Skip to content

Latest commit

 

History

History
11 lines (6 loc) · 661 Bytes

README.md

File metadata and controls

11 lines (6 loc) · 661 Bytes

RdpVandalist

Exposing RDP Credentials Using Rc7Hook API Hooking.

Explanation

RdpVandalist uses Rc7Hook API hooking library to install patchless hooks on APIs like CredIsMarshaledCredentialW and CryptProtectMemory to extract RDP credentials easily, Saving them to a global structure similar to RdpThief's method.

Showcase

RdpVandalist