offensive-keylogger-arch
Low-level keylogger architecture design: kernel driver hooks (WH_KEYBOARD_LL, SetWindowsHookEx), ETW-based input capture, user-mode vs kernel-mode approaches, stealth techniques, and data exfiltration. Use for understanding input capture mechanisms, EDR evasion research, or malware architecture analysis. Use when performing authorized red-team, pentest, or research work involving keylogger arch.
- Compatibility
- claude-code codex opencode
Pinned to revision 626b01ddea63, so it is the text this page describes rather than whatever the author pushed since.
Files
- skills/offensive-keylogger-arch/SKILL.md
- skills/offensive-keylogger-arch/LICENSE
- skills/offensive-keylogger-arch/README.md
- skills/offensive-keylogger-arch/agents/openai.yaml
Every link opens the file at its source, pinned to the revision this page describes.