specific Apex Legends kernel-assisted driver cheat frameworks such as [[apex-legends-driver-cheat]] (TheCruZ; C++ usermode controller + kernel driver R/W + transparent overlay for ESP/aim; loads kernel component via vulnerable-driver mapping; cheat development / AC bypass research; cheat / game:apex legends [External]) sit in the same lane beside [[apex-external-cheat]] and [[direct-efi-apex-cheat]]. (source: wiki/sources/descriptions/TheCruZ__Apex_Legends_Driver_Cheat.md) - Title-specific Apex Legends OpenGL/GLFW external frameworks such as [[apex-external]] (NekoRem; C++; OpenGL + GLFW overlay stack + ImGui UI + custom driver-style memory access; player/loot ESP, glow, aim assist with smoothing/FOV, recoil, bunny hop, configurable visuals; external overlay architecture + memory-driven cheat research; cheat / game:apex legends [External]) sit in the same lane beside [[apex-external-cheat]] and [[apex-legends-driver-cheat]]. (source: wiki/sources/descriptions/NekoRem__apex-external.md) - Title-specific Apex Legends Rust external frameworks such as [[apexdream]] (CasualX; Rust library + Win32 example; process attach + live-memory aim assist with per-weapon trigger settings, ESP/radar overlays, recoil control, player highlighting, projectile prediction; embeddable API; companion `apexdumper` for pelite PE offset recovery; cheat / game:apex legends [External]) sit beside [[apex-external]] in the user-mode external lane under [[easy-anti-cheat]]. (source: wiki/sources/descriptions/CasualX__apexdream.md) Modular backend-embeddable Rust frameworks such as [[apexbot]] (CasualX; custom memory-access backend integration; PID-smoothed aim assist, triggerbot, recoil, ESP/highlights/radar, observer tracking, automation scripts; separated game-state parsing, projectile prediction, and offset handling; gamedata regeneration from dumped offsets; external cheat architecture + feature-engineering research; cheat / game:apex legends [External]) extend that CasualX lane beside [[apexdream]]. (source: wiki/sources/descriptions/CasualX__apexbot.md) - Title-specific Apex Legends kernel-driver external frameworks such as [[apex-legends-cheat]] (NMan1; C++; kernel driver + loader + client DLL; separate VS projects for driver logic, usermode loading, and feature modules; ESP / chams visuals + input-assisted aim; syscall-hooking + kernel-thread execution bypass lane; kernel-mediated cheat pipeline RE; cheat / game:apex legends [External]) sit beside [[apex-legends-driver-cheat]] and [[apex-external]] from the same NMan1 author lane as [[external-warzone-cheat]]. (source: wiki/sources/descriptions/NMan1__apex-legends-cheat.md) - Educational Apex Legends external tutorial codebases such as [[nullptr-apex-external]] (M1fisto; C++; kernel hijacking + game memory R/W + SDK-based entity handling; user-mode visualization/control elements; external cheat architecture + anti-cheat detection challenges; cheat / game:apex legends [External]) sit beside [[apex-legends-esp]] and [[apex-legends-cheat]] in the controlled learning lane. (source: wiki/sources/descriptions/M1fisto__nullptr-apex-external.md) - Title-specific Apex Legends external cheat/SDK samples such as [[astronaut00-apex-external]] (Astronaut00; C++ ImGui menu/overlay + glow/aimbot/entity modules; Rust offset dumper for structure maintenance; cheat prototyping + RE experiments; notes describe implementation as outdated; cheat / game:apex legends [External]) sit beside [[apex-external]] and [[nullptr-apex-external]] in the user-mode external lane under [[easy-anti-cheat]]. (source: wiki/sources/descriptions/Astronaut00__apex-external.md) - Educational Apex Legends external ESP source templates such as [[apex-legends-esp]] (RavenOfTime; C++ Visual Studio; separate kernel driver + usermode GDI overlay + [[kdmapper]] loader; memory-read pipeline and on-screen entity visualization learner template for shooter games; demonstrated on Apex Legends; cheat / game:apex legends [External]) sit beside [[lab-esp-and-aimbot]] and [[external-esp-hack-assaultcube]] in the controlled learning lane. (source: wiki/sources/descriptions/RavenOfTime__Apex-Legends-Esp.md) - Apex Legends DMA externals such as [[apex-dma-cheat-updated]] (boowampp; C++; PCILeech/MemProcFS FPGA remote memory access; aimbot with FOV/smoothing, recoil compensation, ESP, camera calculations, DMA memory library with input/registry/shellcode injection; cheat / game:apex legends [DMA]) sit in the below-OS external lane beside [[cs2-dma]] and [[cs2-dma-cheat]] under [[easy-anti-cheat]]. (source: wiki/sources/descriptions/boowampp__ApexDmaCheatUpdated.md) - Apex Legends KVM/DMA aimbot + glow samples such as [[ez-apex-dma-aimbot]] (Y33Tcoder; C/C++; KVM-based memory reader on Linux host with guest-side control; recoil randomization, non-linear smoothing, target-bone randomization, team-aware glow rendering; experimental DMA workflow + detection-surface reduction research; cheat / game:apex legends [KVM]) bridge FPGA PCILeech Apex stacks such as [[apex-dma-cheat-updated]] with KVM-host lanes such as [[cs2-kvm-dma]] and [[memflow-kvm]] under [[easy-anti-cheat]]. (source: wiki/sources/descriptions/Y33Tcoder__EzApexDMAAimbot.md) - Apex Legends QEMU/KVM external frameworks such as [[apex-dma-kvm-pub]] (MisterY52; C++ gameplay modules + Rust memflow + C FFI; virtualization-focused memory connectors; ESP/aim/prediction; Linux build scripts; DMA/VM-assisted game hacking + AC detection-surface research; cheat / game:apex legends [KVM/DMA]) extend that KVM-host lane beside [[ez-apex-dma-aimbot]] and [[escape-from-tuxkov]]. (source: wiki/sources/descriptions/MisterY52__apex_dma_kvm_pub.md) - Apex Legends QEMU/VFIO DMA-oriented cheat projects such as [[ape-ex-abominations]] (LWSS; C++ feature modules + shell-based gdb injection/extraction/fast-reload automation; interface discovery + pattern scanning; expects evdev-mirror kernel module input; advanced virtualized/hardware-assisted cheating setups; cheat / game:apex legends [Apex]) extend that KVM-host lane beside [[apex-dma-kvm-pub]] and [[escape-from-tuxkov]]. (source: wiki/sources/descriptions/LWSS__Ape-ex-Abominations.md) - Arc Raiders DMA radar/ESP samples such as [[arc-raiders-radar-dma-radar]] (a0yark; C++; FPGA + MemProcFS external reads; Unicorn Engine emulates game decryption routines for GWorld/GameInstance/CameraManager/BoneBase; player/actor iteration framework; cheat / game:arc raiders [DMA]) sit in the below-OS external lane beside [[cs2-dma-radar]] and [[eft-dma-radar-1]] for Unreal titles with obfuscated pointer chains. (source: wiki/sources/descriptions/a0yark__ArcRaidersRadar-dma-Radar.md) - Call of Duty read-only DMA frameworks such as [[luminary-dma]] (TheAustinUS; C++; PCILeech/MockDMA backends; GamePass/BattleNet auto-detect; BattleNet pointer decryption; BO6 offsets; ImGui overlay on separate host; cheat / game:call of duty [DMA]) sit in the below-OS external lane beside [[arc-raiders-radar-dma-radar]] and [[cs2-dma]]. (source: wiki/sources/descriptions/TheAustinUS__LuminaryDMA.md) - CS2 external DMA assistants such as [[hoozi-cs2-dma]] (orphannn; read-only FPGA DMA from separate PC; player ESP with boxes/skeletons/health/armor/name/weapon/distance; map-collision visibility checks for 21 official maps; pattern scan + Source 2 schema offset sync; configurable menu with multi-profile settings; cheat / game:cs2 [DMA]) sit in the below-OS read-only visualization lane beside [[cs2-dma]] and [[cs2-dma-radar]]. (source: wiki/sources/descriptions/orphannn__hoozi-cs2-dma.md) - Title-specific Apex Legends full-cheat samples such as [[apex-full-cheat]] (C/C++; rendering / SDK generation / hooking; cheat / game:apex legends) sit in the same lane. (source: wiki/sources/descriptions/hadevn__apex_full_cheat.md) - Internal Apex Legends cheat framework bases such as [[apex-mizu-base]] (NaiJii; C++; Visual Studio; hooking scaffolding, game/entity abstractions, math utilities, ImGui menu on Windows DirectX; starting framework for feature development and FPS reverse-engineering practice; cheat / game:apex legends [Internal]) sit beside [[apex-full-cheat]] in the same lane under [[easy-anti-cheat]]. (source: wiki/sources/descriptions/NaiJii__Apex-Mizu-Base.md) - Hybrid Apex Legends UM+KM cheat frameworks such as [[project-branthium]] (KaylinOwO; C++ Visual Studio; user-mode client + kernel driver; aimbot, ESP, entity caching, weapon prediction; ImGui + DirectX 9 menu/overlay; low-level memory code in cheat and driver dirs; game-hacking experimentation + RE workflows; cheat / game:apex legends) sit beside [[apex-legends-cheat]] and [[apex-mizu-base]] in the same lane. (source: wiki/sources/descriptions/KaylinOwO__Project-Branthium.md) - Hybrid Apex Legends UM+KM frameworks such as [[uc-apex-remastered]] (BaconToaster; C++ Visual Studio/WDK; kernel driver for privileged memory ops + UM client for gameplay modules and process interaction; DirectX 9 + ImGui overlay and in-tool controls; driver-assisted memory access + real-time overlay research; cheat / game:apex legends) sit beside [[project-branthium]] and [[apex-legends-cheat]] in the same lane. (source: wiki/sources/descriptions/BaconToaster__UC-Apex-Remastered.md) - Educational Apex Legends user-mode external frameworks such as [[r5apex-usermode]] (3nolan5; C++; shared-memory communication with mapped kernel driver for process R/W; glow and highlight manipulation plus minimal extensible baseline architecture; external cheat design + driver-assisted memory access patterns; cheat / game:apex legends [External]) sit beside [[uc-apex-remastered]] and [[nullptr-apex-external]] in the driver-assisted external learning lane. (source: wiki/sources/descriptions/3nolan5__R5Apex-UserMode.md) - Linux internal Apex Legends samples such as [[ayypex]] (gmh5225; Vulkan implicit-layer overlay on the game window—MangoHud-style; cheat / game:apex legends [Linux] [Internal]) extend that lane to Proton/Linux clients. (source: wiki/sources/descriptions/gmh5225__ayypex.md) Linux Discord in-game overlays such as [[vocem-overlay]] (ales-drnz; Vulkan implicit layer + OpenGL interposer; daemon-isolated Discord I/O; in-process graphics hooking / overlay injection study surface—not commercial-AC tested) extend that lane with a non-cheat overlay reference beside MangoHud-style cheat samples. (source: wiki/sources/descriptions/ales-drnz__vocem-overlay.md) - Linux-native Apex Legends cheat research such as [[apex-linux]] (ekknod; C++; cheat / game:apex legends [Linux]) complements [[ayypex]] on non-Windows Apex clients under [[easy-anti-cheat]]. (source: wiki/sources/descriptions/ekknod__apex_linux.md) - Linux service-oriented Apex Legends external automation such as [[project-tanya]] (XRadius; C# / .NET; modular memory access, driver abstraction, game-state modeling, Aim/Sense layers; daemon build/install scripts; process isolation + ptrace hardening; long-running stealth-conscious memory-driven workflows; cheat / game:apex legends [Linux]) extends that lane beside KVM/DMA samples such as [[ez-apex-dma-aimbot]]. (source: wiki/sources/descriptions/XRadius__project-tanya.md) - Title-specific Apex Legends SDK samples such as [[apex-legends-sdk]] (gmh5225; C++; rendering / SDK generation; cheat / game:apex