Cobalt Strike (Cobalt-Strike)

Cobalt Strike

Cobalt-Strike

Geek Repo

The official public repository for Cobalt Strike related projects.

Home Page:https://cobaltstrike.com

Github PK Tool:Github PK Tool

Cobalt Strike's repositories

community_kit

Cobalt Strike is a post-exploitation framework designed to be extended and customized by the user community. Several excellent tools and scripts have been written and published, but they can be challenging to locate. Community Kit is a central repository of extensions written by the user community to extend the capabilities of Cobalt Strike. The Cobalt Strike team acts as the curator and provides this kit to showcase this fantastic work.

Language:HTMLLicense:Apache-2.0Stargazers:286Issues:5Issues:2

CallStackMasker

A PoC implementation for dynamically masking call stacks with timers.

Language:C++Stargazers:234Issues:4Issues:0

Malleable-C2-Profiles

Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable C2 profiles that you may use. These profiles work with Cobalt Strike 3.x.

sleep_python_bridge

This project is 'bridge' between the sleep and python language. It allows the control of a Cobalt Strike teamserver through python without the need for for the standard GUI client. NOTE: This project is very much in BETA. The goal is to provide a playground for testing and is in no way an officially support feature. Perhaps this could be something added in the future to the core product.

Language:PythonLicense:Apache-2.0Stargazers:160Issues:7Issues:6

beacon_health_check

This aggressor script uses a beacon's note field to indicate the health status of a beacon.

License:Apache-2.0Stargazers:136Issues:5Issues:0

bof_template

A Beacon Object File (BOF) is a compiled C program, written to a convention that allows it to execute within a Beacon process and use internal Beacon APIs. BOFs are a way to rapidly extend the Beacon agent with new post-exploitation features.

Language:CLicense:Apache-2.0Stargazers:99Issues:1Issues:0

bof-vs

A Beacon Object File (BOF) template for Visual Studio

Language:C++License:Apache-2.0Stargazers:94Issues:2Issues:0

ElevateKit

The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.

Language:PowerShellStargazers:92Issues:2Issues:0

teamserver-prop

TeamServer.prop is an optional properties file used by the Cobalt Strike teamserver to customize the settings used to validate screenshot and keylog callback data, which allows you to tweak the fix for the “HotCobalt” vulnerability. This repository contains an example file that contains the default settings.

License:Apache-2.0Stargazers:61Issues:2Issues:0

ProxyDLLExample

code for the Proxy DLL example blog post

Language:CLicense:Apache-2.0Stargazers:57Issues:0Issues:0

unhook-bof

Remove API hooks from a Beacon process.

Language:CLicense:BSD-3-ClauseStargazers:51Issues:1Issues:0
Language:C++License:NOASSERTIONStargazers:33Issues:0Issues:0

callback_examples

This contains a number of examples demonstrating how to use callback functions in supported aggressor script functions

Language:CLicense:Apache-2.0Stargazers:26Issues:0Issues:0
Language:CLicense:BSD-3-ClauseStargazers:10Issues:1Issues:0

aggressor_script_examples

This repository contains tips, tricks, and examples of aggressor script functions. The intent is to share bite size examples that can be used in other scripts.

License:Apache-2.0Stargazers:9Issues:0Issues:0

cortana-scripts

A collection of Cortana scripts that you may use with Armitage and Cobalt Strike 2.x. Cortana Scripts are not compatible with Cobalt Strike 3.x. Cobalt Strike 3.x uses a variant of Cortana called Aggressor Script.

Stargazers:2Issues:0Issues:0

vncdll

Stand-alone VNC server compiled as a Reflective DLL

Language:CLicense:GPL-2.0Stargazers:2Issues:0Issues:0

sleep

Automatically exported from code.google.com/p/sleep

Language:JavaLicense:BSD-3-ClauseStargazers:1Issues:0Issues:0