owowningthewinapi

module
v0.0.0-...-3dff233 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Jan 18, 2024 License: GPL-3.0

README

OwOwning with the Windows API

PowerPoint Here

OwOwning with the Windows API is a presentation given during the DEFCON Furs 2020 virtual conference.

During the presentation, I (secfurry) explore the methods and function calls used to spoof parent process relationships in Windows and inject shellcode into Windows applications. I cover many undocumented or lesser known functions and provide code (saved here) to experiment and modify as you see fit.

I can be reached on Twitter at @secfurry.

PS: The code used in this presentation was given to one of my friends @iDigitalFlame to use in development for his malware framework XMT, go check it out if you're interested in more cool stuff like this.

Windows API Function Reference

Updated on 08/07/2020

Directories

Path Synopsis
Build only for Windows
Build only for Windows

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL