
nanodump
The swiss army knife of LSASS dumping
exploitationmemory-forensicspayload-development+4

The swiss army knife of LSASS dumping

EDRSandblast-GodFault

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

Inception is a physical memory manipulation and hacking tool exploiting PCI-based DMA. The tool can attack over FireWire, Thunderbolt, ExpressCard,…

Hide memory artifacts using ROP and hardware breakpoints.

Stealthier variation of Module Stomping and Module Overloading injection techniques that reduces memory IoCs. Implemented in Python ctypes

find dll base addresses without PEB WALK