
DLLHijackingScanner
This is a PoC for bypassing UAC using DLL hijacking and abusing the "Trusted Directories" verification.

This is a PoC for bypassing UAC using DLL hijacking and abusing the "Trusted Directories" verification.


CVE-2026-50343 InstallService StaticPluginMap EoP - standard user to SYSTEM

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office RCE) with a hosted server for DLL payload delivery, based on…

Reflective PE packer.

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs

LoadLibrary for offensive operations

New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.

A tool for generating fake code signing certificates or signing real ones

Autoelevate DLL search-order hijacking UAC bypass for x64 Windows 7–11, abusing 32-bit iscsicpl.exe via SysWOW64 to execute code without a UAC prompt.

Adaptive DLL hijacking / dynamic export forwarding

Windows privilege escalation discovery tool that parses Process Monitor boot logs to identify DLL hijacking, weak ACLs, and other elevation paths,…

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can later be…

Automated DLL Sideloading Tool With EDR Evasion Capabilities

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.