
ExecIT
Execute shellcode files with rundll32

Execute shellcode files with rundll32

A proof of concept injectable C++ dll, that uses naked inline hooking and direct memory modification to change your TeamViewer permissions.

Lockbit3.0 Microsoft Defender MpClient.dll DLL Hijacking PoC

Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office RCE) with a hosted server for DLL payload delivery, based on…

Parses Cortex XDR agent database lock files to extract agent settings, uninstall password hash/salt, and security exclusions for red team assessments…

CVE-2018-8440 standalone exploit


New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.

Converts a EXE into DLL

Adaptive DLL hijacking / dynamic export forwarding

A Bind Shell Using the Fax Service and a DLL Hijack

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

Windows Local Privilege Escalation via CdpSvc service (Writeable SYSTEM path Dll Hijacking)

Code execution/injection technique using DLL PEB module structure manipulation

Weaponize signed .NET ClickOnce applications for initial access by hijacking a dependency DLL via AppDomainManager injection and loading a C# port of…

Generate a proxy dll for arbitrary dll