zk2013 / access

Access without a real handle

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

access

A simple syscall wrapper that requires no handles to perform operations with PROCESS_ALL_ACCESS privilege.

Usage

  1. Load the driver.
  2. Load the DLL (wrapper) into a program that needs to open a handle to a protected process.
  3. The program can now perform privileged operations without creating a real handle.

Demo

Demo with Fortnite and Cheat Engine

Note

  • The wrapper is designed to be loaded in a x64 process and only implements the syscalls that pertain to my workflow.
  • Only tested on Windows 10 1903, 1809, and 1803.

About

Access without a real handle


Languages

Language:C 66.0%Language:Objective-C 33.0%Language:C++ 1.0%