Reflective DLL that hooks the creation of the UAC prompt popped by explorer.exe for privilege escalation.
☆21Feb 20, 2021Updated 5 years ago
Alternatives and similar repositories for UACHooker
Users that are interested in UACHooker are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PE Injection with ring3 hook bypass☆11May 3, 2021Updated 5 years ago
- Python script to patch the reflective stub in a DLL☆24Apr 9, 2017Updated 9 years ago
- Collection of Jupyter notebooks☆13Mar 11, 2021Updated 5 years ago
- CobaltStrike AggressorScripts for the lazy☆10Jul 22, 2022Updated 4 years ago
- Modified Version of Melkor @FuzzySecurity capable of creating disposable AppDomains in injected processes.☆28Sep 8, 2021Updated 4 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Enter Product Key Volatile Environment LPE☆13Jun 28, 2025Updated last year
- This is a project to receive Base64 data and decode it in process☆15Mar 16, 2020Updated 6 years ago
- FrostLock Injection is a freeze/thaw-based code injection technique that uses Windows Job Objects to temporarily freeze (suspend) a targe…☆46Apr 6, 2025Updated last year
- TaskMgr Volatile Environment LPE☆16Jun 28, 2025Updated last year
- Shifting.Codes☆30Feb 21, 2026Updated 5 months ago
- Two C# RunPE's capable of x86 and x64 injections☆11Dec 2, 2018Updated 7 years ago
- This PoC uses two diferent technics for stealing the primary token from all running processes, showing that is possible to impersonate a…☆55Nov 4, 2021Updated 4 years ago
- A small commented POC for removing API hooks placed by AV/EDR.☆34Jun 12, 2020Updated 6 years ago
- A tool to show the method info at runtime☆13Aug 12, 2019Updated 6 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Fake Timestamps of Driver Certificates while keeping validity.☆18Jul 15, 2021Updated 5 years ago
- C++ implementation of DOUBLEPULSAR usermode shellcode. Yet another Reflective DLL loader.☆30Nov 9, 2021Updated 4 years ago
- [Not Another DLL Injector] - a simple, all purpose DLL injector for x64 and x86☆12Jul 4, 2019Updated 7 years ago
- PoC: process watcher patterns to make killing a process hard.☆11Aug 1, 2018Updated 7 years ago
- Bypass UAC at any level by abusing the Task Scheduler and environment variables☆36Jul 12, 2021Updated 5 years ago
- RunPE using Hell's Gate technique.☆32Dec 4, 2020Updated 5 years ago
- AppXSVC Service race condition - privilege escalation☆29Jul 30, 2019Updated 6 years ago
- Diff plugin for x64dbg☆29Dec 14, 2020Updated 5 years ago
- A proof of concept of real custom GetProcAddress and GetModuleBaseAddress☆21Jul 9, 2022Updated 4 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- ☆19Mar 21, 2020Updated 6 years ago
- This is a Poc for BIGIP iControl unauth RCE☆51Mar 17, 2021Updated 5 years ago
- Win32 PE Anti-RE and Anti-debugging Framework☆13May 14, 2019Updated 7 years ago
- A C# DLL Wrapper Generator☆11Feb 23, 2022Updated 4 years ago
- CVE-2019-1064 Local Privilege Escalation Vulnerability☆11Jun 12, 2019Updated 7 years ago
- Server/Client SOCKS5 (RFC 1928) in Reverse mode on Windows☆39Feb 18, 2019Updated 7 years ago
- Hide code from dnSpy and other C# spying tools☆43Oct 18, 2020Updated 5 years ago
- Proof of Concept of the steganographic algorithms implemented by APT 29 (Hammertos)☆10Nov 26, 2018Updated 7 years ago
- ☆14Apr 7, 2018Updated 8 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A CUSTOM CODED FUD DLL, CODED IN C , WHEN LOADED , VIA A DECOY WEB-DELIVERY MODULE( FIRING A DECOY PROGRAM), WILL GIVE A REVERSE SHELL (P…☆35Jun 4, 2019Updated 7 years ago
- load mixed assemblies (.NET) C# source code☆14Jun 20, 2026Updated last month
- Windows Local Privilege Escalation - 0 Day Vulnerability (schtasks.exe) released by @SandboxEscaper :)☆19May 22, 2019Updated 7 years ago
- The evolution of NxRansomware☆11Jun 14, 2019Updated 7 years ago
- Anti-Analysis technique, trick the debugger by Hiding events from it.☆19Sep 6, 2021Updated 4 years ago
- Loads .NET Assembly Via CLR Loader☆17Mar 6, 2019Updated 7 years ago
- Slui File Handler Hijack UAC Bypass Local Privilege Escalation☆95Jun 28, 2025Updated last year