
CVE-2026-50343-InstallService-EoP
CVE-2026-50343 InstallService StaticPluginMap EoP - standard user to SYSTEM

CVE-2026-50343 InstallService StaticPluginMap EoP - standard user to SYSTEM

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

A reference of Windows API function calls, including functions for file operations, process management, memory management, thread management,…

Reflective PE packer.

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs

LoadLibrary for offensive operations

Cooolis-ms是一个包含了Metasploit Payload Loader、Cobalt Strike External C2 Loader、Reflective DLL injection的代码执行工具,它的定位在于能够在静态查杀上规避一些我们将要执行且含有特征的代码,帮助红队人员更方便快…

Autoelevate DLL search-order hijacking UAC bypass for x64 Windows 7–11, abusing 32-bit iscsicpl.exe via SysWOW64 to execute code without a UAC prompt.

Adaptive DLL hijacking / dynamic export forwarding

Weaponize DLL hijacking easily. Backdoor any function in any DLL.

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

PE loader with various shellcode injection techniques

For when DLLMain is the only way

Inject DLLs into the explorer process using icons