adamkramer / dll_hijack_detect
Detects DLL hijacking in running processes on Windows systems
☆156Updated 9 years ago
Alternatives and similar repositories for dll_hijack_detect:
Users that are interested in dll_hijack_detect are comparing it to the libraries listed below
- DLL Injection tool to unlock guest VMs☆233Updated 12 years ago
- Position Independent Windows Shellcode Written in C☆288Updated 6 years ago
- MS15-076 Privilege Escalation☆100Updated 9 years ago
- Patching ROP-encoded shellcodes into PEs☆184Updated 7 years ago
- A C/C++ implementation of Microsoft's Antimalware Scan Interface☆178Updated 6 years ago
- ☆213Updated 6 years ago
- Ruxcon2016 POC Code☆137Updated 8 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆135Updated 7 years ago
- Tool to view and create Microsoft shim database files (SDB).☆113Updated 7 years ago
- An attempt at Process Doppelgänging☆184Updated 7 years ago
- A collection of tools to enumerate and analyse Windows DACLs☆108Updated 9 years ago
- a program to detect reflective dll injection on a live machine☆75Updated 9 years ago
- A proof-of-concept subject interface package (SIP) used to demonstrate digital signature subversion attacks.☆95Updated 7 years ago
- A tool to detect and crash Cuckoo Sandbox☆292Updated 7 months ago
- Python solutions for the HackSysTeam Extreme Vulnerable Driver☆151Updated 3 years ago
- Use CLR to inject all the .NET apps☆183Updated 3 years ago
- A PoC WMI backdoor presented at Black Hat 2015☆273Updated 9 years ago
- ☆113Updated 8 years ago
- An improvement of the original reflective DLL injection technique by Stephen Fewer of Harmony Security☆322Updated 7 years ago
- Miscellaneous tools written in Python, mostly centered around shellcodes.☆145Updated 9 years ago
- Sample use cases of the .NET native code hooking technique☆208Updated 7 years ago
- Bypassing User Account Control (UAC) using TpmInit.exe☆127Updated 8 years ago
- A utility to use the usermode shellcode from the DOUBLEPULSAR payload to reflectively load an arbitrary DLL into another process, for use…☆117Updated 7 years ago
- A JavaScript and VBScript Based Empire Launcher, which runs within their own embedded PowerShell Host.☆319Updated 7 years ago
- Small tool to get a SYSTEM shell☆130Updated 9 years ago
- ☆229Updated 6 years ago
- Mario & Luigi - Tools for sniffing Windows Named Pipes communication☆129Updated 8 years ago
- The oledump-contrib repository contains plugins and enhancements for the oledump tool published by Didier Stevens.☆52Updated 8 years ago
- A list of ways to execute code on Windows using legitimate Windows tools☆304Updated 5 years ago
- A tool to run .Net DLLs from the command line☆102Updated 6 years ago