Home

Awesome

faxhell ("Fax Shell")

A Proof-of-Concept bind shell using the Fax service and a DLL hijack based on Ualapi.dll.

See our writeup at: https://windows-internals.com/faxing-your-way-to-system/

Obligatory Demo

How to use

EDR / AV evasion

Caveats

This isn't meant to be a drop-in, undetectable, malicious, weaponized shell: