


Dumping LSASS with a duplicated handle from custom LSA plugin

AAD related enumeration in Nim

CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

DLL sideloading/proxying with Nim!

Execute shellcode files with rundll32

A proof of concept injectable C++ dll, that uses naked inline hooking and direct memory modification to change your TeamViewer permissions.


New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.

A Bind Shell Using the Fax Service and a DLL Hijack

Code execution/injection technique using DLL PEB module structure manipulation

Generate a proxy dll for arbitrary dll

Adaptive DLL hijacking / dynamic export forwarding - EAT preserve

WptsExtensions.dll for exploiting DLL hijacking of the task scheduler.

Inject DLLs into the explorer process using icons

PE loader with various shellcode injection techniques