
moonwalk
find dll base addresses without PEB WALK

find dll base addresses without PEB WALK

Remote DLL Injection with Timer-based Shellcode Execution

A reference of Windows API function calls, including functions for file operations, process management, memory management, thread management,…

A proof of concept injectable C++ dll, that uses naked inline hooking and direct memory modification to change your TeamViewer permissions.

Project for tracking publicly disclosed DLL Hijacking opportunities.

CVE-2023-6401 is a DLL hijacking vulnerability that allows attackers to execute arbitrary code by placing a malicious `dbghelp.dll` file in the…

DLL Injection and CVE-2010-3124

It shook the world in 2017 and has evolved into today’s CVE‑2025‑2776. Microsoft still relies on SMBv1, this article will explain how attackers have…

CVE-2026-50343 InstallService StaticPluginMap EoP - standard user to SYSTEM

SeriousSAM Auto Exploiter

Staged DLL injection proof-of-concept built in C using Win32 APIs — developed in an isolated lab environment for red team certification study (CRTO).

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…