
DLLHijackingScanner
This is a PoC for bypassing UAC using DLL hijacking and abusing the "Trusted Directories" verification.

This is a PoC for bypassing UAC using DLL hijacking and abusing the "Trusted Directories" verification.


CVE-2026-50343 InstallService StaticPluginMap EoP - standard user to SYSTEM

PowerSploit - A PowerShell Post-Exploitation Framework

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office RCE) with a hosted server for DLL payload delivery, based on…

A reference of Windows API function calls, including functions for file operations, process management, memory management, thread management,…

Extracting Clear Text Passwords from mstsc.exe using API Hooking.

SSH-based reverse shell management tool with native SCP/SFTP support, multiple transport protocols, Windows DLL generation, and fileless execution…

Reflective PE packer.

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

Converts a EXE into DLL

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs

LoadLibrary for offensive operations

Microsoft signed ActiveDirectory PowerShell module

New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.

A tool for generating fake code signing certificates or signing real ones