viernes, 26 de enero de 2024

Koppeling - Adaptive DLL Hijacking / Dynamic Export Forwarding


This project is a demonstration of advanced DLL hijack techniques. It was released in conjunction with the "Adaptive DLL Hijacking" blog post. I recommend you start there to contextualize this code.

This project is comprised of the following elements:

  • Harness.exe: The "victim" application which is vulnerable to hijacking (static/dynamic)
  • Functions.dll: The "real" library which exposes valid functionality to the harness
  • Theif.dll: The "evil" library which is attempting to gain execution
  • NetClone.exe: A C# application which will clone exports from one DLL to another
  • PyClone.py: A python 3 script which mimics NetClone functionality

The VS solution itself supports 4 build configurations which map to 4 different methods of proxying functionality. This should provide a nice scalable way of demonstrating more techniques in the future.

  • Stc-Forward: Forwards export names during the build process using linker comments
  • Dyn-NetClone: Clones the export table from functions.dll onto theif.dll post-build using NetClone
  • Dyn-PyClone: Clones the export table from functions.dll onto theif.dll post-build using PyClone
  • Dyn-Rebuild: Rebuilds the export table and patches linked import tables post-load to dynamically prepare for function proxying

The goal of each technique is to successfully capture code execution while proxying functionality to the legitimate DLL. Each technique is tested to ensure static and dynamic sink situations are handled. This is by far not every primitive or technique variation. The post above goes into more detail.


Example

Prepare a hijack scenario with an obviously incorrect DLL

> copy C:\windows\system32\whoami.exe .\whoami.exe
1 file(s) copied.

> copy C:\windows\system32\kernel32.dll .\wkscli.dll
1 file(s) copied.

Executing in the current configuration should result in an error

> whoami.exe 

"Entry Point Not Found"

Convert kernel32 to proxy functionality for wkscli

> NetClone.exe --target C:\windows\system32\kernel32.dll --reference C:\windows\system32\wkscli.dll --output wkscli.dll
[+] Done.

