HandleKatz

Handle dump

A tool that uses cloned handles to create an obfuscated memory dump of the Lsass process.

PIC lsass dumper using cloned handles

GitHub

573 stars
12 watching
103 forks
Language: C
last commit: about 2 years ago

Related projects:

Repository Description Stars
hagrid29/duplicatedump Tools to dump LSASS memory without detection using custom LSA plugin and duplicated handle 199
seventeenman/callbackdump A utility that allows dumping the memory of the LSASS process without triggering antivirus signatures or sandbox detection. 545
deepinstinct/lsass-shtinkering Exploits Windows Error Reporting to dump LSASS memory 377
outflanknl/dumpert A tool for creating a low-level memory dump of the LSASS process using direct system calls and API unhooking. 1,490
takasek/actionclosurable A framework that simplifies iOS development by providing an alternative to traditional Objective-C-style target-action handling with closures. 124
kosmikus/lhs2tex A tool for converting Haskell source code into LaTeX-compatible typesetting formats 99
alfarom256/bof-foreignlsass A tool for duplicating an existing process's handle to LSASS, allowing dumping of the local session store. 97
jecisc/chanel A tool for cleaning and improving Smalltalk code 22
woshiccm/pecker Detects unused code in Swift projects by analyzing syntax and index store data 1,456
gottagetswifty/codablewrappers A collection of property wrappers to simplify serialization with Swift's Codable protocol 652
bazad/threadexec This project enables code execution within the context of other processes on iOS 11. 80
sstadick/crabz A cross-platform compression and decompression tool written in Rust. 331
twasyl/jstackfx Analyze thread dumps from Java process output to identify and visualize thread activity 85
haskell/win32 A direct binding to Windows API calls in the Haskell programming language. 97
helgeho/hadoopconcatgz Provides a custom input format for handling concatenated GZIP files in distributed processing systems like Hadoop 9