![]() |
|
|
|
#1
|
|||
|
|||
|
Excuse the doublepost but as I see this becoming something i'll have to do a lot more and I'm guessing others at exetools while certainly more skilled than me might run into this I've written up a quick and easy way with handle inheritance.
Here's a source to a program that will steal handles from a privileged process and give them to your executable. (Compile as unsafe / 64bit only at the moment) We're basically exploiting windows handle inheritance behavior if you can spawn a process from crss for example and it has an 0x1fffff handle to your process you'll get the same handle. Last edited by H4vC; 05-15-2017 at 20:51. |
| The Following User Says Thank You to H4vC For This Useful Post: | ||
tonyweb (05-15-2017) | ||
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Bookmarks: How do you handle your browser bookmarks? | blue_devil | General Discussion | 11 | 01-28-2025 05:59 |
| [C/ASM] Easy to use DLL hijacking examples | zeffy | Source Code | 20 | 03-17-2023 11:07 |
| how to handle this super annoying anti trace trick | niom | General Discussion | 8 | 04-14-2007 05:45 |
| Release file lock handle | baatazu | General Discussion | 7 | 06-30-2005 00:22 |
| Softice: hwnd -> invalid window handle | dreamershl | General Discussion | 2 | 04-19-2004 09:58 |