> whoami.exe
COMPUTER\User



Related word

  1. Pentest Tools Website Vulnerability
  2. Hacking Tools Hardware
  3. Github Hacking Tools
  4. Pentest Tools Tcp Port Scanner
  5. Hacking Tools For Windows Free Download
  6. Pentest Tools Github
  7. Tools For Hacker
  8. Hacking Tools
  9. Hacking Tools For Windows Free Download
  10. Hack Tools
  11. Pentest Tools Review
  12. What Are Hacking Tools
  13. Pentest Tools Website Vulnerability
  14. Pentest Tools For Ubuntu
  15. Hack Website Online Tool
  16. World No 1 Hacker Software
  17. How To Hack
  18. Hacking Tools Hardware
  19. Growth Hacker Tools
  20. Hacking Tools Github
  21. Hack Tools For Ubuntu
  22. Hacking Tools Name
  23. Hack Tools
  24. Hacking Tools For Games
  25. Hack Tools 2019
  26. Pentest Tools Find Subdomains
  27. Hacker Tools Mac
  28. Pentest Tools Framework
  29. Free Pentest Tools For Windows
  30. Game Hacking
  31. Hacker Tools Mac
  32. Bluetooth Hacking Tools Kali
  33. Hacking Tools Usb
  34. Bluetooth Hacking Tools Kali
  35. Hack Tools Online
  36. Hak5 Tools
  37. Hackers Toolbox
  38. How To Install Pentest Tools In Ubuntu
  39. Hacking Tools For Beginners
  40. Hacking Tools Github
  41. Hacking Tools
  42. Hacking Tools Online
  43. Hacking Tools Download
  44. Easy Hack Tools
  45. Github Hacking Tools
  46. Pentest Reporting Tools
  47. Hacker Tools For Pc
  48. Hacking Tools For Games
  49. Hacker Tools Windows
  50. Hacking Tools Mac
  51. Hacker
  52. Pentest Tools List
  53. Hacker Tools 2020
  54. Hack Tools For Windows
  55. Pentest Automation Tools
  56. Hack Tools For Windows
  57. Game Hacking
  58. Pentest Tools Kali Linux
  59. New Hacker Tools
  60. Hacking Tools 2019
  61. Hacking Tools Github
  62. Hacker Tool Kit
  63. Pentest Tools Alternative
  64. Tools For Hacker
  65. Pentest Tools Windows
  66. Hack Website Online Tool
  67. Hacking Tools Pc
  68. Pentest Recon Tools
  69. Hacker Tools Windows
  70. Hacking Tools For Beginners
  71. Hacking Tools For Mac
  72. Hacking Tools For Windows
  73. Hacking Tools For Mac
  74. Hacker Search Tools
  75. Pentest Tools Framework
  76. Pentest Tools Review
  77. Hacker Tools
  78. What Are Hacking Tools
  79. Pentest Tools Kali Linux
  80. Wifi Hacker Tools For Windows
  81. Hacker Tools Free Download
  82. Hacking Tools Usb
  83. Beginner Hacker Tools
  84. Hacking Tools Free Download
  85. Nsa Hack Tools Download
  86. Hacker Tools Free Download
  87. Hack Tools
  88. Wifi Hacker Tools For Windows
  89. Hackers Toolbox
  90. Hacks And Tools
  91. Game Hacking
  92. Underground Hacker Sites
  93. Best Hacking Tools 2020
  94. Best Hacking Tools 2020
  95. Best Hacking Tools 2020
  96. Kik Hack Tools
  97. Hacker Tools Windows
  98. Pentest Tools Download
  99. Hack Website Online Tool
  100. Hacker Tools Linux
  101. Underground Hacker Sites
  102. Top Pentest Tools
  103. Nsa Hack Tools
  104. Hacking Apps
  105. Hack Tools 2019
  106. Hack Tool Apk
  107. Hacking App
  108. Hack App
  109. Pentest Reporting Tools
  110. Pentest Tools Kali Linux
  111. Hacker Tools Software
  112. Pentest Tools Windows
  113. Black Hat Hacker Tools
  114. Hacker Tools For Ios
  115. Pentest Recon Tools
  116. How To Hack
  117. Hack Tool Apk No Root
  118. Hack Tool Apk No Root
  119. Pentest Tools Subdomain
  120. Free Pentest Tools For Windows
  121. Hacker Tools Hardware
  122. Hacking Tools For Windows
  123. Termux Hacking Tools 2019
  124. Hacking Tools Free Download
  125. Hacker Tools Apk Download
  126. Pentest Tools
  127. Hack Rom Tools
  128. Hacking Tools Github
  129. Hacker Tools For Mac
  130. Hacker Hardware Tools
  131. Kik Hack Tools
  132. Hacking Tools Usb
  133. Hacker Tool Kit
  134. Hack Tools Github
  135. How To Make Hacking Tools
  136. Pentest Tools Nmap
  137. Hacker Tools Github
  138. Pentest Tools Android
  139. Hacker Tools Apk Download
  140. Hack App
  141. Easy Hack Tools
  142. Nsa Hacker Tools
  143. Hacking Tools Online
  144. How To Install Pentest Tools In Ubuntu
  145. Game Hacking
  146. Nsa Hack Tools Download
  147. Pentest Tools Android
  148. Hacking Tools Download
  149. Hacker Tools Free Download
  150. Tools Used For Hacking
  151. Black Hat Hacker Tools
  152. Hacking Tools 2019
  153. Pentest Tools Framework
  154. Hacking Tools Free Download
  155. Pentest Tools Nmap
  156. Hacker Tools
  157. Hacking Tools Software

No hay comentarios:

Publicar un comentario

Nota: solo los miembros de este blog pueden publicar comentarios.