
HandleKatz
PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…
defensive-toolsmemory-forensicspayload-generation+3
598

PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…

LSASS minidump tool with multiple handle acquisition, PPL bypass, and evasion techniques for red team credential extraction via Cobalt Strike BOF or…

In-memory Windows credential harvester that dumps LSA secrets, SAM hashes, and DCC2 via indirect syscalls, leaving no disk footprint for red team…