
DLLHSC
Automated scanner for discovering DLL search order hijacking candidates in Windows executables, featuring import table parsing, runtime module…

Automated scanner for discovering DLL search order hijacking candidates in Windows executables, featuring import table parsing, runtime module…

this tool can generate a exp for cve-2017-8486, it is developed by python

Robber is open source tool for finding executables prone to DLL hijacking

A scanner that files with compromised or untrusted code signing certificates written in python.

Windows privilege escalation discovery tool that parses Process Monitor boot logs to identify DLL hijacking, weak ACLs, and other elevation paths,…

Weaponize DLL hijacking easily. Backdoor any function in any DLL.

PowerSploit - A PowerShell Post-Exploitation Framework

DLL that hooks NTLM and Kerberos authentication in lsass.exe to inject a backdoor hash, enabling persistent authenticated access on Windows systems.

C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can later be…

Bypass UAC by hijacking a DLL located in the Native Image Cache

Lightweight native Windows memory scanner for AV/EDR platforms, detecting suspicious mapped images and manual DLL injection techniques by IAT thunk


The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…

Automated DLL hijacking vulnerability discovery tool that analyzes PE binaries at load-time and runtime via API hooking, enumerating missing DLLs and…

DLL Injection tool to unlock guest VMs

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.