kleiton0x00 / RtlHijackView external linksLinks
Alternative Read and Write primitives using Rtl* functions the unintended way.
☆78Aug 25, 2025Updated 5 months ago
Alternatives and similar repositories for RtlHijack
Users that are interested in RtlHijack are comparing it to the libraries listed below
Sorting:
- Early Bird Cryo Injections – APC-based DLL & Shellcode Injection via Pre-Frozen Job Objects☆135Apr 6, 2025Updated 10 months ago
- A remote process injection using process snapshotting based on https://gitlab.com/ORCA000/snaploader , in rust. It creates a sacrificial …☆50Jan 25, 2025Updated last year
- Dump protected process memory by using BYOVD to tamper with handle objects in the kernel.☆38Aug 5, 2025Updated 6 months ago
- A reflective DLL development template for the Rust programming language☆113Nov 4, 2025Updated 3 months ago
- ☆26Aug 11, 2025Updated 6 months ago
- Boilerplate to develop raw and truly Position Independent Code (PIC).☆116Jan 20, 2025Updated last year
- A way to maintain long-term access to Windows LAPS for lateral movement in AD via installing an Offensive LAPS RPC backdoor on a DC.☆29Jun 9, 2025Updated 8 months ago
- Mirage is a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆104Feb 25, 2025Updated 11 months ago
- Impersonate Tokens using only NTAPI functions☆83Apr 4, 2025Updated 10 months ago
- A Mythic agent for Windows written in C☆156Updated this week
- An advanced utility for converting Windows Portable Executable (PE) files to position-independent code (PIC) shellcode. It enables execut…☆63Mar 1, 2025Updated 11 months ago
- ForsHops☆59Mar 25, 2025Updated 10 months ago
- early cascade injection PoC based on Outflanks blog post, in rust☆62Nov 8, 2024Updated last year
- converts sRDI compatible dlls to shellcode☆35Jan 20, 2025Updated last year
- A PoC for Early Cascade process injection technique.☆208Jan 30, 2025Updated last year
- Hells Hollow Windows 11 Rootkit technique to Hook the SSDT via Alt Syscalls☆214Aug 31, 2025Updated 5 months ago
- 64-bit, position-independent implant template for Windows in Rust.☆172Nov 28, 2025Updated 2 months ago
- find dll base addresses without PEB WALK☆157Jul 13, 2025Updated 7 months ago
- Sleep obfuscation☆267Dec 13, 2024Updated last year
- Internal Monologue BOF☆79Dec 28, 2024Updated last year
- Locate dlls and function addresses without PEB Walk and EAT parsing☆104Nov 7, 2025Updated 3 months ago
- A modern Rust implementation of the original Stardust project, providing a sophisticated 32/64-bit shellcode template that features posit…☆59Mar 17, 2025Updated 10 months ago
- Curated list of public Beacon Object Files(BOFs) build in as submodules for easy cloning☆137Dec 7, 2025Updated 2 months ago
- A lexer and parser for Sleep☆20May 14, 2025Updated 9 months ago
- .NET Post-Exploitation Utility for Abusing Strong Explicit Certificate Mappings in ADCS☆150Feb 10, 2025Updated last year
- use python on windows with full submodule support without installation☆30Jan 23, 2025Updated last year
- BYOVD hunter to help prioritize windows drivers worth manual analysis☆74Aug 19, 2025Updated 5 months ago
- ☆48Dec 21, 2025Updated last month
- One-header configurable C++20 COFF loader☆21Jul 21, 2025Updated 6 months ago
- Lateral movement with DCOM DLL hijacking☆177Jul 4, 2025Updated 7 months ago
- Vectored Exception Handling Squared☆29Dec 27, 2025Updated last month
- ForsHops☆152Mar 25, 2025Updated 10 months ago
- This is the loader that supports running a program with Protected Process Light (PPL) protection functionality.☆294Nov 1, 2025Updated 3 months ago
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆84Aug 13, 2024Updated last year
- Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options☆156Mar 26, 2025Updated 10 months ago
- Use the Netlogon Remote Protocol (MS-NRPC) to dump the target hash.☆62Feb 25, 2025Updated 11 months ago
- This is the tool to dump the LSASS process on modern Windows 11☆555Nov 1, 2025Updated 3 months ago
- Remotely Enumerate sessions using undocumented Windows Station APIs☆118Aug 21, 2024Updated last year
- Mythic C2 Agent written in x64 PIC C☆84Jan 29, 2025Updated last year