discovered 31 Aug 2026
wrappem
→ View on GitHubWrappEm is a Windows tool designed for adversarial payload execution by utilizing three distinct methods of subverting the Windows Image Loader through byte-based manipulation of a binary file’s Import Directory and Import Section. Its primary use case involves inserting an additional executable binary into a host process's virtual address space, serving as an alternative to traditional export forwarding techniques. Notable features include support for multiple methods of import manipulation and compatibility with various build systems, all implemented without external dependencies.