legends) sit in the same lane. (source: wiki/sources/descriptions/gmh5225__apex_legends_sdk.md) - Simplified Apex Legends SDK remaster samples such as [[apex-legends-sdk-remaster]] (dword64; open-source cheat designed for ease of use; avoids Python-binding friction; cheat / game:apex legends) sit beside [[apex-legends-sdk]] in the same lane. (source: wiki/sources/descriptions/dword64__Apex-Legends-SDK-Remaster.md) - Apex Legends live-process offset dumpers such as [[apex-legends-offset-dumper]] (dhanax26; pattern scan + netvar enumeration from running process; interfaces, netvars, SwapChain pointers; cheat / game:apex legends `[Offset]`) automate per-patch layout refresh beside static SDK trees and full cheat samples. (source: wiki/sources/descriptions/dhanax26__Apex-Legends-Offset-Dumper.md) - Legacy Apex Legends ESP samples such as [[apex-esp-old-project]] (gmh5225; C/C++; rendering / SDK generation / overlays; cheat / game:apex legends) sit in the same lane. (source: wiki/sources/descriptions/gmh5225__Apex_ESP_Old_Project.md) - Title-specific Apex Legends aimbot + glow samples such as [[apex-simple-aimbot-glow-apex]] (gmh5225; C/C++; driver development / hooking / memory analysis; cheat / game:apex legends) sit in the same lane. (source: wiki/sources/descriptions/gmh5225__Apex-SIMPLE-AIMBOT-GLOW-APEX.md) - Minimal Apex Legends item-glow PoCs such as [[apex-item-glow]] (Neurosisccc; C++; entity-slot iteration + highlight memory writes; single wall-highlight visual feature; compact memory-write visual-hack proof of concept; cheat / game:apex legends [Item glow]) sit beside full glow/aimbot stacks in the same lane. (source: wiki/sources/descriptions/Neurosisccc__Apex-ItemGlow.md) - Title-specific Apex Legends fixed-cheat samples such as [[apex-cheat-fixed]] (gmh5225; C/C++; driver development / modding / hooking; cheat / game:apex legends) sit in the same lane beside [[apex-simple-aimbot-glow-apex]] and [[apex-full-cheat]]. (source: wiki/sources/descriptions/gmh5225__Apex-CHEAT-FIXED.md) - Title-specific Apex Legends external ESP/aimbot/skinchanger samples such as [[apex-legends-external-esp-aimbot-skinchanger]] (gmh5225; C/C++; rendering / SDK generation / overlays; cheat / game:apex legends [External]) sit in the same lane. (source: wiki/sources/descriptions/gmh5225__Apex-Legends-External-Esp-Aimbot-Skinchanger.md) - Title-specific Apex Legends HWID spoofer samples such as [[apex-spoofer]] (gmh5225; kernel-level HWID-ban evasion; anti-cheat research / modding; cheat / HWID; game:apex legends under [[easy-anti-cheat]]) sit beside universal EAC spoofers such as [[hwid-spoofer-ud-fortnite-warzone-apex-rust-escape-from-tarkov-and-all-eac-be-games-imgui-loader-base]]. (source: wiki/sources/descriptions/gmh5225__Apex-Spoofer.md) - Bundled Apex Legends cheat resource collections such as [[apex-cheating]] (cheatingwitdacode; C# HWID spoofer; seasonal offset dumps; EAC bypass batch scripts; SVG asset extraction; cheat / game:apex legends) aggregate offset tracking, HWID spoofing, and [[easy-anti-cheat]] bypass tooling for researchers studying the full Apex offensive stack. (source: wiki/sources/descriptions/cheatingwitdacode__apex-cheating.md) - Title-specific Apex Legends AI visual cheat samples such as [[nuremx]] (Zurek0x; Python; YOLOv5 screen-capture enemy detection; overlay + aiming; trained weights; configurable runtime; update/version control; avoids direct process memory hooking; Windows/Linux workflows; cheat / game:apex legends [AI]) sit in the external computer-vision offensive lane beside memory/SDK samples such as [[apex-legends-sdk]] and [[apex-linux]]. (source: wiki/sources/descriptions/Zurek0x__NuremX.md) - Title-specific Apex Legends hooking + memory-analysis samples such as [[apex-apex-cheat]] (gmh5225; C/C++; hooking / memory analysis; cheat / game:apex legends) sit in the same lane beside [[apex-cheat-fixed]] and [[apex-simple-aimbot-glow-apex]]. (source: wiki/sources/descriptions/gmh5225__Apex-ApexCheat.md) - Title-specific Apex Legends kernel–usermode communication samples such as [[apex-apex-cheese-test]] (gmh5225; C/C++; KM↔UM channel copied from UnknownCheats; anti-cheat research / driver development; cheat / game:apex legends) sit in the same lane beside [[apex-cheat-fixed]] and [[apex-simple-aimbot-glow-apex]]. (source: wiki/sources/descriptions/gmh5225__Apex-ApexCheeseTest.md) - Title-specific Blood Hunt cheat samples such as [[blood-hunt]] (C/C++; driver development / rendering / modding; cheat / game:bloodhunt; gmh5225) sit in the battle-royale offensive lane under [[easy-anti-cheat]]. (source: wiki/sources/descriptions/gmh5225__blood-hunt.md) External Blood Hunt samples such as [[bloodhunt-external]] (ZZZ-Monster; C++ Visual Studio; ImGui DirectX 9 overlay + memory helpers / offsets / config headers; mhyprot-related driver utilities for low-level process interaction; cheat / game:bloodhunt [External]) and [[bloodhunt-v1-1]] (PhysX1337; C++ external Windows framework; Unreal Engine shooter; memory read + DX9 ImGui overlay; ESP, aimbot, recoil mods; hardcoded offsets, actor caching, on-screen menu; cheat prototyping / AC evasion research) extend that lane with out-of-process architecture study beside [[mhyprot2]] BYOVD tooling. (source: wiki/sources/descriptions/ZZZ-Monster__bloodhunt_External.md) (source: wiki/sources/descriptions/PhysX1337__BloodHunt-v1.1.md) - Title-specific R6 chams samples such as [[r6-chams-public]] (Chameleon Models + visual check; educational; cheat / game:r6 [Chams]) illustrate the chams lane beside internals/externals. (source: wiki/sources/descriptions/igromanru__R6-Chams-public.md) - Historical League of Legends client mod/patcher samples such as [[lol-patcher]] (gmh5225; experimental; last updated Feb 2020; cheat / game:lol) sit in the LoL offensive research lane under [[vanguard]]. (source: wiki/sources/descriptions/gmh5225__lol_patcher.md) - LoL client unpacker samples such as [[lol-unpackman]] (C++; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane beside patcher/mod tooling. (source: wiki/sources/descriptions/gmh5225__lol-unpackman.md) - LoL offset dump samples such as [[lol-offset-dumper]] (C/C++; memory analysis; gmh5225; cheat / game:lol `[Dump]`) sit in the same LoL offensive research lane for live client layout dumps. (source: wiki/sources/descriptions/gmh5225__lol-offset-dumper.md) - LoL process memory dump samples such as [[league-dumper]] (Process Dump fork; LoL code encryption; hidden modules, loose code chunks, import reconstruction; gmh5225; cheat / game:lol `[Dump]`) sit in the same LoL offensive research lane for full PE reconstruction under [[vanguard]]. (source: wiki/sources/descriptions/gmh5225__LeagueDumper.md) - LoL `.text` decrypt/dump samples such as [[league-unpacker]] (DLL injection; decrypts protected `.text`; dumps for IDA static analysis with manual base input; gmh5225; cheat / game:lol `[Dump]`) sit in the same LoL offensive research lane for `.text`-focused static RE rather than full PE reconstruction. (source: wiki/sources/descriptions/gmh5225__League-Unpacker.md) - LoL cheat base frameworks such as [[league-base]] (C++; memory read, object enumeration, champion data, overlay rendering; Packman/Vanguard considerations; gmh5225) sit in the same LoL offensive research lane as full cheat scaffolds rather than dump-only tooling. (source: wiki/sources/descriptions/gmh5225__league-base.md) - LoL modding samples such as [[hh-lol-prophet]] (Go; hh lol prophet; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as client modding study rather than dump or base-scaffold tooling. (source: wiki/sources/descriptions/gmh5225__hh-lol-prophet.md) - LoL assistant client samples such as [[frank]] (JavaScript; WeGame replacement; rendering, animation, asset pipelines; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as launcher/client-side study rather than cheat bases or dump tooling. (source: wiki/sources/descriptions/gmh5225__frank.md) - Custom or modified LoL client implementations such as [[lol-client]] (gmh5225; alternative client/protocol for client-server communication and game-state analysis; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as wire/state study rather than patcher, dump, or cheat-base tooling. (source: wiki/sources/descriptions/gmh5225__LoLClient.md) - LoL external script platforms such as [[ayaya-league-external]] (Node.js; AyayaLeague; custom user scripts; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as out-of-process scripting substrates rather than cheat bases or dump tooling. (source: wiki/sources/descriptions/gmh5225__ayaya-league-external.md) - LoL external viewing tools such as [[lviewlol]] (Python; external memory read; minimap/player positions/cooldown overlay; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as out-of-process game-state visualization rather than cheat bases or dump tooling. (source: wiki/sources/descriptions/gmh5225__LViewLoL.md) - LoL LCU bot extension samples such as [[kbotext]] (programmable bot interface; automated scripting and client control; README `[LCU]`; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as League Client Update API automation rather than memory-read cheat bases or dump tooling. (source: wiki/sources/descriptions/gmh5225__KBotExt.md) - LoL hypervisor-assisted samples such as [[vanderleague]] (C/C++; kernel driver development + rendering; hypervisor-assisted offensive stack; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as below-OS / HV-assisted study rather than in-guest cheat bases or dump tooling. (source: wiki/sources/descriptions/gmh5225__VanderLeague.md) - TFT OCR automation bots such as [[tft-ocr-bot]] (Python; asset pipelines + overlay rendering; screen OCR for automated Teamfight Tactics play; gmh5225; cheat / game:lol `[TFT]`) sit in the same LoL offensive research lane under [[vanguard]] as out-of-process visual automation rather than in-guest memory cheats or dump tooling. (source: wiki/sources/descriptions/gmh5225__TFT-OCR-BOT.md) - LoL client-side skin changer samples such as [[r3nzskin]] (Kurok00; C++; client-side skin rendering without game-file edits; C++ DLL injector; pattern scanning + Python automated pattern updaters; community pattern fetching with [[ksdumper-11]] integration; README `[Skin]`; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as in-guest cosmetic manipulation and post-patch offset recovery rather than OCR bots or dump tooling. (source: wiki/sources/descriptions/Kurok00__R3nzSkin.md) - LoL/TFT client-side skin changer samples such as [[r3nzskin-tft]] (C++; champion skin ID memory patch; client-only cosmetic swap; README `[Skin]`; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as in-guest cosmetic manipulation rather than OCR bots or dump tooling. (source: wiki/sources/descriptions/gmh5225__R3nzSkinTFT.md) - Internal LoL skin changer samples such as [[league-skin-changer]] (DirectX 9/11 hooks + ImGui menu; champion/minion/jungle mob skins; auto skin-database updates; README `[Skin]`; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as in-guest render-path cosmetic manipulation rather than memory-patch-only or dump tooling. (source: wiki/sources/descriptions/gmh5225__LeagueSkinChanger.md) - LoL scripting/modding platforms such