Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
process-inject-kit — Port of Cobalt Strike's Process Inject Kit | Kitploit
Tools/GitHubGitHub/rasta-mouse/process-inject-kit
Exploit FrameworksPost-ExploitationRed TeamingPayload DevelopmentAdversarial Attack
GitHubrasta-mouse/process-inject-kit

process-inject-kit

Port of Cobalt Strike's Process Inject Kit

View Repository
19433141 year agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Process Inject Kit

This is a port of Cobalt Strike's Process Inject Kit from C to the C++ BOF template.

How it works

The built in fork and run process injection techniques can be change with the PROCESS_INJECT_SPAWN and PROCESS_INJECT_EXPLICIT hooks.

This repo provides the following:

  • Source code implementing the built-in techniques.
  • Aggressor script to implement the hooks.
  • Visual Studio solution to compile and generate a distribution directory.

PROCESS_INJECT_SPAWN

Allow users to define how the spawn process injection technique is implemented.

PROCESS_INJECT_EXPLICIT

Allow users to define how the explicit process injection technique is implemented.

References

  • https://www.cobaltstrike.com/blog/process-injection-update-in-cobalt-strike-4-5/
  • https://hstechdocs.helpsystems.com/manuals/cobaltstrike/current/userguide/content/topics_aggressor-scripts/as-resources_hooks.htm#PROCESS_INJECT_EXPLICIT
  • https://hstechdocs.helpsystems.com/manuals/cobaltstrike/current/userguide/content/topics_aggressor-scripts/as-resources_hooks.htm#PROCESS_INJECT_SPAWN

Usage

To use the Process Inject Kit:

  • Build the VS solution in Release mode, as both x64 and x86.
  • Load process-inject.cna into Cobalt Strike.

Modifications

You're encouraged to make modifications to this code and use them in your engagements.

License

This code is not subject to the end user license agreement for Cobalt Strike.

Download Tool