github Actively maintained

danielkrupinski/x86RetSpoof

Invoke functions with a spoofed return address. For 32-bit Windows binaries. Supports __fastcall, __thiscall, __stdcall and __cdecl calling conventions. Written in C++17.

1 awesome list

Quick read

Stars
179
Forks
33
Open issues
1
Commits
61

Activity and growth

Latest capture 2026-08-31 03:05

Stars · last 7 days
No history
Commits · last 7 days
No history
Stars since tracking
-2
Stored snapshots
4

Classification

Metadata

Language
C++
License
MIT
Default branch
master
Created
2022-02-07
First commit
2022-02-07
Last pushed
2023-02-17
GitHub updated
2026-08-28
Last synced
2026-08-31 03:05
Stack scanned
2026-08-31 03:05
Archived
No

AI development signals

0 paths

Agent instructions and tool configuration found in this repository.

No config files detected.

Growth history

Tracked growth

4 observed captures since 2026-06-24. Observed captures are shown by default.

Stars from first capture -2

Chart data

Observed captures only

Time horizon

All tracked data

Custom date range

Stars history

Observed snapshots

Commits history

Observed snapshots

Similar repositories

Nearest indexed repositories by embedding similarity.

Barracudach/CallStack-Spoofer

This tool will allow you to spoof the return addresses of your functions as well as system functions.

584 stars
C++ 1 awesome list

fortra/hw-call-stack

Use hardware breakpoints to spoof the call stack for both syscalls and API calls

206 stars
C 1 awesome list

cryotb/RASD

An interesting way to detect return address spoofing on x64-windows.

8 stars
C++ 1 awesome list

Apex-master/return-address-spoofing

works with most invokers, spoofs the return address to bypass the anti cheat and allow detected natives to be called.

7 stars
C++ 1 awesome list