← Back
TwoSevenOneT

TwoSevenOneT/InjectSetConsole

Proof of Concept for Process Code Injection Without Using WriteProcessMemory

View on GitHub ↗
Stars
119
Forks
23
Watchers
119
Open issues
0
Contributors
1
Language
C++
License
—
Default branch
master
Created Sep 27, 2026Updated Sep 27, 2026

Star growth

Today—
This week—
This month—

Star history will appear here once this repo has been tracked for a couple of days.

README

InjectSetConsole

InjectSetConsole performs process code injection by leveraging a Windows named pipe.

Unlike traditional techniques, it does not use the VirtualAllocEx and WriteProcessMemory APIs.

Command Line Syntax

InjectSetConsole.exe <executable_path>

executable_path: netsh.exe, nslookup.exe,... or other nteractive console program

Example: InjectSetConsole.exe C:\Windows\System32\netsh.exe

To use different shellcode, replace the bytes starting at offset 0x19 (hexadecimal) in the rawData array.

Alternatively, you can modify the search pattern to improve evasion.

Links

EDR Evasion: Process Injection Without WriteProcessMemory

Demo Video

Youtube: https://youtu.be/DCUnbj_usPM

🐦 Enjoying my work? Support the journey by following me on X

Twitter Follow

Author:

Two Seven One Three