as [[leaguesharp]] (JungleTimerHax spectator jungle timers, SkinHax in-game skin changes, champion resize via LoL internal APIs; gmh5225; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as modular in-guest scripting rather than cheat bases or dump tooling. (source: wiki/sources/descriptions/gmh5225__LeagueSharp.md) - LoL LeagueSharp loader samples such as [[leaguesharp-loader]] (C#; DirectX + hooking; bootstrap for [[leaguesharp]] scripting modules; gmh5225; cheat / game:lol) sit in that same LoL lane as in-guest inject/load infrastructure rather than feature modules or dump tooling. (source: wiki/sources/descriptions/gmh5225__LeagueSharp.Loader.md) - LoL LeagueSharp champion plugin assemblies such as [[l-assemblies]] (C#; Orbwalker/TargetSelector combo scripts for multiple champions; ward/summoner cooldown tracker with minimap overlay; gmh5225; cheat / game:lol) sit in that same LoL lane as feature-level scripting modules rather than loaders or dump tooling. (source: wiki/sources/descriptions/gmh5225__L-Assemblies.md) - LoL EloBuddy addon script collections such as [[elobuddy-addons]] (champion automation; orbwalker logic; skill-shot prediction; utility modules; gmh5225; cheat / game:lol) sit in that same LoL lane as historical EloBuddy framework plugins rather than LeagueSharp loaders or dump tooling. (source: wiki/sources/descriptions/gmh5225__EloBuddy-Addons.md) - Internal LoL DirectX 11 cheat samples such as [[league-directx11-internal]] (D3D11 rendering hooks; spell database generation; champion data parsing; ImGui overlay with custom font rendering; named pipe IPC for external tools; gmh5225; cheat / game:lol `[Internal]`) sit in the same LoL offensive research lane under [[vanguard]] as in-guest Present-path feature stacks rather than skin-only or dump tooling. (source: wiki/sources/descriptions/gmh5225__League-DirectX11-Internal.md) - Internal LoL multi-feature cheat samples such as [[league-of-legends-visuals-cheat]] (Vatrials; C++; Visual Studio injector + C++/CLI UI loading DLLs such as R3nzSkin; skin changer/DB, orbwalker, spell prediction, champion scripts, zoom hack; ImGui + DirectX 9; hardcoded offsets + Detours + VMT hooks; cheat / game:lol) sit in the same LoL offensive research lane under [[vanguard]] as full internal inject stacks rather than skin-only or dump tooling. (source: wiki/sources/descriptions/Vatrials__League-of-Legends-Visuals-Cheat.md) - Valorant crosshair-setting utilities such as [[valorantcc]] sit in the cheat / game:valorant lane (client config; Riot-owned assets/endpoints). (source: wiki/sources/descriptions/weedeej__ValorantCC.md) - Valorant internal cheat bases such as [[valorant-internal-cheat]] (C/C++; Unreal Engine SDK generation + hooking; Internal tag), [[valorant-internal]] (C/C++; SDK generation + hooking; gmh5225), and [[valorant-internal-base]] (C/C++; internal base scaffold; gmh5225) illustrate the in-process offensive research lane under [[vanguard]]. (source: wiki/sources/descriptions/kali11211__valorant-internal-cheat.md) (source: wiki/sources/descriptions/gmh5225__valorant-internal.md) (source: wiki/sources/descriptions/gmh5225__valorant-internal-base.md) - Valorant internal cheat samples such as [[valorant-cheat-internal]] (in-process menu; Insert-key open/close default with rebind; README `[Internal]`; gmh5225) sit in the same cheat / game:valorant lane for menu-driven internal UX under [[vanguard]]. (source: wiki/sources/descriptions/gmh5225__Valorant-cheat-internal.md) - Valorant aimbot samples such as [[valorant-aimbot-bypass]] (author-coded aimbot with human-like aim smoothing; gmh5225) sit in the same cheat / game:valorant lane for studying behavioral-evasion-oriented aim assist under [[vanguard]]. (source: wiki/sources/descriptions/gmh5225__Valorant-Aimbot-Bypass.md) - Valorant internal cheat samples such as [[valorant-cheat]] (StuzziKLL-lineage internal; C/C++; anti-cheat research + driver development; gmh5225) sit in the same cheat / game:valorant in-process lane under [[vanguard]]. (source: wiki/sources/descriptions/gmh5225__Valorant-Cheat.md) - Valorant internal ESP/aimbot samples such as [[valorant-esp-aimbot-hack]] (Eduty; fully featured internal hack; C++; gmh5225) sit in the same in-process cheat / game:valorant lane for studying ESP and aimbot feature stacks under [[vanguard]]. (source: wiki/sources/descriptions/gmh5225__Valorant-Esp-Aimbot-Hack.md) - Valorant in-process aimbot/ESP hook samples such as [[internal-valorant-cheat]] (injects into Valorant; hooks rendering and game logic; bypasses [[vanguard]] user-mode protections; gmh5225) sit in the same cheat / game:valorant internal lane for studying feature-level hook stacks. (source: wiki/sources/descriptions/gmh5225__Internal-Valorant-Cheat.md) - Valorant internal cheat samples such as [[94q-valorant-internal]] (94q; C++; basic/memory/silent aim; ESP boxes/chams/glow; FOV + fly/third-person movement; hotkey menu; game-hacking experimentation and RE practice; README `[Internal]`; cheat / game:valorant) sit in that same in-process lane for studying modular internal feature stacks under [[vanguard]]. (source: wiki/sources/descriptions/94q__Valorant-Internal.md) - Valorant ESP/aimbot cheat samples such as [[valorant-esp-aimbot-cheat-hack]] (external or internal memory access; UE4 entity outlines/health/distance ESP plus aimbot; README `[External]`; gmh5225) sit in the cheat / game:valorant lane for studying flexible memory-access patterns and [[vanguard]] detection. (source: wiki/sources/descriptions/gmh5225__Valorant-Esp-Aimbot-Cheat-Hack.md) - Valorant kernel-driver cheat samples such as [[valorant-hack-esp-aimbot-skinchanger]] (ESP/aimbot/skin changer; UE4 entity overlays; kernel driver bypasses [[vanguard]] user-mode protections; gmh5225) sit in the cheat / game:valorant lane for studying multi-feature stacks and kernel-assisted memory access. (source: wiki/sources/descriptions/gmh5225__VALORANT-HACK-ESP-AIMBOT-SKINCHANGER.md) C++ source samples such as [[valorant-hack-esp-aimbot-skinchanger-source]] (typical Valorant cheat architecture; kernel-driver UE4 reads; Vanguard kernel protection bypass; README `[Internal]`; gmh5225) extend that lane for studying full implementation patterns. (source: wiki/sources/descriptions/gmh5225__VALORANT-HACK-ESP-AIMBOT-SKINCHANGER-SOURCE.md) - Valorant ImGui cheat-menu frameworks such as [[valorant-gui-imgui-remake]] (C++; styled tabs/toggles/sliders for ESP/aimbot/visual mods; UE4 interaction patterns; README `[GUI]`) illustrate cheat UI architecture in the same cheat / game:valorant lane. (source: wiki/sources/descriptions/gmh5225__valorant-gui-imgui-remake.md) - Valorant SDK research repos such as [[valorant-sdk-2024]] (C/C++; shader / rendering / audio systems; SDK tag) sit in the same cheat / game:valorant lane under [[vanguard]]. (source: wiki/sources/descriptions/hadevn__Valorant-SDK-2024.md) - Valorant external offset feeds such as [[valorant-externals]] (README `[Offset]` tag; incremental offset refresh; gmh5225) sit in the out-of-process cheat / game:valorant lane beside dump and internal bases. (source: wiki/sources/descriptions/gmh5225__valorant-externals.md) Minimal header-only offset dumps such as [[valorant-offsets]] (apekros; C++ header; address/structure constants for external tooling; README `[Offset]`) complement that lane with a lightweight patch-tracked feed rather than a full SDK or dump framework. (source: wiki/sources/descriptions/apekros__valorant_offsets.md) Automated Valorant offset refresh such as [[valorant-offsets-autoupdater]] (GLX-ILLUSION; C++ Visual Studio; JSON offset data + network fetch; adapts existing updater pattern so cheat/RE toolchains refresh layout constants after patches without full loader rebuild; cheat / game:valorant `[Offset]`) extends that lane with fetch-and-apply maintenance beside static header feeds. (source: wiki/sources/descriptions/GLX-ILLUSION__valorant-offsets-autoupdater.md) Minimal C/C++ offset packs such as [[valorantoffsets]] (10HEAD; engine function + gameplay structure constants; intentionally minimal for quick post-patch updates; cheat / game:valorant `[Offset]`) complement that lane when external tooling depends on current layout constants. (source: wiki/sources/descriptions/10HEAD__ValorantOffsets.md) - Valorant ESP with kernel driver such as [[valorant-esp-hack-with-driver]] (exploits a [[vanguard]] driver vulnerability to load before Vanguard; kernel-injector workflow; gmh5225) sits in the early-load / boot-order offensive lane under the same cheat / game:valorant title. (source: wiki/sources/descriptions/gmh5225__valorant-esp-hack-with-driver.md) - Valorant kernel external memory-read drivers such as [[valo-driver]] (C; physical translate / CR3 / MDL mapping; avoids monitored APIs under [[vanguard]]; gmh5225) sit in the kernel-mode external cheat / game:valorant lane beside [[ntmemory]]-style CR3/phys-read research. (source: wiki/sources/descriptions/gmh5225__valo-driver.md) - Valorant external cheat stacks such as [[valorant-cheat-external]] (kernel driver RPM; no process injection; UE4 entity ESP/aimbot; bypasses [[vanguard]] injection detection; README `[External]`; gmh5225) sit in the same out-of-process cheat / game:valorant lane beside [[valo-driver]] and [[valorant-externals]]. (source: wiki/sources/descriptions/gmh5225__ValorantCheatExternal.md) A related `Valorant-CheatExternal` fork in the same lane emphasizes driver development, shader work, and rendering for external cheat scaffolding. (source: wiki/sources/descriptions/gmh5225__Valorant-CheatExternal.md) The AryuInka `Valorant-Cheat-External` framework in the same lane adds C++ aimbot/ESP with driver-assisted memory reads, overlay rendering, and HWID-spoofing-oriented bundled bypass tooling. (source: wiki/sources/descriptions/AryuInka__Valorant-Cheat-External.md) - Valorant external cheat iterations such as [[valorant-external]] (latest version; enhanced security emphasis; gmh5225) sit in the same out-of-process cheat / game:valorant lane for studying hardened external stacks under [[vanguard]]. (source: wiki/sources/descriptions/gmh5225__Valorant.External.md) - Valorant external cheat source such as [[valorant-external-source]] (ESP/aimbot/player info; kernel driver RPM; separate-window or hijacked overlay; README `[External]`; gmh5225) sits in the same out-of-process cheat / game:valorant lane for studying external architecture and [[vanguard]] kernel protection effectiveness. (source: wiki/sources/descriptions/gmh5225__Valorant-External-Source.md) - Open-source Valorant external cheat **VEX** such as [[valorant-external-cheat]] (bootmgfw; C++20; modular UE5 SDK + kernel driver abstraction; aimbot/triggerbot/lineups; DX11 ImGui overlay; VGK offset/decrypt subsystem; LLVM obfuscation in release; cheat / game:valorant [External]) sits in the same lane beside [[lithium-kernel]] from the same author for studying modular external architecture under [[vanguard]]. (source: wiki/sources/descriptions/bootmgfw__Valorant-External-Cheat.md) - Leaked Valorant external P2C source such as [[valorant-external-p2c-leaked]] (ESP/aimbot/triggerbot; kernel driver RPM; UE state reads under [[vanguard]]; typical commercial external architecture; README `[External]`; gmh5225) sits in the same out-of-process cheat / game:valorant lane for studying P2C design patterns and bypass techniques. (source: wiki/sources/descriptions/gmh5225__Valorant-External-P2C-Leaked.md) - Valorant external cheat samples such as [[valorant-external-1]] (C/C++; OpenGL overlay rendering; out-of-process cheat / game:valorant; gmh5225) sit in the same out-of-process cheat / game:valorant lane for studying non-DX overlay paths under [[vanguard]]. (source: wiki/sources/descriptions/gmh5225__Valorant-External-1.md) - Valorant external cheat samples such as [[phoenix-valorant-cheat]] (YMY1666527646; C++; Visual Studio; ESP/aimbot/rage-mode; OpenGL/GLFW + ImGui menu/overlay; offset defs + vector math + external memory-interaction helpers; cheat / game:valorant [External]) sit in that same user-mode external lane for studying OpenGL external architecture under [[vanguard]]. (source: wiki/sources/descriptions/YMY1666527646__Phoenix-Valorant-Cheat.md) - Valorant external driver PoC such as [[ucmiraka-valorant-external]] (Chase1803; C++ PoC; paired kernel driver hooks win32k **NtUserGetPointerProprietaryId** for custom request packets—process memory R/W and PML4-related data; user client locates game process and repeatedly reads UWorld/ULevel/GameState; low-level external data extraction and driver-communication research under [[vanguard]]; cheat / game:valorant [External]; README `[NtUserGetPointerProprietaryId]`) sits beside kernel-assisted externals such as [[valorant-external-source]] and [[valo-driver]]. (source: wiki/sources/descriptions/Chase1803__UCMiraka-ValorantExternal.md) - EFI manual-map loader research such as [[sumap]] (ekknod; C/C++; pre-boot unsigned driver PE mapping; driver development / memory analysis; cheat / EFI Manual Map) complements [[xigmapper]] and cheat stacks that consume EFI-loaded kernel drivers. (source: wiki/sources/descriptions/ekknod__sumap.md) - EFI boot-time privileged memory access such as [[efi-driver-access]] (TheCruZ; GNU-EFI runtime driver loaded at boot + Visual Studio usermode client for read/write/process-base; build/boot workflow docs; kernel + AC bypass pre-OS path research; cheat / EFI RPM) complements [[efidump]] and [[sub-get-variable]] in the below-OS RPM lane. (source: wiki/sources/descriptions/TheCruZ__EFI_Driver_Access.md) - SetVariable-hook EFI runtime virtual-memory R/W PoC such as [[efi-memory]] (SamuelTulach; firmware-side runtime driver + usermode companion; EfiGuard-inspired SetVariable comm; kdmapper-style mapper client; firmware-assisted memory access / AC bypass research; cheat / EFI RPM) complements [[efi-driver-access]], [[efidump]], and [[sub-get-variable]] in the below-OS RPM lane. (source: wiki/sources/descriptions/SamuelTulach__efi-memory.md) - Title-integrated EFI Apex Legends cheat such as [[direct-efi-apex-cheat]] (TheCruZ; user-mode client + UEFI runtime component; command-based memory ops, process-base resolution, glow/aim logic; runtime variable hooks + kernel function pointers from EFI; firmware-assisted cheat/AC bypass experimentation; cheat / game:apex legends) sits in the below-OS external lane beside [[fortnite-efi-external]] and [[efi-driver-access]]. (source: wiki/sources/descriptions/TheCruZ__Direct-EFI-Apex-Cheat.md) - EFI runtime **`MmCopyMemory`** hook samples such as [[efi-monitor]] (ekknod; C/C++; PatchGuard-safe hooking; driver development / graphics / networking; cheat / EFI driver area; README `[Hooking MmCopyMemory PG safe]`) complement [[sumap]] for below-OS kernel memory-access paths. (source: wiki/sources/descriptions/ekknod__efi-monitor.md) - Educational in-kernel **`MmCopyMemory`** hook sample such as [[simple-mmcopymemory-hook]] (Spuckwaffel; documented learning driver; observe anti-cheat scanner memory-copy behavior; explicitly unstable/detectable; complements [[efi-monitor]] and [[driver-kdtour]] for hook-mechanics study; README `[Hook MmcopyMemory]`) (source: wiki/sources/descriptions/Spuckwaffel__Simple-MmcopyMemory-Hook.md) - Kernel-thread driver + usermode controller such as [[kernel-thread-driver]] (Spuckwaffel; status-code KM↔UM comms; target process setup, memory read, module base retrieval; AC bypass research / kernel-user architecture experiments in protected games; README `[Thread]`) (source: wiki/sources/descriptions/Spuckwaffel__Kernel-Thread-Driver.md) - Custom **`KiSystemStartup`** research such as [[ki-system-startup-meme]] (ekknod; C/C++; kernel-level work / driver development / graphics; cheat / EFI driver area; README `[Custom KiSystemStartup]`) complements [[efi-monitor]] and [[sumap]] for early kernel-init hook paths loaded from below OS. (source: wiki/sources/descriptions/ekknod__KiSystemStartupMeme.md) - Valorant external UE4 cheat samples such as [[ue4-c-]] (frankelitoc; EFI manual-mapped kernel driver + IOCTL dispatch-hook comm; ToolHelp32 process enum; driver-backed UE4 actor/player reads; DirectX 9 ImGui overlay; README `[External]`) sit in the same out-of-process cheat / game:valorant lane for studying EFI-loaded external stacks under [[vanguard]]. (source: wiki/sources/descriptions/frankelitoc__UE4-c-.md) - Title-specific Thetan Arena SDKs such as [[thetan-arenasdk]] (rendering / audio / physics) illustrate the cheat / game:thetan lane. (source: wiki/sources/descriptions/xkp95175333__Thetan_ArenaSDK.md) - Title-specific The Finals internals such as [[the-finals-interior-cheat]] (C/C++; rendering / SDK generation / hooking; gmh5225) illustrate the in-process offensive research lane for cheat / game:the finals. (source: wiki/sources/descriptions/gmh5225__the-finals-interior-cheat.md) - ASI Loader–based remaster bridges such as [[gta4-rtx]] (GTA IV Complete Edition → RTX Remix; custom runtime / light / wetness) illustrate DirectX compatibility tooling adjacent to graphics-mod research. (source: wiki/sources/descriptions/xoxor4d__gta4-rtx.md) GTA IV Complete Edition ASI fix/enhancement patches such as [[gtaiv-eflc-fusionfix]] (ThirteenAG; rendering bugfixes, graphics quality, gameplay fixes, configurable visual settings via ASI injection; graphics/FPS/QoL/scripting/widescreen; complements [[gta4-rtx]]) sit in the same DirectX compatibility / graphics-mod lane. (source: wiki/sources/descriptions/ThirteenAG__GTAIV.EFLC.FusionFix.md) GTA V mod-menu / cheat frameworks such as [[phake]] (C++; ScriptHookV or direct memory access; RAGE engine hooks; vehicle spawn / teleport / money / ESP / god mode; cheat / `[Mod Menu]`; gmh5225) illustrate the open-world ScriptHookV mod-menu lane beside [[gta4-rtx]] graphics-mod work. (source: wiki/sources/descriptions/gmh5225__pHake.md) C++/Lua hook-and-render bases such as [[bigbasev2]] (rendering / modding / hooking scaffold; cheat / game:gta5; gmh5225) sit in the same mod-menu foundation lane beside [[phake]] and [[grandtheftautov-cheat]]. (source: wiki/sources/descriptions/gmh5225__BigBaseV2.md) Open-source GTA V PC cheat such as [[grandtheftautov-cheat]] (mod menu; money hacks / vehicle spawn / teleport / player mods via scripting and memory manipulation; cheat / game:gta5; gmh5225) sits in the same mod-menu lane beside [[phake]]. (source: wiki/sources/descriptions/gmh5225__GrandTheftAutoV-Cheat.md) Leaked GTA V online mod-menu source such as [[spookimystic-gta-leak]] (SpookiMystic; RAGE scripting hooks; money drops / teleport / vehicle spawn / god mode / griefing; cheat / `[Menu]`; gmh5225) complements [[phake]] for studying online mod-menu architecture and Rockstar AC detection of live modifications. (source: wiki/sources/descriptions/gmh5225__SpookiMystic-GTA-Leak.md) Documentation-only Lua scripting/API references for the YimMenu ecosystem via [[yimmenu]] (command docs, Lua interfaces, LibreTranslate setup; post–source-removal maintainer lane for script authors) complement full menu implementations in the same GTA V mod-menu lane. (source: wiki/sources/descriptions/YimMenu__YimMenu.md) GTA V v1.59 byte-pattern signature collections such as [[gta-5-sigs-1.59]] (World, ReplayInterface, Viewport, Ammo, Clip structures; cheat / game:gta5 `[Offset]`; gmh5225) sit in the same cheat / game:gta5 address-discovery lane beside memory-analysis samples. (source: wiki/sources/descriptions/gmh5225__GTA-5-SIGS-1.59.md) GTA V Python memory-analysis cheat samples such as [[gta5cheat]] (Python; memory analysis; cheat / game:gta5; gmh5225) and Qt-fronted variants such as [[gta5cheat-qt]] (C/C++; Qt UI; memory analysis; cheat / game:gta5; gmh5225) sit in the same cheat / game:gta5 lane beside [[phake]]. (source: wiki/sources/descriptions/gmh5225__gta5cheat.md) (source: wiki/sources/descriptions/gmh5225__gta5cheat_qt.md) GTA V DMA memory tools such as [[gta5-dma-cheat]] (fmc999; C++ Win32; MemProcFS/VMMDLL + ImGui/DX11 overlay; god mode / teleport / vehicle edits / heist helpers; Legacy + Enhanced builds; ships CE offset tables incl. BattlEye patches; cheat / game:gta5 `[DMA]`) sit in the below-OS external lane beside in-process mod-menu samples. (source: wiki/sources/descriptions/fmc999__GTA5-DMA-CHEAT.md) GTA V Enhanced user-mode external tools such as [[akheartbeat-be]] (AkitaYui; C++; separate-process RPM/WPM + AOB scan; D3D11 overlay menu; stat/script global/local editors; runtime [[battleye]] detection patches; BEClient↔BEDaisy architecture notes; cheat / game:gta5 `[External]`) sit in the same external lane without DMA hardware. (source: wiki/sources/descriptions/AkitaYui__AkHeartbeat-BE.md) GTA V save/snapmatic viewers such as [[gta5view]] (snapmatic photos / save files / profile data; proprietary format parse; export and manage UGC offline; Viewer/Editor; gmh5225) illustrate the non-cheat modding utility lane beside ScriptHookV cheat work. (source: wiki/sources/descriptions/gmh5225__gta5view.md) GTA V UI drag-resize mods such as [[gtav-dragresize]] (drag-to-resize for in-game overlay windows and HUD elements via rendering and input handling; gmh5225) extend that client UI-modification lane beside offline utilities. (source: wiki/sources/descriptions/gmh5225__GTAV_DragResize.md) GTA III: The Definitive Edition internal hook cheat such as [[gtaiii-de-goldhook]] (ImGui overlay via DirectX hooking; gameplay modifications and visual enhancements; cheat / game:gta3; gmh5225) sits in the classic-trilogy remaster internal-cheat lane beside [[game-gta-re3]] engine-study work. (source: wiki/sources/descriptions/gmh5225__GTAIII-DE-GoldHook.md) alt:V Multiplayer server anti-cheat guides such as [[alt-v-anticheat-guide]] (gmh5225; server-side cheat detection, client integrity checks, behavior monitoring; Anti Cheat / guide; `[GTA5 MP servers]`) sit in the defensive server-operator lane opposite client-side GTA V cheat samples. (source: wiki/sources/descriptions/gmh5225__alt-V-Anticheat-Guide.md) Client-side alt:V AC reference builds such as [[gvmp-anticheat]] (divodeuxsevres; GVMP.de; ENet + DirectX hooks, MinHook, pattern scan, process integrity; Anti Cheat) illustrate the defensive implementation lane beside those guides. (source: wiki/sources/descriptions/divodeuxsevres__gvmp-anticheat.md) DX3 subset reimplementations such as [[free-direct]] (C++20; DirectDraw/DirectSound/DirectPlay on SDL3 + ENet for legacy 2D titles) sit in the same DirectX Compatibility lane. (source: