Label: hook
09 Mar 2017
Functions call interception via replacement of header bytes by JMP or CALL instructions
data:image/s3,"s3://crabby-images/4a124/4a1249b669f52e52fd2a8372c558dae5821c9cb0" alt=""
I was describing a method of functions call interception by means of an import table in one of my previous articles. This method is more universal, since it gives an opportunity to intercept almost any calls (please see the limitations list below). However, this one is more complicated, since header modification code needs disassembling skills
01 Mar 2017
A hook on a function call via modifying an import table
data:image/s3,"s3://crabby-images/714da/714da7745876ed7f43f613112b75a755c1a6d8cc" alt=""
There are situations in terms of large projects when it is necessary to correct the work of one or more third-party components (such as libraries as a part of an application). The source code is rarely available in these cases and we have to use hacker approaches. I am going to consider one of the