NtDallas / Fenrir

stack spoofing
63 stars 13 forks source link

Sad, some Windows versions kernelbase.dll can't find rdi gad #1

Open D1sAbl4 opened 2 weeks ago

D1sAbl4 commented 2 weeks ago

Find Rdi gad image

NtDallas commented 2 weeks ago

Yes, I mentioned in the README that I tested it on Windows 11 24H2, not on other versions of Windows

I noticed that on Windows Server, no gadget is present. When I have time, I’ll check how to use other gadgets in case "jmp RDI" is not available.