PPID-Spoofing. POC of PPID spoofing using NtCreateUserProcess with syscalls to create a suspended process and performing process injection by overwritting ntdll:LdrInitializeThunk with shellcode.

github.com/trickster0/PPID-Spoofing

Vaya's read on this project

Problem, audience, market, and the verdict — sign in to see it.

Updates

No recent activity.