wiki/sources/descriptions/openeggbert__free-direct.md) Microsoft's [[d3d9on12]] (D3D9 usermode DDI mapped to D3D12 for legacy D3D9 on modern stacks) extends that lane for D3D9-era titles. (source: wiki/sources/descriptions/microsoft__D3D9On12.md) DirectX 12 DLSS unlock/wrapper mods such as [[dlss-unlocked]] (ShyVortex; NGX/Streamline proxy intercept; OptiScaler/FSR 3.1 bridge; registry or bundled-library driver-signature bypass; ASI/DXGI loader variants; Windows + Proton; DirectX Compatibility / vendor graphics-library interception research) extend that lane for mod developers studying DLL injection and Detours-style API hooking. (source: wiki/sources/descriptions/ShyVortex__dlss-unlocked.md) - Hidden-PVE / QEMU-KVM anti-detection (e.g. [[proxmox-ve-anti-detection]], [[qemu-anti-detection]] device-string spoof such as QEMU→ASUS keyboard, [[qemu-patched]] CPUID/SMBIOS/ACPI fingerprint masking, [[hardened-qemu]] multi-hypervisor artifact hiding, [[hypervisor-phantom]] Bash-automated Linux VM lab with anti-detection QEMU/EDK2/kernel/VFIO patches for anti-VM / AC analysis VMs) sits in the `Cheat > QEMU/KVM/PVE/VBOX` lane. (source: wiki/sources/descriptions/zhaodice__proxmox-ve-anti-detection.md) (source: wiki/sources/descriptions/zhaodice__qemu-anti-detection.md) (source: wiki/sources/descriptions/kila58__qemu-patched.md) (source: wiki/sources/descriptions/batusan__Hardened-qemu.md) (source: wiki/sources/descriptions/Scrut1ny__Hypervisor-Phantom.md) - Arch Linux GPU passthrough lab setup such as [[kvm-gpu-passthrough]] (BigAnteater; GRUB/libvirt/QEMU shell scripts + config templates; IOMMU/VT-d and AMD/Intel BIOS prerequisites; isolated gaming or security-research VMs with near-native graphics; README GPU Passthrough) sits in that same research-host lane beside anti-detection orchestrators. (source: wiki/sources/descriptions/BigAnteater__KVM-GPU-Passthrough.md) - KVM host troubleshooting notes such as [[kvm-performance]] (SingularityCloud; ioapic driver tuning, split-lock, unhandled WRMSR/RDMSR on Unraid/Proxmox; game launch failures and performance in virtualized AC-protected titles; README [ioapic]) sit in that same QEMU/KVM/PVE research-host lane beside anti-detection builds. (source: wiki/sources/descriptions/SingularityCloud__KVM.Performance.md) - KVM RDTSC timing-handler patches such as [[rdtsc-kvm-handler]] (WCharacter; Linux kernel C; intercept/alter guest RDTSC on Intel VMX and AMD SVM; fake timestamp deltas + QEMU CPU flags such as disabling RDTSCP; timing-based anti-cheat / VM-evasion research; cheat / Bypass RDTSC) sit in that same below-OS hypervisor-timing lane beside [[checkhv-um]] and [[ophion]]. (source: wiki/sources/descriptions/WCharacter__RDTSC-KVM-Handler.md) - Linux KVM VM-exit timing compensation patches such as [[better-timing]] (SamuelTulach; kernel patch + docs/demos; records VM-exit timing characteristics and offsets guest TSC for bare-metal-like execution timing; reduced detection by common VM-check tools; virtualization security / anti-cheat timing-heuristic testing; cheat / Bypass CPU Timing) sit beside [[rdtsc-kvm-handler]] in that below-OS hypervisor-timing lane. (source: wiki/sources/descriptions/SamuelTulach__BetterTiming.md) - VirtualBox on a KVM backend via [[virtualbox-kvm]] (cyberus-technology; hardware graphics acceleration not in GUI yet—manual setup; cheat / QEMU/KVM/PVE/VBOX research-host lane) also sits in that lane beside QEMU/PVE tooling. (source: wiki/sources/descriptions/cyberus-technology__virtualbox-kvm.md) - [[anticheattoggle]] (lsxll666; WinForms ACE/Perfect World/Reason CyberSecurity kernel-driver toggle for VirtualBox VERR_INVALID_NAME (-104); CLI `--off`/`--on`/`--status` + one-click restore; cheat / QEMU/KVM/PVE/VBOX research-host lane) (source: wiki/sources/descriptions/lsxll666__AntiCheatToggle.md) - Title-specific CS:GO cheats hosted inside KVM/QEMU guests such as [[kvm-csgo-cheat]] (Rust; gmh5225) also sit in that QEMU/KVM/PVE/VBOX research lane for below-OS isolation study. (source: wiki/sources/descriptions/gmh5225__kvm-csgo-cheat.md) - Host-side KVM/QEMU CS1.6 triggerbots such as [[cs16-trigger-kvm]] (gmh5225; guest memory APIs + input injection from the hypervisor host) also sit in that below-OS isolation lane. (source: wiki/sources/descriptions/gmh5225__cs16-trigger-kvm.md) - QEMU-based Escape from Tarkov cheat frameworks such as [[escape-from-tuxkov]] (Qemu-Gang; C++; gameplay modules + memory/data pipelines for Linux/QEMU external or hybrid setups; cheat / game:eft [QEMU]) extend that below-OS isolation lane to Unity/BattlEye titles beside CS:GO/KVM samples. (source: wiki/sources/descriptions/Qemu-Gang__Escape-from-TuxKov.md) - CS2 KVM/DMA radar/ESP samples such as [[cs2-kvm-dma]] (atombottle; separate VM/host cheat logic; DMA hardware or KVM memory mapping; zero guest-OS software footprint) extend that lane to Source 2 beside PCIe-only [[cs2-dma]] stacks. (source: wiki/sources/descriptions/atombottle__cs2_kvm_dma.md) - VMware Workstation anti-detection hardening via [[vmware-hardened-loader]] (C/C++ hypervisor-level loader; CPUID/SMBIOS/ACPI/registry/MAC spoof; Windows + Linux guests) sits in the same QEMU/KVM/PVE/VBOX research lane. (source: wiki/sources/descriptions/hzqst__VmwareHardenedLoader.md) - VMware guest VM-evasion helper [[vmware-cloak]] (PowerShell; cloak VMware Windows VMs from malware anti-VM checks; lighter analyst workflow vs [[vmware-hardened-loader]]) sits in the same QEMU/KVM/PVE/VBOX research lane. (source: wiki/sources/descriptions/d4rksystem__VMwareCloak.md) - PVE lab helper scripts such as [[proxmox]] (dialog-driven host/LXC/VM installers) sit in the same QEMU/KVM/PVE research-host lane. (source: wiki/sources/descriptions/tteck__Proxmox.md) - Quick guest create/run via [[quickemu]] (optimized QEMU VMs for Windows/macOS/Linux; portable configs, no elevated perms) also sits in that QEMU/KVM research-host lane. (source: wiki/sources/descriptions/quickemu-project__quickemu.md) - Browser-tab full-system emulation via [[qemu-wasm]] (Emscripten WASM port of QEMU; x86 and other arch guests; VirtIO/network/storage through browser APIs; no server-side VM host) also sits in that QEMU/KVM research-host lane. (source: wiki/sources/descriptions/ktock__qemu-wasm.md) - C++ remake [[mvisor]] (kernel-level + rendering/audio systems) also sits in the `Cheat > QEMU/KVM/PVE/VBOX` research lane. (source: wiki/sources/descriptions/tenclass__mvisor.md) - WSL2 networking lab work via [[docker-win]] (networking-centric WSL2 host plumbing for cheat / QEMU/KVM/PVE/VBOX researchers) also sits in that research-host lane. (source: wiki/sources/descriptions/k3v1n1990s__docker-win.md) - ARM64 Type-1 reference HV [[gunyah-hypervisor]] (trusted/dependent VM hosting) also sits in that QEMU/KVM/PVE/VBOX research lane. (source: wiki/sources/descriptions/quic__gunyah-hypervisor.md) - On-device Snapdragon VM host [[droidvm]] (QEMU/KVM + Gunyah; ARM64/x86_64 guests; VNC/console; README Android Emulator lane) complements that stack for mobile hypervisor research. (source: wiki/sources/descriptions/Droid-VM__DroidVM.md) - AMD/Intel QEMU research host [[qemu-gvm]] (mobile / Android emulator focus) also sits in that QEMU/KVM lane for emulator researchers. (source: wiki/sources/descriptions/qemu-gvm__qemu-gvm.md) - Original Xbox software emulation via [[xqemu]] (full-machine QEMU, no hardware VT required) also sits in that QEMU/KVM research lane for title playback / RE. (source: wiki/sources/descriptions/xqemu__xqemu.md) - Architecture-neutral dynamic analysis via [[panda]] (QEMU-based PANDA; full-machine software emulation without hardware VT) sits in the same QEMU/KVM research / DBI lane. (source: wiki/sources/descriptions/panda-re__panda.md) - Intel-PT hypervisor fuzzing via [[qemu-nyx]] (fast memory/device reset, PT decode, breakpoint hooks + fuzzing frontend) also sits in that QEMU/KVM research / DBI lane. (source: wiki/sources/descriptions/nyx-fuzz__QEMU-Nyx.md) - Windows coverage-guided fuzzing via [[winafl]] (AFL port; DynamoRIO/Intel PT; persistent mode; closed-source hook + mutate; corpus minimize + crash triage) sits in the Anti Cheat > Fuzzer / DBI research lane. (source: wiki/sources/descriptions/googleprojectzero__winafl.md) - Snapshot-based distributed fuzzing via [[wtf]] (0vercl0k; C++; coverage-guided; emulator/VM snapshot execution; user/kernel; corpus + coverage + trace workflows; Windows + experimental Linux; game components, drivers, system services; Anti Cheat > Fuzzer lane) sits beside hypervisor and DBI fuzzers in that research lane. (source: wiki/sources/descriptions/0vercl0k__wtf.md) - Fuzz target identification via [[fuzzable]] (C/C++ source + binary integration; viable function targets for harness setup; Anti Cheat > Fuzzer / Binary Ninja plugins lane) sits beside that coverage-guided fuzzing workflow. (source: wiki/sources/descriptions/ex0dus-0x__fuzzable.md) - ISP RAS analysis/instrumentation QEMU fork [[ispras-qemu]] (coverage / taint / symbolic-exec support; README `windbg` tree) also sits in that QEMU/KVM research / DBI lane. (source: wiki/sources/descriptions/ispras__qemu.md) - Structured QEMU internals documentation via [[qemu-blog]] (Airbus SecLab; machine/device creation, memory regions, interrupts, timers, PCI, execution flow, TCG; Markdown + source refs; cheat / guide) also sits in that QEMU/KVM research-host lane. (source: wiki/sources/descriptions/airbus-seclab__qemu_blog.md) - Original Xbox LLE via [[xemu]] (QEMU fork; NV2A/MCPX/NForce/Pentium III; OpenGL + SDL2; ISO/XISO) sits in the console `Xbox` lane for hardware-internals / preservation study. (source: wiki/sources/descriptions/xemu-project__xemu.md) - DEF CON Dreamcast PlanetWeb browser exploit chain via [[defcon-dreamcast-planetweb-research]] (piffd0s; Eden RCE + unbounded memory write + MIME stack overflow → native SH-4 DOOM on emulated console without debugger; Python DNS/HTTP/POP3 orchestration; vintage console browser attack-surface research; Cheat) sits in the retro-console RE lane beside Xbox/Game Boy emulator samples. (source: wiki/sources/descriptions/piffd0s__Defcon-Dreamcast-Planetweb-Research.md) - Game Boy hardware emulation via [[kevboy]] (Rust; CPU/memory/graphics/input + ROM formats) sits in the console `Game Boy` lane for emulator architecture study. (source: wiki/sources/descriptions/xkevio__kevboy.md) - Peer Rust Game Boy emulator [[feather-gb]] targets retro handheld emulator developers and GB-area reverse engineers. (source: wiki/sources/descriptions/vojty__feather-gb.md) - Multi-system retro emulator [[bizhawk]] (TASEmulators; C#/.NET + native C/C++ cores; TAStudio movie editing, Lua memory/input scripting, RAM search/watch, hex editor, CPU debuggers/disassemblers, trace logging, savestates/rewind, Game Genie/GameShark decoders; NES/SNES/GB/GBA/Genesis/N64/DS/PlayStation/MAME arcade; deterministic frame-by-frame control for TAS authors, cheat testing, and retro game internals RE) sits in the console retro-emulator lane beside [[feather-gb]] and [[kevboy]]. (source: wiki/sources/descriptions/TASEmulators__BizHawk.md) - Retro handheld theme asset packs such as [[retro-game-console-icons]] (KyleBing; multi-size PNG retro console icons; TrimUI/Miyoo theme pipelines; editor tooling + emulation content/modding