HandleKatz

Handle dump

A tool that uses cloned handles to create an obfuscated memory dump of the Lsass process.

PIC lsass dumper using cloned handles

GitHub

575 stars
12 watching
103 forks
Language: C
last commit: over 2 years ago

Related projects:

Repository Description Stars
hagrid29/duplicatedump Tools to dump LSASS memory without detection using custom LSA plugin and duplicated handle 199
seventeenman/callbackdump A utility that allows dumping the memory of the LSASS process without triggering antivirus signatures or sandbox detection. 548
deepinstinct/lsass-shtinkering Exploits Windows Error Reporting to dump LSASS memory 378
outflanknl/dumpert A tool for creating a low-level memory dump of the LSASS process using direct system calls and API unhooking. 1,496
takasek/actionclosurable A framework that simplifies iOS development by providing an alternative to traditional Objective-C-style target-action handling with closures. 123
kosmikus/lhs2tex A tool for converting Haskell source code into LaTeX-compatible typesetting formats 99
alfarom256/bof-foreignlsass A tool for duplicating an existing process's handle to LSASS, allowing dumping of the local session store. 98
jecisc/chanel A tool for cleaning and improving Smalltalk code 22
woshiccm/pecker Detects unused code in Swift projects by analyzing syntax and index store data 1,456
gottagetswifty/codablewrappers A collection of property wrappers to simplify serialization with Swift's Codable protocol 661
bazad/threadexec This project enables code execution within the context of other processes on iOS 11. 81
sstadick/crabz A cross-platform compression and decompression tool written in Rust. 333
twasyl/jstackfx Analyze thread dumps from Java process output to identify and visualize thread activity 85
haskell/win32 A direct binding to Windows API calls in the Haskell programming language. 97
helgeho/hadoopconcatgz Provides a custom input format for handling concatenated GZIP files in distributed processing systems like Hadoop 9