
CVE-2017-8464-EXP
Support x86 and x64

Support x86 and x64

CVE-2026-50343 InstallService StaticPluginMap EoP - standard user to SYSTEM

Generate an obfuscated DLL that will disable AMSI & ETW

Exploiting the .lnk vulnerability and operating system handling mechanisms regarding explorer.exe and USB drives.

A proof of concept injectable C++ dll, that uses naked inline hooking and direct memory modification to change your TeamViewer permissions.

Lockbit3.0 Microsoft Defender MpClient.dll DLL Hijacking PoC

Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office RCE) with a hosted server for DLL payload delivery, based on…

CVE-2018-8440 standalone exploit

New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.

Adaptive DLL hijacking / dynamic export forwarding

A Bind Shell Using the Fax Service and a DLL Hijack

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

Windows Local Privilege Escalation via CdpSvc service (Writeable SYSTEM path Dll Hijacking)

Code execution/injection technique using DLL PEB module structure manipulation

This is a PoC for bypassing UAC using DLL hijacking and abusing the "Trusted Directories" verification.

Adaptive DLL hijacking / dynamic export forwarding - EAT preserve

WptsExtensions.dll for exploiting DLL hijacking of the task scheduler.