for handheld UI) sit beside that console retro-emulator lane. (source: wiki/sources/descriptions/KyleBing__retro-game-console-icons.md) - Cycle-accurate Rust GB/GBC emulator [[gecko]] (CPU/PPU/APU; wgpu render; desktop library GUI) sits in the console `Game Boy` lane—README miscategorizes it under `GameCube/Wii`. (source: wiki/sources/descriptions/ioncodes__gecko.md) - GBA cartridge RE in Ghidra via [[gba-ghidra-loader]] (region/IO map + header entry point) sits in the console `Game Boy` / Cheat Ghidra Plugins lane. (source: wiki/sources/descriptions/pudii__gba-ghidra-loader.md) - Game Boy DMG cartridge RE in Ghidra via [[ghidradboy]] (Gekkio; Kotlin/Java; Sharp SM83 Sleigh; banked/unbanked ROM loading, boot ROM variants, memory map blocks, hardware register symbols; retro game binary analysis / low-level firmware research) sits in the same console `Game Boy` / Cheat Ghidra Plugins lane beside [[gba-ghidra-loader]]. (source: wiki/sources/descriptions/Gekkio__GhidraBoy.md) - Analogue Pocket GB/GBC openFPGA cheat deployment via [[openfpga-gbc-cheats-ui]] (Python/tkinter; libretro cheat DB browse; Game Genie/GameShark parse; `.cht` SD-card write; CPU-read vs RAM-write safety flags; CLI ROM compare-byte verify) sits in the console `Game Boy` lane for retro hardware cheat workflows. (source: wiki/sources/descriptions/kroy-the-rabbit__openfpga-GBC-cheats-ui.md) - Xbox 360 emulation via [[xenia]] (C++; PowerPC recompiler, D3D12/Vulkan GPU, XAM/kernel/XEX) sits in the console `Xbox` lane for hardware-abstraction / binary-translation research. (source: wiki/sources/descriptions/xenia-project__xenia.md) - macOS port [[xenia-mac]] extends that Xbox 360 HLE stack to Apple hosts for emulator / Xbox research. (source: wiki/sources/descriptions/wmarti__xenia-mac.md) - Xbox360→Windows executable porting via [[recompiler]] supports console-emulator / Xbox research without full HLE. (source: wiki/sources/descriptions/rexdex__recompiler.md) - Xbox 360 emulator [[xbox360-emu]] (C/C++; kernel-level work, modding, memory analysis) sits in the console `Xbox` lane for emulator developers and Xbox researchers. (source: wiki/sources/descriptions/exjam__xbox360-emu.md) - Xbox 360 XEX static analysis in IDA Pro via [[idaxex]] (C++ loader; XEX format parse, PE extraction, import/export + kernel symbol naming; IDA 9) sits in the console `Xbox` lane for reverse engineers and console security researchers. (source: wiki/sources/descriptions/emoose__idaxex.md) - Xbox 360 modded-console backup install and XEX/package patching via [[x360gamehack2025]] (IcyModz420; C# WinForms/.NET Framework; RGH/JTAG/Bad Update/Bad Avatar/devkit + OG Xbox ISO/XBE; XEX encrypt/decrypt/compress, Title ID/Media ID changes, ISO→GOD/STFS, FTP/USB deploy; without Xbox Neighborhood) sits in the console `Xbox` lane for homebrew/modding and backup-deployment workflows. (source: wiki/sources/descriptions/IcyModz420__X360GameHack2025.md) - Xbox 360 live XBDM trainer/debug via [[toastylink]] (WoahToasty; from-scratch C++17; RGH/JTAG; pointer chains, CE-style scan/freeze, PPC patch assembler, JSON cheat tables, LAN discovery; Cheat Debugging) sits beside [[x360gamehack2025]] for network memory RE on modded consoles. (source: wiki/sources/descriptions/WoahToasty__ToastyLink.md) - Xbox 360 fuse/bootloader/NAND dump for LLE emulator prep via [[xenondumper]] (Byrom90; C/C++; modified retail/devkit; fuses, bootloader, NAND artifacts; console RE, preservation, emulator preparation research) sits in the console `Xbox` lane beside [[x360gamehack2025]] and [[toastylink]] for modded-console artifact extraction before PC emulation. (source: wiki/sources/descriptions/Byrom90__XenonDumper.md) - Xbox One/Series SystemOS kernel exploit via [[collateral-damage]] (CVE-2024-30088; kernel 25398.4478, 25398.4908, 25398.4909) sits in the console `Xbox` lane for emulator developers and Xbox researchers. (source: wiki/sources/descriptions/exploits-forsale__collateral-damage.md) - x86/x64 PE AOT binary translation via [[levo]] (Ghidra CFG recovery → LLVM lift/recompile; `kernel32` API-intercept runtime) supports Windows game-client binary-translation study without full emulation. (source: wiki/sources/descriptions/momo5502__levo.md) - Educational x86 dynamic-recompilation practice via [[dynre-x86]] (Zydis instruction decode + operand inspect; register tables; early pipeline study) complements [[levo]] as a decode-first learning baseline in the binary-translation lane. (source: wiki/sources/descriptions/aroxby__dynre-x86.md) WIP JIT-based x86-64 user-mode emulator [[zyemu]] (handler codegen + code cache; Zydis; C++; Windows User Space Emulator lane) extends that decode/codegen pipeline toward runnable low-level emulation. (source: wiki/sources/descriptions/ZehMatt__zyemu.md) - Android Windows compatibility via [[winlator]] (Box86/Box64 x86→ARM translation + Wine + PRoot container; Mesa Turnip/VirGL GPU; virtual desktop + touch; runs Windows x86/x64 apps/games on ARM Android; cheat / `Windows Emulator`) sits in the cross-architecture binary-translation lane beside [[levo]] and WHP guests such as [[winvisor]]. (source: wiki/sources/descriptions/brunodev85__winlator.md) - Linux x86/x64-on-RISC-V userspace emulation via [[felix86]] (JIT recompiler, vectorized SSE translation, RISC-V extensions; modern C++; cross-architecture binary execution on RISC-V Linux hosts; cheat / `Linux Emulator`) complements Android [[winlator]] in the inverse translation direction. (source: wiki/sources/descriptions/OFFTKP__felix86.md) - Switch custom firmware platform [[atmosphere]] (Atmosphere-NX; C/C++; modular Fusee/Exosphere/Stratosphere stack; boot/runtime patches, TrustZone, sysmodules, emuMMC; console security research + homebrew system control; README [Customized firmware]) sits in the console `Nintendo Switch` lane. (source: wiki/sources/descriptions/Atmosphere-NX__Atmosphere.md) - GUI Switch bootloader and maintenance toolkit [[hekate]] (CTCaer; C/low-level; multi-environment boot management, payload launch, firmware patches; eMMC/emuMMC backup-restore, partition tools, hardware diagnostics; console modding / firmware research / CFW entry point; README [A GUI based Nintendo Switch Bootloader]) sits in the console `Nintendo Switch` lane. (source: wiki/sources/descriptions/CTCaer__hekate.md) - Nintendo Switch homebrew memory/cheat tooling such as [[se-tools]] (scanner / pointer search / cheat manager / live viewer via Atmosphere `dmnt:cht`) sits in the console `Nintendo Switch` lane. (source: wiki/sources/descriptions/tomvita__SE-tools.md) - LLE Nintendo 3DS emulator [[3beans]] (Hydr8gon; C++; ARM9/ARM11 + Teak DSP cores; full OS boot from boot9/boot11/NAND dumps; HLE/LLE audio; software + hardware GPU rendering; Windows/macOS/Linux/Android; console `Nintendo 3DS` / preservation + hardware-internals study). (source: wiki/sources/descriptions/Hydr8gon__3Beans.md) - Nintendo DS homebrew Counter-Strike demake [[counter-strike-nintendo-ds]] (Fewnity; C; devkitPro + Nitro Engine; weapons/bots/maps/networking; online multiplayer on emulator and real hardware; DS-family device + emulator networking setup; homebrew FPS on constrained handheld hardware; cheat / Nintendo CS). (source: wiki/sources/descriptions/Fewnity__Counter-Strike-Nintendo-DS.md) - Unity authoring tooling for that demake [[counter-strike-ds-unity-project]] (Fewnity; map/collision/stair/culling/shadow/bomb/trigger export; pathfinding waypoints and matrices; scene-based gun-sprite pipeline; DS-compatible content outside core game code; cheat / Unity CS). (source: wiki/sources/descriptions/Fewnity__Counter-Strike-DS-Unity-Project.md) - Raw Luma3DS `.3gx` overlay/cheat engine template [[ctr-composer]] (self-rendered UI; no CTRPluginFramework; any-Title-ID starter / revive old `.plg`/`.3gx`) sits in the console `Nintendo 3DS` lane. (source: wiki/sources/descriptions/samaBR85__CTRComposer.md) - OoT3D Luma3DS `.3gx` cheat/tools overlay [[ocarina-ctr-composer]] (built on [[ctr-composer]]; direct memory writes; cheat search / hex editor / RAM dump) sits in the same `Nintendo 3DS` lane. (source: wiki/sources/descriptions/samaBR85__OcarinaCTRComposer.md) - General-purpose Switch read/extract tooling such as [[nstool]] (format introspection / extraction; console-emulator / Switch research) sits in the `Nintendo Switch` lane. (source: wiki/sources/descriptions/jakcron__nstool.md) - Windows GUI Switch XCI/NSP package inspector such as [[xci-explorer]] (C# WinForms; XCI/NCA/HFS0/PFS0 parsers; metadata, partition browse, hash check, extract, certificate edit; Switch modding / cartridge image RE; StudentBlake; README [XCI Explorer]) sits in the same `Nintendo Switch` lane. (source: wiki/sources/descriptions/StudentBlake__XCI-Explorer.md) - Yuzu-based Switch emulator mirror [[nuzu]] (unofficial fork) sits in the same `Nintendo Switch` lane for console-emulator / Switch research. (source: wiki/sources/descriptions/qqq26__nuzu.md) - Archival yuzu placeholder [[yuzu-archive]] (Logboy2000; documentation-only snapshot with DMCA notice record; no emulator source; legal/ecosystem reference for Switch emulator enforcement timeline) sits in the same `Nintendo Switch` lane. (source: wiki/sources/descriptions/Logboy2000__yuzu-archive.md) - Android yuzu port [[yuzu-android]] (ARM64 JIT; Vulkan/OpenGL; Switch game compatibility on Android) sits in the same `Nintendo Switch` / mobile-emulator crossover lane. (source: wiki/sources/descriptions/gmh5225__yuzu-android.md) - Android Eden-based Switch emulator [[opensw]] (RemiPelloux; C++/Kotlin; dynarmic ARM64 JIT; Vulkan/OpenGL; build-ID-aware Atmosphere/Eden cheat import; dmnt-style cheat engine; per-game profiles; Cockpit panel + performance diagnostics; Profile build automation bridge; AYN Thor profile; Nintendo Switch / mobile-emulator crossover) sits in the same lane. (source: wiki/sources/descriptions/RemiPelloux__OpenSw.md) - PS5 Linux boot via [[ps5-linux-loader]] (kernel/HV exploits, IOMMU setup, GPU init, TMR handling; custom bootloader payload) sits in the console `PlayStation` HV research lane. (source: wiki/sources/descriptions/ps5-linux__ps5-linux-loader.md) - PS4/PS5 extended-storage drive cloning via [[drive-cloning-for-ps4-ps5]] (DrYenyen; Linux `dd` + sparse images; research docs/scripts for imaging extended storage and transferring installed applications between consoles; PlayStation storage migration) sits in the same `PlayStation` console lane beside HV and static-RE tooling. (source: wiki/sources/descriptions/DrYenyen__Drive-Cloning-For-PS4-PS5.md) - WebKit CSSFontFace UAF chain via [[cssfontface-exploit]] (PS4/PS5 browser userland R/W; PS4 6.00–11.02, kernel chain 7.00–11.02; PS5 needs separate ASLR/vtable defeat) sits in the same `PlayStation` jailbreak / WebKit research lane. (source: wiki/sources/descriptions/ntfargo__CSSFontFace-Exploit.md) - Multi-firmware PS4 WebKit jailbreak exploit host via [[psfree-enhanced]] (ArabPixel; chains PSFree/Bad Hoist/CSSFontFace userland with Lapse/NetCtrl/Sleirsgoevy 6.7x kernel exploits; FW 6.00–11.02; auto firmware/console detection; GoldHEN/HEN selector; payload loader on port 9020; JavaScript ES modules + C kernel patches + Python cache manifests; local device scan/host) sits in the same `PlayStation` jailbreak / WebKit research lane beside [[cssfontface-exploit]]. (source: wiki/sources/descriptions/ArabPixel__PSFree-Enhanced.md) - BD-J jailbreak tooling via [[bd-un-jb]] (Gezine; BD-J xlet payloads + `jdk.internal.misc.Unsafe` code execution; C `bdj_unpatch` BDMV manipulation; Python log client; BD-JB RemoteJarLoader for jailbroken PS5 ≤12.00 — unpatch BD-J, ISO, network JAR load/logging; PlayStation exploit-chain + BD-J sandbox-escape research) sits in the same `PlayStation` BD-J jailbreak lane beside WebKit chains. (source: wiki/sources/descriptions/Gezine__BD-UN-JB.md) - PS4 module-loader IDA helper via [[ida-ps4-helper]] (companion to ps4-module-loader; static RE for jailbroken PS4 modules) sits in the same `PlayStation` / Cheat IDA Plugins lane. (source: wiki/sources/descriptions/janisslsm__ida-ps4-helper.md) - PS4 Orbis Ghidra extension via [[ghidra-orbis]] (loaders, analyzers, scripts, syscall/NID mapping; symbol recovery; Java/Gradle; Orbis OS file formats) sits in the same `PlayStation` / Cheat Ghidra Plugins lane beside [[ida-ps4-helper]]. (source: wiki/sources/descriptions/astrelsky__GhidraOrbis.md) - PS5 ELF loader/analysis in IDA via [[ida-ps5-elf-plugin]] (PS5-specific ELF extensions, segment types, dynamic linking; game/system binaries; console security RE) sits in the same `PlayStation` / Cheat IDA Plugins lane. (source: wiki/sources/descriptions/gmh5225__ida_ps5_elf_plugin.md) - PS2 VU microcode search/disassembly in IDA via [[ps2-ida-vu-micro]] (Goatman13; Python; manual ranges + VIF MPG auto-discovery; vector-unit program RE; branch-target reconstruction limits; cheat / IDA Plugins) sits in the same `PlayStation` static-RE lane for PS2 game binaries. (source: wiki/sources/descriptions/Goatman13__ps2_ida_vu_micro.md) - PS2 VIF1 DMA packet parser via [[vifterpreter]] (0x5abe; Rust; models DMA tags and VIF unpack/microprogram-load/state commands; Serde serialization; decode mesh/graphics asset streams in PS2 game binaries; cheat / RE Tools) sits in that `PlayStation` static-RE lane beside [[ps2-ida-vu-micro]]. (source: wiki/sources/descriptions/0x5abe__vifterpreter.md) - PS3 SPU opcode annotation in IDA via [[spu2c]] (Goatman13; Python; C-style per-instruction comments; vector lane sizes + shuffle-byte mask resolution; instruction/selection/function scan shortcuts; PS3 SPU firmware/library/anti-cheat RE; cheat / IDA Plugins) extends that lane to PS3 SPU binaries. (source: wiki/sources/descriptions/Goatman13__spu2c.md) - PS5 ELF loader for ps5-jar-loader via [[elfloader]] (Java; kernel-level modding / SDK generation; console PlayStation ELF load path; Anti Cheat → Binary Packer) sits in the same `PlayStation` lane beside static IDA loaders. (source: wiki/sources/descriptions/cryonumb__elfloader.md) - PS5 Cortex-A53 code-execution PoC via [[a53-code-exec]] (fw 02.00; kernel-level work / SDK generation; console emulator + PlayStation research) sits in the same `PlayStation` low-level CPU exploit lane. (source: wiki/sources/descriptions/cragson__a53-code-exec.md) - PS5 remote ELF manual-map injector via [[nines]] (TCP :9033; target process + ELF payload; section load, relocations, remote thread; John Törnblom PS5 SDK; Python helper; console PlayStation process-injection RE) sits in the same `PlayStation` runtime injection lane beside static loaders. (source: wiki/sources/descriptions/buzzer-re__NineS.md) - PS3 SPRX mod-menu source trees such as [[paradise-bo2]] (Paradise BO2; window/UI code) sit in the same `PlayStation` / console injected-menu lane for BO2 menu-architecture study. (source: wiki/sources/descriptions/gopro2027__ParadiseBO2.md) ## Related concepts [[research-rigor]] · [[hwid-spoofing]] · [[driver-communication]] · [[stack-spoofing]] · [[hardware-input-injection]] · [[logitech-cve]] · [[world-to-screen]] · [[ai-aimbot-detection]] · [[dma]] · [[byovd]] · [[present-hook]] · [[il2cpp]] · [[kernel-callbacks]] · [[ndisapi]] · [[pcapplusplus]] · [[npcap]] · [[peetch]] · [[gecit]] · [[ksocket]] · [[karlann]] · [[wellsanticheat]] · [[banmod]] · [[open.mp-anticheat]] · [[oomph]] · [[avaanticheat]] · [[nvidiaapi]] · [[nvidia-gpu-spoof]] · [[hardware-bypass]] · [[owned-alignment]] · [[spoofer-amidewin]] · [[hwidspoofer]] · [[hwid-spoofer-for-fortnite-and-valorant]] · [[wizard101-spoofer]] · [[hwid-spoofer]] · [[hwid-spoofer-eac-be]] · [[hwid-eclipsed-spoofer-eac-be]] · [[hwid-kernel-spoofer]] · [[easy-hwid-spoofer]] · [[hwid]] · [[driver-hwid-btbd-modified]] · [[hwid-permanent-hwid-spoofer]] · [[full-hwid-spoofer-v6]] · [[hwid-pasted-hwid-spoofer]] · [[hwid-spoofer-ud-fortnite-warzone-apex-rust-escape-from-tarkov-and-all-eac-be-games-imgui-loader-base]] · [[imgui-spoofer-leaked]] · [[hwid-spoofer-eac]] · [[theordernarkoz-hwid-spoofer]] · [[hwid-steam-spyware-terminator]] · [[precision-spoofer-cpp]] · [[hdd-serial-spoofer]] · [[skotschia-hwid-spoofer]] · [[windows-spoofer]] · [[windows-hardware-info]] · [[hwid-checker-mg]] · [[openhardwaremonitor]] · [[libre-hardware-monitor]] · [[hwinfo]] · [[osx-cpu-temp]] · [[hide-file]] · [[hide-driver]] · [[hide-driver-testing]] · [[return-address-spoofer]] · [[loudsunrun]] · [[nocturneldr]] · [[callout-poc]] · [[ntmemory]] · [[norsefire]] · [[kernel-csgo]] · [[readphys]] · [[windows-kernel-pagehook]] · [[powerhook]] · [[hook-kdtrap]] · [[driver-kdtour]] · [[pteditor]] · [[page-table-injector]] · [[executor]] · [[document]] · [[irql]] · [[nemesis]] · [[cve-2026-40369-exploit]] · [[cve-2025-21333]] · [[umpmlib]] · [[eupmaccess]] · [[reclass-net]] · [[reclass-net-driverreader]] · [[reclass-ex]] · [[reclass]] · [[libmem]] · [[apwil]] · [[omath]] · [[vac3-inhibitor]] · [[vook]] · [[vac3-dumper]] · [[vac-module-dumper]] · [[vackeyretrieval]] · [[x14-08-coverstory-blizzard]] · [[waryasswhe]] · [[reverse-engineering]] · [[game-reversing]] · [[game-reversed-study]] · [[retools]] · [[retoolkit]] · [[rev-tools-setup]] · [[infosec-reference]] · [[gamehacking-cheatsheet]] · [[mytechnotalent-reverse-engineering]] · [[hacking-windows]] · [[hacking-rust]] · [[go-hacking]] · [[golang-loader-assist]] · [[embedded-hacking]] · [[totalpe2]] · [[risoh-editor]] · [[retract]] · [[sigthief]] · [[lockfile-poc]] · [[avdebugger]] · [[dwex]] · [[dotniet]] · [[quickasm]] · [[scfw]] · [[byvalver]] · [[xrefsext]] · [[find-xrefs]] · [[ida-plugins]] · [[symbridge]] · [[symless]] · [[idarem]] · [[idarling]] · [[idaref]] · [[idac]] · [[ida-mcp-server-plugin]] · [[ida-pro-loadmap]] · [[ida-screenshot]] · [[draw-ida]] · [[ida-slides]] · [[renamaida]] · [[ida-names]] · [[ida-pro-mcp]] · [[pcm]] · [[ida-assistant]] · [[aida]] · [[ida-llm-explainer]] · [[ida-gepetto]] · [[gpt-wpre]] · [[iaito]] · [[r2ai]] · [[r2a]] · [[luda]] · [[openlumina]] · [[sark]] · [[ida-minsc]] · [[ida-rust-demangler]] · [[ida-rust-cargo]] · [[ida-rust-helper]] · [[demumble]] · [[rtti-parser]] · [[ida-vtable-tools]] · [[ida-missinglink]] · [[genpatch]] · [[ida-genpatch]] · [[genmc]] · [[happyida]] · [[idaplugins]] · [[idaplugins-list]] · [[idawilli]] · [[idasdk-collection]] · [[ida-functioncolor]] · [[ida-func-outline]] · [[ida-ps4-helper]] · [[ida-ps5-elf-plugin]] · [[yara4ida]] · [[yarascan-ida]] · [[yaravm]] · [[hyara]] · [[ida-fusion]] · [[ida-enums-helper]] · [[big5-decode-ida]] · [[x64dbg]] · [[jdbg]] · [[mcp-gdb]] · [[gdbserver9x]] · [[gdb-windows-binaries]] · [[x64dbgbinja]] · [[binja-kc]] · [[ptxninja]] · [[ariadne]] · [[binaryninja-pcode]] · [[bn-ebpf-solana]] · [[slothbp]] · [[dotx64dbg]] · [[classroom]] · [[idenlib]] · [[sig-database]] · [[idenlibx]] · [[manytypes]] · [[steam-anti-anti-debug]] · [[gh-anti-debug-bypass-practice-tool]] · [[ida-jm-xorstr-decrypt-plugin]] · [[ida-gameguard-str-dec]] · [[anti-xorstr]] · [[pikabot-deobfuscator]] · [[ghidrametrics]] · [[gba-ghidra-loader]] · [[threatresearch]] · [[injectors]] · [[anti-cheat-testing-framework]] · [[apc-research]] · [[windows-process-injection]] · [[modexmap]] · [[memject]] · [[shtreeba]] · [[positron]] · [[faultline]] · [[skiphook]] · [[hook-buster]] · [[hookhunter]] · [[detoursnt]] · [[polyhook]] · [[polyhook-2-0]] · [[ilhook-rs]] · [[pghooker]] · [[cedetector]] · [[windows-dll-hijacking]] · [[hijacklibs]] · [[dllirant]] · [[impulsive-dll-hijack]] · [[dll-hijack-export-dumper]] · [[super-dll-hijack]] · [[keyboardkit]] · [[kernel-mouse]] · [[mini-launcher]] · [[a-pasted-rust-script]] · [[simple-rust-base]] · [[simple-eft-base]] · [[boom]] · [[data-ptr-swap]] · [[read-write-driver]] · [[window-hijack]] · [[efitool]] · [[luaboot]] · [[auto-offsets]] · [[offset-streaming]] · [[fortnite-fltokens-and-offsets]] · [[fortnite-external-source]] · [[fortkit]] · [[fortnite-external-evo-gj]] · [[fortnite-external-base-source]] · [[fortnite-external-cheat-source-code]] · [[fortnite-voyagertf]] · [[basic-fortnite-cheat-source-internal]] · [[ritz-amazing-fortnite-internal]] · [[fortnite-fnameentry]] · [[fortnite-camera-cache-pov]] · [[reborn]] · [[unrealengine4-swissknife]] · [[ue4-freecam]] · [[luagenny]] · [[source2gen]] · [[source2sdk]] · [[vscript-lua51]] · [[sourceengineexplorer]] · [[gddumper]] · [[mutaben]] · [[mba-obfuscator]] · [[cobra]] · [[stp]] · [[cirsat]] · [[mypower]] · [[root-socket-kit]] · [[rw-proc-mem33]] · [[skroot-linux-kernel-root]] · [[rwmem]] · [[memmcp]] · [[ce-tracer-ida]] · [[cheatengine-mcp-bridge]] · [[deobf]] · [[deobfuscator]] · [[idadeflat]] · [[ida-easy-life]] · [[d810-ng]] · [[obpo-plugin]] · [[vmdevirt-vtil]] · [[novmpy]] · [[rumba]] · [[themida-research]] · [[tde]] · [[magicmida-rs]] · [[execution-trace-viewer]] · [[smallworld]] · [[ripr]] · [[radius2]] · [[r2smt]] · [[cpp-veh-dbi]] · [[w1tn3ss]] · [[pyda]] · [[oxidizer]] · [[re-architect]] · [[vmunprotect]] · [[vmunprotect-dumper]] · [[vmpunpacker]] · [[vmpstatic]] · [[opaque-predicates-detective]] · [[obfuscation-detection]] · [[cheese]] · [[android-virtual-inject]] · [[android-ptrace-injector]] · [[android-dll-injector]] · [[android-ld-preload-injector]] · [[yaui]] · [[android-library-remap-hide]] · [[kernelsu]] · [[dirtypiperoot]] · [[dirtypipe-android]] · [[aeroot]] · [[rootavd]] · [[how-to-download-and-install-wsa]] · [[wsapatch]] · [[wsa-pacman]] · [[wsa-builds]] · [[wsa-kernel-build]] · [[wsa-kernel-su]] · [[wsa-linux-kernel]] · [[magiskonwsalocal]] · [[android-emulator]] · [[android-kernel-exploitation]] · [[android-vuln]] · [[android-vuln-poc-exp]] · [[cve-2024-0044]] · [[cve-2019-2215]] · [[cve-2021-1961]] · [[magisk]] · [[move-certificate]] · [[event-replay]] · [[android-virtual-touch]] · [[android-touch]] · [[ptfaketouch]] · [[locusmimic]] · [[anywhere]] · [[hidemyandroid]] · [[device-reset-spoofer]] · [[com-fuck-iab]] · [[xposed-module-kit]] · [[lsposed-universal-template]] · [[canyie-pine]] · [[stoic]] · [[ios-location-spoofer]] · [[wloc]] · [[magiskboot]] · [[magiskboot-linux]] · [[magiskboot-ndk-on-linux]] · [[magiskboot-build]] · [[android-boot-image-editor]] · [[qualcomm-avb-exploit-poc]] · [[ofrp-device-xiaomi-mondrian]] · [[device-xiaomi-mondrian]] · [[android-rom-list]] · [[op7t]] · [[rnidbg]] · [[ovo]] · [[android-wuwa]] · [[compile-android-driver]] · [[android-kernel-hacking-toolkit]] · [[kernel-hack]] · [[kernel-driver-hack]] · [[android-kernel-xiaomi-pipa]] · [[android-kernel-xiaomi-sweet]] · [[android-kernel-oneplus-sm8250]] · [[android-kernel-oneplus-sm7250-wksu]] · [[pc-ginkgo]] · [[kernelsu-pixel4xl]] · [[kernel-msm-coral]] · [[android-kernel-samsung-universal5433]] · [[android-kernel-samsung-sm7150]] · [[android-kernel-huawei-mt6761]] · [[android-kernel-huawei-hi6250-8-exp]] · [[dpatch]] · [[simpleperf-demo]] · [[termux-app]] · [[neotty]] · [[neoterm]] · [[android-terminal-emulator]] · [[xfiles]] · [[note]] · [[ipapatch]] · [[trollstore]] · [[opainject]] · [[vermagic]] · [[vmlinux-to-elf]] · [[venom]] · [[dayzzz]] · [[external-dayz-cheat]] · [[escapefromtarkov-trainer]] · [[simple-eft-base]] · [[dota-cheat]] · [[dota2-cheat]] · [[dota2-overlay-2-0]] · [[dota2dumped]] · [[elden-ring-ct-tga]] · [[dark-souls-iii-cheat-engine-guide]] · [[eldenringmods]] · [[automatamp]] · [[non-newtonian-new-york]] · [[palworldsaved]] · [[palworld-helper]] · [[palworld-anti-cheat]] · [[palworld-rcon]] · [[palworld-setting-generator]] · [[palopsweb]] · [[docker-palworld-dedicated-server]] · [[howto-palworld]] · [[palworld-server-modding]] · [[palworld-server-injector]] · [[hivewe]] · [[tiny-csgo-client]] · [[cstrike15-src]] · [[sdk]] · [[maple-lemon]] · [[maplestoryex]] · [[ms079]] · [[maple-ezorsia]] · [[maplestory143]] · [[rathena]] · [[maplestory-worlds-automation]] · [[genshin-cheat]] · [[genshin-cheetos]] · [[genshin-impact-script]] · [[vx-it]] · [[csgocrosshair]] · [[csgosimple]] · [[osiris]] · [[osiris-and-extra]] · [[dainsleif]] · [[sensum]] · [[gamesneeze]] · [[csgo-linux-cheat-sdk]] · [[heck-csgo-external]] · [[csgo-cheat-external]] · [[boltobserv]] · [[csgo-bot]] · [[csgo-backtrack-patch]] · [[lumina-cheat]] · [[compiled-protection]] · [[crossover-patcher]] · [[counterstrikesource-linux-trainer]] · [[oxware]] · [[hpp-hack]] · [[simple-cs-16-multihack]] · [[1-6-c2]] · [[cshackcreator-2-demo]] · [[sakura]] · [[cs16-trigger-kvm]] · [[counterstrike2-linux-cheat]] · [[ptrace-read-teb]] · [[cs2-cheat-cpp]] · [[cs-2-glow]] · [[cs2-offsets]] · [[cs2-offsets-ro0ti]] · [[cs2-things]] · [[offsets]] · [[tog]] · [[proext]] · [[cs2-tracker]] · [[cs2-webradar]] · [[cs2-dma-radar]] · [[cs2-dma-cheat]] · [[cs2-dma-extrnal]] · [[cs2-dma]] · [[cs2-kvm-dma]] · [[cs2-external-cheat]] · [[cs2-external]] · [[cs2-external-1]] · [[cs2-external-base]] · [[cs2-external-esp]] · [[cs2external]] · [[tkazer-cs2-external]] · [[vesta]] · [[cs2-ext]] · [[titled-gui-cs2]] · [[pythoncs2]] · [[overlayai]] · [[cs2-fov-changer]] · [[cs2-cheat]] · [[cs2-cheat-base]] · [[kisssart-cs2-cheat-base]] · [[cstrike2-hack]] · [[tim-apple]] · [[cs2-internal]] · [[cs2internal]] · [[cs2-internal-sdk]] · [[asphyxia-cs2]] · [[rabsztyncc-cs2-internal]] · [[counterstrike2]] · [[csgo2-cheat]] · [[bakaware4]] · [[waldo]] · [[aimbot-detection-prototype]] · [[human-mouse-movement]] · [[mousedetection]] · [[etw-keyboard-detection]] · [[pine]] · [[battlefield-1-internal]] · [[bf1-esp-and-aimbot]] · [[bf4-internal-overlay]] · [[simple-ac-internal-cheat]] · [[r6-internal-v3]] · [[epic-r6-v9]] · [[r6table-internal]] · [[splitgate-internal]] · [[r6-external]] · [[r6-intel]] · [[r6s-external-v2]] · [[external-r6s-cheat]] · [[r6s-internal-cheat]] · [[rainbow-6-siege-cheat]] · [[rainbow-six-siege-rs6-external-esp-aimbot-hack-cheat]] · [[r6-chams-public]] · [[apex-full-cheat]] · [[apexd3d-external]] · [[apex-dma-cheat-updated]] · [[arc-raiders-radar-dma-radar]] · [[apex-legends-sdk]] · [[apex-legends-sdk-remaster]] · [[apex-legends-external-esp-aimbot-skinchanger]] · [[valorant-internal]] · [[valorant-internal-base]] · [[valorant-internal-cheat]] · [[valorant-cheat]] · [[valorant-cheat-internal]] · [[valorant-aimbot-bypass]] · [[valorant-esp-aimbot-hack]] · [[valorant-esp-aimbot-cheat-hack]] · [[valorant-hack-esp-aimbot-skinchanger]] · [[valorant-hack-esp-aimbot-skinchanger-source]] · [[valorant-externals]] · [[valorant-offsets]] · [[valorant-esp-hack-with-driver]] · [[valo-driver]] · [[valorant-cheat-external]] · [[valorant-external]] · [[valorant-external-1]] · [[valorant-external-p2c-leaked]] · [[valorant-external-source]] · [[valorantcc]] · [[thetan-arenasdk]] · [[the-finals-interior-cheat]] · [[gta4-rtx]] · [[bigbasev2]] · [[grandtheftautov-cheat]] · [[gta5cheat]] · [[gta5cheat-qt]] · [[gta5view]] · [[gtaiii-de-goldhook]] · [[gtav-dragresize]] · [[xidi]] · [[free-direct]] · [[d3d9on12]] · [[steam-overlay-x64]] · [[discord-overlay-hook]] · [[overlay]] · [[mwclap]] · [[warzone-internal-cheat]] · [[paladins-internal-cheat]] · [[cod7-tools]] · [[paradise-bo2]] · [[input-overlay]] · [[imgui]] · [[imgui-club]] · [[proxmox]] · [[quickemu]] · [[proxmox-ve-anti-detection]] · [[qemu-anti-detection]] · [[qemu-patched]] · [[vmware-hardened-loader]] · [[qemu-gvm]] · [[qemu-nyx]] · [[ispras-qemu]] · [[qemu-blog]] · [[mvisor]] · [[docker-win]] · [[gunyah-hypervisor]] · [[xqemu]] · [[panda]] · [[xemu]] · [[kevboy]] · [[feather-gb]] · [[xenia]] · [[xenia-mac]] · [[recompiler]] · [[levo]] · [[se-tools]] · [[ctr-composer]] · [[ocarina-ctr-composer]] · [[nstool]] · [[nuzu]] · [[yuzu-archive]] · [[yuzu-android]] · [[ps5-linux-loader]] · [[cssfontface-exploit]] · [[ida-ps4-helper]] · [[ida-ps5-elf-plugin]] · [[swsim]] · [[overviews/anti-cheat]] ## README map `Cheat` is the largest category (~2812 links; incl. [[dragonburn]] CS2 external + CasualX/[[apexbot]]/[[apexdream]]/[[astronaut00-apex-external]] Apex externals + krakensuit/[[zenware-cc]] L4D2 internal/external training framework + 3v1lC0d3/[[root-detection-low-level]] Frida root-detection path/exec analyzer + RytterMohn/[[usb-detection-bypass]] LSPosed USB/ADB detection masking in Xposed + CHERWING/[[xiaomi-usb-security-bypass]] Magisk MIUI USB debugging/fastboot account-SIM gate bypass for scrcpy input injection): guides (incl. [[gamehacking-cheatsheet]] + [[intro-to-gamehacking]] + jbro129/[[android-modding]] Android modding repo catalog + [[re4f]] Obsidian RE curriculum (x86/x64, PE, static/dynamic analysis, anti-analysis; Cheat / Guide) (source: wiki/sources/descriptions/Coldzer0__RE4F.md) + [[hacking-rust]]/[[go-hacking]]/[[embedded-hacking]] mytechnotalent step-by-step RE PDF+course lanes + [[android-security-wizard]] integrated Android security corpus + unrandoms/frida-mobile-kit organized Android Frida script toolkit (SSL pinning bypass, traffic/crypto logging, root-detection bypass, memory inspection CLI; Cheat / Frida)), debugging, packet sniff/capture, speedhack, RE tools (incl. TheHolyOneZ/[[zircon-ue-dumper]] UE 4.22–5.7 multi-format reflection dumper (live/minidump/disk; SDK/USMAP/IDA/Ghidra/BN/Frida/Python; Cheat / SDK Dump) (source: wiki/sources/descriptions/TheHolyOneZ__Zircon-UE-Dumper.md) + BishopTopG/[[all-about-eac]] Memflow external-VM `EasyAntiCheat_EOS.sys` kernel dossier (callbacks, minifilter, device IPC; Cheat / Explore AntiCheat System:EAC) (source: wiki/sources/descriptions/BishopTopG__all-about-eac.md) + game file-format/asset reversing + [[pc-wackywheels-doc]] Wacky Wheels DOS WACKY.DAT/sprite/pseudo-3D LUT RE doc + sosso33/[[omikron-tns-omk-engine]] Omikron: The Nomad Soul (1999) evidence-backed format RE/engine reimplementation + williballenthin/ida-settings IDA plugin settings manager via Hex-Rays HCLI/ida-config.json + [[binarylens]] IDA Pro LLM bulk rename/explain + [[ida-pro-agent]] IDA Pro 9.4 AI console + MCP gateway (pseudocode, bounded caller tracing, guard-evidence extraction, preview/apply/rollback IDB ChangeSets) + [[scalpel]] Ghidra hex/ASCII editor + [[sako-restudio]] mobile-first Android disassembler/decompiler (APK/ELF/PE/DEX; ptrace debugger; SakoScript plugins) (source: wiki/sources/descriptions/Maxamedxasa__SakoREStudio.md) + [[reverify]] AI-assisted RE with deterministic byte-level verification (MCP + CLI) + [[dereferencing]] IDA Pro dereferenced register/stack debugger views (source: wiki/sources/descriptions/danigargu__deREferencing.md) + [[resim-ghidra-plugins]] RESim/Simics Ghidra Debugger integration + [[dsh-plugins]] DSH PyGhidra bridge; source: wiki/sources/descriptions/mfthomps__RESimGhidraPlugins.md) + 1-3-7/[[disrobe]] modular static recovery pipeline (native PE/Python/APK/WASM/JVM/.NET/Go/JS bytecode; nested archives), MBA/VMP/Themida/OLLVM fix lanes, DBI, Launcher Abuser, PatchGuard/DSE, Windows/Linux/Android kernel explorers (incl. [[anti-anti-debugger-driver]] WDK ETW-hook anti-anti-debug tutorial + KSwordDEV/[[ksword]] Qt ARK with custom kernel driver), Magisk/Xposed/Frida/ART-syscall hooks (incl. [[moabille]] multi-device Android/iOS TUI orchestrating Frida, Objection, adb, scrcpy, and iproxy; source: wiki/sources/descriptions/jafarm189__MOABile.md) + [[frida-ide]] web Frida IDE with JADX + Claude assistant; source: wiki/sources/descriptions/MrOplus__frida-ide.md), Android Root Morphe patch catalog [[nai64-patches]] (root/Play Integrity/SSL pinning; source: wiki/sources/descriptions/Nai64__Nai64Patches.md), Explore AntiCheat mobile native AC RE such as [[g-presto-anti-cheat-reverse-engineered]] + brandenbailey23/[[r6-siege-battleye-launch-bug]] R6 Siege Y11S3 BattlEye/Sentinel standard-launch handshake failure report (G-Presto CPU/emulator/Dex checks) + commercial app-shielding RE such as [[appsealing-reversal]] (Inka AppSealing Java/native telemetry and bypass validation); Android Terminal (ADB/root/shell utilities)/File/Memory/Network Explorer (incl. [[pcapdroid]] + no-root RTL8852AU monitor/inject [[rtl8852au-userspace]]) + memory loading + App/Kernel CVE lanes, bootloader/ROM/root/device-tree trees, Cellular/SIM + IoT (e.g. [[swsim]] pure-software USIM/UICC APDU simulator) (source: wiki/sources/descriptions/tomasz-lisowski__swsim.md), iOS jailbreak/network/location, EFI/HWID lanes (Th3Spl/PerfectSMBios UEFI SMBIOS pre-boot serial spoof; wesmar/[[undervolter]] pre-boot Intel MSR undervolting; no ntoskrnl/winload pointers; Linux-capable), plus `Some Tricks` (~118; Ring0/Ring3/Linux/Android; incl. egeorcun/[[discord-dpi-bridge]] user-space Discord DPI relay avoiding WinDivert/EAC conflicts). Adjacent: `Mathematics` (~7; constexpr math/physics frameworks such as [[omath]] for mod/cheat code) (source: wiki/sources/descriptions/orange-cpp__omath.md); platform emulator cats `WSA` (~9), `Android Emulator` (~9; incl. Snapdragon Droid-VM/Gunyah + wumingzhinu/VirtualMachine VM Studio full guest Android VM with Vulkan display, Magisk root toggle, Xposed modules, and Google Play services), `IOS Emulator` (~5; incl. [[vphone-ws]] SwiftUI [[vphone-cli]] front-end + [[darwin-vm]] QEMU Darwin VM iPhone 12–17/M1–M5 root shell + SPTM/TXM debug), `Windows Emulator` (~7; WHP vmtrace + hybrid KDemu), `Linux Emulator` (~1; [[felix86]] x86/x64-on-RISC-V JIT) (source: wiki/sources/descriptions/OFFTKP__felix86.md); and console cats `Nintendo Switch` (~8; incl. OpenSw Android Eden emulator + live cheat), `Xbox` (~8; LLE/HLE + X360/XBE patch tools + SystemOS kernel exploit), `PlayStation` (~7; PS5 HV / BD-UN-JB RemoteJarLoader / WebKit CSSFontFace UAF / PSFree-Enhanced host / drive-clone research), `Game Boy` (~4; incl. [[openfpga-gbc-cheats-ui]] Analogue Pocket libretro cheat deploy), `Nintendo 3DS` (~3; Hydr8gon 3Beans full LLE OS boot + Luma3DS `.3gx` overlay/cheat engines), `GameCube/Wii` (~1; ioncodes/gecko Rust emulator/debugger) + Dreamcast browser exploit research such as [[defcon-dreamcast-planetweb-research]] (PlanetWeb v3.0 Eden/MIME chain → native SH-4 DOOM). (source: wiki/sources/README-categories.md)