Aggregator
Kernel Callback Tables for Process Injection: perform process injection and hijack execution flow
Kernel Callback Tables for Process Injection The Kernel Callback Table in the Process Environment Block (PEB) can be hijacked by attackers to redirect a process’s execution flow, enabling them to execute malicious payloads. This...
The post Kernel Callback Tables for Process Injection: perform process injection and hijack execution flow appeared first on Penetration Testing Tools.
Inveigh: .NET IPv4/IPv6 machine-in-the-middle tool
Inveigh Inveigh is a cross-platform .NET IPv4/IPv6 machine-in-the-middle tool for penetration testers. This repo contains the primary C# version as well as the legacy PowerShell version. Overview Inveigh conducts spoofing attacks and hash/credential captures...
The post Inveigh: .NET IPv4/IPv6 machine-in-the-middle tool appeared first on Penetration Testing Tools.
UEFI Firmware Parser: Parse BIOS/Intel ME/UEFI firmware related structures
UEFI Firmware Parser The UEFI firmware parser is a simple module and set of scripts for parsing, extracting, and recreating UEFI firmware volumes. This includes parsing modules for BIOS, OptionROM, Intel ME and other...
The post UEFI Firmware Parser: Parse BIOS/Intel ME/UEFI firmware related structures appeared first on Penetration Testing Tools.