Koppeling - Adaptive DLL Hijacking / Dynamic Export Forwarding


This project is a demonstration of advanced DLL hijack techniques. It was released in conjunction with the "Adaptive DLL Hijacking" blog post. I recommend you start there to contextualize this code.

This project is comprised of the following elements:

  • Harness.exe: The "victim" application which is vulnerable to hijacking (static/dynamic)
  • Functions.dll: The "real" library which exposes valid functionality to the harness
  • Theif.dll: The "evil" library which is attempting to gain execution
  • NetClone.exe: A C# application which will clone exports from one DLL to another
  • PyClone.py: A python 3 script which mimics NetClone functionality

The VS solution itself supports 4 build configurations which map to 4 different methods of proxying functionality. This should provide a nice scalable way of demonstrating more techniques in the future.

  • Stc-Forward: Forwards export names during the build process using linker comments
  • Dyn-NetClone: Clones the export table from functions.dll onto theif.dll post-build using NetClone
  • Dyn-PyClone: Clones the export table from functions.dll onto theif.dll post-build using PyClone
  • Dyn-Rebuild: Rebuilds the export table and patches linked import tables post-load to dynamically prepare for function proxying

The goal of each technique is to successfully capture code execution while proxying functionality to the legitimate DLL. Each technique is tested to ensure static and dynamic sink situations are handled. This is by far not every primitive or technique variation. The post above goes into more detail.


Example

Prepare a hijack scenario with an obviously incorrect DLL

> copy C:\windows\system32\whoami.exe .\whoami.exe
1 file(s) copied.

> copy C:\windows\system32\kernel32.dll .\wkscli.dll
1 file(s) copied.

Executing in the current configuration should result in an error

> whoami.exe 

"Entry Point Not Found"

Convert kernel32 to proxy functionality for wkscli

> NetClone.exe --target C:\windows\system32\kernel32.dll --reference C:\windows\system32\wkscli.dll --output wkscli.dll
[+] Done.

> whoami.exe
COMPUTER\User



More info


  1. Nsa Hack Tools Download
  2. Hack Tools For Mac
  3. Pentest Tools Online
  4. Wifi Hacker Tools For Windows
  5. Hack Tools Online
  6. Beginner Hacker Tools
  7. Pentest Tools For Android
  8. Pentest Tools Android
  9. Hacking Tools For Windows 7
  10. Hak5 Tools
  11. Hack Tools Online
  12. Install Pentest Tools Ubuntu
  13. Tools Used For Hacking
  14. Pentest Tools List
  15. How To Make Hacking Tools
  16. Hacker Tools 2019
  17. Hack Tools For Windows
  18. Hak5 Tools
  19. Hacker Hardware Tools
  20. Termux Hacking Tools 2019
  21. Pentest Tools List
  22. Pentest Tools Port Scanner
  23. Pentest Tools Subdomain
  24. Hacker Search Tools
  25. Hacker Tools Free
  26. Hack Tools Github
  27. Easy Hack Tools
  28. Pentest Tools Port Scanner
  29. Hacker Hardware Tools
  30. Hacking Tools For Mac
  31. Hack Tool Apk
  32. Hacking Tools For Windows Free Download
  33. Hacker Tools Github
  34. Hacker Tools For Pc
  35. Pentest Reporting Tools
  36. Pentest Tools Windows
  37. Hacking Tools For Pc
  38. Pentest Tools Online
  39. Hacking Tools Usb
  40. Usb Pentest Tools
  41. Best Hacking Tools 2019
  42. Beginner Hacker Tools
  43. Hacking Tools Mac
  44. Pentest Tools For Mac
  45. Hacking Tools For Windows 7
  46. Hacking Tools Usb
  47. Hacking Tools Windows 10
  48. Android Hack Tools Github
  49. Hacker Tools Windows
  50. Hacking Tools And Software
  51. Best Hacking Tools 2019
  52. Hacking Tools 2020
  53. Hacking Tools Pc
  54. Game Hacking
  55. Hacking Tools Kit
  56. Hack Tools
  57. Hacking Tools
  58. Pentest Tools Apk
  59. Hacker Tools For Mac
  60. Hacking Apps
  61. Pentest Tools Find Subdomains
  62. Termux Hacking Tools 2019
  63. Hack Tools
  64. Hacking Tools Usb
  65. Pentest Tools Android
  66. Hacking Tools Software
  67. Hack Tools For Pc
  68. Hacking Tools Download
  69. Pentest Tools Tcp Port Scanner
  70. Nsa Hacker Tools
  71. Pentest Tools Find Subdomains
  72. Hacker Tools Github
  73. Install Pentest Tools Ubuntu
  74. Hacking Tools For Games
  75. Hacking Tools Free Download
  76. Hack Rom Tools
  77. Pentest Tools Tcp Port Scanner
  78. Hack Tools
  79. How To Make Hacking Tools
  80. Pentest Tools Nmap
  81. Pentest Tools Nmap
  82. Hacker Tools Linux
  83. Pentest Tools Framework
  84. Nsa Hacker Tools
  85. World No 1 Hacker Software
  86. Hack Tools 2019
  87. Hack Tools For Games
  88. Pentest Automation Tools
  89. Hack Tool Apk No Root
  90. Hack Tools For Pc
  91. Hacker Tools For Pc
  92. Hacking Tools 2019
  93. Hacker Search Tools
  94. Pentest Tools Port Scanner
  95. Hacking Tools Windows 10
  96. Android Hack Tools Github
  97. Wifi Hacker Tools For Windows
  98. Hacking Tools For Windows 7
  99. Hacking Tools For Games
  100. Hacker Tools For Pc
  101. Hacker Tools Free Download
  102. Hacking Tools Online
  103. Pentest Tools Port Scanner
  104. Hack Tools For Windows
  105. Hacker Tools Software
  106. Pentest Tools Nmap
  107. Hacker Tools Windows
  108. Hack Website Online Tool
  109. World No 1 Hacker Software
  110. Hacker Hardware Tools
  111. Pentest Tools Linux
  112. Github Hacking Tools
  113. Pentest Tools Windows
  114. Pentest Tools Windows
  115. Pentest Tools Port Scanner
  116. Hack Tools Pc
  117. Hacking Tools 2020
  118. Pentest Tools For Android
  119. Hack Tools For Pc
  120. Easy Hack Tools
  121. Hacker
  122. Hack Tools For Ubuntu
  123. Pentest Tools Nmap
  124. Pentest Tools Open Source
  125. Pentest Tools For Mac
  126. Hack Tools For Ubuntu
  127. Pentest Recon Tools
  128. Github Hacking Tools
  129. Hacker Tools Mac
  130. Beginner Hacker Tools
  131. Hacker Tools Software
  132. How To Install Pentest Tools In Ubuntu
  133. Hacking Tools Windows
  134. Hacker Tools Mac
  135. Hacking Tools Windows 10
  136. Hack Tools For Ubuntu
  137. Pentest Tools Online
  138. Nsa Hack Tools
  139. Hacker Hardware Tools
  140. Hacker Tools
  141. Hacker Tools 2019
  142. Hacking Tools Windows 10
  143. Hacks And Tools
  144. Nsa Hack Tools Download
  145. Hacking Tools For Mac
  146. Underground Hacker Sites
  147. Hacking Tools Software
  148. Pentest Tools Website
  149. Easy Hack Tools
  150. Hack Tools 2019
0 Responses

Post a Comment

abcs